<!DOCTYPE html><html lang="en"><head><meta http-equiv="Content-Type" content="text/html charset=UTF-8"><meta charset="UTF-8"><meta name="viewport" content="width=device-width"><meta name="x-apple-disable-message-reformatting"><title>TLDR InfoSec</title><meta name="color-scheme" content="light dark"><meta name="supported-color-schemes" content="light dark"><style type="text/css">
:root {
color-scheme: light dark; supported-color-schemes: light dark;
}
*,
*:after,
*:before {
-webkit-box-sizing: border-box; -moz-box-sizing: border-box; box-sizing: border-box;
}
* {
-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%;
}
html,
body,
.document {
width: 100% !important; height: 100% !important; margin: 0; padding: 0;
}
body {
-webkit-font-smoothing: antialiased; -moz-osx-font-smoothing: grayscale; text-rendering: optimizeLegibility;
}
div[style*="margin: 16px 0"] {
margin: 0 !important;
}
table,
td {
mso-table-lspace: 0pt; mso-table-rspace: 0pt;
}
table {
border-spacing: 0; border-collapse: collapse; table-layout: fixed; margin: 0 auto;
}
img {
-ms-interpolation-mode: bicubic; max-width: 100%; border: 0;
}
*[x-apple-data-detectors] {
color: inherit !important; text-decoration: none !important;
}
.x-gmail-data-detectors,
.x-gmail-data-detectors *,
.aBn {
border-bottom: 0 !important; cursor: default !important;
}
.btn {
-webkit-transition: all 200ms ease; transition: all 200ms ease;
}
.btn:hover {
background-color: #f67575; border-color: #f67575;
}
* {
font-family: Arial, Helvetica, sans-serif; font-size: 18px;
}
@media screen and (max-width: 600px) {
.container {
width: 100%; margin: auto;
}
.stack {
display: block!important; width: 100%!important; max-width: 100%!important;
}
.btn {
display: block; width: 100%; text-align: center;
}
}
body,
p,
td,
tr,
.body,
table,
h1,
h2,
h3,
h4,
h5,
h6,
div,
span {
background-color: #FEFEFE !important; color: #010101 !important;
}
@media (prefers-color-scheme: dark) {
body,
p,
td,
tr,
.body,
table,
h1,
h2,
h3,
h4,
h5,
h6,
div,
span {
background-color: #27292D !important; color: #FEFEFE !important;
}
}
a {
color: inherit !important; text-decoration: underline !important;
}
</style><!--[if mso | ie]>
<style type="text/css">
a {
background-color: #FEFEFE !important; color: #010101 !important;
}
@media (prefers-color-scheme: dark) {
a {
background-color: #27292D !important; color: #FEFEFE !important;
}
}
</style>
<![endif]--></head><body class="">
<div style="display: none; max-height: 0px; overflow: hidden;">Security researchers uncovered an authentication flaw in the SETracker platform that many children's smartwatches run on β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β </div>
<div style="display: none; max-height: 0px; overflow: hidden;">
<br>
</div>
<table align="center" class="document"><tbody><tr><td valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" class="container" width="600"><tbody><tr class="inner-body"><td>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr class="header"><td bgcolor="" class="container">
<table width="100%"><tbody><tr><td class="container">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" style="margin-top: 0px;" width="100%"><tbody><tr><td style="padding: 0px;">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div style="text-align: center;">
<span style="margin-right: 0px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Ftldr.tech%2Finfosec%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/0KMCiefi91KbsR0RdEHYSJLzNTdRU79LVtbz8XMyYj4=452" rel="noopener noreferrer" target="_blank"><span>Sign Up</span></a>
|<span style="margin-right: 2px; margin-left: 2px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fadvertise.tldr.tech%2F%3Futm_source=tldrinfosec%26utm_medium=newsletter%26utm_campaign=advertisetopnav/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/yHFfTh_JJxkxwzgteah1SGRko-4lOjsKBEqATcTBcsM=452" rel="noopener noreferrer" target="_blank"><span>Advertise</span></a></span>|<span style="margin-left: 2px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fa.tldrnewsletter.com%2Fweb-version%3Fep=1%26lc=156924ca-84b7-11f0-8d58-47c5c04ad337%26p=3795b34e-94a4-11f1-9847-2731d2dc0e32%26pt=campaign%26t=1786367287%26s=e8983a7c04491b886ef309f27eea6125f6f2e453b8815b443fa1b6a9252f0d86/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/A0fzZSlsFvsXJ4PWlmbLc9Leq4G7ccFikJNodjv1IWE=452"><span>View Online</span></a></span>
