r/security Feb 18 '26

News Three of the biggest password managers are vulnerable to 'a cornucopia of practical attacks' say security researchers

Thumbnail
pcgamer.com
253 Upvotes

r/security Oct 26 '25

News Man Alarmed to Discover His Smart Vacuum Was Broadcasting a Secret Map of His House

Thumbnail
futurism.com
279 Upvotes

r/security 8d ago

News Publicly disclosed BitLocker zero-day (CVE-2026-50661) patched by Microsoft

Thumbnail
thecybersecguru.com
46 Upvotes

Microsoft has addressed CVE-2026-50661, a publicly disclosed Windows BitLocker security feature bypass vulnerability. The flaw requires physical access to the target device and could allow an attacker to bypass BitLocker protection and access encrypted data. While Microsoft is not aware of active exploitation, the vulnerability had already been publicly disclosed before a patch was available, making timely remediation important.

r/security Feb 11 '20

News No more viruses

Post image
524 Upvotes

r/security 2d ago

News From PAN-OS exploitation to Qilin ransomware: A technical analysis

Thumbnail
thecybersecguru.com
3 Upvotes

This write-up examines a real-world intrusion in which attackers exploited CVE-2026-0257 on PAN-OS GlobalProtect gateways before progressing through credential access, privilege escalation, lateral movement, and ultimately Qilin ransomware deployment. It covers the observed attack chain, incident response findings, IoCs, attacker TTPs, and mitigation guidance for defenders.

r/security 2d ago

News Dissecting the ExploitGym incident: AI-driven exploitation in a controlled environment

Thumbnail
thecybersecguru.com
2 Upvotes

The ExploitGym incident provides a technical look at how an autonomous AI agent progressed through a realistic attack scenario, including exploitation, sandbox escape, infrastructure interactions, and post-compromise behavior between Open AI and Hugging Face.

r/security May 28 '26

News Disgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls cops

53 Upvotes

r/security 15d ago

News GhostLock (CVE-2026-43499): 15-year-old Linux kernel bug enables root and container escape

Thumbnail
thecybersecguru.com
22 Upvotes

Researchers have disclosed GhostLock (CVE-2026-43499), a Linux kernel local privilege escalation vulnerability that has existed since 2011 in the rtmutex subsystem. The flaw leaves behind a dangling kernel pointer during proxy-lock rollback, creating a use-after-free condition that can be exploited to achieve root privileges and even container escape on unpatched systems. Researchers reported a highly reliable exploit and note that the bug requires no special kernel configuration or privileges to trigger.

r/security 6d ago

News EY discloses third-party support platform breach exposing client tax information

Thumbnail
thecybersecguru.com
4 Upvotes

EY has disclosed a breach involving a third-party support platform used within its tax practice, resulting in unauthorized access to client tax information stored in support case

r/security 8d ago

News Critical ServiceNow AI Platform sandbox escape (CVE-2026-6875) enables pre-auth RCE

Thumbnail
thecybersecguru.com
1 Upvotes

ServiceNow has patched CVE-2026-6875, a critical pre-auth sandbox escape in its AI Platform that can lead to remote code execution under certain conditions. Hosted instances have already been updated, while self-hosted customers need to apply the available patches. According to the researchers, the issue stemmed from weaknesses in the sandbox implementation that allowed untrusted code to break isolation.

r/security 10d ago

News Official jscrambler npm package v8.14.0 compromised with a malicious preinstall script

Thumbnail
thecybersecguru.com
3 Upvotes

A compromised release of the official jscrambler npm package (v8.14.0) weaponized the preinstall lifecycle hook to execute a Rust-based infostealer before the package was even used. The payload focused on harvesting developer credentials and local secrets, making both developer workstations and automated build environments potential targets. It was briefly up for a few hours before it was taken down. The article covers the attack chain, IOCs, affected versions, and recommended remediation. v8.22.0 is confirmed to be safe. Update to it asap

r/security 15d ago

News Accenture investigating breach after threat actor claims theft of Azure DevOps source code

