Qwen: Alibaba Cloud AI Model Family
Qwen is a family of large language models developed by Alibaba Cloud. Hacker House used Qwen 3.6 35B Heretic for inference-fuzzing and…
Qwen is a family of large language models developed by Alibaba Cloud. Hacker House used Qwen 3.6 35B Heretic for inference-fuzzing and…
depthfirst is a cybersecurity research firm that discovered and reported the GitLab RCE vulnerability chain involving the Oj JSON parser. Researcher Yuhang…
Zenity Labs is the AI security company that discovered and responsibly disclosed the AgentForger vulnerability in ChatGPT Workspace Agents.
Assetnote is an attack surface management platform and part of Searchlight Cyber. Researcher Adam Kues discovered the wp2shell vulnerability in WordPress core.
Pwn2Own Berlin is a computer hacking contest held annually, where researchers compete to exploit vulnerabilities in popular software. Rapid7 Labs disclosed CVE-2026-55040…
Miggo's security team discovered and responsibly disclosed two access control vulnerabilities in RabbitMQ that could leak OAuth secrets and expose cross-tenant data.
Binarly is a firmware security company that discovered six new vulnerabilities in U-Boot, including two code-execution flaws. They published advisories BRLY-2026-037 through…
Coinspect identified and disclosed the CryptoJS weak RNG vulnerability, attributing the Ill Bloom wallet drains to it.
kvmCTF is a Google-run bug bounty program focused on KVM vulnerabilities, offering up to $250,000 for guest-to-host escapes. The Januscape exploit was…
Attackers are distributing a data-stealing trojan named ChocoPoC through fake proof-of-concept (PoC) exploit repositories on GitHub, specifically targeting vulnerability researchers. The malware,…