<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>SecurityHorrors | Blog</title><description>Stories you never want to feel on your own skin</description><link>https://securityhorrors.com/</link><language>en-us</language><item><title>Megalodon: 5,561 Repos Swallowed in Six Hours</title><link>https://securityhorrors.com/all/github-megalodon-ci-backdoor/</link><guid isPermaLink="true">https://securityhorrors.com/all/github-megalodon-ci-backdoor/</guid><description>TLDR and details on the Megalodon supply chain attack mass-backdooring GitHub repositories via malicious CI/CD workflow commits.</description><pubDate>Fri, 22 May 2026 00:09:00 GMT</pubDate></item><item><title>Chromium: The Tab That Never Really Closed</title><link>https://securityhorrors.com/all/chromium-background-js-after-close/</link><guid isPermaLink="true">https://securityhorrors.com/all/chromium-background-js-after-close/</guid><description>TLDR and details on a Chromium vulnerability allowing attackers to run JavaScript in the background even after the browser is closed.</description><pubDate>Fri, 22 May 2026 00:06:00 GMT</pubDate></item><item><title>BIND 9: Three Cracks in the Resolver Wall</title><link>https://securityhorrors.com/all/bind9-dns-cpu-denial-of-service/</link><guid isPermaLink="true">https://securityhorrors.com/all/bind9-dns-cpu-denial-of-service/</guid><description>TLDR and affected version summary for three BIND 9 DNS resolver vulnerabilities causing denial of service via high CPU usage.</description><pubDate>Fri, 22 May 2026 00:03:00 GMT</pubDate></item><item><title>Drupal: The Postgres Backdoor Query</title><link>https://securityhorrors.com/all/drupal-postgresql-sql-injection/</link><guid isPermaLink="true">https://securityhorrors.com/all/drupal-postgresql-sql-injection/</guid><description>TLDR and affected version summary for CVE-2026-9082, a SQL injection vulnerability in Drupal affecting PostgreSQL deployments.</description><pubDate>Fri, 22 May 2026 00:00:00 GMT</pubDate></item><item><title>GitHub: The Extension That Opened the Vault</title><link>https://securityhorrors.com/all/github-malicious-extension-repo-breach/</link><guid isPermaLink="true">https://securityhorrors.com/all/github-malicious-extension-repo-breach/</guid><description>TLDR and impact summary for the GitHub internal repository breach caused by a malicious VS Code extension installed by a GitHub developer.</description><pubDate>Wed, 20 May 2026 00:08:00 GMT</pubDate></item><item><title>Composer: Tokens Spilled on the CI Stage</title><link>https://securityhorrors.com/all/composer-github-token-leak-ci/</link><guid isPermaLink="true">https://securityhorrors.com/all/composer-github-token-leak-ci/</guid><description>TLDR and affected version summary for CVE-2026-45793, a Composer vulnerability that may expose GitHub authentication tokens in CI logs.</description><pubDate>Wed, 20 May 2026 00:04:00 GMT</pubDate></item><item><title>NGINX njs: One Overflow to Crash Them All</title><link>https://securityhorrors.com/all/nginx-njs-heap-overflow-crash/</link><guid isPermaLink="true">https://securityhorrors.com/all/nginx-njs-heap-overflow-crash/</guid><description>TLDR and affected version summary for CVE-2026-8711, a heap buffer overflow in NGINX JavaScript (njs) that can crash workers and may allow RCE.</description><pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate></item><item><title>Mini Shai-Hulud: 639 Packages Deep and Still Burrowing</title><link>https://securityhorrors.com/all/mini-shai-hulud-antv-wave/</link><guid isPermaLink="true">https://securityhorrors.com/all/mini-shai-hulud-antv-wave/</guid><description>TLDR and affected package summary for the latest wave of the Mini Shai-Hulud npm supply-chain campaign targeting antv and echarts-for-react.</description><pubDate>Tue, 19 May 2026 00:08:00 GMT</pubDate></item><item><title>Nx Console: One Stolen Token, One Poisoned Marketplace</title><link>https://securityhorrors.com/all/nx-console-marketplace-compromise/</link><guid isPermaLink="true">https://securityhorrors.com/all/nx-console-marketplace-compromise/</guid><description>TLDR and affected version summary for the Nx Console VS Code extension compromise via a contributor&apos;s leaked GitHub PAT.