Top Security News for Today
UK fines LastPass £1.2 million for data breach affecting 1.6 million people
https://therecord.media/uk-fines-lastpass-over-1-million-data-breach
Hackers reportedly breach developer involved with Russia’s military draft database
https://therecord.media/hackers-reportedly-breach-developer-involved-in-russian-military-database
Imposter for hire: How fake people can gain very real access
https://www.microsoft.com/en-us/security/blog/2025/12/11/imposter-for-hire-how-fake-people-can-gain-very-real-access/
DAST without disruption: Burp Suite DAST winter update 2025
https://portswigger.net/blog/burp-suite-dast-winter-update-2025
Redefining Enterprise Defense in the Era of AI-Led Cyberattacks
https://www.trendmicro.com/en_us/research/25/k/redefining-defense-in-era-of-ai-led-attacks.html
New 'DroidLock' malware demands a ransom, locks user out of device
https://therecord.media/android-droidlock-malware-demands-ransom-locks-mobile-device
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
UK fines LastPass £1.2 million for data breach affecting 1.6 million people
https://therecord.media/uk-fines-lastpass-over-1-million-data-breach
Hackers reportedly breach developer involved with Russia’s military draft database
https://therecord.media/hackers-reportedly-breach-developer-involved-in-russian-military-database
Imposter for hire: How fake people can gain very real access
https://www.microsoft.com/en-us/security/blog/2025/12/11/imposter-for-hire-how-fake-people-can-gain-very-real-access/
DAST without disruption: Burp Suite DAST winter update 2025
https://portswigger.net/blog/burp-suite-dast-winter-update-2025
Redefining Enterprise Defense in the Era of AI-Led Cyberattacks
https://www.trendmicro.com/en_us/research/25/k/redefining-defense-in-era-of-ai-led-attacks.html
New 'DroidLock' malware demands a ransom, locks user out of device
https://therecord.media/android-droidlock-malware-demands-ransom-locks-mobile-device
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
therecord.media
UK fines LastPass £1.2 million for data breach affecting 1.6 million people
The Information Commissioner’s Office said LastPass had “failed to implement sufficiently robust technical and security measures” to protect its data.
Top Security News for Today
Following the digital trail: what happens to data stolen in a phishing attack
https://securelist.com/what-happens-to-stolen-data-after-phishing-attacks/118180/
Burp On Tour 2025: bringing the AppSec community together around the world
https://portswigger.net/blog/burp-on-tour-2025-bringing-the-appsec-community-together-around-the-world
Building Trustworthy AI Agents
https://www.schneier.com/blog/archives/2025/12/building_trustworthy_ai_agents.html
A look at an Android ITW DNG exploit
https://googleprojectzero.blogspot.com/2025/12/a-look-at-android-itw-dng-exploit.html
Germany summons Russian ambassador over cyberattack, election disinformation
https://therecord.media/germany-summons-russian-ambassador-cyberattack-disinformation
Trump signs executive order on 'national framework' for AI regulation
https://therecord.media/trump-executive-order-ai-national-framework
More than 340,000 impacted by cyberattack on library in large Washington county
https://therecord.media/over-340000-impacted-washington-state-library-hack
Canada’s privacy regulator to probe billboards equipped with facial scanning tech
https://therecord.media/canada-privacy-regulator-to-probe-face-scanning-billboards
Hamas-affiliated APT targeting government agencies in the Middle East, Morocco
https://therecord.media/hamas-apt-targeting-government-agencies
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Following the digital trail: what happens to data stolen in a phishing attack
https://securelist.com/what-happens-to-stolen-data-after-phishing-attacks/118180/
Burp On Tour 2025: bringing the AppSec community together around the world
https://portswigger.net/blog/burp-on-tour-2025-bringing-the-appsec-community-together-around-the-world
Building Trustworthy AI Agents
https://www.schneier.com/blog/archives/2025/12/building_trustworthy_ai_agents.html
A look at an Android ITW DNG exploit
https://googleprojectzero.blogspot.com/2025/12/a-look-at-android-itw-dng-exploit.html
Germany summons Russian ambassador over cyberattack, election disinformation
https://therecord.media/germany-summons-russian-ambassador-cyberattack-disinformation
Trump signs executive order on 'national framework' for AI regulation
https://therecord.media/trump-executive-order-ai-national-framework
More than 340,000 impacted by cyberattack on library in large Washington county
https://therecord.media/over-340000-impacted-washington-state-library-hack
Canada’s privacy regulator to probe billboards equipped with facial scanning tech
https://therecord.media/canada-privacy-regulator-to-probe-face-scanning-billboards
Hamas-affiliated APT targeting government agencies in the Middle East, Morocco
https://therecord.media/hamas-apt-targeting-government-agencies
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Securelist
Where does the data stolen in a phishing attack go?
Kaspersky experts detail the journey of the victims' data after a phishing attack. We break down the use of email-based phishing kits, Telegram bots, and customized administration panels.
Top Security News for Today
Building an Open-Source AI-Powered Auto-Exploiter with a 1.7B Parameter Model
https://arxiv.org/abs/2512.10081
Offline Decryption Messenger: Concept Proposal and Request for Constructive Feedback
https://www.reddit.com/r/netsec/comments/1plormo/offline_decryption_messenger_concept_proposal_and/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Building an Open-Source AI-Powered Auto-Exploiter with a 1.7B Parameter Model
https://arxiv.org/abs/2512.10081
Offline Decryption Messenger: Concept Proposal and Request for Constructive Feedback
https://www.reddit.com/r/netsec/comments/1plormo/offline_decryption_messenger_concept_proposal_and/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
arXiv.org
Defining the Scope of Learning Analytics: An Axiomatic Approach...
Learning Analytics (LA) has rapidly expanded through practical and technological innovation, yet its foundational identity has remained theoretically under-specified. This paper addresses this gap...
