A roundup of 759 items curated from across the security community.

News

Critical WordPress RCE vulnerability (CVSS 9.2) affects all versions back to 2016. Update immediately.

Warlock ransomware group targets water utilities and telecom operators, deploying custom payloads against critical infrastructure.

DOJ arrested the CEO of Oxygen Forensics for concealing the digital forensics company’s ties to Russia while selling tools to US law enforcement.

GRU-linked operatives attributed to the arson attack at a Munich warehouse and sabotage at Leipzig airport.

Dutch police arrested a ShinyHunters leader. In response, remaining members escalated attacks, stealing sensitive FBI data and extorting the Clop ransomware group.

DIVD reports that Zammad helpdesk zero-days were exploited to breach their network using AI-driven attack techniques.

Hackers breached the Pentagon’s HR management system, stealing SSNs and job details for over 3 million military personnel.

Authorities from 9 countries shut down the KillSec ransomware group, linked to nearly 1,000 attacks. The leader is 16 years old.

CVE-2026-88772 turns 120 crafted DTLS records into root-level shellcode on Citrix NetScaler. 174 KB of reassembled data overruns a 35K buffer. Already exploited in the wild.

CVE-2026-86950 is an OOB write in CoreGraphics parsing images/PDFs. Zero-click via WhatsApp, Safari, iMessage where auto-preview renders the file. Both iOS and macOS affected.

More this week (53)

Techniques and Write-ups

Unprompted.au keynote slides on XNU exploit development with AI assistance. Argues for pushing to understand complex things while using AI as a power tool for pace and depth.

Project Zero research into Windows COM object lifecycle bugs. Identifies dangling references in COM activation that lead to use-after-free conditions.

watchTowr analysis of an unauthenticated heap overflow in F5 BIG-IP’s authentication header parsing that chains to remote code execution.

Research into Apple zero-click attack surfaces via AirDrop, iMessage, and other proximity protocols. Maps the exploitable entry points available without user interaction.

Research into overlooked AD CS Certificate Enrollment Service endpoints that provide additional privilege escalation paths beyond standard ESC attacks.

Google publishes its agentic web security scanner PageBreak and shares real findings discovered during development. Two blog posts covering approach and results.

Deep reverse engineering of Win32k’s user-mode callback mechanism. Documents the callback dispatch table, internal structures, and exploitation implications.

watchTowr drops a full analysis of Citrix NetScaler pre-auth command injection. Any logged field works as an injection point for root-level code execution.

Public PoC for MikroTik SSH chain: auth as user “-2” (rejected but sticky), pre-auth rekey drops the gate, login treats “-2” as full admin. On CISA KEV.

Calif research on CVE-2026-86950, a CoreGraphics font parsing vulnerability exploitable through maliciously crafted glyphs. Detailed root cause analysis of the OOB write.

More this week (655)

Tools and Exploits

Python port of Snaffler that runs on Linux with HTML report output and filtering options. Same credential and secret hunting, cross-platform.

Havoc C2 plugin that creates an invisible alternate desktop, streams it to a browser viewer, and supports full mouse/keyboard interaction. Like RDP but invisible to the target user.

Hex-Rays releases the official IDA MCP Server. Free, open source, works with any LLM. Agent writes IDAPython with 20% fewer tokens and can share an IDB in real time.

Authenticates with exposed Azure service principal credentials and enumerates the exact rights and access they grant across the environment.

Major RustHound-CE update adds LocalGroups collection over SAMR RPC for AdminTo, CanRDP, ExecuteDCOM, and CanPSRemote edges in BloodHound.

New LOLBAS entries: applaunch.exe for AppLocker bypass, mscopilot/dotnet-trace for proxy execution, scp/ssh.exe for DLL loading, fsutil.exe for blocking Defender updates.

OpenSSL 4.0.3 ships with fixes for 14 CVEs across the cryptographic library.

Open-source AI application security toolkit with a catalog of 100+ adversarial scenarios covering prompt injection, tool abuse, data exfiltration, and more.

Serverless C2 transport for AdaptixC2 using AWS Lambda and DynamoDB. Agent traffic appears as HTTPS to AWS endpoints with no inbound ports or public IPs required.

Cantina releases the first open-weights model post-trained on real vulnerabilities they found and got paid for. Abliterated variant available for authorized research.

More this week (21)