Google Detects First AI-Developed Zero-Day Exploit Used by Threat Actors
…Tags: security , cybersecurity , Zero-Day , AI , (nasdaq:goog) Tim Sweezy Tim's first PC was a Tandy TRS-80 and cut his gaming teeth on Pong, Atari, and the local arcade. He…
Just two days earlier, on March 10th, Google released the new major version Chrome 146, which you can read about in this Chrome Releases blog post. That update fixed 29 security vulnerabilities, almost all of which were reported by external security researchers. One of the vulnerabilities (CVE-2026-3913) is classified as critical, a buffer overflow in the WebML component. Tobias Wienand, the discoverer of this vulnerability, was rewarded $33,000 for it. He also got an additional $43,000 for CVE-2026-3915, another WebML buffer overflow (although that one only classified as high risk). Eleven se
Emergency Chrome 146 update patches 2 zero-day vulnerabilities
From Zero to Zero Day (and beyond) - Life of a Hacker: Jonathan Jacobi
Intel again making chips for Apple? Googlebook + [UNNAMED] OS - Talking Heads Ep.432
Mythos unleashed on Opensource
Dirty Frag Won't Be The Last Exploit
A Vulnerability to Hack The World - CVE-2023-4863
KDE gets €1M, 3 big vulnerabilities for Linux, EU privacy disaster brewing - Linux Weekly News
FSF settles the Office Suite debacle, good news on age verification - Linux Weekly News
…Tags: security , cybersecurity , Zero-Day , AI , (nasdaq:goog) Tim Sweezy Tim's first PC was a Tandy TRS-80 and cut his gaming teeth on Pong, Atari, and the local arcade. He…
…Of the original three Windows Defender zero days released by Nightmare-Eclipse, only BlueHammer is patched, with RedSun and UnDefend remaining unpatched. While a mitigation now exists for YellowKey, GreenPlasma remains unpatched…
…Mozilla has now tipped the scales in Anthropic's favor, sharing in the zero-days are numbered blog post that early access to Mythos Preview helped it pre-identify 271 security vulnerabilities…
…Our unique integrated approach to management and security combines state-of-the-art Apple-specific security solutions for fully automated Hardening & Compliance, Next Generation EDR, AI-powered Zero Trust, and exclusive Privilege…
TL;DR: IncusOS enforces security by default, Proxmox trusts you to configure it yourself. Immutable host, atomic updates, zero OS maintenance. Lacks PBS and a mature UI. Not a Proxmox replacement yet but worth watching. …
Hi, I'm in my first real IT role infrastructure engineer role at a hosting company. Before this I was more on the telecom and hardware side, so the past couple of months have been a steep learning curve. I've picked up a…
Posting this as a PSA / confession because I almost had a heart attack last night and I figure if I got bit, someone else will too. TL;DR: Replaced pangolin + NPMplus with a double-Caddy + WireGuard setup. Put a "clever"…
Hi HN, I’m Mike (MikeWhob).I built Mach Triage because I am honestly sick of the overhead of Jira and wanted a faster and more logical (to me) way to interact with tickets. Also I got tired of my boss being on my ass for…
Everything begins with a story. Stories change lives. Stories change the world.And we all have stories and worlds to share, yet most of us struggle to express our thoughts on paper. At Creader.io, our mission is to bette…
…The security sleuth posted the zero-day YellowKey exploit, which enabled them to access a locked file. For context, YellowKey can be triggered by copying some files to a USB stick and…
…In its first 14 days inside that sandbox, it wrote 181 working Firefox exploits . The previous state-of-the-art model managed two. Uh oh. It surfaced thousands of zero-days across…
Mozilla issued an emergency Firefox patch earlier this week, citing a dangerous zero-day exploit. Because it believed hackers were exploiting the flaw in the wild, Mozilla declined to provide details on…
…Today’s release does not reflect a significant increase in AI‑driven discoveries, though we did credit one vulnerability to an Anthropic researcher using Claude." As Zero Day Initiative chief vuln finder…
…Before it was fixed, however, Chinese attackers found and exploited the bug as a zero-day , compromising more than 400 organizations , including the US Energy Department. At the time, Microsoft attributed the…
…New Linux 'Dirty Frag' zero-day gives root on all major distros CISA says ‘Copy Fail’ flaw now exploited to root Linux systems New Linux ‘Copy Fail’ flaw gives hackers root on…