HAIJA INTEL REPORT
Tweets / X
8 items









Regular sources
7 itemsRe: libssh2: CVE-2026-55200 (critical), CVE-2025-15661 (high), CVE-2026-55199 (high)
Posted by Alan Coopersmith on Jun 23 https://github.com/bikini/exploitarium/tree/main/libssh2-cve-2026-55200-poc claims to provide a PoC for this one.
Plone: various security fixes 20260623
Posted by Maurits van Rees on Jun 23 On behalf of the Plone/Zope Security Team I announce several https://github.com/plone/plone.app.portlets/security/advisories/GHSA-rr…
WhatsApp phishing attack uses fake business docs to hack PCs
An ongoing malware campaign is targeting WhatsApp users in multiple countries with deceptive messages that push VBScript files, leading to remote system access. [...]
Re: Common PKCS#7 / CMS parsing issues in OpenSSL, WolfSSL, Bouncy Castle, & GnuPG
Posted by Peter Gutmann on Jun 23 Alan Coopersmith writes: As with far too many other RFCs, the required skill for them isn't implementing them correctly, it's knowing w…
pwnlift: symlink following and TOCTOU in privileged upload handler allow arbitrary file write as root
Posted by GregD on Jun 23 pwnlift [1] is a small .NET/Blazor file upload server. When deployed with elevated privileges, its upload handler allows a local user to write …
Russian Initial Access Broker Behind FortiBleed Campaign
Using a custom sniffer, the threat actor has captured over 110 million credentials since at least February 2026. The post Russian Initial Access Broker Behind FortiBleed…
Siemens Products using OpenSSL
View CSAF Summary OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow…