vibehacker
News
iTnews ·

Talos: CLOSEDQUORUM malware lets four LLMs vote on next attack step

Cisco Talos documented CLOSEDQUORUM, a Windows credential stealer that asks DeepSeek, Qwen, Gemini, and Mistral what to do next and follows the majority vote—no attacker C2 server to block. The public binary is an inert template with placeholder API keys; Talos has not confirmed live victims.

More news

View all

Bifrost CVE-2026-90898: unauth MCP client registration is RCE

JFrog found that Bifrost HTTP transport before 2.1.0 accepts an unauthenticated POST to /api/mcp/client and immediately starts the given stdio command as the gateway user when management auth is off (the default). Patch is transports/v2.1.0; rotate provider keys if the management API was exposed…

The Hacker News

Cloudflare ships Worker Previews for agent branch testing

Cloudflare launched Worker Previews so each Git branch gets an isolated production like Worker with its own URL, secrets, Durable Objects, and observability. Agents can deploy with npx wrangler preview, then verify via Playwright MCP and Workers Observability MCP before merge…

Cloudflare Blog

Meta patches Muse macOS zero-day that let local attackers steer the agent

Meta hotfixed its Muse macOS app after researcher Patrick Wardle showed a local zero day that redirected cloud transcription to an attacker endpoint and let Muse take photos and write files without alerts. Meta says practical risk was low because the exploit needed malware already running under the user’s account…

The Verge

Spotted something we missed? Start a thread.