A roundup of 44 items curated from across the security community.
News
The UN World Food Programme discloses a data breach affecting 600,000 households in Gaza.
Mandiant details UNC3753 using vishing and RMM tools for data extortion against US law firms, with some operators attempting in-person theft.
CISA adds an actively exploited SolarWinds Serv-U vulnerability to the KEV catalog.
More this week (5)
- Cisco Unified CM critical flaw with PoC exploit code by BleepingComputer.
- IronWorm malware hits 36 npm packages by Nicolas Krassas.
- Amazon mouse is a confirmed BadUSB credential harvester.
- Miasma worm hits 73 Microsoft GitHub repositories by Nicolas Krassas.
- Whistleblower accuses IBM of covering up data breaches by K̵i̵r̵k̵ ̵T̵r̵y̵c̵h̵e̵l̵.
Techniques and Write-ups
A research paper demonstrates an AI worm that reasons its way through networks, steals compute from GPU machines to run its own LLM, and self-replicates across Linux, Windows, and IoT targets.
OSNEXUS QuantaStor through v6.6.1 has an unauthenticated blind SQL injection in the login form. Attackers can recover stored password hashes one character at a time using differing login error responses, with no credentials required.
Volexity details how VerdantBamboo breached an MSP to deploy BRICKSTORM across firewalls, NAS, and cloud storage devices, including a zero-day privilege escalation.
Writing tiny responses into a scratch Cache API cache reveals different metadata residue in normal vs. incognito Chrome, because incognito writes to memory instead of disk.
Verichains chains the nginx Rift and PoolSlip vulnerabilities together into a full remote code execution exploit.
Silent Signal finds an unauthenticated RCE as the system superuser on IBM i Management Central, exploiting a client-controlled verify flag on port 5555.
More this week (20)
- Re:CACHE: 0-click stored XSS on Next.js via type confusion.
- Remote kernel DoS in Comodo Internet Security by vx-underground.
- CVE-2025-59199: Windows sandbox escape via Notifications and URIs by winterknife.
- From prompt to pwned: chaining LLM and web bugs to admin by Dave Aitel.
- An exercise in dynamic analysis of unknown Windows mitigations by Dave Aitel.
- Card skimmer uses Stripe’s own API as its C2 and exfil by Robin.
- Escaping the PHP sandbox via a UAF on macOS by kmkz.
- Redis CVE-2026-23479 deep dive by kmkz.
- Async picos and custom beacon wakeups in Cobalt Strike by Lefteris Panos.
- Evilginx Phishlets 2.0 preview: downgrading FIDO MFA on M365 by Kuba Gretzky.
- BOF cocktails in Cobalt Strike 4.13 by Bobby Cooke.
- Microsoft finds Claude Code GitHub Action vulnerable to prompt injection by Nicolas Krassas.
- Insights into Entra ID’s (Un)Conditional Access by DirectoryRanger.
- Inside MXC: Microsoft’s experimental OS-level sandbox for AI agents by Giuseppe
N3mes1s. - FreeType heap overflow via TrueType SHZ instruction by Project Zero Bugs.
- Zero-click HFP/A2DP Bluetooth takeover via L2CAP preemption by /r/netsec.
- Seven years of secrets on a public clipboard, plus stored XSS by /r/netsec.
- CVE-2026-46640: Twig sandbox bypass payload development.
- Chrome sandbox escape UAF earns $90K bounty by Alex Plaskett.
- Pwning V8CTF via a Chrome 0-day in Phi untagging by Alex Plaskett.
Tools and Exploits
Praetorian shims all necessary host APIs to run complete implants with all logic inside a WebAssembly VM, demonstrated with Sliver.
A technique for starving EDR of telemetry by throttling the stream, effectively blinding defenses without killing the agent.
More this week (8)
- VeeamDumper: extracting credentials from Veeam backup databases by Sean Metcalf.
- AzureRedOps: Entra ID red team tool with Playwright token capture by Chihuahua in charge NotMe.
- Anthropic open-sources a reference harness for AI vuln discovery by kmkz.
- Ghostwriter v7: scoped service tokens for LLM integration by Swissky.
- PE-bear 0.7.2: new features and bugfixes.
- CVE-2026-8389 exploit released by Bobby Cooke.
- Havoc Professional 0.7 K-Noir: Linux implant and stack spoofing by Rasta Mouse.
- Ghidra RPC: an agent skill for agentic reverse engineering by winterknife.