Top Security News for Today
Frogblight threatens you with a court case: a new Android banker targets Turkish users
https://securelist.com/frogblight-banker/118440/
How we got hit by Shai-Hulud: A complete post-mortem | Trigger.dev
https://www.reddit.com/r/netsec/comments/1pmk03y/how_we_got_hit_by_shaihulud_a_complete_postmortem/
Capabilities Are the Only Way to Secure Agent Delegation
https://www.reddit.com/r/netsec/comments/1pmqmf9/capabilities_are_the_only_way_to_secure_agent/
Thread-safe B-Tree implemented in pure x86-64 assembly – 58k mixed ops/sec under contention. I've just finished a complete, generic B-Tree written entirely in hand-tuned x86-64 assembly (NASM) with a clean C interface as a shared library.
https://www.reddit.com/r/lowlevel/comments/1pmmng8/threadsafe_btree_implemented_in_pure_x8664/
ELANA: A Simple Energy and Latency Analyzer for LLMs
https://arxiv.org/abs/2512.11112
SCOUT: A Defense Against Data Poisoning Attacks in Fine-Tuned Language Models
https://arxiv.org/abs/2512.10998
Cybersecurity policy adoption in South Africa: Does public trust matter?
https://arxiv.org/abs/2512.11484
Automated Penetration Testing with LLM Agents and Classical Planning
https://arxiv.org/abs/2512.11122
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Frogblight threatens you with a court case: a new Android banker targets Turkish users
https://securelist.com/frogblight-banker/118440/
How we got hit by Shai-Hulud: A complete post-mortem | Trigger.dev
https://www.reddit.com/r/netsec/comments/1pmk03y/how_we_got_hit_by_shaihulud_a_complete_postmortem/
Capabilities Are the Only Way to Secure Agent Delegation
https://www.reddit.com/r/netsec/comments/1pmqmf9/capabilities_are_the_only_way_to_secure_agent/
Thread-safe B-Tree implemented in pure x86-64 assembly – 58k mixed ops/sec under contention. I've just finished a complete, generic B-Tree written entirely in hand-tuned x86-64 assembly (NASM) with a clean C interface as a shared library.
https://www.reddit.com/r/lowlevel/comments/1pmmng8/threadsafe_btree_implemented_in_pure_x8664/
ELANA: A Simple Energy and Latency Analyzer for LLMs
https://arxiv.org/abs/2512.11112
SCOUT: A Defense Against Data Poisoning Attacks in Fine-Tuned Language Models
https://arxiv.org/abs/2512.10998
Cybersecurity policy adoption in South Africa: Does public trust matter?
https://arxiv.org/abs/2512.11484
Automated Penetration Testing with LLM Agents and Classical Planning
https://arxiv.org/abs/2512.11122
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Securelist
Frogblight banking Trojan targets Android users in Turkey
Kaspersky researchers have discovered a new Android banking Trojan targeting Turkish users and posing as an app for accessing court case files via an official government webpage. The malware is being actively developed and may become MaaS in the future.
Top Security News for Today
Against the Federal Moratorium on State-Level Regulation of AI
https://www.schneier.com/blog/archives/2025/12/against-the-federal-moratorium-on-state-level-regulation-of_ai.html
Next.js: 59k servers compromised in 48h - I breached the attackers' C2 and here's what I found
https://www.reddit.com/r/netsec/comments/1pn5r6z/nextjs_59k_servers_compromised_in_48h_i_breached/
MI6 chief warns 'front line is everywhere' and signals intent to pressure Putin
https://therecord.media/mi6-chief-speech-russia-threats-warning
15th December – Threat Intelligence Report
https://research.checkpoint.com/2025/15th-december-threat-intelligence-report/
Jaguar Land Rover confirms staff data stolen in cyberattack
https://therecord.media/jaguar-land-rover-confirms-staff-data-stolen-cyberattack
Nearly 20 million affected by Prosper, 700Credit data breaches
https://therecord.media/data-breaches-affecting-20-million-prosper-700credit
Defending against the CVE-2025-55182 (React2Shell) vulnerability in React Server Components
https://www.microsoft.com/en-us/security/blog/2025/12/15/defending-against-the-cve-2025-55182-react2shell-vulnerability-in-react-server-components/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Against the Federal Moratorium on State-Level Regulation of AI
https://www.schneier.com/blog/archives/2025/12/against-the-federal-moratorium-on-state-level-regulation-of_ai.html
Next.js: 59k servers compromised in 48h - I breached the attackers' C2 and here's what I found
https://www.reddit.com/r/netsec/comments/1pn5r6z/nextjs_59k_servers_compromised_in_48h_i_breached/
MI6 chief warns 'front line is everywhere' and signals intent to pressure Putin
https://therecord.media/mi6-chief-speech-russia-threats-warning
15th December – Threat Intelligence Report
https://research.checkpoint.com/2025/15th-december-threat-intelligence-report/
Jaguar Land Rover confirms staff data stolen in cyberattack
https://therecord.media/jaguar-land-rover-confirms-staff-data-stolen-cyberattack
Nearly 20 million affected by Prosper, 700Credit data breaches
https://therecord.media/data-breaches-affecting-20-million-prosper-700credit
Defending against the CVE-2025-55182 (React2Shell) vulnerability in React Server Components
https://www.microsoft.com/en-us/security/blog/2025/12/15/defending-against-the-cve-2025-55182-react2shell-vulnerability-in-react-server-components/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today
God Mode On: how we attacked a vehicle’s head unit modem
https://ics-cert.kaspersky.com/publications/reports/2025/11/20/god-mode-on-researchers-run-doom-on-a-vehicles-head-unit-after-remotely-attacking-its-modem/
Temenos OFS String Injection: Revealing a Hidden Financial Attack Vector
https://www.reddit.com/r/netsec/comments/1pmrvsb/temenos_ofs_string_injection_revealing_a_hidden/
Chinese Surveillance and AI
https://www.schneier.com/blog/archives/2025/12/chinese-surveillance-and-ai.html
Inside Ink Dragon: Revealing the Relay Network and Inner Workings of a Stealthy Offensive Operation
https://research.checkpoint.com/2025/ink-dragons-relay-network-and-offensive-operation/
Most Parked Domains Now Serving Malicious Content
https://krebsonsecurity.com/2025/12/most-parked-domains-now-serving-malicious-content/
Urban VPN Browser Extension Caught Harvesting AI Chat Conversations from Millions of Users
https://www.reddit.com/r/netsec/comments/1po3tqx/urban_vpn_browser_extension_caught_harvesting_ai/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
God Mode On: how we attacked a vehicle’s head unit modem
https://ics-cert.kaspersky.com/publications/reports/2025/11/20/god-mode-on-researchers-run-doom-on-a-vehicles-head-unit-after-remotely-attacking-its-modem/
Temenos OFS String Injection: Revealing a Hidden Financial Attack Vector
https://www.reddit.com/r/netsec/comments/1pmrvsb/temenos_ofs_string_injection_revealing_a_hidden/
Chinese Surveillance and AI
https://www.schneier.com/blog/archives/2025/12/chinese-surveillance-and-ai.html
Inside Ink Dragon: Revealing the Relay Network and Inner Workings of a Stealthy Offensive Operation
https://research.checkpoint.com/2025/ink-dragons-relay-network-and-offensive-operation/
Most Parked Domains Now Serving Malicious Content
https://krebsonsecurity.com/2025/12/most-parked-domains-now-serving-malicious-content/
Urban VPN Browser Extension Caught Harvesting AI Chat Conversations from Millions of Users
https://www.reddit.com/r/netsec/comments/1po3tqx/urban_vpn_browser_extension_caught_harvesting_ai/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Kaspersky ICS CERT | Kaspersky Industrial Control Systems Cyber Emergency Response Team
God Mode On: Researchers run Doom on a vehicle’s head unit after remotely attacking its modem | Kaspersky ICS CERT
Exploiting a vulnerability identified in a modem installed in the head units of some vehicles enabled Kaspersky ICS CERT experts to gain complete control of the system.
