Aggregator
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
Импортозамещённый Linux не спас. Новый Go-троян бьет по госструктурам
Михаил Кадер: «Zero Trust – не панацея»
Submit #674151: Tenda CH22 V1.0.0.1 Buffer Overflow [Accepted]
Скачали "читы для Discord" с YouTube? Поздравляем, RedTiger перехватывает ваши платежи
Китайские хакеры получили доступ к производству ядерного оружия США. Спасибо, SharePoint
«Нас не остановить»: LockBit вернулся с пятой версией шифровальщика и атакует сразу три континента
SafePay 黑客组织声称已攻陷专业视频监控提供商 Xortec
Hackers Exploiting Microsoft WSUS Vulnerability In The Wild – 2800 Instances Exposed Online
Hackers are actively exploiting a critical flaw in Microsoft’s Windows Server Update Services (WSUS), with security researchers reporting widespread attempts in the wild. The vulnerability, tracked as CVE-2025-59287, allows remote code execution on unpatched WSUS servers, potentially granting attackers full control over enterprise networks. As of October 27, 2025, firms monitoring global scan data have […]
The post Hackers Exploiting Microsoft WSUS Vulnerability In The Wild – 2800 Instances Exposed Online appeared first on Cyber Security News.
俄罗斯食品安全监管机构遇网络攻击
Прибыль рухнула, серверы — тоже. Alaska Airlines отменила более 360 рейсов из-за восьмичасового сбоя
后量子密码学与量子安全:综述
Scattered LAPSUS$ Hunters Onion Leak Website Taken Down By Law-enforcement Agencies
Law enforcement agencies from the United States and France have seized the onion leak website operated by the notorious Scattered LAPSUS$ Hunters collective, displaying a prominent seizure notice featuring logos from the FBI, Department of Justice, and international partners. This coordinated action, executed around October 9, 2025, targeted the BreachForums infrastructure, which the group had […]
The post Scattered LAPSUS$ Hunters Onion Leak Website Taken Down By Law-enforcement Agencies appeared first on Cyber Security News.
新修复的微软 WSUS 严重漏洞已被积极利用
3000 个 YouTube 视频实为恶意软件陷阱
Птицы больше не поют. В «Кремниевой долине 2.0» гул серверов Amazon и Google заменил звуки природы
APT36 组织使用基于 Golang 的 DeskRAT 恶意软件攻击印度政府
工信部通报20款智能终端存在侵害用户权益行为
根据中央网信办、工业和信息化部、公安部、市场监管总局等四部门联合发布的《关于开展2025年个人信息保护系列专项行动的公告》,按有关法律法规要求,工业和信息化部信息通信管理局对智能终端违法违规收集使用个人信息等问题开展治理。近期,经组织第三方检测机构进行抽查,共发现20款智能终端存在侵害用户权益行为(详见附件),现予以通报。
上述智能终端应按有关规定进行整改,整改落实不到位的,工业和信息化部信息通信管理局将依法依规组织开展相关处置工作。
文章来源自:工业和信息化部信息通信管理局