#memory.


WordPress Backdoor Rebuilds Itself After Cleanup Using Files, Database, and Shared Memory

Oct 1, 2026 // 17:40

Cybersecurity researchers have shed light on a WordPress compromise in which threat actors deployed multiple persistence mechanisms to ensure that the final payload kept returning […]

OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted

Sep 30, 2026 // 11:10

A High-severity OpenSSL flaw can leak heap memory to the other side of a DTLS connection or crash the program, OpenSSL said on September 29 […]

New Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing Defenses

Sep 29, 2026 // 20:00

A group of academics from VUSec and Scuola Superiore Sant’Anna have disclosed details of a new Spectre CPU vulnerability variant that affects Just-In-Time (JIT) engines […]

New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory

Sep 22, 2026 // 14:42

A new flaw in the Linux kernel’s KVM virtualization code for ARM64 processors can leave a freed piece of host memory exposed to a guest […]

F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans

Sep 9, 2026 // 10:51

Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, […]

AI Recommendation Poisoning: How “Ask AI” Buttons Silently Alter LLM Memory

Aug 6, 2026 // 14:39

A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a […]

Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI Memory

Jul 29, 2026 // 19:50

Cybersecurity researchers have flagged a maximum-severity security flaw in Ruflo, an open-source agent meta-harness for Anthropic Claude Code and OpenAI Codex, that could result in […]

Malicious sites use JavaScript to build malware in browser memory

Jul 25, 2026 // 18:36

A massive malvertising campaign is using fake Solana, Luno, and TradingView webpages with malicious JavaScript that instructs browsers to assemble malware directly in memory. The […]

HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload

Jul 18, 2026 // 00:37

A vulnerability dubbed HollowByte allows unauthenticated attackers to trigger a denial-of-service (DoS) condition on OpenSSL servers with a malicious payload of just 11 bytes. The […]

OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests

Jul 18, 2026 // 00:23

Eleven bytes will make an unpatched OpenSSL server set aside up to 131 KB of memory for a message that never arrives. On the glibc […]

1 2 Next