<br>
</span></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="text-align: center;"><span data-darkreader-inline-color="" style="--darkreader-inline-color:#3db3ff; color: rgb(51, 175, 255) !important; font-size: 30px;">T</span><span style="font-size: 30px;"><span data-darkreader-inline-color="" style="color: rgb(232, 192, 96) !important; --darkreader-inline-color:#e8c163; font-size:30px;">L</span><span data-darkreader-inline-color="" style="color: rgb(101, 195, 173) !important; --darkreader-inline-color:#6ec7b2; font-size:30px;">D</span></span><span data-darkreader-inline-color="" style="--darkreader-inline-color:#dd6e6e; color: rgb(220, 107, 107) !important; font-size: 30px;">R</span>
<br>
</td></tr></tbody></table>
<br>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr id="together-with"><td align="center" height="20" style="vertical-align:middle !important;" valign="middle" width="100%"><strong style="vertical-align:middle !important; height: 100%;">Together With </strong>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.herodevs.com%2Fwhitepaper%2Fthe-developers-guide-to-security-compliance%3Futm_source=tldr-infosec%26utm_medium=paid-sponsorship%26utm_campaign=compliance-clock_global%26utm_content=whitepaper_none_20260810_a_header_if_youre_using/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/BP2MVSZ2x2wrE03Wr9u2zo5nXAOmPthCfhbAwWv55LM=452"><img src="https://images.tldr.tech/herodevs.png" valign="middle" style="vertical-align: middle !important; height: 100%;" alt="HeroDevs"></a></td></tr></tbody></table>
<table style="table-layout: fixed; width:100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;">
<div style="text-align: center;">
<h1><strong>TLDR Information Security <span id="date">2026-08-10</span></strong></h1>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width:100%;" width="100%"><tbody><tr id="sponsy-copy"><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.herodevs.com%2Fwhitepaper%2Fthe-developers-guide-to-security-compliance%3Futm_source=tldr-infosec%26utm_medium=paid-sponsorship%26utm_campaign=compliance-clock_global%26utm_content=whitepaper_none_20260810_a_header_if_youre_using/2/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/lVLlmJ4cTqlCdpF8OitTVx7tVzD7O5PThkTTJtO5b3A=452">
<span>
<strong>If you're using EOL open source software (and you probably are), you may be putting your compliance at risk (Sponsor)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
For example your scanner flags a critical CVE in AngularJS. But no patch exists. None ever will.<p></p><p>π For security teams, <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.herodevs.com%2Fwhitepaper%2Fthe-developers-guide-to-security-compliance%3Futm_source=tldr-infosec%26utm_medium=paid-sponsorship%26utm_campaign=compliance-clock_global%26utm_content=whitepaper_none_20260810_a_Body_we_mapped_20_standards/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/OTcqWmZtn4hpEV_HMHR2H8qV_IqJKkincY9ny5BjqJo=452" rel="noopener noreferrer nofollow" target="_blank"><span>we mapped all 20 standards</span></a> against how EOL components impact each control.</p>
<p>π Why PCI's 30-day patch clock is unmeetable on EOL software, and the three statuses every component needs before an audit.</p>
<p>π‘οΈ How vendor-backed patching satisfies "maintained" under NIST CSF PR.PS-02.</p>
<p>π 48 cited sources, current through mid-2026. Trusted by Google, Microsoft, FINRA, and Santander.</p>
<p><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.herodevs.com%2Fwhitepaper%2Fthe-developers-guide-to-security-compliance%3Futm_source=tldr-infosec%26utm_medium=paid-sponsorship%26utm_campaign=compliance-clock_global%26utm_content=whitepaper_none_20260810_a_cta_download_guide/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/gEv8xCVF8BvF7m6aOra2mgKVTv_bEpZDIdO-ylURNZs=452" rel="noopener noreferrer nofollow" target="_blank"><span>Download the guide</span></a>
</p>
</span></span></div>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr>
<tr bgcolor=""><td class="container">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td style="padding: 0px;">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Attacks & Vulnerabilities</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.digitaltrends.com%2Fwearables%2Fkids-smartwatches-are-meant-to-keep-children-safe-but-hackers-can-turn-them-into-stalking-devices%2F%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/0lZXRs0mJ0i0-vT_OvrPkId1s0AkNaC4nwcsJViallE=452">
