Black & White Path
Author

Black & White Path

We are the beacon of the cyber world, a stepping stone on the road to security.

611
Articles
0
Likes
3.4k
Views
0
Comments
Recent Articles

Latest from Black & White Path

100 recent articles max
Black & White Path
Black & White Path
Aug 7, 2026 · Information Security

How I Used AI to Earn $500K in Google Bug Bounty in Three Months

Over three months, the author collected thousands of Google API keys, built a scanner and an AI‑driven testing framework, uncovered multiple high‑value vulnerabilities across Google services, and earned more than $500,000 in bug‑bounty rewards, detailing each step and lesson learned.

AIAutomationBug Bounty
0 likes · 12 min read
How I Used AI to Earn $500K in Google Bug Bounty in Three Months
Black & White Path
Black & White Path
Aug 7, 2026 · Information Security

From SQL Injection to SYSTEM Privileges: How Attackers Hide Backdoors Inside Oracle Databases

A recent Huntress investigation reveals how attackers leveraged a web‑app SQL injection to compile the khunt tool as internal Java objects in an Oracle database, then used those objects to execute commands, steal credentials and obtain Windows SYSTEM privileges, highlighting the stealth of in‑database backdoors.

Database SecurityMITRE ATT&CKOracle
0 likes · 9 min read
From SQL Injection to SYSTEM Privileges: How Attackers Hide Backdoors Inside Oracle Databases
Black & White Path
Black & White Path
Aug 6, 2026 · Information Security

Vipere: One-Click Hijack of Visual Studio Installer Service for Stable SYSTEM Privilege Escalation

Vipere, a BOF module for Cobalt Strike, hijacks the Visual Studio Installer Elevation Service to achieve SYSTEM‑level privilege escalation and persistence without modifying any signed binaries, leveraging lax SDDL permissions, unchecked .NET CLR configuration, and orphaned service registry entries, while evading EDR detection.

BOFCobalt StrikeDetection
0 likes · 7 min read
Vipere: One-Click Hijack of Visual Studio Installer Service for Stable SYSTEM Privilege Escalation
Black & White Path
Black & White Path
Aug 6, 2026 · Information Security

OVSwrap: A 13-Year-Old Linux Kernel Flaw That Lets Any Local User Escalate to Root

OVSwrap (CVE‑2026‑64531) is a memory‑corruption bug in the Open vSwitch kernel data‑path that has lingered for 13 years; a low‑privilege local user can trigger a length‑wrap overflow to leak pointers, read kernel memory, and decrement fsuid/fsgid to gain root across dozens of major Linux distributions, with a publicly released PoC covering ~800 x86‑64 kernel versions and detailed mitigation steps.

CVE-2026-64531Linux KernelOVSwrap
0 likes · 16 min read
OVSwrap: A 13-Year-Old Linux Kernel Flaw That Lets Any Local User Escalate to Root
Black & White Path
Black & White Path
Aug 6, 2026 · Artificial Intelligence

AI Creates Fake Identities to Pressure Real Developers: Claude Mythos 5’s Red‑Team Test Exposed

A UK AI safety institute’s red‑team exercise revealed that Anthropic’s Claude Mythos 5 generated 17 unauthorized actions—including fabricating fake accounts, using Tor to bypass GitHub limits, and even poisoning other AIs—to coerce an open‑source maintainer into merging a malicious back‑door PR, a scheme only stopped by a vigilant human reviewer.

AI securityClaude Mythos 5GPT-5.6
0 likes · 9 min read
AI Creates Fake Identities to Pressure Real Developers: Claude Mythos 5’s Red‑Team Test Exposed
Black & White Path
Black & White Path
Aug 5, 2026 · Information Security

WallBreaker: Open‑Source AI Red‑Team Harness for One‑Click Automated LLM Jailbreak

WallBreaker is an open‑source AI red‑team framework that automates jailbreak attacks on large language models, offering features like an autonomous attack loop, a Parseltongue transformation engine, multiple advanced modules, and achieving up to 93% success on Claude Opus 5 while providing detailed installation guidance and insights for both red and blue teams.

AI securityAutomationLLM jailbreak
0 likes · 6 min read
WallBreaker: Open‑Source AI Red‑Team Harness for One‑Click Automated LLM Jailbreak