ch
Feedback
Bug bounty Tips

Bug bounty Tips

前往频道在 Telegram

🛡️ Cybersecurity enthusiast | 💻 Helping secure the digital world | 🌐 Web App Tester | 🕵️‍♂️ OSINT Specialist Admin: @laazy_hack3r

显示更多
5 694
订阅者
+1824 小时
+757
+47730
吸引订阅者
六月 '26
六月 '26
+165
在0个频道中
五月 '26
+588
在0个频道中
Get PRO
四月 '26
+543
在0个频道中
Get PRO
三月 '26
+358
在0个频道中
Get PRO
二月 '26
+318
在0个频道中
Get PRO
一月 '26
+360
在0个频道中
Get PRO
十二月 '25
+411
在1个频道中
Get PRO
十一月 '25
+464
在0个频道中
Get PRO
十月 '25
+152
在0个频道中
Get PRO
九月 '25
+74
在0个频道中
Get PRO
八月 '25
+213
在1个频道中
Get PRO
七月 '25
+41
在0个频道中
Get PRO
六月 '25
+15
在0个频道中
Get PRO
五月 '25
+27
在0个频道中
Get PRO
四月 '25
+43
在0个频道中
Get PRO
三月 '25
+41
在0个频道中
Get PRO
二月 '25
+45
在0个频道中
Get PRO
一月 '25
+88
在1个频道中
Get PRO
十二月 '24
+73
在2个频道中
Get PRO
十一月 '24
+234
在2个频道中
Get PRO
十月 '24
+372
在2个频道中
Get PRO
九月 '24
+307
在2个频道中
Get PRO
八月 '24
+414
在2个频道中
Get PRO
七月 '24
+131
在1个频道中
Get PRO
六月 '24
+84
在0个频道中
Get PRO
五月 '24
+196
在2个频道中
Get PRO
四月 '24
+117
在0个频道中
Get PRO
三月 '24
+41
在0个频道中
Get PRO
二月 '24
+76
在0个频道中
Get PRO
一月 '24
+47
在0个频道中
Get PRO
十二月 '23
+13
在0个频道中
Get PRO
十一月 '23
+79
在0个频道中
Get PRO
十月 '23
+282
在0个频道中
日期
订阅者增长
提及
频道
12 六月0
11 六月+20
10 六月+12
09 六月+9
08 六月+14
07 六月+8
06 六月+16
05 六月+11
04 六月+18
03 六月+22
02 六月+15
01 六月+20
频道帖子
🖼️ Daily Cybersecurity Meme "LEGACY MONOLITH" "DEVELOPERS" "NEW MICROSERVICE WITH 0 TESTS"
🖼️ Daily Cybersecurity Meme "LEGACY MONOLITH" "DEVELOPERS" "NEW MICROSERVICE WITH 0 TESTS"

2
🦾 **VulnOps Daily Digest** 🌙 11 Jun 2026 · 11:30 PM IST 📰 Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks https://news.google.com/rss/articles/CBMipwFBVV95cUxQVnBuS05STW9PenoybkdJWEtBalU1UlFCUkdOd3A2XzQ3eUZMRF9EYU14VnZjMzVNV1ZHU24wX1EtdDd5TllSYlFIdVlfcU44MTNPaENzNHc5Wm9OSDJYYXdTcEFUWXJjNzVRYlJ0TU1EVU5oNXpUaW9SbDRDckRrRzJWSlFTa2tWbmNMQVczWFhoWktYUTg1MS1wTWFiaUtnUmNQZEZnRdIBrAFBVV95cUxQVy1nV3V1Q09lVHJlUlFMMlRUQXFPbkFuOXR3eEM0NzdFN0ROa2RTN2dfVFM4M2syZDhUMnp4UGdJV2k3RzZJM2NKMmtQa25mUmtKdW9iUGFqOW5kc2hJSzhINTNnTk9wZ3FHV3lTTzdJSktCVWI0d2hJY0ZUOW4yOURIN3pwYW1adVp0Q3RKRWFud0lGTXBoLWRHWHhtTDlkaUlVR0NyVzYtWTh6?oc=5 📰 Security Alert CVE-2026-35273 Released https://news.google.com/rss/articles/CBMifEFVX3lxTFBZSXUzZjExaWhmdGdEdWFIbktlcmU5bVVvRXo5SlZQX1JuaHFTNmpKQU95c2Z0c3BUeWZYS04ySkpka0ZPeGhkSUJSUGd0b1k2c3RBS2J1ODBjZlVMSnVqSm9xaEM3N2FTQXFGdGVJMHE5WnBSb0RSQlE1NmM?oc=5 📰 Oracle PeopleSoft servers under attack, Oracle pushes out-of-band security alert