Aggregator
CVE-2026-28507 | Idno up to 1.6.3 os command injection
CVE-2025-11791 | Acronis Cyber Protect 17/Cyber Protect Cloud Agent authorization
CVE-2026-28391 | OpenClaw up to 2026.2.1 cmd.exe incomplete blacklist (GHSA-qj77-c3c8-9c3q)
What happens when AI teams compete against human hackers
A cybersecurity competition produced what may be the largest controlled dataset comparing AI-augmented teams to human-only teams on professional-grade offensive security tasks. The event, called NeuroGrid, ran for 72 hours on the Hack The Box platform and drew 1,337 registered human-only teams and 156 registered AI-agent teams competing across 36 challenges in nine security domains at four difficulty levels. AI teams operated through Model Context Protocol with human oversight in the loop. The analysis covers … More →
The post What happens when AI teams compete against human hackers appeared first on Help Net Security.
CVE-2026-21622 | hexpm hex.pm Reset Your Password Page password_reset.ex session expiration (GHSA-6r94-pvwf-mxqm)
CVE-2025-70995 | Aranda ASDK API 8.6 addfile privilege escalation
CVE-2026-25888 | Chartbrew up to 4.8.0 code injection
CVE-2026-25887 | Chartbrew up to 4.8.0 code injection
CVE-2026-29041 | Chamilo LMS up to 1.11.33 File unrestricted upload (GHSA-4pc3-4w2v-vwx8)
CVE-2026-28395 | OpenClaw up to 2026.2.11 Relay HTTP Endpoint binding to an unrestricted ip address (GHSA-qw99-grcx-4pvm)
CVE-2026-26124 | Microsoft ACI Confidential Containers path traversal
CVE-2026-26122 | Microsoft ACI Confidential Containers information disclosure
CVE-2026-21536 | Microsoft Devices Pricing Program unrestricted upload
CVE-2026-0848 | nltk up to 3.9.2 StanfordSegmenter input validation
CVE-2026-27005 | Chartbrew up to 4.8.2 sql injection
CVE-2026-25877 | Chartbrew up to 4.8.0 project_id access control
My journey through Reverse Engineering SynthID
«Внедряйте ИИ» — сказал CEO. «Как?» — спросили сотрудники. «Сами разберётесь» — ответил HR. Дальше вы знаете
New infosec products of the week: March 6, 2026
Here’s a look at the most interesting products from the past week, featuring releases from Beazley Security, Push Security, Samsung, and Tufin. Samsung brings Digital Home Key to Samsung Wallet, extending secure access to the home Samsung Electronics has announced the launch of Digital Home Key, a new feature within Samsung Wallet built on Aliro, a standardized smart lock access protocol that enables Samsung Galaxy users to unlock compatible smart door locks using their smartphone. … More →
The post New infosec products of the week: March 6, 2026 appeared first on Help Net Security.