The Lab · 2026-03-26 10:27:09 · GitHub Issues
A systematic review of Common Platform Enumeration (CPE) identifiers has uncovered widespread inaccuracies in how major development and infrastructure tools are mapped to known vulnerabilities. A spot-check of six critical tools—AWS, Eclipse, IntelliJ, Jenkins, Rancher, and Android Studio—revealed that several CPE vend...
The Lab · 2026-04-09 12:27:23 · GitHub Issues
A new detection template for the recently disclosed CVE-2023-6750 vulnerability has been published to the Nuclei project on GitHub. The template, designed for the popular open-source vulnerability scanner, provides security teams with a ready-to-use method for identifying systems affected by this specific security flaw...
The Lab · 2026-05-07 21:01:39 · Ars Technica
Mozilla has disclosed that its internally developed Mythos scanning tool identified 271 vulnerabilities during an audit, with the organization characterizing its false positive rate as nearly negligible. The disclosure, which surfaced through a Hacker News discussion thread, positions Mythos as a high-precision additio...