The critical libssh2 CVE-2026-55200 flaw inverts SSH security: the remote server attacks the connecting client, no ...
Parrot OS 7.3 has been released with a clear emphasis on faster execution, cleaner images and smoother daily use, marking a refinement-led update for the security-focused Linux distribution rather ...
ConsentFix and ClickFix attacks steal Microsoft 365 tokens in seconds using fake prompts and OAuth flows. Learn how these MFA ...
The BioShocking technique exploits AI browser reasoning, showing how easily attackers can subvert safety guardrails with ...
Multiple weaponized proof-of-concept (PoC) exploits on GitHub delivered a Python-based remote access trojan (RAT) called ChocoPoC that can execute commands and steal sensitive data. However, ChocoPoC ...
A new exploit called BioShocking convinces AI browsers they're playing a game, then gets them to hand over your private ...
DirtyClone, tracked as CVE-2026-43503, is a Linux kernel vulnerability that allows any local user to gain root privileges.
Attackers don't need any special authentication to reach a target endpoint — they just need to know where it is.
Researchers say attackers are extending AI-themed social engineering from phishing campaigns to browser extensions.
LayerX found that BioShocking could trick AI browsers into leaking credentials by disguising malicious prompts as game rules.
LayerX tricked six AI browsers, including ChatGPT Atlas, Comet and Claude, into leaking user credentials by convincing them they were playing a game.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results