Hackers are learning to exploit chatbot ‘personalities’
…security worker, a group for whom technical skills are optional, or at least less important than social intuition. No longer do they need to inspect code to break into systems or exploit…
This Linux Bug Gives Attackers Root
The First Exploit - Pwn2Own Documentary (Part 2)
Dirty Frag Won't Be The Last Exploit
Sorry Windows 10 Users...
Firefox JIT Bug - Pwn2Own Documentary (Part 3)
An initiative to secure the world's software | Project Glasswing
Microsoft Windows Agentic AI Malware
AI Is Hacking Everything Now...
Intel again making chips for Apple? Googlebook + [UNNAMED] OS - Talking Heads Ep.432
A Vulnerability to Hack The World - CVE-2023-4863
MechaCon: PS2s Unbreakable Gatekeeper ...Until it wasn't
Everyone's getting hacked
…security worker, a group for whom technical skills are optional, or at least less important than social intuition. No longer do they need to inspect code to break into systems or exploit…
…DarkSword reinforces a familiar problem for Apple Security updates stop specific exploits, but they don't stop the commercial and state-linked market that keeps trying to build the next one…
…2026 Patch Tuesday security updates , covering 120 vulnerabilities, including 17 "critical" flaws. 99% of What Mythos Found Is Still Unpatched. AI chained four zero-days into one exploit that bypassed both renderer…
…Apple's T2 Chip Has Unpatchable Security Flaw, Claims Researcher [Updated] Intel Macs that use Apple's T2 Security Chip are vulnerable to an exploit that could allow a hacker to circumvent…
A security researcher says Microsoft secretly built a backdoor into BitLocker, releases an exploit to prove it
I co-founded a successful security company close to the Mythos ecosystem and have spoken with participants in the know and I am deeply concerned. We, collectively, have answers for some but not all of the problems ahead …
The traditional vulnerability disclosure timeline relies on a fundamental assumption: exploit development and vulnerability discovery take time. Over the last 12 months the integration of LLMs into offensive tooling has …
For over a decade, I’ve been doing bug bounty, security audits, and security consulting. And if there’s one thing I’ve seen repeatedly, it’s this:Most startups call a security engineer or hire a security agency only when…
This is something that has been bouncing around my head for the past couple weeks with the flood of security related news around Mythos and the number of 0days being found.Microkernels, unikernals, hardware-enforced capa…
…Security researcher Haifei Li, founder of the sandbox-based exploit detection system EXPMON, said the campaign uses a malicious PDF that runs as soon as it's opened, working against even up…
…This isn't the first time Ledger's research group has uncovered security weaknesses in MediaTek hardware. However, it’s unclear if the vulnerability has been exploited by attackers and its potential…
…Researchers at the security firm Calif say they used Anthropic’s cybersecurity AI to create a privilege escalation exploit, the Wall Street Journal reports: Last September, Apple said it leveraged its hardware…
…Apple's latest security advisory comes after two malware campaigns that targeted iPhone users. Coruna is one example of a full iPhone exploit kit that uses web-based attacks to compromise…
…The security sleuth posted the zero-day YellowKey exploit, which enabled them to access a locked file. For context, YellowKey can be triggered by copying some files to a USB stick and…
…security platform, reports that Mythos Preview is a “significant step up over all existing models” on its web exploit benchmark, and provides “absolutely unprecedented precision” on a token-for-token basis; ExploitBench…