source&pool
A daily wire of long-form journalism, video, and discourse — filed, tagged, and laid out flat.
VOL. I·NO. 01
TUESDAY, SEPTEMBER 29, 2026
X 主题热门3941Hacker News3924CNBC82YahooFinance80aihot77Verge64IGN509to5Mac419to5Google39MacRumors38Engadget37Kotaku36TechCrunch34AndroidAuthority30PushSquare25Eurogamer21Guardian21NintendoLife20Investor'sBusinessDaily19ArsTechnica18Mashable18TechPowerUp17FoxBusiness14Polygon14Wccftech14Gematsu13SeekingAlpha13BusinessInsider12Fortune11Gizmodo11NBC11NPR11bgr10CNN10VideoGamesChronicle10WIRED10GSMArena9USAToday9AlJazeera8AndroidPolice8DroidLife8GameGPU8GameInformer8NewYorkPost8PureXbox8CBS7CNET7MotleyFool7Fox7GamesIndustry.biz7XBOXWire7BleepingComputer6HollywoodReporter6Jalopnik6NintendoEverything6Hacker6Yahoo6ABC5AndroidCentral5AppleInsider5InsiderGaming5Tom'sGuide5VideoCardz5Draftsim4GAMINGbible4NYT4CrudeOilPricesToday4PokeBeach4SamMobile4Space4UploadVR4WarhammerCommunity4WhatHi-Fi?4404Media3Aftermath3Electrek3EventHubs3Futurism3Hackaday3Lifehacker3Motor13Nature3Notebookcheck3PCMag3PetaPixel3PlayStationLifeStyle3SouthChinaMorningPost3Yahoo3YahooTech3TechSpot3Conversation3Register3WindowsCentral324/7WallSt.2AndroidHeadlines2Anthropic2Autonocion2AZFamily2BostonGlobe2BuzzFeed2ChromeUnboxed2CoinDesk2Currently2DCRainmaker2Deadline2DigitalFoundry2Euronews2GameRant2GearPatrol2GeekyGadgets2iLovetheUpperWestSide2LosAngelesTimes2MP1st2mtgrocks2MyNintendo2Phoronix2Pokemon2politico.eu2RoadtoVR2RockPaperShotgun2RPGSite2SeattleTimes2SFGATE2SimpleFlying2SimsCommunity2SlashGear2Slate2Autopian2TimeExtension2TODAY2ynetnews26abcPhiladelphia180Level1WXLV1ageofempires1airlive1AJC1AlaskaBeacon1Apple1AVClub1AviationWeek1Benzinga1BoingBoing1Yahoo!FinanceCanada1YahooLifestyleCanada1CarandDriver1CineD1CnEVPost1comicbookmovie1Skin.ClubCommunity1consequence1CreativeBloq1YahooCreators1DailyKos1DaringFireball1Deseret1Designboom1Dezeen1DigitalCameraWorld1DSOGaming1DiarioAS1Finbold1ForexFactory1FOX13Seattle1franchisetimes1Futurity1GameFile1GameWorldObserver1garymarcus.substack1GeekWire1GosuGamers1Gothamist1Hackster.io1HuffPost1Independent1InsideEVs1InterestingEngineering1investor.costco1Invezz1I/OFund1iPhoneinCanada1KCRA1KOMO1MacObserver1Magic:Gathering1MakeUseOf1Mashed1Minecraft1MLive1MortgageDaily1Motorsport1MyNorthwest1NBCBayArea1NBC5Chicago1NBC7SanDiego1BloombergLaw1Newser1SemiAnalysis1Newsshooter1Newsweek1NintendoWire1Nokiamob1OregonPublicBroadcasting1OregonLive1PageSix1PCGamesN1PersonaCentral1PickupTruck+SUVTalk1Psyche1QuantaMagazine1Realtor1RichmondTimes-Dispatch1Richmonder1Road&Track1ScienceDaily1ScreenRant1SeattleRed1SanFranciscoChronicle1YahooFinanceSingapore1GhostHowls1SlowBoring1SoraNews241SpaceNews1statnews1svg1TampaBayTimes1the5krunner1DailyBeast1Intercept1NextWeb1https://tipswatch.com/1TMZ1TopGear1TweakTown1YahooFinanceUK1PCMagUK1Variety1Vulture1WCVB1WFMZ1WHYY1WindowsLatest1WrestlingInc.195.5WSB1YGOrganization1
  1. 001HackerSEP · 28English

    Unpatched OnePlus Flaws Let Installed Android Apps Gain Root Without Permissions

    A researcher discovered two unpatched flaws in OnePlus's OxygenOS that allow installed apps to gain root access without special permissions. OnePlus confirmed the vulnerabilities affect multiple devices from OnePlus and OPPO but refused to allow disclosure, claiming exclusive control over when flaws become public. After five months without a fix, the researcher published the details on September 24, revealing how the attack chains two OnePlus services to escalate privileges to full system control.