</description><pubDate>Tue, 19 May 2026 00:04:00 GMT</pubDate></item><item><title>VoidStealer: Reaching Past Chrome&apos;s Encryption</title><link>https://securityhorrors.com/all/chrome-voidstealer-abe-bypass/</link><guid isPermaLink="true">https://securityhorrors.com/all/chrome-voidstealer-abe-bypass/</guid><description>TLDR and details on VoidStealer, an infostealer bypassing Chrome&apos;s App-Bound Encryption to extract credentials and session data.</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate></item><item><title>PostgreSQL: Eleven Stitches on a Quiet Afternoon</title><link>https://securityhorrors.com/all/postgresql-eleven-stitches/</link><guid isPermaLink="true">https://securityhorrors.com/all/postgresql-eleven-stitches/</guid><description>TLDR and affected version summary for the 11 CVEs patched in the May 14, 2026 PostgreSQL release.</description><pubDate>Thu, 14 May 2026 00:08:00 GMT</pubDate></item><item><title>Fragnesia and ssh-keysign-pwn: Two More Bones Under the Kernel</title><link>https://securityhorrors.com/all/linux-fragnesia-ssh-keysign-pwn/</link><guid isPermaLink="true">https://securityhorrors.com/all/linux-fragnesia-ssh-keysign-pwn/</guid><description>TLDR and affected system summary for Fragnesia (CVE-2026-46300) and ssh-keysign-pwn (CVE-2026-46333).</description><pubDate>Thu, 14 May 2026 00:01:00 GMT</pubDate></item><item><title>Shadow Supply: The Package That Stole Your Secrets</title><link>https://securityhorrors.com/all/node-ipc-shadow-supply-credential-stealer/</link><guid isPermaLink="true">https://securityhorrors.com/all/node-ipc-shadow-supply-credential-stealer/</guid><description>TLDR and affected version summary for the node-ipc npm supply-chain compromise.</description><pubDate>Thu, 14 May 2026 00:00:00 GMT</pubDate></item><item><title>NGINX: Three Cracks in the Proxy Wall</title><link>https://securityhorrors.com/all/nginx-three-cracks-proxy-wall/</link><guid isPermaLink="true">https://securityhorrors.com/all/nginx-three-cracks-proxy-wall/</guid><description>TLDR and affected version summary for NGINX Rift, CVE-2026-42926, and CVE-2026-42946</description><pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate></item><item><title>Mini Shai-Hulud: The Package That Crawled Through CI</title><link>https://securityhorrors.com/all/mini-shai-hulud-supply-chain-worm/</link><guid isPermaLink="true">https://securityhorrors.com/all/mini-shai-hulud-supply-chain-worm/</guid><description>TLDR and affected package summary for the Mini Shai-Hulud npm and PyPI supply-chain campaign.</description><pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate></item><item><title>React and Next.js: Thirteen Doors Left Open</title><link>https://securityhorrors.com/all/react-nextjs-may-2026-security-release/</link><guid isPermaLink="true">https://securityhorrors.com/all/react-nextjs-may-2026-security-release/</guid><description>TLDR and affected version summary for the May 2026 React and Next.js security advisories.</description><pubDate>Thu, 07 May 2026 00:01:00 GMT</pubDate></item><item><title>Dirty Frag: Two Kernel Teeth Under the Floorboards</title><link>https://securityhorrors.com/all/linux-dirty-frag-kernel-lpe/</link><guid isPermaLink="true">https://securityhorrors.com/all/linux-dirty-frag-kernel-lpe/</guid><description>TLDR and affected system summary for Dirty Frag, CVE-2026-43284 and CVE-2026-43500.</description><pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate></item><item><title>Bleeding Llama: The Local AI That Remembered Too Much</title><link>https://securityhorrors.com/all/ollama-bleeding-llama-memory-leak/</link><guid isPermaLink="true">https://securityhorrors.com/all/ollama-bleeding-llama-memory-leak/</guid><description>TLDR and affected version summary for CVE-2026-7482, the Bleeding Llama vulnerability in Ollama.</description><pubDate>Fri, 01 May 2026 00:00:00 GMT</pubDate></item><item><title>CopyFail: Root Was Only 732 Bytes Away</title><link>https://securityhorrors.com/all/linux-copyfail-root-escalation/</link><guid isPermaLink="true">https://securityhorrors.com/all/linux-copyfail-root-escalation/</guid><description>TLDR and affected system summary for CVE-2026-31431, the Linux CopyFail local privilege escalation.</description><pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate></item></channel></rss>