Top Security News for Today
Operation ForumTroll continues: Russian political scientists targeted using plagiarism reports
https://securelist.com/operation-forumtroll-new-targeted-campaign/118492/
Deliberate Internet Shutdowns
https://www.schneier.com/blog/archives/2025/12/deliberate-internet_shutowns.html
France investigates Interior Ministry email breach and access to confidential files
https://therecord.media/france-interior-ministry-email-breach-investigation
GachiLoader: Defeating Node.js Malware with API Tracing
https://research.checkpoint.com/2025/gachiloader-node-js-malware-with-api-tracing/
Privacy advocates see risk in new Meta policy that uses AI chats to serve targeted ads
https://therecord.media/privacy-advocates-see-risks-meta-ai-ad-targeting
FBI takes down alleged money laundering service for ransomware groups
https://therecord.media/fbi-takes-down-alleged-money-laundering-operation
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Operation ForumTroll continues: Russian political scientists targeted using plagiarism reports
https://securelist.com/operation-forumtroll-new-targeted-campaign/118492/
Deliberate Internet Shutdowns
https://www.schneier.com/blog/archives/2025/12/deliberate-internet_shutowns.html
France investigates Interior Ministry email breach and access to confidential files
https://therecord.media/france-interior-ministry-email-breach-investigation
GachiLoader: Defeating Node.js Malware with API Tracing
https://research.checkpoint.com/2025/gachiloader-node-js-malware-with-api-tracing/
Privacy advocates see risk in new Meta policy that uses AI chats to serve targeted ads
https://therecord.media/privacy-advocates-see-risks-meta-ai-ad-targeting
FBI takes down alleged money laundering service for ransomware groups
https://therecord.media/fbi-takes-down-alleged-money-laundering-operation
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Securelist
A new campaign by the ForumTroll APT group
Kaspersky's GReAT experts have uncovered a new wave of cyberattacks by the ForumTroll APT group, targeting Russian political scientists and delivering the Tuoni framework to their devices.
Top Security News for Today
Local Privilege Escalation (CVE-2025-34352) in JumpCloud Agent
https://www.reddit.com/r/netsec/comments/1ppndbf/local_privilege_escalation_cve202534352_in/
France arrests 22-year-old over Interior Ministry hack
https://therecord.media/france-interior-ministry-hack-arrest
Hackers breach internal servers of tech provider for Britain’s health service
https://therecord.media/uk-nhs-tech-provider-dxs-discloses-hack
Pa. high court rules that police can access Google searches without a warrant
https://therecord.media/google-searches-police-access-without-warrant-pennsylvania-court-ruling
ORM Leaking More Than You Joined For - Part 3/3 on ORM Leak Vulnerabilities
https://www.reddit.com/r/netsec/comments/1ppmqsi/orm_leaking_more_than_you_joined_for_part_33_on/
Chinese attackers exploiting zero-day to target Cisco email security products
https://therecord.media/chinese-attackers-zero-day
New China-linked hacker group spies on governments in Southeast Asia, Japan
https://therecord.media/china-linked-hacker-group-spied-on-asian-govs
Active HubSpot Phishing Campaign
https://www.reddit.com/r/netsec/comments/1ppr74j/active_hubspot_phishing_campaign/
Over $3.4 billion in crypto stolen throughout 2025, with North Korea again the top culprit
https://therecord.media/over-3-billion-crypto-stolen-2025-north-korea
Austria’s high court orders Meta to change its personalized ad practices
https://therecord.media/austria-court-meta-ruling
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Local Privilege Escalation (CVE-2025-34352) in JumpCloud Agent
https://www.reddit.com/r/netsec/comments/1ppndbf/local_privilege_escalation_cve202534352_in/
France arrests 22-year-old over Interior Ministry hack
https://therecord.media/france-interior-ministry-hack-arrest
Hackers breach internal servers of tech provider for Britain’s health service
https://therecord.media/uk-nhs-tech-provider-dxs-discloses-hack
Pa. high court rules that police can access Google searches without a warrant
https://therecord.media/google-searches-police-access-without-warrant-pennsylvania-court-ruling
ORM Leaking More Than You Joined For - Part 3/3 on ORM Leak Vulnerabilities
https://www.reddit.com/r/netsec/comments/1ppmqsi/orm_leaking_more_than_you_joined_for_part_33_on/
Chinese attackers exploiting zero-day to target Cisco email security products
https://therecord.media/chinese-attackers-zero-day
New China-linked hacker group spies on governments in Southeast Asia, Japan
https://therecord.media/china-linked-hacker-group-spied-on-asian-govs
Active HubSpot Phishing Campaign
https://www.reddit.com/r/netsec/comments/1ppr74j/active_hubspot_phishing_campaign/
Over $3.4 billion in crypto stolen throughout 2025, with North Korea again the top culprit
https://therecord.media/over-3-billion-crypto-stolen-2025-north-korea
Austria’s high court orders Meta to change its personalized ad practices
https://therecord.media/austria-court-meta-ruling
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: Local Privilege Escalation (CVE-2025-34352) in JumpCloud Agent
Explore this post and more from the netsec community
Top Security News for Today
How we pwned X (Twitter), Vercel, Cursor, Discord, and hundreds of companies through a supply-chain attack
https://www.reddit.com/r/netsec/comments/1pqfoqo/how_we_pwned_x_twitter_vercel_cursor_discord_and/
AI Advertising Company Hacked
https://www.schneier.com/blog/archives/2025/12/ai-advertising-company-hacked.html
UK confirms Foreign Office hacked, says ‘low risk’ of impact to individuals
https://therecord.media/uk-foreign-office-hacked-china
Trump signs defense bill allocating millions for Cyber Command, mandating Pentagon phone security
https://therecord.media/trump-signs-ndaa-cyber-command
Breaking SAPCAR: Four Local Privilege Escalation Bugs in SAR Archive Parsing
https://www.reddit.com/r/netsec/comments/1pqm3tt/breaking_sapcar_four_local_privilege_escalation/
Denmark summons Russian ambassador over alleged cyberattacks on water utility, elections
https://therecord.media/denmark-summons-russian-ambassador-cyberattack-elections
Nigeria arrests suspected RaccoonO365 phishing kit developer on tip from Microsoft, FBI
https://therecord.media/nigeria-raccoon-developer-tip
University of Sydney reports data breach affecting over 20,000 staff, affiliates
https://therecord.media/university-of-sydney-reports-data-breach
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
How we pwned X (Twitter), Vercel, Cursor, Discord, and hundreds of companies through a supply-chain attack
https://www.reddit.com/r/netsec/comments/1pqfoqo/how_we_pwned_x_twitter_vercel_cursor_discord_and/
AI Advertising Company Hacked
https://www.schneier.com/blog/archives/2025/12/ai-advertising-company-hacked.html
UK confirms Foreign Office hacked, says ‘low risk’ of impact to individuals
https://therecord.media/uk-foreign-office-hacked-china
Trump signs defense bill allocating millions for Cyber Command, mandating Pentagon phone security
https://therecord.media/trump-signs-ndaa-cyber-command
Breaking SAPCAR: Four Local Privilege Escalation Bugs in SAR Archive Parsing
https://www.reddit.com/r/netsec/comments/1pqm3tt/breaking_sapcar_four_local_privilege_escalation/
Denmark summons Russian ambassador over alleged cyberattacks on water utility, elections
https://therecord.media/denmark-summons-russian-ambassador-cyberattack-elections
Nigeria arrests suspected RaccoonO365 phishing kit developer on tip from Microsoft, FBI
https://therecord.media/nigeria-raccoon-developer-tip
University of Sydney reports data breach affecting over 20,000 staff, affiliates
https://therecord.media/university-of-sydney-reports-data-breach
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: How we pwned X (Twitter), Vercel, Cursor, Discord, and hundreds of companies through a supply…
Explore this post and more from the netsec community
Top Security News for Today
Faster than C! Introducing the Jolt Programming Language
https://www.reddit.com/r/lowlevel/comments/1prmdo5/faster_than_c_introducing_the_jolt_programming/
BRAID: Bounded Reasoning for Autonomous Inference and Decisions
https://arxiv.org/abs/2512.15959
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Faster than C! Introducing the Jolt Programming Language
https://www.reddit.com/r/lowlevel/comments/1prmdo5/faster_than_c_introducing_the_jolt_programming/
BRAID: Bounded Reasoning for Autonomous Inference and Decisions
https://arxiv.org/abs/2512.15959
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
Faster than C! Introducing the Jolt Programming Language. : r/lowlevel
15K subscribers in the lowlevel community. Low level programming and hacking subreddit for Linux and Windows.
