Recent Advisories

Severity ID Title Vendor Product Date Type
NONE SCHNEIER:673547...

macOS Kernel Memory Corruption Exploit_SCHNEIER:673547B699E59D9AAC992C5EB8C39A59

A group used Anthropic's Mythos AI model to help find a kernel memory corruption vulnerability and exploit on Apple's M5. News article.

N/A N/A SCHNEIER
NONE SCHNEIER:66AB59...

On AI Security_SCHNEIER:66AB594E5D075EE5A99CA1B8DB7F9CBA

Good report: > **Executive Summary:** Let's say you wanted to make sure that your AI is secure. Can you just maximize the security and privacy ben...

N/A N/A SCHNEIER
NONE SCHNEIER:30646D...

Laurie Anderson Is Quoting Me_SCHNEIER:30646D468527B814F7A29D338BE0CA7F

Not by name, but Laurie Anderson quotes me in one of the tracks of her new album: > My favorite quote is from a cryptologist who said "If you thin...

N/A N/A SCHNEIER
NONE SCHNEIER:636FE7...

Zero-Day Exploit Against Windows BitLocker_SCHNEIER:636FE70CC7FDF2CEE5CE1922DF7FE122

It's nasty, but it requires physical access to the computer: > The exploit, named YellowKey, was published earlier this week by a researcher who g...

N/A N/A SCHNEIER
NONE SCHNEIER:0106E1...

Friday Squid Blogging: Bigfin Squid_SCHNEIER:0106E1E046AEAF90A02057F602F0B689

Article about the bigfin squid. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered. ...

N/A N/A SCHNEIER
NONE SCHNEIER:9D4247...

Bypassing On-Camera Age-Verification Checks_SCHNEIER:9D424713D581DE09B26127F836BE6D8A

Some AI-based video age-verification checks can be fooled with a fake mustache.

N/A N/A SCHNEIER
NONE SCHNEIER:FF87AA...

Upcoming Speaking Engagements_SCHNEIER:FF87AADC60454183463850A4B99FDCE2

This is a current list of where and when I am scheduled to speak: * I’m giving a virtual talk on “The Security of Trust in the Age of AI,” hoste...

N/A N/A SCHNEIER
NONE SCHNEIER:BDA13B...

How Dangerous Is Anthropic’s Mythos AI?_SCHNEIER:BDA13BE3CDD69447CC1022FF7752D898

Last month, Anthropic made a remarkable announcement about its new model, Claude Mythos Preview: it was so good at finding security vulnerabilities...

N/A N/A SCHNEIER
NONE SCHNEIER:D3BD97...

OpenAI’s GPT-5.5 is as Good as Mythos at Finding Security Vulnerabilities_SCHNEIER:D3BD97BFA3C1DE2406C69E498E795BD6

The UK's AI Security Institute evaluated GPT-5.5's ability to find security vulnerabilities, and found that it is comparable to Claude Mythos. Note...

N/A N/A SCHNEIER
NONE SCHNEIER:CAF07F...

Copy.Fail Linux Vulnerability_SCHNEIER:CAF07FC62AB97D4EA5DAA5DD10513756

This is the worst Linux vulnerability in years. > **TL;DR** > > * copy.fail is a Linux kernel local privilege escalation, not a browser or clip...

N/A N/A SCHNEIER