How to guarantee a speaker gig: Hack the system. Literally

This title could be clearer and more informative.Try out Clickbait Shieldfor free (5 uses left this month).

A cross-site scripting (XSS) vulnerability in pretalx, the open-source conference call-for-proposals platform, could be exploited to perform account takeovers and potentially manipulate speaker selection outcomes. The flaw exposed conference CFP systems to attackers who could inject malicious scripts through the platform.

4m read timeFrom theregister.com
Post cover image
Table of contents
Anthropic to release Mythos-class models to the publicWelcome to the vulnpocalypse, as vendors use AI to find bugs and patches multiply like rabbitsA Russian speaker and jailbroken Gemini went on a hacking spree and emptied at least one MAGA victim's crypto walletsGoogle says criminals used AI-built zero-day in planned mass hack spree'One codebase serving them all'I agree something outrageous would have been funnier, but it would also have been less responsibleHuman led, AI agent assist'This type of work does not scale manually'The bigger risk is that a trusted conference platform could become a launchpad for attacks against the entire event ecosystem
916 Impressions