The type confusion bug can lead to V8 sandbox escape and control-flow hijacking of the host process. A critical-severity type ...
Isolated-vm's ExternalCopy type confusion lets sandboxed code corrupt host memory and potentially reach host RCE; fixes are ...
The type confusion vulnerability allows a guest-to-host sandbox escape which can lead to remote code execution ...
JavaScript Explicit Resource Management lands in Safari Technology Preview 250, completing cross-browser support across V8, ...
Cloudflare Workers Spectre attack research published August 19, 2026 showed JWT token theft at 12 bits per second in live ...
OpenAI on Monday announced a new purpose-trained cybersecurity model, GPT-5.6-Cyber, and restructured its Daybreak program into two access tiers — but the most significant part of the announcement was ...
Chrome security update 151.0.7922.169/.170 patches 15 vulnerabilities, including two Critical sandbox-escape buffer overflows ...
We've got good news for developers who are enamored with Cloudflare Workers and Durable Objects but don’t want to be tied into that company’s backend infrastructure. Last week, Node.js creator Ryan ...
Explore how Firefox, Chromium and Safari work, comparing browser engines, JavaScript engines, performance, privacy, compatibility and key features.
米国時間8月7日、OpenAIは開発中のモデル「Astra」について、安全指針Preparedness Frameworkが定める最上位「Critical」というサイバー能力に達している可能性を否定できないと公表した。強化した管理要件を満たさない社内作業は止めた。その3日後、同社は攻撃実務に使える水準のハッキングモデルを商品として売り出した。
AppleのWebKitチームは2026年8月13日、Safari Technology Preview 250(STP 250)を公開した。本リリースでは、JavaScriptの「using」「await using」宣言を含む「Explicit ...
OpenAIは2026年8月11日、サイバーセキュリティに特化した新モデル「GPT-5.6-Cyber」を発表し、セキュリティ専門家向けプログラム「Daybreak」を2つのアクセス層に再編した。同モデルは発表前にGoogle ...