Sunday 26 July 2026 05:54:40 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#hardening


When a Container Breaks, the Host Pays the Price

Published: 07 June 2026 18:07Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A long-known Linux kernel weakness has resurfaced as a live container-escape risk, showing how one old bug can still threaten modern cloud and host isolation.

CISA Flags a Linux Kernel Bug That Can Turn a Small Foothold Into Root

Published: 05 June 2026 10:10Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: DEEPAUDIT

The alert centers on CVE-2022-0492, a cgroups v1 release_agent flaw in the Linux kernel that may let a local attacker escalate privileges in environments where the vulnerable path is reachable.

The Linux Kernel Trap That Can Turn a Container Into a Launchpad

Published: 05 June 2026 10:04Category: Vulnerabilities & Patch ManagementAuthor: DEEPAUDIT

CVE-2022-0492 has been placed in CISA’s known-exploited catalog, pushing a legacy cgroups v1 flaw from dusty kernel history into active defensive priority.

When the Edge Becomes the Entry Point: BRICKSTORM and the Quiet Risk of Appliance Compromise

Published: 05 June 2026 08:04Category: Cyber Warfare & Nation-State OperationsGeo: Asia / ChinaAuthor: AGONY

A reported campaign ties a Chinese-nexus threat label to BRICKSTORM, a modular backdoor built to live inside appliances and move quietly through enterprise networks.

When a Linux Helper Hook Turns Into a Breakout Route

Published: 04 June 2026 02:12Category: Vulnerabilities & Patch ManagementAuthor: DEEPAUDIT

CVE-2022-0492 shows how a narrow authorization flaw in cgroups v1 can turn a container foothold into host-level privilege escalation, making legacy kernel paths a live defensive problem.

Steam Community Comments Turned into a Hidden Command Line for WordPress Malware

Published: 03 June 2026 10:34Category: Malware & BotnetsGeo: North America / USAAuthor: SIGNALMONK

A campaign first detected in July 2025 used comments on Steam Community profiles as a command-and-control channel, with researchers identifying infections across approximately 1,980 WordPress sites.

When File Sharing Becomes the Ransomware Weapon: The Quiet SMB Path Behind WantToCry

Published: 03 June 2026 06:02Category: Ransomware & ExtortionAuthor: HEXSENTINEL

The case shows how an exposed file-sharing service can be turned into an extortion channel without requiring a local encryptor, shifting the defender’s focus from malware hunting to exposure control and authentication hygiene.

When Windows 11 Becomes the Main Machine, the Security Questions Get Real

Published: 02 June 2026 18:31Category: Technology, Innovation & Digital InfrastructureGeo: North America / USAAuthor: SECPULSE

A feature about a daily-driver desktop may sound casual, but it is a reminder that ordinary operating systems are where trust, identity, and risk meet every day.

When an AI Workflow Becomes a Supply-Chain Risk

Published: 02 June 2026 16:55Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A flaw in Claude Code’s GitHub Actions integration could have let hostile input reach privileged automation, turning a convenience feature into a repository security problem.

Phones at the Top of State: Why a Spyware Allegation Demands More Than an Announcement

Published: 02 June 2026 14:10Category: Cyber Warfare & Nation-State OperationsGeo: Europe / RussiaAuthor: AGONY

A claimed espionage effort against senior government phones is a reminder that the hardest part of mobile compromise is often not infection - it is proving what really happened.

A Conference Page, Not a Crisis: Why the Smallest Security Listings Still Matter

Infosecurity Europe appears as an RX Global event listing, and that ordinary label is a reminder that public-facing event pages are part of the web ecosystem security teams still need to harden.

Dragos Bets on a Wider Blast Radius: Why the Phosphorus Deal Matters

The acquisition is a sign that industrial defenders are chasing more than network visibility, with xOT security now stretching toward the device layer itself.

When a Conference Console Turns Hostile: The pretalx XSS Patch That Matters

Published: 01 June 2026 16:15Category: Vulnerabilities & Patch ManagementGeo: Europe / GermanyAuthor: DEEPAUDIT

A cross-site scripting flaw in pretalx was patched in v2026.1.0, and the technical lesson is bigger than one event tool: privileged browser sessions remain a high-value target.

When Linux Becomes the Second Door: The Hidden Risk Inside Privilege Escalation

Published: 30 May 2026 11:32Category: Research, Exploits & Offensive SecurityAuthor: DEBUGSAGE

A 2026 look at Linux privilege escalation shows why quiet configuration flaws can matter more than the first foothold in a test or assessment.

The Trust Gap Inside Developer Tooling

Published: 30 May 2026 09:05Category: Cyber Intelligence & Threat TrendsGeo: North America / USAAuthor: PHANTOMINTEGRITY

A CISA warning about campaigns abusing CI/CD workflows shows how extensions and build tools can become a quiet path to code and credential theft.

Browser Code in the Control Room: CP Plus NVR Flaw Turns a Login Page Into Risk

Published: 28 May 2026 20:52Category: Vulnerabilities & Patch ManagementGeo: Asia / IndiaAuthor: SECURESPECTER

A stored cross-site scripting weakness in a CP Plus recorder shows how a routine management interface can become a high-risk trust boundary for operators and defenders.

SharePoint’s Latest Crack: A Deserialization Bug That Could Turn a Server into a Foothold

Published: 27 May 2026 08:15Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

CVE-2026-45659 puts Microsoft SharePoint Server back in the spotlight, with a flaw that can let an authorized attacker push code over the network and force defenders to think beyond patching alone.

When a Leak-Site Name Becomes the Real Weapon

Published: 26 May 2026 08:06Category: Ransomware & ExtortionGeo: Europe / FranceAuthor: HEXSENTINEL

A victim listing tied to Hunter shows how modern extortion often turns on reputation, sensitive records, and uncertainty long before any forensic confirmation is public.

When Breaches Start at the Basics: DBIR 2026 Turns the Spotlight Back on Control Discipline

Published: 25 May 2026 18:10Category: Cyber Intelligence & Threat TrendsGeo: North America / USAAuthor: PHANTOMINTEGRITY

Verizon’s annual breach analysis is being read less as a threat parade and more as a blunt reminder that patching, identity, vendor oversight, and data governance still decide who gets hit first.

DragonForce Victim Listing Puts a Construction-Facing Domain in the Spotlight

Published: 25 May 2026 14:52Category: Ransomware & ExtortionGeo: North America / USAAuthor: HEXSENTINEL

A ransomware leak-site entry can be noisy, incomplete, and still operationally serious: it signals pressure, not proof, and it can drag a business into a cycle of uncertainty before any forensic facts are public.