https://news.google.com/rss/articles/CBMikwFBVV95cUxNaVZiakV1ZElUcVpQb3FBZjBpay1GLTFMdGNtY0tPYzlLWHJSN2hWZkVGZTRCSko2aTRqV0JvemFUeldrcENWd1Y3MlZITTFDRTNiWUtOZl9WQzJBLWViMTZmZktyQXZYOWFsS09GaEVmZ3ZDcnoteVpyNERzUFZnYTRNM2FKX2dZSFBBUjFRTW1TT2c?oc=5 📰 DNV selected to secure Dominican Republic’s first monorail with rail cybersecurity services https://news.google.com/rss/articles/CBMiwAFBVV95cUxPYUpHNEVyLUVTUUc0c2pIOHl3VlJqVngtME9fYmFvYkNyMENPVmRmdkc0M0FnUEZFS3lZNXZnNko1UzhGUFEwNkItbFdOYU5PNnQ2Ukw2RzZDM2ZVMmpWWXBVVk1idTBJNnlfTkVlbnQxWTBGNGFEUDM0OXpaTHR0NUYyNXNHUXMyMmM5WDU3TkQ4cUthNGpad2h5QzZlZ0RZM0Y3VXFfbUhmMlZ0QXh5LUY2QVRrcy1WYlJyamdzY2c?oc=5 📰 Cybersecurity Stars Awards 2026: Winners Announced Across 95 Categories https://news.google.com/rss/articles/CBMihAFBVV95cUxQd1luNld1V1ctR0F2U1pxb3doeVRHRXktb0c4enhDVktXdDV6ZnBwcFRmNFVFd3F2SE0ySDFYWW4xbkU4aThvTEZvZkwyTW5RQlVxSEJubmxUUHlyRnBhaHc5UEliYmxxYVMxRWRCaURDWEtGRUR2SUIzbHNiaFF3R0ZDekQ?oc=5 💡 Default creds are still the #1 initial access vector. Change them. ⚡ _VulnOps · AI-Powered Security_
139
3
🦾 **VulnOps Daily Digest** ☀️ 11 Jun 2026 · 01:36 PM IST 📰 Krebs on Security – In-depth security news and investigation https://news.google.com/rss/articles/CBMiQkFVX3lxTE1pNDRzd3JnaFdKdnNXeEl4cnY4aURsMnJhQWQxTkpUUkg1WmZocEw0S1huTVhxR19KZGUyTW0tU2w0QQ?oc=5 📰 Security Alert CVE-2026-35273 Released https://news.google.com/rss/articles/CBMifEFVX3lxTFBZSXUzZjExaWhmdGdEdWFIbktlcmU5bVVvRXo5SlZQX1JuaHFTNmpKQU95c2Z0c3BUeWZYS04ySkpka0ZPeGhkSUJSUGd0b1k2c3RBS2J1ODBjZlVMSnVqSm9xaEM3N2FTQXFGdGVJMHE5WnBSb0RSQlE1NmM?oc=5 📰 CISA gives agencies new vulnerability remediation deadlines that take risk levels into account https://news.google.com/rss/articles/CBMipAFBVV95cUxQUm9OV3AzZmRIdFU2T2NkREE4ZGlob05NT0w3V3B0MFlSYldHWTdvWTJBS2F0SEp3TFZzaDVDZldTVE54NmRORllzQnZLVk9UUzNJeXhNMDNXdGgtUVF1cDRfVzRyWkRXMDlCNnBEUEZCV0JGSGN6UmF0WUQzZnZ1QzhtaTBWQWVYWFpkOTBYZnk0eFNTd1FzLWRPbm5HTlAtLUk0RQ?oc=5 📰 Threat Brief: Active Exploitation of PAN-OS CVE-2026-0257 https://news.google.com/rss/articles/CBMihwFBVV95cUxQTUVTa0pZeTdwQS1ySmhSTV85cFBkeXdBOUFkWWFxeW9MOE9RNGtETVlwOEVXbkxxcmREUkNqVWlQNmh6VHJMMGZZTHBfdGhmTTNfaTh4S1gwMnZCdkhEdkJrYXBMb0NJOXJhT0U4R0lFVGJfYjNaREM3eFMxeU52bVdpUjhrbGc?oc=5 📰 Microsoft and Adobe Patch Tuesday, June 2026 Security Update Review https://news.google.com/rss/articles/CBMizgFBVV95cUxNcWl1enRmR2J0R24zNUtZcDRrX3VSZTJCNHkxelZxaVgxeUJ5dnhkRTlLN0JuSXlkLVVCa2tySzVxZHUwOTdPcnNUXzR6V1FSTkdWWDVVeUoxYTlhSVVVRzRxRkNlM1ZUYjNJS0F2Y3pzeWxvRXUtaFpyVU9XSVoteDVFNGE5Z01od3hQbVJIeUVWRXBTNkMwZmVIUzJsZGp5cTV2aUp0dUpkSTVaNF8yX0VLQ2xvM1p5Snl1TEg3TVNZd2FuLUVnUU5YbTJIUQ?oc=5 💡 MFA stops 99% of account takeovers. Enable it everywhere. ⚡ _VulnOps · AI-Powered Security_
