submitted by /u/si9int
[link] [comments]
Normal view
Received β 25 September 2026
β
/r/netsec - Information Security News & Discussion
-
/r/netsec - Information Security News & Discussion
- Hard Stop: Kernel-Level Preemption and Containment for Rogue Agentic Execution (arXiv:2609.29808) [pdf]
-
/r/netsec - Information Security News & Discussion
- CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
-
/r/netsec - Information Security News & Discussion
- Fake Journalist phishing scam targeting tech founders
Fake Journalist phishing scam targeting tech founders
24 September 2026 at 16:01
-
/r/netsec - Information Security News & Discussion
- Compromising OBS Studio with a Twitch chat message.
Compromising OBS Studio with a Twitch chat message.
23 September 2026 at 20:48
-
/r/netsec - Information Security News & Discussion
- Argus Monitor Local Denial-of-Service Vulnerability (CVE-2026-79417)
Argus Monitor Local Denial-of-Service Vulnerability (CVE-2026-79417)
25 September 2026 at 02:13
(1) An exposed IOCTL lets unprivileged users disable the x86 MONITOR & MWAIT instructions used by Hyper-V and other kernel components--triggering a HYPERVISOR_ERROR bugcheck.
(2) Reaching the IOCTL requires exploiting a TOCTOU bug arguably caused by poor documentation of the SeLocateProcessImageName function.
(3) Reimplementation of the driver's security through obscurity IOCTL encryption scheme: SHA-256 KDF-derived XOR keystream & CRC16 Checksum.
See full write-up, and Github for PoC.
[link] [comments]
-
/r/netsec - Information Security News & Discussion
- Lunex Unmasked: A New Information Stealer Deployed Through BYOVD
Lunex Unmasked: A New Information Stealer Deployed Through BYOVD
24 September 2026 at 20:56
-
/r/netsec - Information Security News & Discussion
- CVE-2026-91766: PHP had the redirect credential leak curl fixed in 2018
CVE-2026-91766: PHP had the redirect credential leak curl fixed in 2018
24 September 2026 at 20:19