Introducing ENDGINX - 5 CVEs in NGINX with open models.
We let loose GLM 5.1 and 5.2 by @Zai_org on the NGINX codebase.
The work resulted in six fixed vulnerabilities across five CVEs: CVE-2026-28755, CVE-2026-42926, CVE-2026-9256, CVE-2026-42055, and CVE-2026-42533.
First of our open-model vulnerability research series.
https://t.co/qxnqOxt1Dc
CVE-2026-54121 (Certighost) enables authenticated low-privileged users to escalate privileges through Microsoft AD CS, potentially leading to full Active Directory compromise.
This repository provides a technical analysis of the vulnerability, attack chain, exploitation prerequisites, detection opportunities, mitigation guidance, and a PoC implementation for authorized security testing.
https://t.co/wiJalC6EyM
📌 Researcher Claims Working Jailbreak on Top AI Models Including GPT-5.6, Claude Opus 5, and Fable
Source: https://t.co/boP6OsVyNy
A well-known AI red teamer claims to have developed a universal jailbreak that works against leading large language models, including heavily guarded flagships such as GPT-5.6 Sol, Claude Opus 5, and Fable.
In a public post on X, Pliny the Liberator described the technique as effective “on ALL models” and across every category he tested. He argued that, because of how the method works, it may be extremely difficult or even impossible to fully patch.
Unlike many jailbreak drops that go straight to open source, @elder_plinius said he is withholding the full technique for now. His stated goal is a responsible disclosure window so AI labs, red teamers, safety researchers, and policymakers can review the issue before it spreads widely.
CVE-2026-54121 (Certighost) enables authenticated low-privileged users to escalate privileges through Microsoft AD CS, potentially leading to full Active Directory compromise.
This repository provides a technical analysis of the vulnerability, attack chain, exploitation prerequisites, detection opportunities, mitigation guidance, and a PoC implementation for authorized security testing.
https://t.co/wiJalC6EyM
This repo contains a PoC for CVE-2023-36003, a critical security feature bypass vulnerability affecting Windows Defender Exploit Protection.
https://t.co/IkqJQl4IFz
CVE-2026-43499 PoC Scanner
This repository contains a Go-based scanner and proof-of-concept implementation for a Linux kernel vulnerability related to CVE-2026-43499. The project is intended for research, defensive analysis, and authorized security testing only