logo
[packet storm]
Changelog

Date: 2026/05/28 (1779951600)

We are a bit concerned with the censorship ideology resurfacing against research disclosure, yet again. Be grumpy all you want, but personal AI harnesses will crank out exploits based on sparse details from advisories these days. The discussion is moot. Don't shoot the messenger. Fix the flaw.

Date: 2026/05/26 (1779778800)

Another day of in excess of 200 additions. Something for everyone.

Date: 2026/05/20 (1779260400)

Today there were 248 additions. This is not a small amount. Depending on what you want to review, using the tags is probably your best bet. Kudos to RedHat for patching as much as they have but wow.. over 160 advisories there alone.

Date: 2026/05/12 (1778569200)

Today was a bit more whitepaper heavy than anything. Good reads, though.

Date: 2026/05/08 (1778223600)

Given that yesterday's updates were delayed, today there were 231 updates between headlines and files. There's some really interesting reads and tools. Worth giving a look-see.

Date: 2026/05/04 (1777878000)

Updated the About page. Updates to the site will be less frequent throughout the rest of the week. Everything should be up to date by COB Friday. Next week normal operations will resume.

Date: 2026/04/30 (1777532400)

The massive onslaught of AI flaws are starting to get patched. Wireshark and GNUTLS updates are needed everywhere, for everyone. And wow.. that Copy Fail bug. Ow.

Date: 2026/04/22 (1776841200)

Monthly and annual archives of exploits have been removed. The data, itself, still exists as individual entries. If companies want to access our data in bulk, they need to pay for API access. We know these updates will frustrate some people, but blame AI and corporations refusing to do their part to support smaller entities providing them with their telemetry. More changes to come soon.

Date: 2026/04/21 (1776754800)

Had a couple real egg on face moments. The bookmarking flow for researchers had some remnant code that still disclosed email addresses without inheritance from the user profiles if mapped. This was a real edge case and after mining all of the logs on file, fortunately no data was disclosed outside of staff and the trusted researcher who found the issue. Additionally, an evaluation in the chat functionality caused a conversation to not show up in your index unless both parties had said something, resulting in one sided conversations not being easy to find. Again, a weird edge case but it has been addressed.

Date: 2026/04/20 (1776668400)

This AI slop has to stop. Here's the type of slop we are seeing almost daily. Learn and comprehend technology before you make claims as to what should be versus what is. Otherwise, you will just be blackholed.

Check out today's most hilarious "vulnerability":

I am writing this email in connection with potential vulnerabilities found on your website. I work as a security researcher and keep track of vulnerabilities in websites. Sadly, your website has some alarming vulnerabilities that would prove detrimental if exploited correctly.

*Vulnerability type:* *WAF Bypass*

*Infected subdomain: *packetstorm.news/

*Summary:*
Due to a lack of secure design, I was able to find the origin IPs
The IPs I found belong to :
https://packetstorm.news/

*Steps to reproduce:*
Simply visit.
https://64.71.185.196

*Impact:*
I guess if anyone tries to access through direct Ip it should show a FORBIDDEN ERROR but here due to misconfiguration from your side the website is accessible from direct IP. To exploit this it’ll only take a powerful DOS tool to disrupt your website or bypass any type of RATE LIMITATIONS. You can just use a powerful DOS tool on this IP, you will see how it is affected.

This attack vector can be extremely bad because with the IP found an attacker could attack the servers by DDoS or other attacks without being stopped by any firewall.

If you have any questions, please feel free to contact me. I'll be more than happy to assist you.

I look forward to hearing from you soon.

Date: 2026/04/17 (1776409200)

Everyone seems concerned about the AIpocalypse. Sure, Mythos may be powerful, but if it cuts down on the slop we get, let's do it. Please stop submitting fake issues that demonstrate you don't understand how our flows work. It wastes time.

Date: 2026/04/15 (1776236400)

A staggeringly large amount of aesthetic changes and flow updates were pushed today. Testing has been extensive but there can always be bugs. Please let us know if you hit any.

Date: 2026/04/08 (1775631600)

Dozens of interesting whitepapers on AI/LLMs have been added recently. Have a read, it's worthwhile and interesting research.

Date: 2026/03/30 (1774854000)

Updates are averaging around a hundred a day. This can cause large lists of specific advisories if you go through the generic feed. Pro Tip - Make use of tags for the types of files you seek or the search.

Date: 2026/03/18 (1773817200)

Public facing changes, other than news and file updates, will be minimal for at least the next couple weeks as various other projects are being worked on.

Date: 2026/03/04 (1772611200)

We're losing a lot of good hackers these days. Too many. Please remember to take time to touch grass and enjoy every element of life while you can. Time is very limited.

Date: 2026/02/23 (1771833600)

Lots of bots and people automating scraping were blocked this weekend while monitoring, including a /12 from China. Reach out if you feel you were accidentally blocked and want to become unblocked.

Date: 2026/02/21 (1771660800)

Today, quite a few fixes were pushed that addressed underlying aesthetic issues. There was also a bit of a facelift to the site with some flows changing. We will be doing additional testing throughout the weekend but please let us know if anything is broken for you.

Date: 2026/02/15 (1771142400)

Fixing quite a few bugs these days. More to come soon.

Date: 2026/01/28 (1769587200)

Submissions and items that need to be communicated have spiked in recent months. I suspect much of it is from AI assisted help (seems so). This has caused a backlog on development efforts as hours in the day are minimal. Apologies for the delay in our latest feature that has been communicated to some entities. We have vast improvements coming and hope to get them live in the coming month.


Home

 About | Terms | Copyright | Privacy | BlueSky | X | Mastodon
 © 2026 All Rights Reserved Packet Storm Security, LLC