Normal view
-
/r/netsec - Information Security News & Discussion
- Device Code Phishing Forensics: What We Learned Investigating BEC in the Wild
NuGet Code Execution As A Service
-
/r/netsec - Information Security News & Discussion
- Blind POST SSRF in phpBB 4.0.0-alhpa1 Web Push (CVD with phpBB)
Blind POST SSRF in phpBB 4.0.0-alhpa1 Web Push (CVD with phpBB)
Came across an article, product like phpBB still has some potential flaws.
[link] [comments]
r/netsec monthly discussion & tool thread
Questions regarding netsec and discussion related directly to netsec are welcome here, as is sharing tool links.
Rules & Guidelines
- Always maintain civil discourse. Be awesome to one another - moderator intervention will occur if necessary.
- Avoid NSFW content unless absolutely necessary. If used, mark it as being NSFW. If left unmarked, the comment will be removed entirely.
- If linking to classified content, mark it as such. If left unmarked, the comment will be removed entirely.
- Avoid use of memes. If you have something to say, say it with real words.
- All discussions and questions should directly relate to netsec.
- No tech support is to be requested or provided on r/netsec.
As always, the content & discussion guidelines should also be observed on r/netsec.
Feedback
Feedback and suggestions are welcome, but don't post it here. Please send it to the moderator inbox.
[link] [comments]
-
/r/netsec - Information Security News & Discussion
- Poisoning Claude Code: One GitHub Issue to Break the Supply Chain
Poisoning Claude Code: One GitHub Issue to Break the Supply Chain
-
/r/netsec - Information Security News & Discussion
- Stealing Passwords via HTML Injection Under a Strict CSP
Stealing Passwords via HTML Injection Under a Strict CSP
-
/r/netsec - Information Security News & Discussion
- Subnet discovery through multi-protocol TTL tracing
Subnet discovery through multi-protocol TTL tracing
-
/r/netsec - Information Security News & Discussion
- LLMReaper - DOM Based AI Conversation Exfiltration via Browser Extensions
OffensiveCon26 YouTube Playlist released
-
/r/netsec - Information Security News & Discussion
- 1,001 IPs, 64 countries, one operation: mapping a botnet by its back end Β· HoneyLabs blog
1,001 IPs, 64 countries, one operation: mapping a botnet by its back end Β· HoneyLabs blog
We found a cluster of 1,001 IPs across 306 networks and 64 countries, tied to eight shared staging servers and a single TLS and HTTP fingerprint that appears nowhere else, plus smaller botnets that fall into clean separate islands.
[link] [comments]
-
/r/netsec - Information Security News & Discussion
- I evaluated 5 LLM agents on patching real-world CVEs. Here is what I found.
I evaluated 5 LLM agents on patching real-world CVEs. Here is what I found.
I built an independent benchmark with 20 real CVEs across 15 CWE categories, 5 models (3 OpenAI, 2 Poolside Laguna), three prompt conditions: full advisory, behavioral description only, and location only (file and function, no description of the flaw).
I have three findings worth sharing:
- No model reliably fixes real vulnerabilities. The best solve rate (gpt-5.5) is 50% overall and 60% under the most favorable condition. The failure modes (e.g, wrong-search drift, budget exhaustion mid-implementation, plausible-but-incomplete patches that pass every visible test) are structured and repeatable across models and tasks.
- Token cost varies 4x for equivalent outcomes. The Laguna models consume 3β4x more tokens than OpenAI models of the same capability tier, with no improvement in solve rate.
- The locate condition is the benchmark's sharpest instrument. Give a model only a file and function (no description of the flaw). Every model drops. The differences between models are within noise at this scale, but it's the condition that most closely resembles what a security researcher actually does: reading code cold and recognizing independently that something is wrong.
Benchmark code and evaluation traces are open sourced.
[link] [comments]
Fooling around with encrypted reasoning blobs
CALIF: An AI audit of FreeBSD
-
/r/netsec - Information Security News & Discussion
- CoreEvent GraphQL API β BOLA/IDOR exposing 10k+ records (PII, ticket QR codes) via unauthenticated queries
-
/r/netsec - Information Security News & Discussion
- The Word 'Toad' Gave Any Website Full Control of Chrome's Most Popular VPN
The Word 'Toad' Gave Any Website Full Control of Chrome's Most Popular VPN
Visual Studio Extensions Revisited
-
/r/netsec - Information Security News & Discussion
- Update Starlette Now. New severe vulnerability dropped.
Update Starlette Now. New severe vulnerability dropped.
This is a really bad one that flew under the radar. One character auth bypass in vLLM, LiteLLM, MCP servers, OpenAI shims, and a lot more.
[link] [comments]