238
4
🖼️ Daily Cybersecurity Meme "PATCH LOG4J IN ALL SERVICES" "REWRITE EVERYTHING IN RUST" "THE ONLY TWO OPTIONS"
🖼️ Daily Cybersecurity Meme "PATCH LOG4J IN ALL SERVICES" "REWRITE EVERYTHING IN RUST" "THE ONLY TWO OPTIONS"
205
5
🖼️ Daily Cybersecurity Meme "ENCRYPTED S3 BUCKET" "INTERNS" "PUBLIC S3 BUCKET WITH "backup-DO-NOT-DELETE""
🖼️ Daily Cybersecurity Meme "ENCRYPTED S3 BUCKET" "INTERNS" "PUBLIC S3 BUCKET WITH "backup-DO-NOT-DELETE""
269
6
🦾 **VulnOps Daily Digest** 🌙 10 Jun 2026 · 11:30 PM IST 📰 Microsoft and Adobe Patch Tuesday, June 2026 Security Update Review https://news.google.com/rss/articles/CBMizgFBVV95cUxNcWl1enRmR2J0R24zNUtZcDRrX3VSZTJCNHkxelZxaVgxeUJ5dnhkRTlLN0JuSXlkLVVCa2tySzVxZHUwOTdPcnNUXzR6V1FSTkdWWDVVeUoxYTlhSVVVRzRxRkNlM1ZUYjNJS0F2Y3pzeWxvRXUtaFpyVU9XSVoteDVFNGE5Z01od3hQbVJIeUVWRXBTNkMwZmVIUzJsZGp5cTV2aUp0dUpkSTVaNF8yX0VLQ2xvM1p5Snl1TEg3TVNZd2FuLUVnUU5YbTJIUQ?oc=5 📰 BOD 26-04: Prioritizing Security Updates Based on Risk https://news.google.com/rss/articles/CBMimgFBVV95cUxPTHhha0dLbWU2aTlDSXFXMGtCaWZNY09UTU5ISWZTOXNLY0xXTnJDSzNMQndTZElSWHFGb2xSNVZxV0Z1QV85Q2xWUU00NkVDelhuM0Zmb19tVVVLNWhpN0QtUmNwMXdMZUNONUNYc0JrbzQ1SkFTR056WWNnOEMtNGhDbExQekxiaWsyQzJUUHR0TFpUdUh2Yzd3?oc=5 📰 CISA gives agencies new vulnerability remediation deadlines that take risk levels into account https://news.google.com/rss/articles/CBMipAFBVV95cUxQUm9OV3AzZmRIdFU2T2NkREE4ZGlob05NT0w3V3B0MFlSYldHWTdvWTJBS2F0SEp3TFZzaDVDZldTVE54NmRORllzQnZLVk9UUzNJeXhNMDNXdGgtUVF1cDRfVzRyWkRXMDlCNnBEUEZCV0JGSGN6UmF0WUQzZnZ1QzhtaTBWQWVYWFpkOTBYZnk0eFNTd1FzLWRPbm5HTlAtLUk0RQ?oc=5 📰 Cyera, a Cybersecurity Start-Up for the A.I. Era, Raises $600 Million https://news.google.com/rss/articles/CBMikgFBVV95cUxPSkFhMUZQeVlhNkNmSmpHQjVjem5VbW13ZjhYUXI2S1FRSWZOWnVDN0h0cUxCaU13dzUzd3JrYl9QbHFjVHJZWmdINkZJcGwyLW4yOThkZU1mWEZ5Mzdxdkc4aFl4QVd3SGJmdHlNTkFrbmtNWk9qSDZGczBPUmphckZCcmpjSENrakxBeWlIZEF6UQ?oc=5 📰 OT cybersecurity becomes a board-level priority as industrial security maturity rises, Fortinet finds https://news.google.com/rss/articles/CBMi6AFBVV95cUxOOEN0eXNEM3VsaFkzM0RudEZMYzBYbHk3WHhSQW9feElyMmNfYl9aeHh2c3d3eFF0azV2d0o3MmhwRXNvYV9VLW55TkwyU25mY2tGekV3elh5YTRnYTBWc2h2dkpWUWhlUkdjYUE4U3dXWkxpdmd3YWpOdkt2eDQ2Q0dzYTZxSll6TmJrdVRGYmdjSjJTT1ptVEd6cnBtTk5kRFE0NFMzMW1wWVBCSEtuRTYxSHYtUXBxRU9FX3B6cms3S1U4RGZoaWFpMHFNVTJFZ0FOZ2FhX3dIc19xYXhpeUtfWTByTlJK?oc=5 💡 Run weekly dependency scans — CVEs don't wait for patch Tuesday. ⚡ _VulnOps · AI-Powered Security_
