勒索月报|360独家披露8月勒索软件流行态势,AI驱动攻击加剧政企安全危机
8月勒索软件流行态势分析报告:AI驱动勒索升级,PromptLock家族现世
A critical, zero-click vulnerability that allows attackers to hijack online accounts by exploiting how web applications handle international email addresses. The flaw, rooted in a technical discrepancy known as a “canonicalization mismatch,” affects password reset and “magic link” login systems, which are foundational to modern web security. According to NullSecurityX, the attack requires no interaction […]
The post Critical 0-Click Vulnerability Enables Attackers to Takeover Email Access Using Punycode appeared first on Cyber Security News.