What syscall-layer tooling cannot see in P2P infrastructure
Announcing the External Penetration Testing Program Pack
The way AI voice phishing gets demonstrated is making people worse at spotting it
Escaping Claude Cowork’s local VM sandbox via CVE-2026-46331
XBOW Agents found three RCEs as SYSTEM (and root) on Bing Image Search
Thailand's Ministry of Finance targeted with an AI agent running with approval prompts disabled
Open Evaluation Framework for AI Pentesting Agents on Real-World Targets
Device Code Phishing: The Microsoft 365 Attack That Walks Past MFA
GitHub issues $100,000 bounty for critical RCE vulnerability
CVE-2026-50458: Finding a UAF in the Windows Brokering File System
318 loaded