Tweet Teratas untuk #ExploitDev
π¨ another potato just dropped
CouchPotato: SeImpersonate β SYSTEM
ETW + AMSI patched. indirect syscalls.
service account or admin β NT AUTHORITY\SYSTEM
https://t.co/1ODkC0yIn9
#ADSecurity #ExploitDev #InfoSec
π¨ CVE-2026-9586 hit in the wild
Sangoma Switchvox: unauth SQLi β RCE on /pa
~4k boxes on Shodan. honeypots already catching real traffic.
https://t.co/gkltnBkYiU
#VulnerabilityResearch #ExploitDev #InfoSec

π¨ PaperCut NG: patch β unauth RCE with Claude Code
10 prompts. 293 tool calls. ~90 minutes to a working chain.
auth bypass β SQLi β file write β code exec
then it found a bypass on the emergency patch overnight.
https://t.co/cWS9gF9KOL
#AIRedTeam #ExploitDev #InfoSec

A crash is not failure. It is the program explaining its boundaries.
#exploitdev #BinaryExploitation #VulnResearch #AppSec #InfoSec
Hii, just published a new write-up on exploiting a remote format string vulnerability.
Code and PoC here: https://t.co/51lotqru2Y
#CTF #CyberSecurity #pwntools #ExploitDev
π¨ CVE-2026-0768 | Langflow | code injection RCE | CVSS 9.8 | ITW
unauth POST /api/v1/validate/code
code param β Python exec as root
ZDI-26-034, published as 0day
canaries already catching credential harvest traffic
https://t.co/LXlUxfCsjZ
#CVE #AIRedTeam #ExploitDev

π¨ root on a $20k Unitree G1 from Bluetooth range
wormable BLE chain. no pairing needed.
AES key leak β WiFi hijack β chatbot path traversal β BSS overflow β system() as root
$6.7k bounty. CVE-2026-76639 / 76640
https://t.co/zcIQQQPgac
#VulnerabilityResearch #ExploitDev #InfoSec
π¨ GeoNetwork pre-auth RCE chain
unauth formatter upload + unsafe Saxon XSLT = reverse shell
121 gov / agency deployments across 39 countries got hit with the disclosure
all patched now
https://t.co/VyyTI5l1hR
#VulnerabilityResearch #ExploitDev #InfoSec

π¨ another Nightmare 0day PoC
HardBreacher: Kaspersky Endpoint EoP
UI process takeover β SYSTEM
drops System32 DLL with full user perms
fully patched Win11 25H2 + KES 14.0.0.504
https://t.co/D1PmDCWUOf
#VulnerabilityResearch #ExploitDev #InfoSec @MSNightmare2000

π¨ CVE-2026-68820 | Windows AFD.sys (WinSock) | use-after-free EoP | CVSS 7.0 | ITW
local LPE to SYSTEM. Lazarus used it in Operation Dream Job to drop FudModule.
on CISA KEV.
https://t.co/1Sa6SajI6W
#CVE #Windows #ExploitDev
IIS AppPool RCE is not the end of the story.
AppPool hits AD CS RPC β Windows promotes it to the machine account β Machine cert β TGT β S4U2Self admin. no Potato required.
https://t.co/3fgCjnYBs9
#ADSecurity #ExploitDev #InfoSec

π¨ another Nightmare 0day PoC just dropped
PrettyPrague: Avast / GenDigital sandbox EoP
SAM dump + full SYSTEM shell
works on fully patched Avast + Win11 25H2
likely hits AVG / Norton too
https://t.co/E3bqfNwlXv
#VulnerabilityResearch #ExploitDev #InfoSec @MSNightmare2000
Into Windows kernel exploitation and offensive security research?
Check out our technical blog: https://t.co/UwgSHm9Fr1
#KernelExploit #ExploitDev #WindowsInternals #WindowsSecurity #ExploitResearch #VulnerabilityResearch #RedTeam #CyberSecurity #infosec #pentest

π¨ Ruby 4.0.6 | universal Marshal.load RCE gadget chain
one unsafe deserialize β command exec
works back to 3.3. no app gems required. Gem::SpecFetcher kickoff + new gadgets
https://t.co/wkP15sX9FQ
#AppSec #ExploitDev #InfoSec

π¨ Redis server RCE PoC dropped
use-after-free in tlsProcessPendingData()
patched in 8.8.2
https://t.co/twh7aDefYl
#ExploitDev #BinarySecurity #InfoSec
π¨ CVE-2026-81578 + CVE-2026-82078 | PaperCut NG/MF | pre-auth RCE | actively exploited
auth bypass in web mgmt β unsafe dynamic class load β SYSTEM under pc-app.exe
Huntress reproduced the full chain. emergency patches out.
https://t.co/7Buz1o0vfR
#CVE #ExploitDev #InfoSec
π¨ another Nightmare 0day PoC just dropped
GreenSection: nvidia user-mode memory corruption
global section in BaseNamedObjects is world R/W, reused at runtime β OOB write
cross-user boundary, can hit dwm
https://t.co/crpD8r5hjr
#VulnerabilityResearch #ExploitDev #InfoSec
I don't collect CVEs. I collect lessons from how assumptions fail.
#ExploitDev #VulnResearch #CyberSecurity #AppSec
Get Your FREE Scan Credit.
Link: https://t.co/rpTOf7fmXb
#CyberSecurity #InfoSec #CVE #VulnerabilityResearch #ExploitDev #scanner #AI

Tagar Terakhir Terlihat di Sotwe
TeenMomsOG
Dilihat dari India
colmek dildo
Dilihat dari Malaysia
hijab #dance
Dilihat dari Germany
loanluan me con
Dilihat dari Vietnam
facesitting ebony
Dilihat dari United States
huyphong
Dilihat dari Vietnam
momson()****
Dilihat dari Turkey
rizetravesti
Dilihat dari Germany
sarap
Dilihat dari Philippines
ε₯³δΈδ½
Dilihat dari United States
Tren untuk Anda
Pengguna Paling Populer

Elon Musk 
@elonmusk
241.5M pengikut

Barack Obama 
@barackobama
119M pengikut

Cristiano Ronaldo 
@cristiano
114M pengikut

Donald J. Trump 
@realdonaldtrump
111.8M pengikut

Narendra Modi 
@narendramodi
107.2M pengikut

Rihanna 
@rihanna
98.7M pengikut

NASA 
@nasa
92.4M pengikut

Justin Bieber 
@justinbieber
91.8M pengikut

KATY PERRY 
@katyperry
89.8M pengikut

Taylor Swift 
@taylorswift13
83.7M pengikut

Lady Gaga 
@ladygaga
75.2M pengikut

Virat Kohli 
@imvkohli
73M pengikut

Kim Kardashian 
@kimkardashian
70.8M pengikut

YouTube 
@youtube
68.8M pengikut

Neymar Jr 
@neymarjr
66M pengikut

Bill Gates 
@billgates
65M pengikut

Selena Gomez 
@selenagomez
62.9M pengikut

The Ellen Show
@theellenshow
62.3M pengikut

CNN 
@cnn
61.8M pengikut

X 
@x
60.7M pengikut





