The Lab · 2026-03-28 08:27:04 · GitHub Issues
A critical new vulnerability, CVE-2026-3055, is being actively probed in the wild, targeting Citrix NetScaler ADC and Gateway appliances configured as SAML Identity Providers. With a CVSS score of 9.3, this unauthenticated memory overread flaw—dubbed 'CitrixBleed 3'—allows attackers to directly leak sensitive session t...
The Lab · 2026-03-29 11:26:55 · Hacker News
LinkedIn's web platform is exhibiting severe memory consumption, with just two open browser tabs reportedly using 2.4 gigabytes of RAM. This level of resource usage is atypical for a professional networking site and signals potential underlying inefficiencies in its web architecture or client-side code. The high memory...
The Lab · 2026-04-14 11:22:58 · GitHub Issues
A new exploit module has been added to the Metasploit Framework, targeting a critical memory leak vulnerability in Citrix NetScaler appliances configured as SAML identity providers. The module, identified as CVE-2026-3055, allows attackers to read arbitrary memory from vulnerable systems, potentially exposing sensitive...
The Lab · 2026-05-09 04:31:37 · r/netsec
A critical unauthenticated memory leak vulnerability has been disclosed in Ollama, the widely-deployed open-source platform for running large language models locally. Tracked as CVE-2026–7482 and dubbed "Bleeding Llama," the flaw allows attackers to extract sensitive data from system memory without any authentication, ...
The Lab · 2026-05-11 09:10:31 · Mastodon:mastodon.social:#infosec
Security researchers have disclosed a critical out-of-bounds read vulnerability in Ollama, the widely deployed open-source AI inference engine, enabling remote attackers to extract sensitive data including process memory contents, API keys, conversation prompts, and user information from exposed servers. The flaw, trac...