Anthropic Mythos AI Finds Rejetto HFS Flaw That Lets Attackers Forge Admin Sessions and Execute Code
Mythos AI found a critical Rejetto HFS flaw enabling admin-session forgery and arbitrary code execution via predictable Math.random() keys.
CVE-2026-61500 is a critical authentication bypass in Rejetto HTTP File Server, discovered by Anthropic Mythos AI and exploited within 24 hours of public disclosure by a China-linked actor targeting ...
Hackers are actively scanning for a Rejetto HFS weak signing key vulnerability, tracked as CVE-2026-61500, that allows ...
CVE-2026-61500 allows attackers to recover the session-cookie signing key and gain administrative access and RCE.
Rejetto HFS CVE-2026-61500 faces exploitation attempts after a public PoC showed forged admin sessions can lead to remote code execution.
It’s needing to log into an account while someone watches me cycle through every password I’ve ever used, hoping one of them magically works. It’s no fun confidently typing a password, getting told it ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results