Top Security News for Today
Vulnhalla: Picking the true vulnerabilities from the CodeQL haystack
https://www.reddit.com/r/netsec/comments/1ps3taw/vulnhalla_picking_the_true_vulnerabilities_from/
When OAuth Becomes a Weapon: Lessons from CVE-2025-6514
https://www.reddit.com/r/netsec/comments/1psq0mx/when_oauth_becomes_a_weapon_lessons_from/
CAPIO: Safe Kernel-Bypass of Commodity Devices using Capabilities
https://arxiv.org/abs/2512.16965
MemoryGraft: Persistent Compromise of LLM Agents via Poisoned Experience Retrieval
https://arxiv.org/abs/2512.17045
AutoDFBench 1.0: A Benchmarking Framework for Digital Forensic Tool Testing and Generated Code Evaluation
https://arxiv.org/abs/2512.17029
Adversarial VR: An Open-Source Testbed for Evaluating Adversarial Robustness of VR Cybersickness Detection and Mitigation
https://arxiv.org/abs/2512.16957
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Vulnhalla: Picking the true vulnerabilities from the CodeQL haystack
https://www.reddit.com/r/netsec/comments/1ps3taw/vulnhalla_picking_the_true_vulnerabilities_from/
When OAuth Becomes a Weapon: Lessons from CVE-2025-6514
https://www.reddit.com/r/netsec/comments/1psq0mx/when_oauth_becomes_a_weapon_lessons_from/
CAPIO: Safe Kernel-Bypass of Commodity Devices using Capabilities
https://arxiv.org/abs/2512.16965
MemoryGraft: Persistent Compromise of LLM Agents via Poisoned Experience Retrieval
https://arxiv.org/abs/2512.17045
AutoDFBench 1.0: A Benchmarking Framework for Digital Forensic Tool Testing and Generated Code Evaluation
https://arxiv.org/abs/2512.17029
Adversarial VR: An Open-Source Testbed for Evaluating Adversarial Robustness of VR Cybersickness Detection and Mitigation
https://arxiv.org/abs/2512.16957
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: Vulnhalla: Picking the true vulnerabilities from the CodeQL haystack
Explore this post and more from the netsec community
Top Security News for Today
Cyberctf.space - Early Access Open
https://www.reddit.com/r/netsec/comments/1psvcrn/cyberctfspace_early_access_open/
Microsoft Brokering File System Elevation of Privilege Vulnerability (CVE--2025-29970)
https://www.reddit.com/r/netsec/comments/1psw1qq/microsoft_brokering_file_system_elevation_of/
22nd December – Threat Intelligence Report
https://research.checkpoint.com/2025/22nd-december-threat-intelligence-report/
Romanian national water agency hit by BitLocker ransomware attack
https://therecord.media/romania-national-water-agency-ransomware-attack
Nefilim ransomware hacker pleads guilty to computer fraud
https://therecord.media/nefilim-ransomware-hacker-fraud
I caught a Rust DDoS botnet on my honeypot
https://www.reddit.com/r/netsec/comments/1pt2tv0/i_caught_a_rust_ddos_botnet_on_my_honeypot/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Cyberctf.space - Early Access Open
https://www.reddit.com/r/netsec/comments/1psvcrn/cyberctfspace_early_access_open/
Microsoft Brokering File System Elevation of Privilege Vulnerability (CVE--2025-29970)
https://www.reddit.com/r/netsec/comments/1psw1qq/microsoft_brokering_file_system_elevation_of/
22nd December – Threat Intelligence Report
https://research.checkpoint.com/2025/22nd-december-threat-intelligence-report/
Romanian national water agency hit by BitLocker ransomware attack
https://therecord.media/romania-national-water-agency-ransomware-attack
Nefilim ransomware hacker pleads guilty to computer fraud
https://therecord.media/nefilim-ransomware-hacker-fraud
I caught a Rust DDoS botnet on my honeypot
https://www.reddit.com/r/netsec/comments/1pt2tv0/i_caught_a_rust_ddos_botnet_on_my_honeypot/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: Cyberctf.space - Early Access Open
Posted by Royal_Independent517 - 1 vote and 0 comments
Top Security News for Today
US disrupts multimillion-dollar bank account takeover operation targeting Americans
https://therecord.media/us-disrupts-bank-account-takeover-operation-web3adspanels
Denmark Accuses Russia of Conducting Two Cyberattacks
https://www.schneier.com/blog/archives/2025/12/denmark-accuses-russia-of-conducting-two-cyberattacks.html
SEC sues crypto firms for defrauding investors out of $14 million
https://therecord.media/sec-sues-crypto-firms-defrauding-investors-14-million
More than 22 million Aflac customers impacted by June data breach
https://therecord.media/22-million-impacted-aflac-breach
What Does it Take to Manage Cloud Risk?
https://www.trendmicro.com/en_us/research/25/l/managing-cloud-risk.html
Bishop Fox Wrapped: Research Worth Replaying
https://bishopfox.com/blog/wrapped
Dissecting a Multi-Stage macOS Infostealer
https://www.reddit.com/r/netsec/comments/1pu7nem/dissecting_a_multistage_macos_infostealer/
Guide to preventing the most common enterprise social engineering attacks
https://www.reddit.com/r/netsec/comments/1pu6gnr/guide_to_preventing_the_most_common_enterprise/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
US disrupts multimillion-dollar bank account takeover operation targeting Americans
https://therecord.media/us-disrupts-bank-account-takeover-operation-web3adspanels
Denmark Accuses Russia of Conducting Two Cyberattacks
https://www.schneier.com/blog/archives/2025/12/denmark-accuses-russia-of-conducting-two-cyberattacks.html
SEC sues crypto firms for defrauding investors out of $14 million
https://therecord.media/sec-sues-crypto-firms-defrauding-investors-14-million
More than 22 million Aflac customers impacted by June data breach
https://therecord.media/22-million-impacted-aflac-breach
What Does it Take to Manage Cloud Risk?
https://www.trendmicro.com/en_us/research/25/l/managing-cloud-risk.html
Bishop Fox Wrapped: Research Worth Replaying
https://bishopfox.com/blog/wrapped
Dissecting a Multi-Stage macOS Infostealer
https://www.reddit.com/r/netsec/comments/1pu7nem/dissecting_a_multistage_macos_infostealer/
Guide to preventing the most common enterprise social engineering attacks
https://www.reddit.com/r/netsec/comments/1pu6gnr/guide_to_preventing_the_most_common_enterprise/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
therecord.media
US disrupts multimillion-dollar bank account takeover operation targeting Americans
Crooks used fraudulent ads on major search engines to mimic banks and harvest people's login credentials, netting at least $14.6 million, the U.S. authorities said in announcing a takedown of the operation.
