Recent Advisories

Severity ID Title Vendor Product Date Type
NONE SCHNEIER:30646D...

Laurie Anderson Is Quoting Me_SCHNEIER:30646D468527B814F7A29D338BE0CA7F

Not by name, but Laurie Anderson quotes me in one of the tracks of her new album: > My favorite quote is from a cryptologist who said "If you thin...

N/A N/A SCHNEIER
NONE SCHNEIER:636FE7...

Zero-Day Exploit Against Windows BitLocker_SCHNEIER:636FE70CC7FDF2CEE5CE1922DF7FE122

It's nasty, but it requires physical access to the computer: > The exploit, named YellowKey, was published earlier this week by a researcher who g...

N/A N/A SCHNEIER
NONE SCHNEIER:0106E1...

Friday Squid Blogging: Bigfin Squid_SCHNEIER:0106E1E046AEAF90A02057F602F0B689

Article about the bigfin squid. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered. ...

N/A N/A SCHNEIER
NONE SCHNEIER:9D4247...

Bypassing On-Camera Age-Verification Checks_SCHNEIER:9D424713D581DE09B26127F836BE6D8A

Some AI-based video age-verification checks can be fooled with a fake mustache.

N/A N/A SCHNEIER
NONE SCHNEIER:FF87AA...

Upcoming Speaking Engagements_SCHNEIER:FF87AADC60454183463850A4B99FDCE2

This is a current list of where and when I am scheduled to speak: * I’m giving a virtual talk on “The Security of Trust in the Age of AI,” hoste...

N/A N/A SCHNEIER
NONE SCHNEIER:BDA13B...

How Dangerous Is Anthropic’s Mythos AI?_SCHNEIER:BDA13BE3CDD69447CC1022FF7752D898

Last month, Anthropic made a remarkable announcement about its new model, Claude Mythos Preview: it was so good at finding security vulnerabilities...

N/A N/A SCHNEIER
NONE SCHNEIER:D3BD97...

OpenAI’s GPT-5.5 is as Good as Mythos at Finding Security Vulnerabilities_SCHNEIER:D3BD97BFA3C1DE2406C69E498E795BD6

The UK's AI Security Institute evaluated GPT-5.5's ability to find security vulnerabilities, and found that it is comparable to Claude Mythos. Note...

N/A N/A SCHNEIER
NONE SCHNEIER:CAF07F...

Copy.Fail Linux Vulnerability_SCHNEIER:CAF07FC62AB97D4EA5DAA5DD10513756

This is the worst Linux vulnerability in years. > **TL;DR** > > * copy.fail is a Linux kernel local privilege escalation, not a browser or clip...

N/A N/A SCHNEIER
NONE SCHNEIER:0B7FC1...

LLMs and Text-in-Text Steganography_SCHNEIER:0B7FC13137E484742A941ED61AF5E213

Turns out that LLMs are really good at hiding text messages in other text messages.

N/A N/A SCHNEIER
NONE SCHNEIER:F09DE9...

Friday Squid Blogging: Giant Squid Live in the Waters of Western Australia_SCHNEIER:F09DE98DCE41B0311899636D05AC4247

Evidence of them has been found by analyzing DNA in the seawater. As usual, you can also use this squid post to talk about the security stories in...

N/A N/A SCHNEIER