Unpatched Flaw in Calix Fiber Gateways Lets Attackers Bypass NAT to Expose Internal Devices
Residential gateways and broadband routers form the first and often only line of defense protecting home and small office networks from direct Internet exposure. Security researchers have disclosed an unpatched vulnerability in widely deployed Calix GS7 XGS (GS5239XG) residential gateways that allows unauthenticated remote attackers on the public Internet to bypass Network Address Translation (NAT) […]
seL4 Microkernel Completes Full Formal Security Proofs on AArch64 Architecture
Formal verification represents the gold standard in software security, replacing probabilistic testing with mathematical proofs that code behaves exactly according to its formal specification. Proofcraft, in collaboration with the seL4 Foundation and supported by the UK National Cyber Security Centre (NCSC), has announced the completion of formal security proofs for the seL4 microkernel on the […]
eBPF Host Routing Hits General Availability in Advanced Container Networking Services for AKS
Running high throughput or low latency distributed systems on Kubernetes often hits an unexpected bottleneck inside the Linux kernel network stack. Microsoft has officially announced the general availability of eBPF Host Routing within Advanced Container Networking Services (ACNS) for Azure Kubernetes Service (AKS). This release fundamentally transforms how network packets move between pods and nodes […]
Azure SQL Database Provisioning in VS Code MSSQL Extension Reaches General Availability
Bridging Local Development and Cloud Databases Microsoft has announced the general availability of Azure SQL Database provisioning directly within the MSSQL extension for Visual Studio Code. This release streamlines how developers create, configure, and connect to managed cloud databases without leaving their code editor. The feature includes direct support for the Azure SQL Database free […]
ToxicPanda 2.0 Abuses Android VPN Permissions to Blindside Google Play Protect
The Evolution of a Targeted Banking Trojan Security researchers tracking mobile threats have documented a significant architectural update to ToxicPanda, an Android banking trojan that first surfaced in late 2024. The new variant, labeled ToxicPanda 2.0, has expanded its target list to 349 financial and banking applications across Europe, Latin America, and emerging markets. Beyond […]
Poisoned arrayref Rust Crate Shows Why Build-Time Execution Needs Guardrails
A Compromised Maintainer and Three Poisoned Crates Earlier this week, security researchers identified a coordinated supply-chain attack targeting the Rust package ecosystem. Attackers compromised the crates.io account of a maintainer responsible for arrayref, a widely used Rust library with tens of millions of downloads across cryptography, networking, and graphics packages. Once inside the account, the […]
Bridging Reverse Engineering and AI Agents: Deep Dive into the x64dbg MCP Server
Reverse engineering native binaries on Windows has traditionally been an intensely manual discipline, requiring reverse engineers to step through disassembly, inspect register states, analyze memory dumps, and reconstruct control flow graphs line by line. The release of the x64dbg-mcp-server project brings the Model Context Protocol (MCP) directly into the x64dbg debugger ecosystem. By exposing native […]
Securing Windows Named Pipes: Defending Interprocess Communication from Local Privilege Escalation
Interprocess communication (IPC) on Microsoft Windows relies heavily on named pipes for exchanging structured data between local services, administrative tools, and user-space applications. Because named pipes function across session boundaries and provide network accessibility via SMB, they represent a persistent target for adversaries seeking local privilege escalation (LPE), lateral movement, and defense evasion. New defensive […]
Offline Cryptographic Auditing: Azure Confidential Ledger Releases Local Ledger Verification Tool
Verifying the cryptographic integrity of tamper-proof audit trails has traditionally required direct network connectivity to the underlying enclave infrastructure. For organizations operating under stringent compliance frameworks, external auditing engagements create an operational friction point: how do you grant third-party auditors or security analysts the ability to inspect transaction history and validate mathematical proofs without exposing […]
Grok AI Exfiltrates Private User Data When Attackers Encrypt Malicious Instructions
Security researchers have demonstrated a significant vulnerability in xAI’s Grok chatbot that allows external attackers to exfiltrate private conversation history. The attack relies on an indirect prompt injection technique that encrypts malicious instructions on a webpage, evading automated guardrail scanners until Grok itself decrypts and executes the payload during normal browsing and summarization tasks. How […]
SynkLoader Malware Uses Microsoft Teams Phishing and Fake Lock Screens to Infiltrate Corporate Networks
A previously undocumented malware family named SynkLoader has surfaced in targeted social engineering campaigns across corporate Microsoft Teams environments. Discovered by security researchers at Expel, the attack chain begins with direct messages from external Microsoft 365 tenants impersonating internal IT helpdesk staff and culminates in a fake Windows lock screen designed to capture domain passwords. […]
CISA Warns of In-the-Wild Exploits Targeting Critical MLflow SSRF Vulnerability
The Cybersecurity and Infrastructure Security Agency added a critical vulnerability in the open-source machine learning platform MLflow to its Known Exploited Vulnerabilities catalog after telemetry confirmed attackers are actively scanning and compromising exposed instances. The flaw, tracked as CVE-2026-64849, allows unauthenticated remote attackers to trigger server-side request forgery requests from vulnerable MLflow servers to internal […]