Top Security News for Today
Cyber volunteer effort for small water utilities announces new MSSP effort
https://therecord.media/cyber-volunteer-water-utility-mssp
Urban VPN Proxy Surreptitiously Intercepts AI Chats
https://www.schneier.com/blog/archives/2025/12/urban-vpn-proxy-surreptitiously-intercepts-ai-chats.html
QoS-Aware Dynamic CU Selection in O-RAN with Graph-Based Reinforcement Learning
https://arxiv.org/abs/2512.19696
Automated Fault Detection in 5G Core Networks Using Large Language Models
https://arxiv.org/abs/2512.19697
Smoothing Rough Edges of IPv6 in VPNs
https://arxiv.org/abs/2512.19698
Holographic MIMO Empowered NOMA-ISAC for 6G: Rate-Splitting Enhanced Near-Field Modeling, Multi-Objective Optimization, and Statistical Performance Validation
https://arxiv.org/abs/2512.19699
ServiceNow to acquire cyber firm Armis in $7.75 billion deal
https://therecord.media/servicenow-cyber-armis-acquisition
WebSocket RCE in the CurseForge Launcher
https://www.reddit.com/r/netsec/comments/1pv0p4f/websocket_rce_in_the_curseforge_launcher/
Automated Red-Teaming Framework for Large Language Model Security Assessment: A Comprehensive Attack Generation and Detection System
https://arxiv.org/abs/2512.20705
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Cyber volunteer effort for small water utilities announces new MSSP effort
https://therecord.media/cyber-volunteer-water-utility-mssp
Urban VPN Proxy Surreptitiously Intercepts AI Chats
https://www.schneier.com/blog/archives/2025/12/urban-vpn-proxy-surreptitiously-intercepts-ai-chats.html
QoS-Aware Dynamic CU Selection in O-RAN with Graph-Based Reinforcement Learning
https://arxiv.org/abs/2512.19696
Automated Fault Detection in 5G Core Networks Using Large Language Models
https://arxiv.org/abs/2512.19697
Smoothing Rough Edges of IPv6 in VPNs
https://arxiv.org/abs/2512.19698
Holographic MIMO Empowered NOMA-ISAC for 6G: Rate-Splitting Enhanced Near-Field Modeling, Multi-Objective Optimization, and Statistical Performance Validation
https://arxiv.org/abs/2512.19699
ServiceNow to acquire cyber firm Armis in $7.75 billion deal
https://therecord.media/servicenow-cyber-armis-acquisition
WebSocket RCE in the CurseForge Launcher
https://www.reddit.com/r/netsec/comments/1pv0p4f/websocket_rce_in_the_curseforge_launcher/
Automated Red-Teaming Framework for Large Language Model Security Assessment: A Comprehensive Attack Generation and Detection System
https://arxiv.org/abs/2512.20705
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
therecord.media
Cyber volunteer effort for small water utilities announces new MSSP effort
An organization is looking to develop a first-of-its-kind managed security service provider (MSSP) model tailored specifically for rural water utilities.
Top Security News for Today
LangGrinch: A Bug in the Library, A Lesson for the Architecture
https://www.reddit.com/r/netsec/comments/1pw1doh/langgrinch_a_bug_in_the_library_a_lesson_for_the/
Georgia arrests ex-spy chief over alleged protection of scam call centers
https://therecord.media/republic-of-georgia-former-spy-chief-arrested-scam-centers
Pro-Russian hackers claim attack on French postal service operator
https://therecord.media/pro-russia-hackers-claim-attack-la-poste
First verified SHA-256 second-preimage collision: Structural analysis of the W-schedule vulnerability
https://www.reddit.com/r/netsec/comments/1pwlp7g/first_verified_sha256_secondpreimage_collision/
IoT Hack
https://www.schneier.com/blog/archives/2025/12/iot-hack.html
Why are we worried about memory access semantics? Full barriers should be enough for anybody
https://www.reddit.com/r/lowlevel/comments/1pwcc1w/why_are_we_worried_about_memory_access_semantics/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
LangGrinch: A Bug in the Library, A Lesson for the Architecture
https://www.reddit.com/r/netsec/comments/1pw1doh/langgrinch_a_bug_in_the_library_a_lesson_for_the/
Georgia arrests ex-spy chief over alleged protection of scam call centers
https://therecord.media/republic-of-georgia-former-spy-chief-arrested-scam-centers