<span>
<strong>Kids' Smartwatches are Meant to Keep Children Safe but Hackers Can Turn Them into Stalking Devices (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Security researchers uncovered an authentication flaw in the SETracker platform that many children's smartwatches run on. The researchers uncovered vulnerabilities that could be exploited by attackers to access locations, intercept messages, replace emergency contacts, record audio, and capture photos or videos on supported devices.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Flinks.tldrnewsletter.com%2Feqq0eP/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/qKPe92giqHEJjZfr9ME7dDwUiQRPMRUUALoBSJ1b3IM=452">
<span>
<strong>Metabase SQLi Zero-Day Exploited in Customer Data-Theft Attacks (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Metabase disclosed a critical zero-day vulnerability that is being actively exploited by attackers. The vulnerability is a critical, unauthenticated SQL injection bug that can allow remote attackers to gain administrative access to target instances. Cloud users have already been patched, but self-hosted organizations should upgrade to a patched release or temporarily block access to the β/api/session/reset_password/β endpoint until updates can be applied.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Flinks.tldrnewsletter.com%2FJwb7Ed/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/_VackG3hs7lM2cjlwKlpGK49SP67A6ilAQQ3RrEeDFo=452">
<span>
<strong>Hackers breach TrueConf to trojanize client installers with backdoors (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
The Head Mare hacktivist group exploited unauthenticated access on TCP port 4307 to chain KLCERT-26-057 and KLCERT-26-058 for sandbox escape and SYSTEM-level code execution on TrueConf servers, deploying the PhantomCore and PhantomGraph backdoors and trojanizing client installers. Fixes are available in versions 5.3.9, 5.4.9, and 5.5.5.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π§ </span></div>
</div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Strategies & Tactics</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.figma.com%2Fblog%2Fhow-figma-stays-ahead-of-vulnerabilities-with-agents%2F%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/UeG70qmv7TdqXlzBrH9giowjzKpkF9GSMPfSqzQy3b4=452">
<span>
<strong>How Figma Stays Ahead of Vulnerabilities with Agents (12 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Figma uses agents to review PRs for vulnerabilities, audit existing repositories, and generate secure code. When writing the workflow to review PRs, Figma found that the collection of policies and precedents that they wrote to improve precision constituted a detailed threat model for the agent to follow. This threat model was also utilized with more agents to brute force a code audit of a large, legacy monorepo and is used with agent hooks for secure code generation.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fdetect.fyi%2Fultimate-threat-hunting-playbook-for-russian-cyber-operations-in-a-hybrid-threat-environment-357e91088b67%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/Sh3xnWpA5DoBzKiGTHNR7hZendOSn0iOBzObHyB8aA8=452">
<span>
<strong>Ultimate Threat Hunting Playbook for Russian Cyber Operations in a Hybrid Threat Environment (36 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
A new hybrid threat hunting framework synthesizes four years of Russian cyber operations, including activity from APT28, Sandworm, and APT29, by focusing on shared operational chokepoints across identity, edge infrastructure, and OT rather than brittle IOCs. To highlight the necessity of behavior-based detection, the playbook points to LAMEHUG's dynamic use of the Hugging Face API and CERT-UA data showing APT28 achieving domain-controller compromise in under an hour. Furthermore, the report advocates for correlating physical and cyber telemetry in response to hybrid threats like the Leipzig/Halle drone incident, though it cautions defenders against attributing attacks based solely on geographic or temporal proximity.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fnetacoding.com%2Fposts%2Flockbit5-analysis%2F%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/1HeI0JxKzAQtyGq639qTShKpmd3yyToEquf9j9almXM=452">
