Mobile
Security
Intelligence.
Real-time vulnerability tracking, technical analysis, and threat intelligence focused on Android, iOS, and mobile-first infrastructure.
Recent Vulnerabilities
Latest Research
CVE-2026-32956: Heap Overflow in silex SD-330AC Redirect URL Parsing
A pre-auth heap-based buffer overflow in silex SD-330AC and AMC Manager's redirect URL processing allows remote code execution. CVSS 9.8, no authentication required.
CVE-2026-32955: Stack Buffer Overflow in silex SD-330AC Redirect URL Handling
silex SD-330AC ≤1.42 and AMC Manager ≤5.0.2 contain a stack-based buffer overflow in redirect URL processing. Authenticated network attackers can achieve arbitrary code execution on the device.
CVE-2026-6596: Unrestricted File Upload RCE in Langflow API
Langflow ≤1.1.0 allows unauthenticated arbitrary file upload via create_upload_file(), bypassing extension and MIME validation entirely. Remote code execution is achievable by uploading a Python module to a predictable path.
Weekly Mobile Security Digest
Every Friday — the most critical mobile vulnerabilities, threat actor activity, and security research. No noise. No marketing. Just intelligence.
No spam. Unsubscribe anytime. ~500 words per edition.