Generated 26/06/2026, 09:19. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources4
Tweets / X11
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.
Tweets / X
11 items
_xpn_ @_xpn_
25 Jun, 21:44 · core
0.56
Adam demonstrates the future of stage-0 agents and initial access. This is awesome! and also terrifying from a defense perspective lol First blog post in a mini series where I look at "disposable tooling". This post shares what I have found to be useful when 1-shot'ing LLM genera
Everyone's building AI security tools in a weekend. The bill arrives in month two. Token burn scales with accuracy. Want validation? More tokens. Dedup? More tokens. Global memory across runs? More tokens. The POC finds bugs. Proving they're real at scale, reliably, without
0xRoam, I saw your proposed Master Thesis thingie on your GitHub. You're writing malware for your Master Thesis. Very cool. You've got a bunch of problems if your code, big dawg. The very very very first thing you need to fix though is your function import code. You're using
Windows Scheduled Tasks can be an overlooked source of security risk. In the latest ep. of #KnowYourAdversary, @0xr0BIT breaks down how TaskHound uncovers hidden credential exposure and attack paths inside enterprise environments. Listen now: https:// ghst.ly/4x4qGmU
Malware authors often hide their tracks using COM, but our latest guide provides the roadmap you need to decode those cryptic vtable calls and finally see exactly what’s happening under the hood: https:// cs.co/6014BDgbFs
AI isn't the future of security. It's happening now. The same tools making security more accessible to engineers are available to attackers too. That's not a future risk. It's the current reality. Runtime protection has never mattered more. Read the blog:
"We'll fix that in next month's pen test." Said no secure company, ever. If you're shipping daily but testing annually, you're leaving a gaping window of exposure for attackers to find first. Pairing your existing strategy with a continuous bug bounty program isn't an
Open bug bounty programs are buckling under AI-generated noise. Learn why the Synack platform and private team of security researchers preserve what works about incentivized research while fixing what doesn't: https:// hubs.ly/Q04mzB220
AI is reshaping both the threat landscape and how security teams respond. SentinelOne co-founder and CEO Tomer Weingarten joins @Bloomberg Intelligence analyst Mandeep Singh on Tech Disruptors to discuss securing AI agents, the role of LLMs in the modern SOC, and how M&A and
Posted by Sebastian Pipping on Jun 25 Hello oss-security, just a quick note that libexpat 2.8.2 (or "Expat 2.8.2") released today is fixing 13 vulnerabilities of three c…
0.89exploit · 25 Jun, 19:35seclists.org
Several vulnerabilities were found in NLnet Labs NSD
Posted by Willem Toorop on Jun 25 Several vulnerabilities were found in NLnet Labs NSD. We have released version 4.14.3 as a security release today,Thursday 25 June, wit…
New macOS malware embeds fake errors to confuse AI analysis tools
A newly discovered macOS malware dubbed "Gaslight" is designed to confuse AI-assisted malware analysis tools by hiding prompt injection strings and fake debugging data w…
New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis
A previously undocumented Rust-based macOS implant and information stealer has been found to embed a prompt injection payload designed to trick a malware analyst's artif…