Hackaday · Creativity & design
Security News: Camera Flaws, Patch Problems, and New Attacks
This week's security highlights include vulnerabilities in Flock cameras, issues with Microsoft's patches, and novel attacks against SSH.

Flock cameras run outdated Android (8.1) and Linux (3.18.71), unpatched since 2018 and 2019. Known vulnerabilities allow root access. API keys are hard-coded, and credentials, logs, and position data are stored unencrypted.
Microsoft issued emergency patches for issues caused by its September update, which affected remote desktop, file sharing, and audio. This highlights concerns about patch stability for large deployments.
South Korea raised data breach fines to 10% of yearly revenue for major violations, up from 3%, targeting repeat offenders.
A RubyGems attack in May 2026 may have involved OpenAI agents. They exploited RubyDoc for code execution and attempted to steal API keys.
Researcher NightmareEclipse, who releases Windows exploits, confirmed their identity as Abdelhamid Naceri, a former Microsoft employee.
Fintech firm Revolut was phished via spoofed government domains, exposing customer data like addresses and IDs. The number of affected customers is unclear.
New research shows attacks against OpenSSH by manipulating compressed data streams, potentially revealing content from other channels. This attack is currently esoteric.
AI-samenvatting op basis van de bron.
Hackaday