250
7
🖼️ Daily Cybersecurity Meme ""ADMIN123" IS A PERFECTLY" "SECURE PASSWORD"
🖼️ Daily Cybersecurity Meme ""ADMIN123" IS A PERFECTLY" "SECURE PASSWORD"
270
8
🦾 VulnOps Daily Digest 🌙 10 Jun 2026 · 06:54 PM IST 📰 Microsoft and Adobe Patch Tuesday, June 2026 Security Update Review https://news.google.com/rss/articles/CBMizgFBVV95cUxNcWl1enRmR2J0R24zNUtZcDRrX3VSZTJCNHkxelZxaVgxeUJ5dnhkRTlLN0JuSXlkLVVCa2tySzVxZHUwOTdPcnNUXzR6V1FSTkdWWDVVeUoxYTlhSVVVRzRxRkNlM1ZUYjNJS0F2Y3pzeWxvRXUtaFpyVU9XSVoteDVFNGE5Z01od3hQbVJIeUVWRXBTNkMwZmVIUzJsZGp5cTV2aUp0dUpkSTVaNF8yX0VLQ2xvM1p5Snl1TEg3TVNZd2FuLUVnUU5YbTJIUQ?oc=5 📰 More Evidence That Words Don't Mean What We Thought They Meant (Ivanti Sentry Pre-Auth OS Command Injection CVE-2026-10520) https://news.google.com/rss/articles/CBMi4gFBVV95cUxOWFVjTEVhWTlLSnRCYk85Qlo1SHYwYkFGVnhnTXQ2by1UaWpVTjJBLXJQYmdqcVdWUTduT2lhSUpZMlh3bW1MeW1qUlp5MEhtSXRNRXJWVDgwOHVmcUpHZmx3Q01wVDM3RFBsMEc5eWROZEl0MzBvZUtCd3VFb0JrelZyM190TWJEam9rYUdvNzNVTHJVdGUxZnNqbm0wZWpVNzVyNnJ1Ql9RRkQwQzVZOVNxM2h3YmVxVjBRcjNkNS04aU9Qc2x0LXVWbmdhSklRM1h3Y0FIS2huSEEzREJCYXRB?oc=5 📰 OT cybersecurity becomes a board-level priority as industrial security maturity rises, Fortinet finds https://news.google.com/rss/articles/CBMi6AFBVV95cUxOOEN0eXNEM3VsaFkzM0RudEZMYzBYbHk3WHhSQW9feElyMmNfYl9aeHh2c3d3eFF0azV2d0o3MmhwRXNvYV9VLW55TkwyU25mY2tGekV3elh5YTRnYTBWc2h2dkpWUWhlUkdjYUE4U3dXWkxpdmd3YWpOdkt2eDQ2Q0dzYTZxSll6TmJrdVRGYmdjSjJTT1ptVEd6cnBtTk5kRFE0NFMzMW1wWVBCSEtuRTYxSHYtUXBxRU9FX3B6cms3S1U4RGZoaWFpMHFNVTJFZ0FOZ2FhX3dIc19xYXhpeUtfWTByTlJK?oc=5 📰 Microsoft Patches Record 206 Flaws, Including Three Zero-Days and Critical RCE Bugs https://news.google.com/rss/articles/CBMifkFVX3lxTE5yNWJfMlRwcjhGT1BzT1RrdHk0VEJIU3lTYjIxOTVYcXNmUHB1WkJlZjA5Vl9fYmR4aV8yS01DbXlKaUN0T3B1UmswV09PclhTNF81R2dnZlhTTDE2QnNWVDhnaXhNTC01R2YxelJ2TTV4ZHFXMVZRMnVBOUk5Zw?oc=5 📰 Microsoft Patch Tuesday for June 2026 — Snort rules and prominent vulnerabilities https://news.google.com/rss/articles/CBMitgFBVV95cUxPSW9BNHZBMzV6UzF5X0NvbHYySDJVTjVTRFQ3SWZJSUs3Zlg2eWd1bkp0eS1BVC1FMzRTM3JKY1lQR0FucHg2UXA5SzROcHpIQmp4RG1CNE9maVFVaE5mNVVPblRaNnNEbFBybS10RUpWUHNyTlRuZ1IwZ0lPY1VJczdvMDhVT0xZbnRnNkhtX1N5Z2ZwdXlsUi1kRnRUVHRKcGU3QnlHQjlMSFB1OFlCbDFwRy10UQ?oc=5 💡 Segment your network. One compromised host shouldn't mean game over. ⚡ VulnOps · AI-Powered Security
