Latest

6/recent/ticker-posts

Header Ads Widget

Abliterated Model Bug Bounty Hunting ๐Ÿ›, AliExpress Audio Fingerprinting ๐ŸŽง, JFrog Vulnerability ๐Ÿธ

Tests of Gemma and Qwen builds found that abliterated variants approved of far more vulnerability candidates. In FreeBSD’s sys/rpc, one Heretic ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌  ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ 

TLDR

Together With Flashpoint

TLDR Information Security 2026-09-02

AI isn't just making attacks smarter. It's making them cheaper (Sponsor)

69% cheaper for initial access in the black hat economy, that is. No wonder verified ransomware victims are up 45% YoY.

Flashpoint's Global Threat Intelligence Report (Midyear Edition) is built on 3.9 petabytes of primary-source data collected directly from the spaces where this activity happens. Readers will learn:

  • How the threat landscape is shifting from human-led campaigns to AI-led, machine-speed exploitation
  • Why 19% of the 21,667 vulnerabilities disclosed in H1 2026 already had public or functional exploit code
  • The five groups behind 44% of all attacks

Read the full report

๐Ÿ”“

Attacks & Vulnerabilities

Aesto Healthcare Data Breach Impacts 9.5 Million People (2 minute read)

Aesto reported that unauthorized access to part of its AWS infrastructure exposed data tied to 9,540,683 people. The intrusion ran from about December 2 to December 18, 2025. Records may include medical, insurance, financial, and government ID data. Aesto confirmed affected files in May, notified clients in June, and offered 24 months of Experian IdentityWorks.
Recently Patched PaperCut Zero-Days Used in Data Theft Attacks (2 minute read)

PaperCut Software announced two new vulnerabilities that have been patched in its PaperCut NG and MF print management software. The vulnerabilities involve an authentication bypass vulnerability which can be chained with a separately disclosed vulnerability to achieve RCE. Threat intelligence firm Defused reports that the authentication bypass vulnerability is being exploited by attackers for data theft.
Hackers Target AWS root Accounts at 150+ Organizations With Password Spraying Attack (2 minute read)

Datadog Security Labs uncovered a password spraying campaign targeting AWS root accounts. Datadog stated that it has not identified a successful login yet, making the attacker's motive unclear. AWS root account logins require an account email, so it is possible that the attackers have access to a dataset or exposed email addresses that they are using in their campaign.
๐Ÿง 

Strategies & Tactics

Don't Let Abliteration Abliterate Your Bug Hunting: Discovering Verdict Bias in Uncensored Models (17 minute read)

Tests of Gemma and Qwen builds found that abliterated variants approved of far more vulnerability candidates. In FreeBSD's sys/rpc, one Heretic build marked 138 of 144 candidates VALID, while the base marked 26 of 40. The Heretic run missed CVE-2026-4747 after spending its scan on false findings. A false heap-overflow claim survived because abliterated builds described the buffer bound, then still confirmed an overflow.
Can AI Create PLC Attacks? Yes, But It's Not That Easy Yet (8 minute read)

Forescout used an AI model to port an RCE exploit from a WAGO 750-852 PLC to a 750-831 PLC running the same vulnerable Nucleus FTP server (CVE-2021-31886). The AI needed constant human guidance: correcting false leads, supplying disassembly context, and running Ghidra scripts it wrote itself. The final exploit stage took 8 hours 32 minutes and cost $535.74 in API tokens. A follow-up attempt to build a C2 implant bricked the PLC. Once code execution worked, the AI wrote working ICMP and UDP payloads within minutes.
Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams (11 minute read)

Threat actors are executing voice phishing campaigns by registering external .onmicrosoft[.]com tenants with fake help desk names, initiating Microsoft Teams chats, and escalating to calls to trick victims into launching remote management tools. Following initial access, the attackers deliver distinct payloads that include an obfuscated PowerShell RAT designed to disable AMSI via the amsiInitFailed flag, and a Python-based execution chain that attempts PetitPotam coercion against domain controllers over port 445. To mitigate this threat, organizations must restrict external Teams access by default, block the associated payload hash, and proactively hunt for rapid chat-to-call sequences originating from commercial VPN nodes.
๐Ÿง‘‍๐Ÿ’ป

Launches & Tools

Humanbound (GitHub Repo)

Open-source adversarial testing engine, SDK, and CLI for AI agents. Attack your agent the way real users and attackers will: live endpoints, multi-turn conversations, and tool abuse. Then turn every failure into a firewall rule. Runs locally or against the Humanbound Platform. No login required to start.
open-kritt (GitHub Repo)

open-kritt is an open-source, self-hosted vulnerability research platform that turns focused AI analysis into de-duplicated, ranked findings with configurable validation and enrichment.
Microburst (GitHub Repo)

MicroBurst includes functions and scripts that support Azure Services discovery, weak configuration auditing, and post-exploitation actions such as credential dumping. It is intended to be used during penetration tests where Azure is in use.
๐ŸŽ

Miscellaneous

British Public Oppose Secret Surveillance Powers and Want Strong Protections for Encrypted Communications (3 minute read)

CDT polling of 2,000 UK adults found 53% judge encryption-access security risks greater than law-enforcement benefits. 84% fear hidden access would create exploitable vulnerabilities, fraud, data leaks, and cybercrime. The findings follow Apple's tribunal challenge to UK Technical Capability Notices after a demand for encrypted iCloud access.
Cato CTRL Insights: When Trust Becomes the Payload in a Fake Codex ClickFix Campaign (8 minute read)

Sponsored Codex searches routed macOS users to Google Sites lures with attacker-controlled iframes. Fake installers copied Terminal commands that decoded URLs, fetched shell loaders, and launched Mach-O payloads from /tmp/helper. The chain sent event=pasted telemetry, cleared quarantine attributes with xattr -c, and showed delivery overlap with AMOS.

Quick Links

1Password research: 40% of developers grant AI agents persistent access (Sponsor)

Replace persistent access with Zero Standing Privileges: Just-in-time, just-enough access, scoped to the task, and automatically revoked when work ends.
Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild (2 minute read)

Attackers reportedly began exploiting CVE-2026-82329 days after disclosure, minting admin tokens in vulnerable JFrog Artifactory deployments.
AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones (3 minute read)

AliExpress scripts generate inaudible WebAudio sawtooth signals, collect frequency data, and query display size, memory, plugins, WebGL, and mouse activity.

Love TLDR? Tell your friends and get rewards!

Share your referral link below with friends to get free TLDR swag!
Track your referrals here.

Want to advertise in TLDR? ๐Ÿ“ฐ

If your company is interested in reaching an audience of cybersecurity professionals and decision makers, you may want to advertise with us.

Want to work at TLDR? ๐Ÿ’ผ

Apply here, create your own role or send a friend's resume to jobs@tldr.tech and get $1k if we hire them! TLDR is one of Inc.'s Best Bootstrapped businesses of 2025.

If you have any comments or feedback, just respond to this email!

Thanks for reading,
Prasanna Gautam, Eric Fernandez & Sammy Tbeile


Manage your subscriptions to our other newsletters on tech, startups, and programming. Or if TLDR Information Security isn't for you, please unsubscribe.

Post a Comment

0 Comments