Pro-Russian hackers claim attack on French postal service operator
https://therecord.media/pro-russia-hackers-claim-attack-la-poste
First verified SHA-256 second-preimage collision: Structural analysis of the W-schedule vulnerability
https://www.reddit.com/r/netsec/comments/1pwlp7g/first_verified_sha256_secondpreimage_collision/
IoT Hack
https://www.schneier.com/blog/archives/2025/12/iot-hack.html
Why are we worried about memory access semantics? Full barriers should be enough for anybody
https://www.reddit.com/r/lowlevel/comments/1pwcc1w/why_are_we_worried_about_memory_access_semantics/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: LangGrinch: A Bug in the Library, A Lesson for the Architecture
Posted by hfti - 1 vote and 0 comments
Top Security News for Today
Why runtime attacks stay quiet for so long
https://www.reddit.com/r/netsec/comments/1pwu7xt/why_runtime_attacks_stay_quiet_for_so_long/
Mongobleed - CVE-2025-14847
https://www.reddit.com/r/netsec/comments/1pwxku1/mongobleed_cve202514847/
Implicit execution authority is the real failure mode behind prompt injection
https://www.reddit.com/r/netsec/comments/1px42f4/implicit_execution_authority_is_the_real_failure/
Petlibro: Your Pet Feeder Is Feeding Data To Anyone Who Asks
https://www.reddit.com/r/netsec/comments/1px7jzx/petlibro_your_pet_feeder_is_feeding_data_to/
Early warning signs of runtime compromise
https://www.reddit.com/r/netsec/comments/1pwznw0/early_warning_signs_of_runtime_compromise/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Why runtime attacks stay quiet for so long
https://www.reddit.com/r/netsec/comments/1pwu7xt/why_runtime_attacks_stay_quiet_for_so_long/
Mongobleed - CVE-2025-14847
https://www.reddit.com/r/netsec/comments/1pwxku1/mongobleed_cve202514847/
Implicit execution authority is the real failure mode behind prompt injection
https://www.reddit.com/r/netsec/comments/1px42f4/implicit_execution_authority_is_the_real_failure/
Petlibro: Your Pet Feeder Is Feeding Data To Anyone Who Asks
https://www.reddit.com/r/netsec/comments/1px7jzx/petlibro_your_pet_feeder_is_feeding_data_to/
Early warning signs of runtime compromise
https://www.reddit.com/r/netsec/comments/1pwznw0/early_warning_signs_of_runtime_compromise/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: Why runtime attacks stay quiet for so long
Posted by OKAMI_TAMA - 0 votes and 1 comment
Top Security News for Today
Composition Theorems for f-Differential Privacy
https://arxiv.org/abs/2512.21358
Reflection-Driven Control for Trustworthy Code Agents
https://arxiv.org/abs/2512.21354
Power Side-Channel Analysis of the CVA6 RISC-V Core at the RTL Level Using VeriSide
https://arxiv.org/abs/2512.21362
Satellite Cybersecurity Across Orbital Altitudes: Analyzing Ground-Based Threats to LEO, MEO, and GEO
https://arxiv.org/abs/2512.21367
Key Length-Oriented Classification of Lightweight Cryptographic Algorithms for IoT Security
https://arxiv.org/abs/2512.21368
Static scans vs runtime reality
https://www.reddit.com/r/netsec/comments/1pyfwn6/static_scans_vs_runtime_reality/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Composition Theorems for f-Differential Privacy
https://arxiv.org/abs/2512.21358
Reflection-Driven Control for Trustworthy Code Agents
https://arxiv.org/abs/2512.21354
Power Side-Channel Analysis of the CVA6 RISC-V Core at the RTL Level Using VeriSide
https://arxiv.org/abs/2512.21362
Satellite Cybersecurity Across Orbital Altitudes: Analyzing Ground-Based Threats to LEO, MEO, and GEO
https://arxiv.org/abs/2512.21367
Key Length-Oriented Classification of Lightweight Cryptographic Algorithms for IoT Security
https://arxiv.org/abs/2512.21368
Static scans vs runtime reality
https://www.reddit.com/r/netsec/comments/1pyfwn6/static_scans_vs_runtime_reality/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
arXiv.org
Composition Theorems for f-Differential Privacy
"f differential privacy" (fDP) is a recent definition for privacy privacy which can offer improved predictions of "privacy loss". It has been used to analyse specific privacy mechanisms, such as...