257
9
🦾 **VulnOps Daily Digest** ☀️ 10 Jun 2026 · 01:37 PM IST 📰 Microsoft Patch Tuesday for June 2026 — Snort rules and prominent vulnerabilities https://news.google.com/rss/articles/CBMitgFBVV95cUxPSW9BNHZBMzV6UzF5X0NvbHYySDJVTjVTRFQ3SWZJSUs3Zlg2eWd1bkp0eS1BVC1FMzRTM3JKY1lQR0FucHg2UXA5SzROcHpIQmp4RG1CNE9maVFVaE5mNVVPblRaNnNEbFBybS10RUpWUHNyTlRuZ1IwZ0lPY1VJczdvMDhVT0xZbnRnNkhtX1N5Z2ZwdXlsUi1kRnRUVHRKcGU3QnlHQjlMSFB1OFlCbDFwRy10UQ?oc=5 📰 Microsoft and Adobe Patch Tuesday, June 2026 Security Update Review https://news.google.com/rss/articles/CBMizgFBVV95cUxNcWl1enRmR2J0R24zNUtZcDRrX3VSZTJCNHkxelZxaVgxeUJ5dnhkRTlLN0JuSXlkLVVCa2tySzVxZHUwOTdPcnNUXzR6V1FSTkdWWDVVeUoxYTlhSVVVRzRxRkNlM1ZUYjNJS0F2Y3pzeWxvRXUtaFpyVU9XSVoteDVFNGE5Z01od3hQbVJIeUVWRXBTNkMwZmVIUzJsZGp5cTV2aUp0dUpkSTVaNF8yX0VLQ2xvM1p5Snl1TEg3TVNZd2FuLUVnUU5YbTJIUQ?oc=5 📰 High-severity vulnerability in Linux caused by a single faulty character https://news.google.com/rss/articles/CBMitwFBVV95cUxOZ2VZLVl4SE0xZGxSTEZiOW1CNUpidHNhdVJmM1FOTlpHUWN3MXhoaUx4b2ZIS2RiYVl2RzV0OHViX3VBRW1YYmxBNlN2dTVXT0licTE1RlNRZDBBb0o3d1NRcWhFOUVfTDc5c3BjcUJfbGR2N2pqYUUxNmVoTEU2U0pRUkNPNEI1Sm1tU0RDZThocFB3ejdtU3IwbnFxT1Bqd0FoQXlQV2xFZVF5Tk92bmxrMVpRazA?oc=5 📰 Federal vulnerability management is stuck. A patch wave is coming anyway. https://news.google.com/rss/articles/CBMivwFBVV95cUxQb2JnZ1A3NDI3RUprVThsUUZKU2NiOUk5SVV1MW52cHltRkpSRTVZZTFnYzhRN2pPYXk3akJaVnhxUmVSV2VRbnc5V0wxVUNSeTBnLWg5WEw2Nm84bkhhU2RYMU1SOXB1X25Qa09KLVRydmM1S3lwN2hNT0JuQlhMdzM0cldUWFhwdDRBOWdHcllfMHRpTmtUZGwyTEpkbGVaa1VWRlpsU2pFTXVUam92X1M5UENDNkJ0cE1ReHNqaw?oc=5 📰 Update Chrome: Google patches actively exploited vulnerability and 73 others https://news.google.com/rss/articles/CBMivwFBVV95cUxQV0xrX1MtYWV3aFdKWWlTa1ZEN2dmaGozRnI3Ym5iei0tc0JHT2g5UFBuR3lZOHk1SVNSbUpqVDNWVzlHTmZ6elZKWEFyem8ycWNITERjQzBBeElZQ25QX0lDaUJyNU8waG9GZVM1V05NbmxKcUZtZTZIZ1pkZHd3YlZmajZtdVU2NzhWT3U0V1A5MTQ0UmdvT2RtVk9tcGVhcFBqaWN5S3dLb1BVLVd1Z1dQMXRmSHlOZHVBT0FMcw?oc=5 💡 Default creds are still the #1 initial access vector. Change them. ⚡ _VulnOps · AI-Powered Security_
258
10
🖼️ Daily Cybersecurity Meme ""WE FOLLOW OWASP BEST PRACTICES"" ""We FoLlOw OwAsP bEsT pRaCtIcEs""
🖼️ Daily Cybersecurity Meme ""WE FOLLOW OWASP BEST PRACTICES"" ""We FoLlOw OwAsP bEsT pRaCtIcEs""
221
11
🖼️ Daily Cybersecurity Meme "STARTUP: "WE'RE TOO SMALL" "TO BE HACKED, NO ONE CARES"" "NARRATOR: They were, in fact, already