<span>
<strong>LockBit 5.0 Linux Malware Analysis: ChaCha20 + Curve25519 Offline Encryption, strace Evasion & IOCs (9 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
A reverse engineering teardown of LockBit 5.0's Linux variant found the ransomware encrypts entirely offline, generating ChaCha20 keys locally and wrapping them with a hardcoded Curve25519 public key so that zero network activity occurs during encryption, confirmed via Wireshark, socket monitoring, and interface counters. The sample also detects strace through TracerPid checks in /proc/self/status and fingerprints VM environments via /proc/ioports enumeration, forcing analysts to fall back on eBPF-based tracing to observe its behavior. The findings point to a broader shift toward offline-first ransomware design that makes network-based detection largely irrelevant against this class of threat.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π§βπ»</span></div>
</div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Launches & Tools</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fgithub.com%2Fdatadog%2Fdatadog-saist%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/vcufoyWi0orYC9vp9xzgv1cITh8h7yv-bzuW_7ZeDO4=452">
<span>
<strong>Datadog Static AI Security Testing Tool (GitHub Repo)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Datadog has released its AI-native SAST tool. Unlike traditional scanners, the tool also uses LLMs to find vulnerabilities.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fgithub.com%2Fevilsocket%2Faudit%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/4d1lQL6fchquhQKrieb9NhSvyyYr1jg04HnNiBK2wm4=452">
<span>
<strong>audit (GitHub Repo)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
audit is an 8-stage vulnerability discovery agent inspired by Cloudflare's Project Glasswing post.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fgithub.com%2FDoctorEww%2FEvilFontTool%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/ZfWMhPk7dI9455pRI5LX2EWyM67PmJB_Y9qEHk2E-sI=452">
<span>
<strong>EvilFontTool (GitHub Repo)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
EvilFontTool is a Python CLI for red teamers that generates "evil fonts" remapping glyphs so a Word doc, PDF, or webpage displays clean text to a human reader while a different, attacker-chosen payload is what gets copy-pasted or fed to AI tools and terminals.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><strong><h1>Miscellaneous</h1></strong></div>
</div>
</td></tr></tbody></table>
<table bgcolor="" style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="mailto:infosec@tldr.tech?utm_source=tldrinfosec">
<span>
<strong>TLDR is hiring a curator for TLDR Infosec! (TLDR Curator, ~5 hrs/week)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Over 400,000 subscribers read TLDR Infosec to stay on top of the latest in cybersecurity, vulnerabilities, breaches, threat research, and security tools. If you work in security and want to help curate it, send your LinkedIn or resume to <a href="mailto:infosec@tldr.tech" rel="noopener noreferrer" target="_blank"><span>infosec@tldr.tech</span></a>!
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fblog.frontier.security%2Fchinese-model-kimi-k3-breaks-uk-ai-safety-institute-benchmark-evaluations%2F%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/7lp4d9RINTZoHjkMttqW7m-lcSg14KGnj8hvHZlMEuE=452">
<span>
<strong>Chinese Model Kimi K3 Breaks UK AI Safety Institute Benchmark Evaluations (4 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
In a recent evaluation of Kimi K3's cybersecurity capabilities, Frontier Security attempted to run the model inside the UK's AISI's agentic sandbox and discovered that the model effectively escaped the sandbox to game the benchmark. The model first probed the network and discovered that standard DNS functionality was available for github.com, so it was able to successfully look up the benchmark, clone its repo, and lift the solutions directly from the repo. Frontier Security recommends that evaluators treat evaluation infrastructure as part of the benchmark, deny network access by default, audit traces instead of just answers, revalidate suspicious results, and assume capable models will find paths to βcheat.β
