CVE-2026-43503 Exploit Turns Kernel Memory Optimization Into Root Access

JFrog published the first working exploit for CVE-2026-43503, a Linux kernel flaw that lets local attackers overwrite file backed memory through cloned network packets to gain root access without leaving disk traces.

The Latest

Breaking News and Alerts

Researchers Trick ChatGPT into Exposing System Files via Path Traversal

A researcher demonstrated a four step exploit chain using social engineering and path traversal to access restricted system files in ChatGPT's sandboxed environment.

Spotlight

Cybersecurity Profiles and Stories

Enriching Cyber Threat Intelligence with Contextual Data

The integration automatically enriches IP addresses, domains, and URLs with contextual risk scoring, infrastructure relationships, and phishing analysis within the OpenCTI knowledge graph.

Campaign Launches 81 Million Password Spray Attempts Against Microsoft 365 Tenants

Huntress researchers observed a password spraying campaign that used valid credentials from past breaches and an OAuth flaw to compromise 78 Microsoft 365 accounts across 64 organizations.

FTC fines Amazon $2.25 million for blocking fraud victims from obtaining transaction records

The FTC alleged that Amazon customer service agents routinely blocked identity theft victims from accessing evidence of fraudulent transactions by citing privacy and security reasons.

Malicious WhatsApp VBScript Lures Victims by Posing as Financial Documents

Attackers are using compromised WhatsApp accounts to distribute malicious VBScript files disguised as financial documents, leading to the unauthorized installation of remote management software.

Features

Research and Thought Leadership