threat-intel Protéger un document image avant de la partager PROTECTION D’IMAGE by ZATAZ.COM is a free browser-based tool designed to help users protect sensitive information in images and PDFs before sharing them. The tool offers features like watermarking, masking, metadata removal, and batch processing, all while keeping the processing entirely local – no data is uploaded or… ZATAZ · 1d ago Medium watermarkingmetadataprivacy
threat-intel Simple Scans for Cloud Metadata Service, (Wed, Aug 19th) A widespread scan targeting the Cloud Instance Metadata Service (IMDS) at 169.254.169.254 is being observed, potentially indicating a broader effort to exploit SSRF vulnerabilities. This service, traditionally used by vi… SANS Internet Storm Center · Aug 19, 2026 Medium ssrfmetadatacloud
threat-intel zipdump.py: Metadata Encoding, (Fri, Jul 31st) This article details a ZIP file analysis tool, zipdump.py, and a new feature added to correctly decode metadata within ZIP files, particularly when dealing with UTF-8 encoded filenames. The tool addresses potential issue… SANS Internet Storm Center · Jul 31, 2026 Info zipmetadataencoding
threat-intel FFmpeg fixes PixelSmash flaw in widely used video decoder A vulnerability, dubbed ‘PixelSmash’ (CVE-2026-8461), has been identified in FFmpeg’s MagicYUV decoder, allowing for remote code execution (RCE) on vulnerable systems. The flaw stems from an out-of-bounds write in the de… BleepingComputer · Jun 22, 2026 High CVE-2026-8461USsupply-chainremote-code-executionheap-overflow
threat-intel LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution A critical vulnerability chain in LangGraph, an open-source AI agent framework, has been disclosed, allowing for remote code execution via SQL injection and unsafe deserialization. The flaws, affecting versions prior to… The Hacker News · Jun 12, 2026 Critical CVE-2025-67644CVE-2026-28277CVE-2026-27022USsql injectionremote code executionai agent
threat-intel Trust No Skill: Integrity Verification for AI Agent Supply Chains This report from Palo Alto Unit 42 highlights a critical security vulnerability in the rapidly growing ecosystem of AI agent-skill supply chains. The analysis reveals that a significant number of skills, readily availabl… Palo Alto Unit 42 · Jun 11, 2026 High aiagentsupply chain
vulnerability How an image could compromise your Mac: understanding an ExifTool vulnerability (CVE-2026-3102) This article details a vulnerability (CVE-2026-3102) in ExifTool for macOS, allowing an attacker to execute arbitrary commands by injecting malicious data into the FileCreateDate metadata field. The vulnerability stems f… Securelist · May 20, 2026 Critical CVE-2026-3102CVE-2021-22204exiftoolmacosmetadata
threat-intel NSA Chief During Snowden Affair Shares Regrets, Reflections 13 Years Later This Dark Reading Confidential episode features a retrospective discussion with Chris Inglis, former NSA Deputy Director during the Edward Snowden affair, 13 years after the events. The conversation focuses on the misund… Dark Reading · Apr 28, 2026 Low USRUnsasnowdenmetadata