Issue no. 42 · The security zine
Security is all about context.
Practical security thinking for systems that increasingly write, deploy, and operate themselves. Fewer buzzwords. Better evidence. Occasional memes.
CVE-2026-85542 IBM Guardium Data Protection★CVE-2026-89032 BerriAI LiteLLM★CVE-2026-93834 QEMU QEMU★CVE-2026-70125 Microsoft Microsoft Outlook★CVE-2026-77874 IBM Enterprise Build of Quarkus★CVE-2026-81539 IBM DataStage on Cloud Pak for Data★CVE-2026-81545 IBM DataStage on Cloud Pak for Data★CVE-2026-81548 IBM DataStage on Cloud Pak for Data★CVE-2026-81552 IBM DataStage on Cloud Pak for Data★CVE-2026-82093 IBM DataStage on Cloud Pak for DataPatch forecast · Sep 25
Known-exploited vulnerabilities are in the wild. Patch like it is raining.
Field report · sweep 03 · 35 contacts on the board
Advisory desk
Known exploitation already skipped the prioritization meeting.
IBM Guardium Data Protection
IBM Guardium Data Protection 12.2 passes attacker-controlled arguments from a crafted GIM bundle to the tar command, letting an authenticated attacker execute arbitrary commands with elevated privileges on the Central Manager.
BerriAI LiteLLM
BerriAI LiteLLM before 1.101.0-rc.1 has a tenant isolation bypass in the semantic cache layer that lets an authenticated user retrieve other tenants' cached responses, including PII, financial data, and source code.
QEMU QEMU
A race condition in QEMU's 9pfs subsystem lets a malicious guest craft a fid path from stale heap data, escape the shared directory boundary, and read or write arbitrary host files or execute code as the QEMU process user.
Live demo · try it right here
Find leaked secrets without leaking them.
Paste code, config, or logs below. 112 detectors run entirely in your browser and return redacted findings, reasoned risk scores, and rotation guidance. Nothing uploads. Nothing phones home.
Inspect source material
No upload step exists. Files are read by your browser, scanned in memory, and discarded when the tab closes.
Findings
Ready when you are.
Add source material on the left. Results are pattern matches, not proof that a credential is active.
Latest transmissions
For the work after the scanner finishes yelling.
A field guide to agentic vulnerability management (with an actual off switch)
A practical operating model for introducing agents without confusing automation, authority, and accountability.
Finding vulnerabilities is getting cheaper. The backlog has noticed.
AI compresses the cost of discovery, but the expensive parts of vulnerability management still begin after the finding exists.
The vulnerability ticket is an interface, not a filing cabinet
A useful vulnerability record should help an owner decide and act—not merely preserve scanner output.
exhibit A: the backlog