A critical Marimo RCE flaw is being exploited to steal AWS credentials and access an SSH bastion host within eight seconds.
A Chinese-speaking threat actor tracked as Red Heron has exploited a remote-code-execution vulnerability in Gitea to steal source code, establish persistence, and deploy a previously undocumented ...