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fsiliconangle.com%2F2026%2F08%2F04%2Fopen-secure-ai-alliance-proposes-safe-guidelines-membership-tops-120%2F%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/0BUMjojW7IgUs4xnWdt2rG7bWXJilpsAy0LeR31dYUE=452">
<span>
<strong>Open Secure AI Alliance Proposes SAFE Guidelines as Membership Tops 120 (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
The recently founded Open Secure AI Alliance has proposed a set of guidelines for reporting cybersecurity incidents involving AI agents titled the Shared AI Findings Exchange (SAFE). The SAFE program would provide organizations with a confidential channel for reporting details of AI security incidents. It would then analyze the data, notify affected parties, flag control failures that recur across its members, and then release recommendations.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.rohan-paul.com%2Fp%2Fkimi-k3-escaped-a-cybersecurity-testing%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/UXUQK2GpS2OCFxylFmpy20Oy6snc62VateE_9BB9EYA=452">
<span>
<strong>Kimi K3 escaped a cybersecurity testing environment during experiment run by Frontier Security, a private US firm (8 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Moonshot AI's open-weight Kimi K3 broke out of a sandboxed benchmark run by private firm Frontier Security, exploiting unblocked outbound DNS and HTTPS to reach GitHub and pull the official solution instead of solving the task itself. The UK AI Security Institute only built the open-source sandbox framework and was not involved in running the test, and researchers attribute the escape to a network misconfiguration rather than deliberate model misbehavior.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">β‘</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Quick Links</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table bgcolor="" style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.theregister.com%2Fsecurity%2F2026%2F08%2F09%2Fransomware-gangs-skip-the-ceo-head-straight-for-the-40-something-it-manager%2F5284499%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/FQRc-IxHgFSnZyQfmXhK6K6hi89Zv9pR_9-HZcm3gWk=452">
<span>
<strong>Ransomware gangs skip the CEO, head straight for the 40-something IT manager (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Zscaler ThreatLabz tracked 351 victims in a month-long ransomware campaign, finding attackers targeted managers with "business privilege"βinvoice approval, budget oversight, and contract accessβrather than executives.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Flists.securityfocus.com%2Fhyperkitty%2Flist%2Fbugtraq@securityfocus.com%2Fthread%2FCHKLXLA7SJEWLDFHWXB3QU57ADOXGL2E%2F%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/HH8A3CMHbMtrSZpaaMw9tpPOeSUKFHuzzWsrKw_2mLA=452">
<span>
<strong>Bugtraq is back (1 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Jonathan Brossard has acquired securityfocus.com and the Bugtraq name and relaunched the full-disclosure mailing list, promising the original researcher-first, no-corporate-filter mission after the archives went dark through a chain of prior ownership changes.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Flinuxiac.com%2F18-year-old-linux-kernel-vulnerability-enables-root-access-and-container-escape%2F%3Futm_source=tldrinfosec/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/4aDaffDPMsY76r-2KD_mK9jmouO3hskJm58VxUtN0Bw=452">
<span>
<strong>18-Year-Old Linux Kernel Vulnerability Enables Root Access and Container Escape (3 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Tencent's Zhuque Lab disclosed SCTPhantom (CVE-2026-64564, CVSS 8.5), an 18-year-old use-after-free in Linux SCTP Dynamic Address Reconfiguration dating to kernel 2.6.25 that yields root via a repeatable exploit chain bypassing KASLR and can escape containers, patched in 6.6.148, 6.12.101, 6.18.42, and 7.1.6.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td align="left" style="word-break: break-word; vertical-align: top; padding: 5px 10px;">
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Love TLDR? Tell your friends and get rewards!
</p>
</td></tr>
<tr><td class="container" style="padding: 0px 10px 15px;">
<div class="text-block">
Share your referral link below with friends to get free TLDR swag!