    By The Hacker News
  2. 002Hacker NewsSEP · 28English

    File Notification Attacks

    Researchers discovered critical side-channel vulnerabilities in file-notification systems across Linux, Android, Windows, and macOS that allow attackers with read-only access to reconstruct user behavior by monitoring file change notifications. Each platform has unique severe issues: Linux's inotify leaks keystroke timing through directory watches, Android's FileObserver bypasses app storage isolation to reveal private app activity, and Windows exposes system-wide file access across users through directory watching.

    By wolfi1
  3. 003Hacker NewsSEP · 27English

    My Ansible Plugin Had a Jail Escape: CVE-2026-55074

    A security vulnerability (CVE-2026-55074) was discovered in jailexec, an Ansible plugin for managing FreeBSD jails. The flaw allowed a root process inside a jail to escape and write arbitrary files to the host system by exploiting symlink resolution during file transfers. The vulnerability was fixed in version 2.0.0 released on 2026-06-10.

    By Christian Hofstede-Kuhn
  4. 004Hacker NewsSEP · 27English

    I Found a $113,337 Af_alg Linux Local Privilege Escalation Before Copy Fail

    Muhammad Alifa Ramdhan discovered CVE-2025-39964, a Linux kernel AF_ALG vulnerability enabling unprivileged users to escalate to root through a race condition between socket writers. The flaw, present since 2011, was responsibly disclosed and earned a $113,337 Google kernelCTF reward; it differs from the later Copy Fail vulnerability and can also escape Docker containers.

    By Muhammad Alifa Ramdhan
  5. 005Hacker NewsSEP · 27English

    Getting root on OnePlus 15 from an untrusted app

    A researcher discovered two chained vulnerabilities in OnePlus 15 (OxygenOS 16) that allow an untrusted app to gain root access and full Linux capabilities without special permissions. The exploit chains AtlasService's unprotected setEvent binder call with a path traversal in audioDumpInfo to achieve uid 0 execution; OnePlus confirmed the issue affects multiple OnePlus and OPPO devices and has fixed it in version 16.0.10.500(EX01).

    By Author; Rasmus Moorats
  6. 006Hacker NewsSEP · 25English

    CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2

    Security researchers detail the exploitation of CVE-2025-13032, a double-fetch vulnerability in Avast's kernel driver that leads to a paged pool overflow on Windows 11. By racing a toggled Length field, attackers achieve arbitrary kernel read/write primitives and escalate privileges to SYSTEM via token theft and IORing object corruption.

    By SAFA Team
  7. 007HackerSEP · 24English

    New cPanel Flaw Lets a Hosting Account Run Code as Root, Take Full Server Control

    cPanel disclosed three security flaws, including a critical vulnerability in its CalDAV/CardDAV service that allows any hosting account holder to execute code as root and gain full server control. A second flaw in the WP Toolkit plugin enables users to modify databases belonging to other accounts, while a third permits reading other accounts' calendar data. cPanel has released patched versions for all three issues.

    By The Hacker News
  8. 008Hacker NewsSEP · 23English

    Show HN: RustyTux – Linux kernel LPE exploiting an ESP-in-TCP race

    RustyTux is a Linux kernel local privilege-escalation exploit targeting an ESP-in-TCP race condition in the strparser that affects multiple major Linux distributions including CentOS Stream 9 and Ubuntu 26.04 LTS. The timing-sensitive exploit uses x86 prefetch side-channel attacks to leak kernel base addresses and reclaims freed memory to achieve unprivileged privilege escalation.

    By M
  9. 009Hacker NewsSEP · 22English

    Windows Exploitation Techniques: Dangling COM Object Registrations

    A blog post describes exploiting CVE-2026-66804, an incomplete fix for the Windows privilege escalation vulnerability CVE-2026-50343 ('Dark Elevator'). The vulnerability involves a dangling COM object registration for CrossDevice with a missing server DLL in a world-writable directory, which attackers can abuse via custom COM marshaling to load arbitrary code into privileged processes.

    By James Forshaw
  10. 010Hacker NewsSEP · 22English

    A zero-day has been released for Meta's Muse

    A zero-day vulnerability in Meta's Muse allows local attackers to redirect dictation traffic by modifying an undocumented endpoint setting, enabling capture of audio, prompt injection, theft of authentication credentials, and abuse of Muse's elevated access privileges. A proof-of-concept tool demonstrates the attack by intercepting dictated prompts sent to an attacker-controlled endpoint.

    By Pwardle
  11. 011Hacker NewsSEP · 22English

    RustyTux: Linux kernel n-day local privilege escalation

    RustyTux is a Linux kernel local privilege-escalation exploit targeting an ESP-in-TCP use-after-free race condition in the strparser subsystem. The timing-sensitive exploit derives the kernel base via x86 prefetch side-channel, races socket teardown, and reclaims freed memory to escalate privileges. As of September 2026, the vulnerability affects standard kernels in CentOS Stream 9 and Ubuntu 26.04 LTS.

    By M