Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Rescana
rescana.com > post > active-exploitation-alert-threat-actors-abuse-anthropic-claude-ai-to-extract-secrets-from-1-8m-android-apps-in-major-cre

Active Exploitation Alert: Threat Actors Abuse Anthropic Claude AI to Extract Secrets from 1.8M Android Apps in Major Credential Theft Campaign

9+ hour, 39+ min ago   (367+ words) Rescana Technical Analysis of Malware/TTPs The attack chain began with the automated mass-download of 1.8 million Android APKs from multiple app stores using a distributed pipeline orchestrated on ten AWS EC2 instances. The APKs were decompiled and scanned for hardcoded secrets…...

hkcert.org
hkcert.org > security-bulletin > gitlab-multiple-vulnerabilities_20260914

GitLab Multiple Vulnerabilities

15+ hour, 28+ min ago   (110+ words) TYPE: Servers - Other Servers Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger sensitive information disclosure, remote code execution, cross-site scripting, denial of service condition and security restriction bypass on the targeted…...

Medium
medium.com > @mohammad.ehab7760 > one-overlooked-query-parameter-how-a-single-line-of-unsanitized-input-can-undo-a-platforms-entire-9a1742755550

One Overlooked Query Parameter: How a Single Line of Unsanitized Input Can Undo a Platform’s Entire…

15+ hour, 18+ min ago   (483+ words) A field note from a penetration tester on discovering — and responsibly disclosing — a reflected XSS vulnerability on a live job-search platform. Every once in a while, you stumble onto a vulnerability while doing absolutely nothing sophisticated. No custom tooling, no…...

Medium
medium.com > @Aacle > top-43-ai-skills-mcp-servers-github-repos-every-bug-hunter-needs-259a2528eb45

Top 43 AI Security Skills, MCP Servers & GitHub Repos Every Bug Hunter Needs

15+ hour, 18+ min ago   (35+ words) Top 43 AI Skills, MCP Servers & GitHub Repos Every Bug Hunter Needs The AI-security corner of GitHub is moving too fast for its own good. Half the tools worth using didn’t exist eighteen months …...

AlphaSignal
alphasignal.ai > news > moli-builds-a-rust-browser-that-uses-10x-less-memory-than-chrome

Moli Builds a Rust Browser That Uses 10x Less Memory Than Chrome

22+ hour ago   (215+ words) Moli is a headless browser built in Rust from scratch that skips rendering by default, cutting memory use to roughly one-tenth of Chrome for agent workloads. Moli, a new Rust project, implements a headless browser for AI agents without wrapping…...

The Mac Observer
macobserver.com > news > apple-last-actively-exploited-bug-disclosure-ios-26-2

Apple's Last Actively Exploited Bug Disclosure Was iOS 26.2, Nine Months Ago

21+ hour, 45+ min ago   (203+ words) The most recent Apple security document to say a bug may have been exploited is iOS 26.2, published December 12, 2025. Both flagged issues sat in WebKit, and Apple credited Google’s Threat Analysis Group on each one. Six Apple releases since then, running…...

Medium
medium.com > @dassourav51516 > i-built-a-network-sniffer-in-python-during-my-internship-heres-what-nobody-tells-you-about-it-92311d7481a1

I Built a Network Sniffer in Python During My Internship — Here’s What Nobody Tells You About It

17+ hour, 58+ min ago   (1247+ words) By Sourav Bouri | B.Tech CSE (IOT CS BCT) Student | Cybersecurity Enthusiast Let me be honest with you. When I got the task — “Build a Basic Network Sniffer” — I thought it would be straightforward. Install some library, write 30 lines, done. Submit....

Medium
medium.com > @xpert4cyber > dell-secure-connect-gateway-vulnerability-3-critical-cves-cvss-9-8-3502f0b98d08

Dell Secure Connect Gateway Vulnerability: 3 Critical CVEs (CVSS 9.8)

19+ hour, 16+ min ago   (27+ words) Let Hackers Forge Admin Access Most enterprise security teams pour their energy into hardening customer-facing apps — and …...

Medium
medium.com > @tanmaydhanula1234 > soc138-detected-suspicious-xls-file-letsdefend-alert-e2abb241b504

SOC138 — Detected Suspicious Xls File: LetsDefend Alert

19+ hour, 16+ min ago   (1420+ words) Context An alert has been triggered! On March 13, 2021 at 8:20PM our systems detected a suspicious Xls file (Spreadsheet file). Let’s dive …...

Bitget
bitget.com > amp > news > detail > 12560605829837

Entropy32 Plus hardware uses radioactive decay for Bitcoin seed generation

1+ day, 1+ hour ago   (322+ words) A new open-source device, Entropy32 Plus, has emerged, generating Bitcoin seed phrases by harnessing the unpredictability of radioactive decay. The project aims to enhance cryptographic security by deriving randomness from a physical source rather than relying on deterministic software-based random number…...