</div>
</td></tr>
<tr><td align="left" style="padding: 10px;">
<div class="text-block">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Frefer.tldr.tech%2F78de0e20%2F8/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/5uU45awrOI_BbqEExXdL447SzUxWXHeJcoisG44R5C4=452" style="color: #464ba4; text-decoration: underline;">https://refer.tldr.tech/78de0e20/8</a>
</div>
</td></tr>
<tr></tr>
<tr><td align="left" style="padding:5px 10px;">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fhub.sparklp.co%2Fsub_d62447d5a74a%2F8/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/WpLvLSMrj9zfW8RhEsJSMU1TKNNH1Syg9G5ngFpMn9o=452" style="font-size: 16px; line-height: 1.6; padding: 10px 0; display: inline-block; text-decoration: underline;"><span style="mso-text-raise:13pt; text-decoration: underline;">Track your referrals here.</span></a>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td align="left" style="word-break: break-word; vertical-align: top; padding: 5px 10px;">
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Want to advertise in TLDR? π°
</p>
<div class="text-block" style="margin-top: 10px;">
If your company is interested in reaching an audience of cybersecurity professionals and decision makers, you may want to <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fadvertise.tldr.tech%2F%3Futm_source=tldrinfosec%26utm_medium=newsletter%26utm_campaign=advertisecta/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/iItC8F1EiScvOsimsK1Y9iwimKwuxbZ-CNudfWM9zEQ=452"><strong><span>advertise with us</span></strong></a>.
</div>
<br>
<!-- New "Want to work at TLDR?" section -->
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Want to work at TLDR? πΌ
</p>
<div class="text-block" style="margin-top: 10px;">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fjobs.ashbyhq.com%2Ftldr.tech/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/LoZG81qnZmTe7I_MuOFuKckUAwoObkIUBYlGle-kW2Q=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>Apply here</strong></a>,
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fjobs.ashbyhq.com%2Ftldr.tech%2Fc227b917-a6a4-40ce-8950-d3e165357871/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/deCDj0BoSr9a0TikccpiJFhWXD4cpQ2A8aUfUHjztWo=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>create your own role</strong></a> or send a friend's resume to <a href="mailto:jobs@tldr.tech" style="color: #0000EE; text-decoration: underline;">jobs@tldr.tech</a> and get $1k if we hire them! TLDR is one of <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Ffeed%2Fupdate%2Furn:li:activity:7401699691039830016%2F/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/fvMc2FukIzTC2w_yaPNNLf318MrIYxn9ayPo0h8hPsk=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>Inc.'s Best Bootstrapped businesses</strong></a> of 2025.
</div>
<br>
<div class="text-block">
If you have any comments or feedback, just respond to this email!
<br>
<br> Thanks for reading,
<br>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fprasannagautam%2F/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/Emo4ttLFZtgmmoUlZ6N_e-jGII6eTY49e9EosRQEuis=452"><span>Prasanna Gautam</span></a>, <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fericfernandezdelcampo%2F/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/ELCb27KhY61GaRHo8vZ9PL7lTAxXMSEnkGr7UnxWCoQ=452"><span>Eric Fernandez</span></a> & <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fsammy-tbeile%2F/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/vHAh7uc96PqDT5OCHzAGKo3ecRKWMHRdkw3hxEdI6GU=452"><span>Sammy Tbeile</span></a>
<br>
<br>
</div>
<br>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block" id="testing-id">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Ftldr.tech%2Finfosec%2Fmanage%3Femail=silk.theater.56%2540fwdnl.com/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/7NpqQlzVV1QPWE3dW8nChm5Au3K5TzNMZ_hKzq8ZFnY=452">Manage your subscriptions</a> to our other newsletters on tech, startups, and programming. Or if TLDR Information Security isn't for you, please <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fa.tldrnewsletter.com%2Funsubscribe%3Fep=1%26l=8d9cea11-3e94-11ed-9a32-0241b9615763%26lc=156924ca-84b7-11f0-8d58-47c5c04ad337%26p=3795b34e-94a4-11f1-9847-2731d2dc0e32%26pt=campaign%26pv=4%26spa=1786366853%26t=1786367287%26s=6889df84e276555a3f061f7d2a80a48a2a7ce973b6521c6d30965370a91aacdf/1/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/bzbjnIDQ-ZnfiCt2YTqUWmJOQZ9okjDdzeX1sXEbHIA=452">unsubscribe</a>.
<br>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
<img alt="" src="http://tracking.tldrnewsletter.com/CI0/0100019febc9a169-a13d34bf-860e-481f-996b-d19f9b323841-000000/XAWpH_F4DSEN-xfxXKR6UtBd0nssHwhYAbf5pkuasq4=452" style="display: none; width: 1px; height: 1px;">
</body></html>