๐—ง๐—ต๐—ฒ ๐—›๐—ง๐—ง๐—ฃ/๐Ÿฎ ๐—•๐—ผ๐—บ๐—ฏ: ๐—ฆ๐—ฒ๐—ฟ๐˜ƒ๐—ฒ๐—ฟ ๐——๐—ผ๐—ฆ

Your web servers face a new threat. One laptop kills them. It eats 32GB of RAM in 20 seconds. No botnet needed. No passwords needed.

The attack hits five major servers:

Two old bugs work together here. First, the attack inflates headers to fill memory. Second, it stalls the connection to lock the memory. The server crashes.

AI found this flaw. OpenAI Codex read the code. It saw how the bugs fit. Now AI reads patches to build exploits. The gap between a patch and an attack is gone.

Fix your servers:

General safety tips:

Run tests on your setup now.

Source: https://dev.to/kkierii/http2-bomb-cve-2026-49975-the-hpack-flow-control-dos-and-how-to-patch-it-26ba