A pseudonymous security researcher has released over 30 proof-of-concept exploits for zero-day vulnerabilities in open-source projects without disclosing them to the maintainers first. The dump, ...
Multiple weaponized proof-of-concept (PoC) exploits on GitHub were found delivering a Python-based remote access trojan (RAT) named ChocoPoC that can execute commands and steal sensitive data in a ...
Security teams spend real effort monitoring inbound SSH connections: alerting on unusual source IPs, reviewing auth logs, locking down daemon configs. libssh2 CVE-2026-55200 is a reminder that the ...
An unknown threat actor has been observed exploiting a recently disclosed maximum-severity security flaw in SimpleHelp to deliver two previously unreported malware families, TaskWeaver and Djinn ...
The objective of this capstone project is to perform a complete vulnerability assessment on a vulnerable Linux machine (Metasploitable2), identify security weaknesses, demonstrate ethical exploitation ...
A flaw in the Linux kernel's traffic-control subsystem can let a local unprivileged user gain root on affected systems. The exploit never touches the file on disk. It poisons the cached copy of a ...
A recently patched vulnerability affecting Cisco’s Unified Communications Manager (Unified CM) product is being exploited in attacks, according to exploit intelligence firm Defused. Cisco announced ...
Researchers disclosed usbliter8, a SecureROM exploit affecting older Apple devices that can bypass boot protections with physical access. Researchers at cybersecurity firm Paradigm Shift have revealed ...
European cybersecurity research firm Paradigm Shift has disclosed details of a new BootROM exploit that affects millions of iPhones and cannot be patched with a software update. Dubbed Usbliter8, the ...