HAIJA INTEL REPORT
Tweets / X
7 items





Regular sources
8 itemsVarious memory access violations in 7-Zip
Posted by Alan Coopersmith on May 28 GitHub's Security Lab has published two advisories about memory access https://securitylab.github.com/advisories/GHSL-2026-115_GHSL-…
New Gogs zero-day flaw lets hackers get remote code execution
An unpatched zero-day vulnerability in the Gogs self-hosted Git service can allow attackers to gain remote code execution (RCE) on Internet-facing instances. [...]
Critical FortiClient EMS Vulnerability Exploited in Fresh Attacks
Fortinet rolled out hotfixes for the security defect in April, warning that it had been exploited in the wild as a zero-day and urging immediate patching. The post Criti…
Supply Chain Compromises Impact Nx Console and GitHub Repositories
CISA is prioritizing the response to multiple emerging software supply chain intrusion campaigns targeting developer ecosystems Continuous Integration/Continuous Develop…
Re: Linux: DMA-after-unmap race in ZCRX via netif_rxq_cleanup_unlease() ordering inversion (netkit + page_pool)
Posted by Jacob Bachmeyer on May 27 This report reads like the product of an "AI" system. What "AI" assisted you in preparing this report? [I am sending this to the list… | Posted by Prénom? Ahmed on May 27 Hello, I would like to report a source-proven teardown ordering bug in the Linux kernel that can lead to a DMA-after-unmap race conditi…
Out of the Crypt: The Evolving Cyber Extortion Economy
Unit 42 explores trends in data theft and extortion, outlining key strategies for organizations as frontier AI models advance. The post Out of the Crypt: The Evolving Cy…
Two security advisories for Cargo from Rust
Posted by Alan Coopersmith on May 28 The following advisories have been posted to both https://blog.rust-lang.org/ https://groups.google.com/g/rustlang-security-announce…
CIFSwitch: Linux kernel/cifs-utils local root via forged cifs.spnego upcall
Posted by manizada on May 28 Hi folks, Emailing here now that the embargo agreed upon with linux-distros@ has expired. Flagging a local root vulnerability spanning both …