Top Security News for Today
The HoneyMyte APT evolves with a kernel-mode rootkit and a ToneShell backdoor
https://securelist.com/honeymyte-kernel-mode-rootkit/118590/
29th December – Threat Intelligence Report
https://research.checkpoint.com/2025/29th-december-threat-intelligence-report/
Are We Ready to Be Governed by Artificial Intelligence?
https://www.schneier.com/blog/archives/2025/12/are-we-ready-to-be-governed-by-artificial-intelligence.html
Coupang recovers smashed laptop that alleged data leaker threw into river
https://therecord.media/coupang-recovers-smashed-laptop-data-breach
French software company fined $2 million for cyber failings leading to data breach
https://therecord.media/french-software-fined-cnil
Happy 16th Birthday, KrebsOnSecurity.com!
https://krebsonsecurity.com/2025/12/happy-16th-birthday-krebsonsecurity-com/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
The HoneyMyte APT evolves with a kernel-mode rootkit and a ToneShell backdoor
https://securelist.com/honeymyte-kernel-mode-rootkit/118590/
29th December – Threat Intelligence Report
https://research.checkpoint.com/2025/29th-december-threat-intelligence-report/
Are We Ready to Be Governed by Artificial Intelligence?
https://www.schneier.com/blog/archives/2025/12/are-we-ready-to-be-governed-by-artificial-intelligence.html
Coupang recovers smashed laptop that alleged data leaker threw into river
https://therecord.media/coupang-recovers-smashed-laptop-data-breach
French software company fined $2 million for cyber failings leading to data breach
https://therecord.media/french-software-fined-cnil
Happy 16th Birthday, KrebsOnSecurity.com!
https://krebsonsecurity.com/2025/12/happy-16th-birthday-krebsonsecurity-com/
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Securelist
The HoneyMyte APT now protects malware with a kernel-mode rootkit
Kaspersky discloses a 2025 HoneyMyte (aka Mustang Panda or Bronze President) APT campaign, which uses a kernel-mode rootkit to deliver and protect a ToneShell backdoor.
Top Security News for Today
RMM Abuse in a Crypto Wallet Distribution Campaign
https://www.reddit.com/r/netsec/comments/1pztpnf/rmm_abuse_in_a_crypto_wallet_distribution_campaign/
Using AI-Generated Images to Get Refunds
https://www.schneier.com/blog/archives/2025/12/using-ai-generated-images-to-get-refunds.html
MonoM: Enhancing Monotonicity in Learned Cardinality Estimators
https://arxiv.org/abs/2512.22122
A Study of NP-Completeness and Undecidable Word Problems in Semigroups
https://arxiv.org/abs/2512.22123
GPU-Virt-Bench: A Comprehensive Benchmarking Framework for Software-Based GPU Virtualization Systems
https://arxiv.org/abs/2512.22125
Validation methodology on real data of reversible Kalman Filter for state estimation with Manifold
https://arxiv.org/abs/2512.22126
Impact of Sociality Regimes on Quality of Service and Energy Efficiency in Cell-Free MIMO Networks
https://arxiv.org/abs/2512.22127
Ransomware responders plead guilty to using ALPHV in attacks on US organizations
https://therecord.media/ransomware-responders-guilty-plea-using-alphv-blackcat-us-attacks
Treasury removes sanctions for three executives tied to spyware maker Intellexa
https://therecord.media/treasury-sanctions-intellexa-removed
GenAI DevOps: More Code, More Problems
https://bishopfox.com/blog/genai-devops-more-code-more-problems
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
RMM Abuse in a Crypto Wallet Distribution Campaign
https://www.reddit.com/r/netsec/comments/1pztpnf/rmm_abuse_in_a_crypto_wallet_distribution_campaign/
Using AI-Generated Images to Get Refunds
https://www.schneier.com/blog/archives/2025/12/using-ai-generated-images-to-get-refunds.html
MonoM: Enhancing Monotonicity in Learned Cardinality Estimators
https://arxiv.org/abs/2512.22122
A Study of NP-Completeness and Undecidable Word Problems in Semigroups
https://arxiv.org/abs/2512.22123
GPU-Virt-Bench: A Comprehensive Benchmarking Framework for Software-Based GPU Virtualization Systems
https://arxiv.org/abs/2512.22125
Validation methodology on real data of reversible Kalman Filter for state estimation with Manifold
https://arxiv.org/abs/2512.22126
Impact of Sociality Regimes on Quality of Service and Energy Efficiency in Cell-Free MIMO Networks
https://arxiv.org/abs/2512.22127
Ransomware responders plead guilty to using ALPHV in attacks on US organizations
https://therecord.media/ransomware-responders-guilty-plea-using-alphv-blackcat-us-attacks
Treasury removes sanctions for three executives tied to spyware maker Intellexa
https://therecord.media/treasury-sanctions-intellexa-removed
GenAI DevOps: More Code, More Problems
https://bishopfox.com/blog/genai-devops-more-code-more-problems
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: RMM Abuse in a Crypto Wallet Distribution Campaign
Explore this post and more from the netsec community
Top Security News for Today
Finland seizes ship suspected of damaging subsea cable in Baltic Sea
https://therecord.media/finland-seizes-ship-suspected-damaging-undersea-cable
RMM Abuse in a Crypto Wallet Distribution Campaign
https://www.reddit.com/r/netsec/comments/1pztpnf/rmm_abuse_in_a_crypto_wallet_distribution_campaign/
LinkedIn Job Scams
https://www.schneier.com/blog/archives/2025/12/linkedin-job-scams.html
Undefined reference linker error
https://www.reddit.com/r/lowlevel/comments/1q0m2hq/undefined_reference_linker_error/
Hello, This question popped into my mind a few days ago, and this is one of the only communities that allows this kind of question.
