Skip to content
Tech News
clear
Topics: Today This Week This Month This Year

Attackers Actively Exploiting Critical GitLab Path Traversal Bug, CVE-2026-85706

A maximum-severity flaw in GitLab's Community and Enterprise editions, patched September 10, is being actively exploited to pull arbitrary files from self-hosted GitLab servers without authentication. WatchTowr researchers say attackers have moved from probing to full exploitation, extracting configuration files, secrets, and SSH settings from compromised systems. CISA has added the bug to its Known Exploited Vulnerabilities list, ordering federal agencies to patch or take affected instances offline.

Linux Foundation reports AI scrapers now dominate its git server traffic

The Linux Foundation's IT infrastructure director revealed that AI crawlers hunting for clean, LLM-free training data are hammering the organization's kernel.org git servers, consuming more CPU power than all legitimate human and tool access combined. Because cgit can generate near-infinite valid URLs for commits, diffs, and patches across hundreds of forks, scrapers are redundantly fetching duplicate data at massive scale.

Today's top topics: openai apple anthropic artificial intelligence ai safety android authority beats 360 dario amodei meta muse sam altman
View all today's topics →