Aggregator
Fragnesia Linux Vulnerability Let Attackers Gain Root Privileges – PoC Released
A newly disclosed Linux kernel vulnerability dubbed Fragnesia allows any local unprivileged user to escalate privileges to root without requiring a race condition, making it one of the more reliable local privilege escalation exploits seen in recent years. Discovered by William Bowling of the V12 security team, Fragnesia joins a growing class of dangerous kernel […]
The post Fragnesia Linux Vulnerability Let Attackers Gain Root Privileges – PoC Released appeared first on Cyber Security News.
G.O.S.S.I.P 阅读推荐 2026-05-13 三AI成虎?
CVE-2026-44576
CVE-2026-44581
CVE-2026-23870
CVE-2026-44579
CVE-2026-44575
CVE-2026-44578
CVE-2026-44574
CVE-2026-44573
CVE-2024-4577
CVE-2025-68670
n8n security advisory (AV26-459)
Signal responds to phishing attacks with new in-app security warnings
Signal is adding new protections for users following recent phishing and social engineering attacks. In March, the FBI and CISA issued a warning stating that Signal had become a primary target of Russian intelligence-linked hackers. Dutch and German security authorities were among the first to identify phishing campaigns targeting Signal users. The scheme centered on Signal’s “linked devices” feature. Attackers contacted targets while posing as trusted entities, including support teams or known contacts. Victims were … More →
The post Signal responds to phishing attacks with new in-app security warnings appeared first on Help Net Security.
Tuskira’s Kairo exposes hidden AI-driven breach paths
Tuskira has announced the launch of Kairo, a breach modeling capability that detects deep, hidden breach paths by leveraging its security data mesh and digital twin technology. Kairo helps security teams improve breach resilience by modeling how attackers can leverage new AI models to laterally move across an environment, identifying deep hidden kill chains across cloud, IT & OT infrastructure. Kairo also validates detected breach paths against existing security controls if attackers can also bypass … More →
The post Tuskira’s Kairo exposes hidden AI-driven breach paths appeared first on Help Net Security.
Investigating server compromises with cgroups: A Linux DFIR primer
Thus Spoke…The Gentlemen
Key Points Introduction The Gentlemen ransomware‑as‑a‑service (RaaS) operation is a relatively new group that emerged around mid‑2025. Its operators advertise the service across multiple underground forums, promoting their ransomware platform and inviting penetration testers and other technically skilled actors to join as affiliates. In 2026, based on victims listed on the data leak site (DLS), […]
The post Thus Spoke…The Gentlemen appeared first on Check Point Research.
Foxconn confirms cyberattack claimed by Nitrogen ransomware gang
Apricorn hardens ASK3 encrypted USB drive for extreme conditions
Apricorn has announced enhancements to its Aegis Secure Key 3.0 (ASK3), delivering faster performance and new environmental protection capabilities designed to secure the device and its data in the most demanding physical circumstances. The ASK3 was updated to meet and exceed the latest NIST Cryptographic Module Validation Program (CMVP) for FIPS 140-3 Level 3 validation, for which it has formally been submitted. This positions the ASK3 for use by government, defence contractors, and organisations across … More →
The post Apricorn hardens ASK3 encrypted USB drive for extreme conditions appeared first on Help Net Security.