Aggregator
BlueHammer PoC for Windows Defender Exploited by Researchers to Escalate Privileges
A proof-of-concept (PoC) exploit dubbed BlueHammer has been publicly released by security researcher Nightmare Eclipse (also known as Chaotic Eclipse), targeting a zero-day local privilege escalation (LPE) vulnerability in Microsoft Windows Defender’s signature update mechanism. The release, confirmed functional by principal vulnerability analyst Will Dormann of Tharros, underscores a growing frustration with Microsoft’s Security Response […]
The post BlueHammer PoC for Windows Defender Exploited by Researchers to Escalate Privileges appeared first on Cyber Security News.
Файл на пару мегабайт, который может обрушить сеть. Краткий экскурс по новому вирусу из Китая
MCP-Kali-Server:基于MCP协议赋能大模型的Kali渗透测试工具集成方案
Akira
You must login to view this content
Луна осталась позади. Artemis II возвращается домой с наблюдениями метеоритов и новыми именами кратеров
Flowise AI Agent Builder Injection Vulnerability Exploited in Attacks, 15,000+ Instances Exposed
Threat actors are actively exploiting a maximum-severity remote code execution (RCE) vulnerability in Flowise, an open-source platform used for building AI agents and customized large language model workflows. The critical flaw, tracked as CVE-2025-59528 with a CVSS score of 10.0, allows attackers to execute arbitrary JavaScript code and achieve full system compromise. Threat intelligence telemetry […]
The post Flowise AI Agent Builder Injection Vulnerability Exploited in Attacks, 15,000+ Instances Exposed appeared first on Cyber Security News.
Cyberattack hits Northern Ireland’s centralized school network, disrupting access for thousands
Fortinet security advisory (AV26-313)
AI Agents and Non-Human Identities Creating Critical Security Gaps, Report
Cookie控制的PHP Webshell:Linux托管环境中的隐秘攻击手法
微软揭秘:AI驱动的Device Code钓鱼攻击如何规模化绕过MFA
CVE-2026-35616:Fortinet FortiClientEMS 零日漏洞已被野外利用(CVSS 9.1)
BlueHammer:研究员公开未修复 Windows 零日漏洞,可提权至 SYSTEM
Over $17bn Lost to Cyber Fraud in the Last Year, Warns FBI
UK exposes Russian military intelligence hijacking vulnerable routers for cyber attacks
APT28 exploit routers to enable DNS hijacking operations
AI-enabled device code phishing campaign exploits OAuth flow for account takeover
A phishing campaign that bypasses the standard 15-minute expiration window through automation and dynamic code generation, leveraging the OAuth Device Code Authentication flow to compromise organizational accounts at scale, has been observed by the Microsoft Defender Security Research team. The campaign uses AI-assisted infrastructure and end-to-end automation. Attack overview Device Code Authentication is a legitimate OAuth flow designed for devices that cannot support a standard interactive login. In this model, a code is presented on … More →
The post AI-enabled device code phishing campaign exploits OAuth flow for account takeover appeared first on Help Net Security.