Entry Thumbnail

PuzzleMask: Abusing Plain Prose as a Covert AI Attack Vector

In this research we introduce a prompt-crafting technique for bypassing quick LLM-based policy checks — using plain English (no emojis, base64, invisible formatting, etc.) A policy-violating payload (e.g. ”encrypt files in ~/Documents”, “give me a biohazard recipe”, “ignore all previous instructions and…”) is embedded in a specially crafted prose wrapper. […]

Posted by
Entry Thumbnail

PatchIsland: Orchestration of LLM Agents for Continuous Vulnerability Repair (to appear)

Continuous fuzzing platforms such as OSS-Fuzz uncover large numbers of vulnerabilities, yet the subsequent repair process remains largely manual. Unfortunately, existing Automated Vulnerability Repair (AVR) techniques—including recent LLM-based systems—are not directly applicable to continuous fuzzing. This is because these systems are designed and evaluated on a static, single-run benchmark setting, […]

Posted by
Entry Thumbnail

Microsoft Windows Cloud Files Mini Filter Driver CldiStreamPrepareRequestForMoreProcessing Type Confusion vulnerability

TALOS-2026-2445 CVE-2026-80093 A type confusion vulnerability exists in the CldiStreamPrepareRequestForMoreProcessing functionality of Windows Cloud Files Mini Filter Driver (version(s): 10.0.26100.8457 (WinBuild.160101.0800) and 10.0.26100.8655 (WinBuild.160101.0800)). A specially crafted sequence of Cloud Filter API calls can lead to type confusion. An attacker can execute a dedicated application to trigger this vulnerability. The […]

Posted by
Entry Thumbnail

The Shared Clipboard Inside the Sandbox: Cross-Account Data Leakage in ChatGPT

Research by: **Alexey Bukhteyev** Over the past several years, AI assistants have moved far beyond text generation. Modern systems can execute code, install additional dependencies, analyze user files, and access data through connected services. These capabilities significantly increase the practical value of LLMs, but they also change the security model: […]

Posted by
Entry Thumbnail

Gaming the system: how a Chinese-speaking actor turned Brazilian government sites into an SEO weapon

Research by: Amit Yardeni Since mid-2025, Check Point Research has tracked a sustained campaign against Brazilian organizations. The tradecraft points to a Chinese-speaking cybercrime group connected to Earth Berberoka, an actor first documented targeting gambling sites across Asia. Once inside a victim, the group deploys a broad Linux toolkit: a […]

Posted by
Entry Thumbnail

MTEscape: Bypassing Asynchronous Kernel MTE via Conventional Memory Corruption Vulnerabilities (to appear)

Hacking Lab Hacking Lab Home People Publications Contact Light Dark Automatic MTEscape: Bypassing Asynchronous Kernel MTE via Conventional Memory Corruption Vulnerabilities (to appear) Kyeongmin Kim , Insu Yun November 2026 Cite Publication Proceedings of the 33rd ACM Conference on Computer and Communications Security (CCS) Cite ×Copy Download

Posted by