18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers

A use-after-free bug in Linux’s SCTP networking code can be turned into full root on a host, and Tencent researchers say they used it to escape a container and reach the machine underneath.

The flaw has existed since 2008. The fix already shipped: sta… Continue reading 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers

Posted in Uncategorized

Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

Cybersecurity researchers have called attention to an active “widespread email-driven phishing campaign” that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in … Continue reading Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

Posted in Uncategorized

AI-Assisted HTTP Terminator Finds Novel HTTP Desync Techniques and Apache Zero-Day

PortSwigger says HTTP Terminator, an artificial intelligence (AI)-assisted research system built by James Kettle, generated and proved new HTTP desynchronization techniques after exploring 30,000 candidate attack vectors.

PortSwigger said a separate h… Continue reading AI-Assisted HTTP Terminator Finds Novel HTTP Desync Techniques and Apache Zero-Day

Posted in Uncategorized

Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets

A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic’s and Google’s own coding-agent repositories. On OpenAI’s, it was enough to hijack the next agent run.

Novee Security ran t… Continue reading Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets

Posted in Uncategorized

TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign

A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their sights on the s… Continue reading TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign

Posted in Uncategorized