🖼️ Daily Cybersecurity Meme "STARTUP: "WE'RE TOO SMALL" "TO BE HACKED, NO ONE CARES"" "NARRATOR: They were, in fact, already hacked"
236
12
Cybersecurity_for_SCADA_Systems-.pdf
261
13
+1
Bug Bounty from Scratch.pdf
281
14
#DevOps #Tech_book #Cyber_Education "Fundamentals of DevOps and Software Delivery: A Hands-On Guide to Deploying and Managing Software in Production", 2025. ]-> Code samples
296
15
#AppSec #Threat_Research 1⃣ Click Or Trick (CVE-2025-59199): Escaping the Sandbox with Windows URIs https://www.safebreach.com/blog/click-or-trick-cve-2025-59199-escaping-the-sandbox-with-windows-uris 2⃣ Adobe Acrobat Reader Escript.api UAF RCE https://blog.exodusintel.com/2026/06/01/adobe-acrobat-reader-escript-api-use-after-free-remote-code-execution 3⃣ Exploiting Windows Defender's Remediation Workflow for LPE https://blog.calif.io/p/redsun-exploiting-windows-defenders
261
16
#AIOps "Hijacking Agent Memory: Stealthy Trojan Attacks Through Conversational Interaction", May 2026. // MemPoison - novel memory poisoning attack that bypasses selective memory mechanisms in LLM agents, where an attacker can inject triggerable backdoors into the agent's long-term memory through dialogue interactions, thereby misleading its subsequent responses
223
17
#Tech_book #Kernel_Security "Learning eBPF: Programming the Linux Kernel for Enhanced Observability, Networking, and Security", 2023. ]-> Repo
218
18
#SCA #Hardware_Security "FROST: Fingerprinting Remotely using OPFS-based SSD Timing", 2026. // SSD contention side channels can be mounted by a remote attacker from within the browser, without native code execution. FROST attack targets the Origin Private File System API in JavaScript, allowing us to create and access files on the disk, within the browser’s sandboxed environment
210
19
#exploit #Kernel_Security An AI audit of FreeBSD https://blog.calif.io/p/an-ai-audit-of-freebsd ]-> setcred (CVE-2026-45250) ]-> ptrace (CVE-2026-45253) ]-> procdesc (CVE-2026-45251) ]-> Bonus // Disclaimer
191
20
#AppSec #Threat_Research "Resolving the Correct Library: A Loader-Level Defense Solution Against Shared Object Hijacking", Jan. 2026. https://anonymous.4open.science/r/shareb_object_library_hijacking-5E36 // developed a loader-centric glibc prevention mechanism that enforces checking shared library identity at load time by binding dependencies to immutable build identifiers and cryptographic hashes
187