» Tag
vulnerability
39 postsUnisoc T606/T616 Backdoors Enable Zero-Click Root on Budget Androids
Chained BootROM, modem RCE, and backdoored OEM apps let attackers silently root Unisoc-based budget Android phones with zero user interaction.
NAT Slipstreaming v2.0 Bypasses NAT/Firewalls via the Browser
NAT Slipstreaming v2.0 abuses ALG connection tracking to let attackers remotely open any TCP/UDP port behind a victim's NAT via the browser.
Linux Page Cache Vulnerability via TC Pedit: A New Exploit
Discover the Linux TC Pedit page cache exploit enabling root access. Learn about the vulnerability and its fix.
CommitBrief — AI code reviews, right in your terminal
A provider-agnostic, local-first CLI that reviews your staged changes, a historic range, or a whole GitHub pull request. Zero telemetry, no server. Free and open source.
commitbrief.com$13,337 Bounty: Google Device Code Flow Account Takeover Bug
Google paid a $13,337 bounty for a confused-deputy flaw in its RFC 8628 device authorization flow enabling account takeover.
FFmpeg's 16-Year-Old MagicYUV Flaw Enables RCE via Crafted Video
A 16-year-old heap overflow in FFmpeg's MagicYUV decoder (CVE-2026-8461) enables RCE via crafted AVI files, hitting Jellyfin, Nextcloud and more.
Microsoft Patches Certighost Flaw Enabling Domain Controller Impersonation
Microsoft patches Certighost (CVE-2026-54121), an AD CS flaw letting low-privileged users forge Domain Controller certificates and hijack domains.
Self-Propagating AI Worm Found in Microsoft Copilot for Word
Researcher discloses self-propagating prompt injection worm in Microsoft Copilot for Word, unresolved after 144 days of coordinated disclosure.
OpenClaw WhatsApp Flaw: Three GHSA Bugs Turn One Message Into Host RCE
Three GHSA-tracked flaws in OpenClaw's WhatsApp integration let a single message trigger full host code execution; all fixed in version 2026.6.6.
TP-Link Kasa cameras leaked home GPS via unauthenticated UDP for 6 years
TP-Link's Kasa EC71 camera exposed precise GPS coordinates via a 6-year-old unauthenticated protocol flaw, plus a fleet-wide RSA key and MD5 password storage.
Linux Kernel Bridge STP Timer Use-After-Free Vulnerability
Linux bridge STP timers vulnerable to use-after-free via dellink teardown gap, enabling potential kernel control-flow hijack. Patched upstream.