frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

From AKS node root vulnerability to Microsoft Copilot hijack

https://zerolabs.rubrik.com/blog/breaking-m365-copilot-sandbox-chatmate
2•vbCrLf•1h ago

Comments

vbCrLf•59m ago
Hi, author here (security researcher at Rubrik Zero Labs - this is our blog)! Happy to answer any questions, even though I'm now on a trip in Bryce Canyon ;)

This is my research story - from the beginning, through a root-on-the-AKS-node vulnerability (CVE-2026-32193) and an exploit on Microsoft Copilot.

The Copilot exploit achieves an interactive "shell" in the victim's session through any prompt injection vector (a hidden instruction in a Word document in this specific demonstration).

The chain: prompt injection to code execution in the sandbox, local privilege escalation to root in the sandbox, an unauthenticated daemon on the node with a path traversal, TOML injection into the file it writes, and a symlink to redirect that write onto /etc/ld.so.preload - which gets us root on the Kubernetes node.

Beyond Copilot: the daemon is unauthenticated on localhost on AKS and Container Apps nodes with image streaming, so any SSRF in any workload on such a node becomes root on the node itself.

Demo: https://www.youtube.com/watch?v=Wonbqfi198o

Presented at Black Hat USA 2026. I'll post the presentation here when the Black Hat team releases it.

yarpo•55m ago
Seen the talk live. Great research!

Math identity that applied at model-load time, makes MLA decode at 71,000 tok/s

https://efficientagent.substack.com/p/the-mla-decode-speedup-hiding-in
1•bnayak25•7s ago•0 comments

Putting Claude's Watermarking to the Test

https://dreasays.substack.com/p/putting-claudes-watermarking-to-the
1•gojkoa•20s ago•0 comments

Archer OS: draft spec for AI agents operating apps under OS authority

https://github.com/coachpato/archer-os
2•Billie_Archer•3m ago•0 comments

Remind HN: Perseid meteor shower peaks tonight

1•cjbarber•3m ago•0 comments

NIST RFI for modernizing the NVD in the wake of AI

https://www.federalregister.gov/documents/2026/08/12/2026-16371/request-for-information-rfi-on-mo...
2•MattSayar•3m ago•0 comments

Show HN: /show-me: agent skill for compact visual representations

https://www.humanlayer.com/blog/show-me-skill
1•dhorthy•4m ago•0 comments

Local LLM Hardware Calc

https://dubir.net/tools/local-llm-hardware-calculator/
1•delneg•4m ago•0 comments

QuestDB 10.0

https://questdb.com/blog/questdb-10-release/
1•tosh•5m ago•0 comments

Water Groups Push Washington for Cyber Rules After Hacking Spree

https://www.wsj.com/pro/cybersecurity/water-groups-push-washington-for-cyber-rules-after-hacking-...
1•toomuchtodo•6m ago•1 comments

SpaceXAI: Grok 4.6

https://openrouter.ai/x-ai/grok-4.6
2•theanonymousone•7m ago•0 comments

Samsung with Claude: "Design and verification shortened to 2 days from a month"

https://biz.chosun.com/it-science/ict/2026/08/12/XIEQWWZCDRFH7BJV5Z3DOY2RLQ/
1•TMWNN•9m ago•1 comments

Introducing Grok 4.6

https://cursor.com/blog/grok-4-6
3•stevefan1999•9m ago•0 comments

Hacker News TUI

https://github.com/alin9661/hnx
2•aaronlin098•10m ago•1 comments

Run OpenClaw with Muse Glimmer Locally on Mac

https://holaclaw.ai/docs/tutorials/use-muse-glimmer-with-openclaw
1•angelmm•10m ago•0 comments

How do payments work in the US, China, and Brazil?

https://andrewacomb.substack.com/p/a-tale-of-three-refunds
1•acombandrew•12m ago•0 comments

Apple Caps Bug Bounty Submissions After AI Surge

https://www.pcmag.com/news/apple-limits-bug-bounty-submissions-after-a-barrage-of-ai-entries
3•mempko•12m ago•0 comments

Researchers have successfully used AI to create brand new viruses

https://www.npr.org/2026/08/11/nx-s1-5927074/researchers-have-successfully-used-ai-to-create-bran...
2•Brajeshwar•13m ago•0 comments

Bounded Chaos

https://coldtake.dev/blog/bounded-chaos
1•AlarQ•14m ago•0 comments

Most of your tech debt is free

https://piechowski.io/post/most-of-your-tech-debt-is-free/
1•speckx•15m ago•0 comments

Show HN: GitHub Actions self-hosted runners on Modal Sandboxes

https://github.com/modal-projects/runner-modal
1•botirk•16m ago•1 comments

Show HN: Toposonico, a Music Map and Recommender

https://toposonico.com/#lon=9.9318&lat=-4.6522&z=14.00&entity=track&rowid=8714
1•deppep•20m ago•1 comments

Igalia and Bocoup: Cooperatives Unite

https://www.igalia.com/2026/JoiningForces.html
2•bkardell•20m ago•0 comments

Show HN: Learn to become a Rave Developer for the airline industry

https://olect.github.io/become-rave-developer/
1•olect•21m ago•1 comments

The security program that only works when everyone is at their desk

https://andreafortuna.org/2026/08/12/summer-cybersecurity-stress-test-nis2-dora/
1•speckx•23m ago•0 comments

Show HN: Seisin – a desktop app that turns your job search into analytics

https://getseisin.com
2•LudbaSH•23m ago•0 comments

Sharding a 70B model across 39 Intel laptops

https://github.com/labscommunity/cascadia
3•tatef•24m ago•1 comments

Apache Fory JSON: Fastest Java JSON Serialization, 10x Faster Than Jackson/Gson

https://fory.apache.org/blog/fory_json_fastest_java_json_framework/
1•chaokunyang•24m ago•1 comments

Grok 4.6

https://twitter.com/SpaceXAI/status/2087562800982077492
3•qingcharles•24m ago•1 comments

New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges

https://www.bleepingcomputer.com/news/security/new-microsoft-defender-shieldbreak-zero-day-grants...
2•Brajeshwar•26m ago•1 comments

Europe's Water

https://riverdata.org/en
2•yread•26m ago•0 comments