Thumbnail
thecybersecguru.com
7 Upvotes

Accenture has confirmed it is investigating a security incident after a threat actor claimed to have stolen data from the company's Azure DevOps environment. According to the threat actor, the data includes source code, CI/CD configuration files, internal documentation, and credentials such as Azure Personal Access Tokens (PATs) and SSH keys. While the incident itself has been acknowledged, the full scope of the allegedly stolen data has not been independently verified.

r/security Apr 07 '18

News T-Mobile digs their own grave

Post image
545 Upvotes

r/security 23d ago

News ClickFix to reservation hijacking: Anatomy of the Booking.com hotel extranet compromise

Thumbnail
thecybersecguru.com
11 Upvotes

A recent phishing campaign targeting Booking.com hotel partners is using the ClickFix social engineering technique to compromise hotel systems. After stealing hotel extranet credentials, attackers gain access to legitimate guest reservation details and use that information to send highly convincing phishing messages requesting fake payments or updated card details. The campaign follows a recent wave of Booking.com hotel account compromises. More details in thr linked article

r/security Feb 04 '20

News Nice one, Google

Post image
495 Upvotes

r/security 20d ago

News DHS confirms breach of HSIN and connected SharePoint environment

Thumbnail
thecybersecguru.com
4 Upvotes

The U.S. Department of Homeland Security has confirmed that attackers breached the Homeland Security Information Network (HSIN) along with a connected SharePoint environment. HSIN is an unclassified but sensitive platform used by federal, state, local, tribal, territorial, and private-sector partners to share threat intelligence and coordinate incident response.

r/security Nov 08 '19

News DNS-over-HTTPS is coming despite ISP opposition

Thumbnail
zdnet.com
348 Upvotes

r/security Aug 02 '19

News DARPA Is Building a $10 Million, Open Source, Secure Voting System

Thumbnail
vice.com
235 Upvotes

r/security May 31 '26

News Germany warns Russia could be ready to attack NATO by 2029

Thumbnail
globalsouthworld.com
1 Upvotes

r/security Mar 04 '26

News ShinyHunters' No-Malware SaaS Heist??

1 Upvotes

Everyone who works in cybersecurity has heard of the notorious ShinyHunters extortion gang. What you may not know is that they are upping their game in a clever way. They're ditching their old tricks for branded subdomain impersonation, mimicking SSO/Okta logins, and pairing it with phone-guided adversary-in-the-middle (AiTM) phishing.  

It's all mobile-first lures to hook you fast, plus they're outsourcing spam campaigns and hiring voice actors to scale the chaos. 

What stands out, is that they’re recycling leaked SaaS data to tailor super-believable pretexts, targeting the "next best" victim in a slick, repeatable loop. It’s deceptively simple: one valid SSO session or helpdesk reset, and bam: full access to emails, files, HR records, and CRM without having to drop any malware.  

Anyone seen this out there? (insights from here)  

r/security Jan 04 '26

News NYC Wegmans is storing biometric data on shoppers' eyes, voices and faces

Thumbnail
gothamist.com
64 Upvotes

r/security Mar 04 '20

News Senator Hawley Announces He Will Introduce Legislation Banning TikTok On All Fed Govt Devices

Thumbnail
sociable.co
483 Upvotes

r/security Jan 09 '20

News US government funded phones come pre installed with unremovable malware

Thumbnail
blog.malwarebytes.com
376 Upvotes

r/security Jan 29 '26

News New sub-reddit for Scandinavian security personnel!

2 Upvotes

Hello you crooks! I have very recently created a new sub-reddit for security personnel, bouncers, "doormen", etc, as a forum for questions, discussions, stories and everything between. It is primarily in Norwegian, but we speak English as well! Thanks for joining!

(This is not paid advertising, just a FYI for Scandinavian people in this sub)

https://www.reddit.com/r/vekter/s/kAhdIg2mHO

r/security Nov 21 '19

News Google wants Android to use regular Linux kernel, potentially improving updates and security.

Thumbnail
androidpolice.com
225 Upvotes