Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Active Exploitation Alert: Threat Actors Abuse Anthropic Claude AI to Extract Secrets from 1.8M Android Apps in Major Credential Theft Campaign
9+ hour, 39+ min ago (367+ words) Rescana Technical Analysis of Malware/TTPs The attack chain began with the automated mass-download of 1.8 million Android APKs from multiple app stores using a distributed pipeline orchestrated on ten AWS EC2 instances. The APKs were decompiled and scanned for hardcoded secrets…...
GitLab Multiple Vulnerabilities
15+ hour, 28+ min ago (110+ words) TYPE: Servers - Other Servers Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger sensitive information disclosure, remote code execution, cross-site scripting, denial of service condition and security restriction bypass on the targeted…...
One Overlooked Query Parameter: How a Single Line of Unsanitized Input Can Undo a Platform’s Entire…
15+ hour, 18+ min ago (483+ words) A field note from a penetration tester on discovering — and responsibly disclosing — a reflected XSS vulnerability on a live job-search platform. Every once in a while, you stumble onto a vulnerability while doing absolutely nothing sophisticated. No custom tooling, no…...
Top 43 AI Security Skills, MCP Servers & GitHub Repos Every Bug Hunter Needs
15+ hour, 18+ min ago (35+ words) Top 43 AI Skills, MCP Servers & GitHub Repos Every Bug Hunter Needs The AI-security corner of GitHub is moving too fast for its own good. Half the tools worth using didn’t exist eighteen months …...
Moli Builds a Rust Browser That Uses 10x Less Memory Than Chrome
22+ hour ago (215+ words) Moli is a headless browser built in Rust from scratch that skips rendering by default, cutting memory use to roughly one-tenth of Chrome for agent workloads. Moli, a new Rust project, implements a headless browser for AI agents without wrapping…...
Apple's Last Actively Exploited Bug Disclosure Was iOS 26.2, Nine Months Ago
21+ hour, 45+ min ago (203+ words) The most recent Apple security document to say a bug may have been exploited is iOS 26.2, published December 12, 2025. Both flagged issues sat in WebKit, and Apple credited Google’s Threat Analysis Group on each one. Six Apple releases since then, running…...
I Built a Network Sniffer in Python During My Internship — Here’s What Nobody Tells You About It
17+ hour, 58+ min ago (1247+ words) By Sourav Bouri | B.Tech CSE (IOT CS BCT) Student | Cybersecurity Enthusiast Let me be honest with you. When I got the task — “Build a Basic Network Sniffer” — I thought it would be straightforward. Install some library, write 30 lines, done. Submit....
Dell Secure Connect Gateway Vulnerability: 3 Critical CVEs (CVSS 9.8)
19+ hour, 16+ min ago (27+ words) Let Hackers Forge Admin Access Most enterprise security teams pour their energy into hardening customer-facing apps — and …...
SOC138 — Detected Suspicious Xls File: LetsDefend Alert
19+ hour, 16+ min ago (1420+ words) Context An alert has been triggered! On March 13, 2021 at 8:20PM our systems detected a suspicious Xls file (Spreadsheet file). Let’s dive …...
Entropy32 Plus hardware uses radioactive decay for Bitcoin seed generation
1+ day, 1+ hour ago (322+ words) A new open-source device, Entropy32 Plus, has emerged, generating Bitcoin seed phrases by harnessing the unpredictability of radioactive decay. The project aims to enhance cryptographic security by deriving randomness from a physical source rather than relying on deterministic software-based random number…...