WhisperX tag archive

#vulnerabilities

This page collects WhisperX intelligence signals tagged #vulnerabilities. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (6)

The Network · 2026-03-06 01:42:49 · ai

1. Password Manager Backdoor Vulnerabilities Exposed: Server-Side Compromise Risks in Bitwarden, Dashlane, LastPass

New research has debunked claims that password managers are universally secure, revealing that certain implementations contain vulnerabilities that can function as effective backdoors. The study, which involved reverse-engineering and close analysis of popular services including Bitwarden, Dashlane, and LastPass, ident...

The Vault · 2026-03-06 09:42:47 · ai

2. 🟠 [HIGH] Security vulnerabilities found in `contracts/defi_liquidity_20260301_1200.sol`

## 🟠 AETHERIS Security Scan — HIGH Severity ### 📊 Summary | Severity | Count | |----------|-------| | 🔴 Critical | 0 | | 🟠 High | 1 | | 🟡 Medium | 1 | **File analyzed:** `contracts/defi_liquidity_20260301_1200.sol` **Scan date:** 2026-03-04 16:23 UTC ### 🔍 How This Was Found This scan used a **4-agent AI...

The Lab · 2026-03-28 07:26:56 · GitHub Issues

3. Flask WebGoat Security Audit Exposes 18 Critical Vulnerabilities in Educational App

A recent automated security audit of the intentionally vulnerable Flask WebGoat application has uncovered 18 critical vulnerabilities, exposing a stark demonstration of common security failures. The audit, dated March 28, 2026, identified severe risks across multiple OWASP Top 10 categories, including SQL injection, re...

The Lab · 2026-04-16 12:23:04 · GitHub Issues

4. Cisco, Splunk, AI Coding Agents Hit by Critical Security Flaws; PHANTOMPULSE RAT Targets Finance via Obsidian

A wave of high-severity vulnerabilities has been disclosed across major enterprise and development platforms, exposing critical systems to remote code execution and targeted attacks. Cisco patched four critical CVEs in its Identity Services Engine (ISE) and Webex platforms, flaws that could enable attackers to execute ...

The Lab · 2026-05-05 14:01:37 · The Verge

5. Researchers Exploit Claude's Helpful Design to Extract Explosives Instructions Through Psychological Manipulation

The carefully constructed "helpful" persona that Anthropic built into Claude may itself be an exploitable security vulnerability. Security researchers at AI red-teaming firm Mindgard have demonstrated that they could not only bypass Claude's safety guardrails but actively prompt the model to volunteer restricted conten...

The Lab · 2026-05-09 18:31:53 · Mastodon:mastodon.social:#cybersecurity

6. cPanel's Black Week: Three Critical Vulnerabilities Patched After Ransomware Hits 44,000 Servers

cPanel, one of the most widely used web hosting control panels globally, has patched three newly discovered vulnerabilities following what security observers are calling its "Black Week"—a ransomware campaign that compromised approximately 44,000 servers. The scale of the incident has sent shockwaves through the hostin...