ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More
This week’s ThreatsDay bulletin highlights a diverse range of security threats, including a Remote Code Execution vulnerability in Gogs, a sophisticated Mabna Institute cyber espionage campaign targeting universities and private sector companies, a new malware campaign abusing Duplicate Files Finder, and a growing market for AI tools that bypass safety restrictions. Notably, a $10 million reward is offered for information about the Mabna Institute's members, and Apple has been forced to adjust its App Tracking Transparency feature to ensure fairer consent prompts for both its own apps and third-party developers. Several refrigeration controller vulnerabilities are also detailed, potentially allowing attackers to manipulate temperature controls in critical infrastructure.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
