Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
AI Cracks NIST Post-Quantum Finalist in 60 Hours
1+ hour, 43+ min ago (511+ words) The list of post-quantum signature schemes that looked unbreakable until they weren't just got one name longer. Rainbow fell to a laptop in a weekend. SIKE fell in about an hour. HAWK — the last lattice-based candidate standing in NIST's additional…...
AI Agent Finds Firefox JIT Flaw That Also Broke Tor
1+ day, 16+ hour ago (283+ words) Mozilla has patched a JavaScript engine bug that let attackers run code inside Firefox's renderer process, and the Tor Project has now backported the fix to the browser its users rely on for anonymity. The flaw, tracked as CVE-2026-10702 and…...
UnAuth vBulletin RCE Exploit Goes Public Weeks After Patch
1+ day, 18+ hour ago (174+ words) cyberkendra.com UnAuth vBulletin RCE Exploit Goes Public Weeks After Patch A working exploit for a critical vBulletin flaw is now circulating in the open, handing unauthenticated attackers a direct route to running PHP code on forum servers — no account,…...
Microsoft's Cyber AI Beats Frontier Models at Half the Cost
1+ day, 17+ hour ago (420+ words) Follow Cyber Kendra on Google News! | WhatsApp | Telegram Microsoft's answer to AI-powered attackers isn't a bigger model. It's a smaller, cheaper one that already knows what it's hunting for. The company announced MAI-Cyber-1-Flash on Monday, its first model purpose-built…...
North Korea Arrests Its Own Hackers Over Bank Heist
3+ day, 14+ hour ago (146+ words) Follow Cyber Kendra on Google News! | WhatsApp | Telegram The country that built the world's most prolific state hacking program just discovered what every CISO already knows: the people you train to break in can break in anywhere — including your own…...
Public Exploit Lands for GitLab Bug Patched Without a CVE
4+ day, 2+ hour ago (164+ words) Follow Cyber Kendra on Google News! | WhatsApp | Telegram Ruby is supposed to be a memory-safe language. That assumption just cost GitLab administrators six weeks of quiet exposure. Any authenticated user who can push to a project can run it. No…...
Bing Images Bugs Let Anyone Run Code as SYSTEM
5+ day, 3+ hour ago (249+ words) Follow Cyber Kendra on Google News! | WhatsApp | Telegram Microsoft has patched three critical remote code execution flaws, two of them in Bing Images, that allowed anyone on the internet to run commands on production Microsoft servers by uploading a picture....
New "Certighost" Flaw Lets Any Domain User Seize Full Windows Domain
5+ day, 2+ hour ago (258+ words) Follow Cyber Kendra on Google News! | WhatsApp | Telegram Microsoft has patched a serious Active Directory Certificate Services (AD CS) flaw that handed any low-privileged domain user the keys to an entire Windows network. Tracked as CVE-2026-54121 and nicknamed Certighost, the…...
Facebook Wants a Video Selfie to Prove You're Human
5+ day, 4+ hour ago (346+ words) Follow Cyber Kendra on Google News! | WhatsApp | Telegram Meta is asking Facebook users to record their faces again — five years after it deleted more than a billion faceprints and swore off the technology. Meta says the process takes only a…...
Google Lets You Recover a Locked Account With a Selfie
6+ day, 3+ hour ago (321+ words) Follow Cyber Kendra on Google News! | WhatsApp | Telegram Enrollment takes about as long as a Face ID scan. You look into your device camera and follow prompts through what Google describes as a few short, guided head movements, capturing your…...