01/26

hacking clawdbot and eating lobster souls

http://x.com/i/article/2015345595687583744
hacking clawdbot and eating lobster souls

Bypassing Windows Administrator Protection - Project Zero

https://projectzero.google/2026/26/windows-administrator-protection.html
Bypassing Windows Administrator Protection - Project Zero

CISA says critical VMware RCE flaw now actively exploited

https://www.bleepingcomputer.com/news/security/cisa-says-critical-vmware-rce-flaw-now-actively-exploited/
CISA says critical VMware RCE flaw now actively exploited

Abusing Windows Audio for Local Privilege Escalation | by S1lky | Jan, 2026 | Medium

https://medium.com/@S.1.l.k.y/abusing-windows-audio-for-local-privilege-escalation-1d59440116cb
Abusing Windows Audio for Local Privilege Escalation | by S1lky | Jan, 2026 | Medium

using bmp polyglots to get rce

https://sylvie.fyi/posts/hitcon-2025/
using bmp polyglots to get rce

Advisory - Check Point Harmony Local Privilege Escalation (CVE-2025-9142)

https://blog.amberwolf.com/blog/2026/january/advisory---check-point-harmony-local-privilege-escalation-cve-2025-9142/
Advisory - Check Point Harmony Local Privilege Escalation (CVE-2025-9142)

clawdbot-gw - Shodan Search

https://www.shodan.io/search?query=clawdbot-gw
clawdbot-gw - Shodan Search

⚡ Weekly Recap: Firewall Flaws, AI-Built Malware, Browser Traps, Critical CVEs & More

https://thehackernews.com/2026/01/weekly-recap-firewall-flaws-ai-built.html
⚡ Weekly Recap: Firewall Flaws, AI-Built Malware, Browser Traps, Critical CVEs & More

địt mẹ mày morphisec: When Malware Authors Taunt Security Researchers

https://profero.io/blog/dit-me-may-morphisec-when-malware-authors-taunt-security-researchers
địt mẹ mày morphisec: When Malware Authors Taunt Security Researchers

Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code

https://thehackernews.com/2026/01/malicious-vs-code-ai-extensions-with-15.html
Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code

Hackers can bypass npm’s Shai-Hulud defenses via Git dependencies

https://www.bleepingcomputer.com/news/security/hackers-can-bypass-npms-shai-hulud-defenses-via-git-dependencies/
Hackers can bypass npm’s Shai-Hulud defenses via Git dependencies

(1) X

http://x.com/i/article/2015393121610469376
(1) X

GitHub - SafeBreach-Labs/CVE-2026-24061: Exploitation of CVE-2026-24061

https://github.com/SafeBreach-Labs/CVE-2026-24061
GitHub - SafeBreach-Labs/CVE-2026-24061: Exploitation of CVE-2026-24061

Konni Hackers Deploy AI-Generated PowerShell Backdoor Against Blockchain Developers

https://thehackernews.com/2026/01/konni-hackers-deploy-ai-generated.html
Konni Hackers Deploy AI-Generated PowerShell Backdoor Against Blockchain Developers

Cloudflare misconfiguration behind recent BGP route leak

https://www.bleepingcomputer.com/news/security/cloudflare-misconfiguration-behind-recent-bgp-route-leak/
Cloudflare misconfiguration behind recent BGP route leak