Hackernews posts about RCE
- Actively exploited sandbox RCE in all Chromium versions (nvd.nist.gov)
- Forgejo <=16.0.3 Critical RCE (codeberg.org)
- Plugin4Shell – Zero Click RCE Vulnerability found in top four coding agents (www.air.security)
- HEIF Heist: image parser RCE exploit (heif-heist.com)
- Arista Networks Arbitrary RCE Vulnerability (www.arista.com)
- AI coding agents' 0-click RCE flaw could hand attackers keys to the kingdom (www.theregister.com)
- Unauthenticated RCE in Telerik UI (tantosec.com)
- Wordfence Argus Finds 6 Step Critical RCE in Avada Theme with 1M Sales (www.wordfence.com)
- We Raced Seven AI Models to RCE (enclave.ai)
- Log4j2 0-Day (github.com)
- Shopify is moving from React Native back to Swift and Kotlin (shopify.engineering)
- Nitter and XCancel receive cease and desist notices (github.com)
- Android 17 is the first since 3.x to add new APIs without releasing to the AOSP (grapheneos.social)
- Nitter and XCancel resume service after legal advice (github.com)
- Get your Windows license refund (en.refund4freedom.org)
- I resigned from Anthropic today (twitter.com)
- Claude Code now reads AGENTS.md if there is no Claude.md (code.claude.com)
- LibreOffice breaks download records after declaring it has no AI features (manualdousuario.net)
- Oceans hit highest temperature on record (www.bbc.com)
- There's no reason for software to be slow anymore (danluu.com)
- Isar Aerospace reaches orbit and deploys payloads on second flight (isaraerospace.com)