https://www.reddit.com/r/lowlevel/comments/1q0fq6n/hello_this_question_popped_into_my_mind_a_few/
NEW 'Off The Hook' ONLINE
https://www.2600.com/hook/31-12-2025
When Intelligence Fails: An Empirical Study on Why LLMs Struggle with Password Cracking
https://arxiv.org/abs/2512.23785
Application-Specific Power Side-Channel Attacks and Countermeasures: A Survey
https://arxiv.org/abs/2512.23778
SyncGait: Robust Long-Distance Authentication for Drone Delivery via Implicit Gait Behaviors
https://arxiv.org/abs/2512.23779
Prompt-Induced Over-Generation as Denial-of-Service: A Black-Box Attack-Side Benchmark
https://arxiv.org/abs/2512.23760
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Finland seizes ship suspected of damaging subsea cable in Baltic Sea
https://therecord.media/finland-seizes-ship-suspected-damaging-undersea-cable
RMM Abuse in a Crypto Wallet Distribution Campaign
https://www.reddit.com/r/netsec/comments/1pztpnf/rmm_abuse_in_a_crypto_wallet_distribution_campaign/
LinkedIn Job Scams
https://www.schneier.com/blog/archives/2025/12/linkedin-job-scams.html
Undefined reference linker error
https://www.reddit.com/r/lowlevel/comments/1q0m2hq/undefined_reference_linker_error/
Hello, This question popped into my mind a few days ago, and this is one of the only communities that allows this kind of question.
https://www.reddit.com/r/lowlevel/comments/1q0fq6n/hello_this_question_popped_into_my_mind_a_few/
NEW 'Off The Hook' ONLINE
https://www.2600.com/hook/31-12-2025
When Intelligence Fails: An Empirical Study on Why LLMs Struggle with Password Cracking
https://arxiv.org/abs/2512.23785
Application-Specific Power Side-Channel Attacks and Countermeasures: A Survey
https://arxiv.org/abs/2512.23778
SyncGait: Robust Long-Distance Authentication for Drone Delivery via Implicit Gait Behaviors
https://arxiv.org/abs/2512.23779
Prompt-Induced Over-Generation as Denial-of-Service: A Black-Box Attack-Side Benchmark
https://arxiv.org/abs/2512.23760
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
therecord.media
Finland seizes ship suspected of damaging subsea cable in Baltic Sea
Disruptions in telecommunications services were tracked to fresh damage of Baltic Sea cables, leading Finnish authorities to seize a ship suspected of sabotage.
Top Security News for Today
Built an SSRF Prevention Library
https://www.reddit.com/r/netsec/comments/1q13m87/built_an_ssrf_prevention_library/
The Story of a Perfect Exploit Chain: Six Bugs That Looked Harmless Until They Became Pre-Auth RCE in a Security Appliance
https://www.reddit.com/r/netsec/comments/1q15r3i/the_story_of_a_perfect_exploit_chain_six_bugs/
Built an Automated Red-Team Tool to Find LLM Vulnerabilities. Most AI Apps Are Frighteningly Easy to Break.
https://www.reddit.com/r/netsec/comments/1q1l1aj/built_an_automated_redteam_tool_to_find_llm/
CAT: A Metric-Driven Framework for Analyzing the Consistency-Accuracy Relation of LLMs under Controlled Input Variations
https://arxiv.org/abs/2512.23711
Enriching Historical Records: An OCR and AI-Driven Approach for Database Integration
https://arxiv.org/abs/2512.24863
STED and Consistency Scoring: A Framework for Evaluating LLM Structured Output Reliability
https://arxiv.org/abs/2512.23872
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Built an SSRF Prevention Library
https://www.reddit.com/r/netsec/comments/1q13m87/built_an_ssrf_prevention_library/
The Story of a Perfect Exploit Chain: Six Bugs That Looked Harmless Until They Became Pre-Auth RCE in a Security Appliance
https://www.reddit.com/r/netsec/comments/1q15r3i/the_story_of_a_perfect_exploit_chain_six_bugs/
Built an Automated Red-Team Tool to Find LLM Vulnerabilities. Most AI Apps Are Frighteningly Easy to Break.
https://www.reddit.com/r/netsec/comments/1q1l1aj/built_an_automated_redteam_tool_to_find_llm/
CAT: A Metric-Driven Framework for Analyzing the Consistency-Accuracy Relation of LLMs under Controlled Input Variations
https://arxiv.org/abs/2512.23711
Enriching Historical Records: An OCR and AI-Driven Approach for Database Integration
https://arxiv.org/abs/2512.24863
STED and Consistency Scoring: A Framework for Evaluating LLM Structured Output Reliability
https://arxiv.org/abs/2512.23872
Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Reddit
From the netsec community on Reddit: built an SSRF prevention library
Posted by Inner-Combination177 - 1 vote and 0 comments