Recent Advisories

Severity ID Title Vendor Product Date Type
NONE SCHNEIER:3D9FA6...

Poor Password Choices_SCHNEIER:3D9FA625B4F2B33ADC3DEA45594DB883

Look at this: McDonald's chose the password "123456" for a major corporate system.

N/A N/A SCHNEIER
NONE SCHNEIER:7DA025...

Friday Squid Blogging: Bobtail Squid_SCHNEIER:7DA025A7F900D9499235597356C4CE0A

Nice short article on the bobtail squid. As usual, you can also use this squid post to talk about the security stories in the news that I haven't ...

N/A N/A SCHNEIER
NONE SCHNEIER:628CF6...

I’m Spending the Year at the Munk School_SCHNEIER:628CF6404487FA572A14AB5BA05E940F

This academic year, I am taking a sabbatical from the Kennedy School and Harvard University. (It's not a real sabbatical--I'm just an adjunct--but ...

N/A N/A SCHNEIER
NONE SCHNEIER:EE6BC6...

AI Agents Need Data Integrity_SCHNEIER:EE6BC6FAD07572A0FE2CABA1AC546772

Think of the Web as a digital territory with its own social contract. In 2014, Tim Berners-Lee called for a "Magna Carta for the Web" to restore th...

N/A N/A SCHNEIER
NONE SCHNEIER:0C3FFF...

Jim Sanborn Is Auctioning Off the Solution to Part Four of the Kryptos Sculpture_SCHNEIER:0C3FFF8773BE44538D8879E377229F64

Well, this is interesting: > The auction, which will include other items related to cryptology, will be held Nov. 20. RR Auction, the company arra...

N/A N/A SCHNEIER
NONE SCHNEIER:ABBBED...

Subverting AIOps Systems Through Poisoned Input Data_SCHNEIER:ABBBED02DFFBF2186692EAABF531A9E9

In this input integrity attack against an AI system, researchers were able to fool AIOps tools: > AIOps refers to the use of LLM-based agents to g...

N/A N/A SCHNEIER
NONE SCHNEIER:657F95...

Zero-Day Exploit in WinRAR File_SCHNEIER:657F9597A40B5181C2B0F0DFF8879995

A zero-day vulnerability in WinRAR is being exploited by at least two Russian criminal groups: > The vulnerability seemed to have super Windows po...

N/A N/A SCHNEIER
NONE SCHNEIER:0C77CC...

Eavesdropping on Phone Conversations Through Vibrations_SCHNEIER:0C77CCF3D53B96DE5F1308CB3FA31928

Researchers have managed to eavesdrop on cell phone voice conversations by using radar to detect vibrations. It's more a proof of concept than anyt...

N/A N/A SCHNEIER
NONE SCHNEIER:001BD9...

Friday Squid Blogging: Squid-Shaped UFO Spotted Over Texas_SCHNEIER:001BD918F67B4ED113E9E87DDB225015

Here's the story. The commenters on X (formerly Twitter) are unimpressed. As usual, you can also use this squid post to talk about the security st...

N/A N/A SCHNEIER
NONE SCHNEIER:EDD1F7...

Trojans Embedded in .svg Files_SCHNEIER:EDD1F74BF10CFC7CA05E5D74E4029FB5

Porn sites are hiding code in .svg files: > Unpacking the attack took work because much of the JavaScript in the .svg images was heavily obscured ...

N/A N/A SCHNEIER