Aggregator
Gartner Warns Agentic AI Will Accelerate Account Takeovers
1 year 1 month ago
Gartner has claimed that AI agents will reduce the time it takes to exploit exposed accounts
Kali Linux 2025.1a 发布:新增工具、年度主题更新
1 year 1 month ago
Kali Linux 2025.1a 发布,新增 Hoaxshell 工具,全新主题和桌面更新,提升安全测试体验。
Rules File Backdoor: AI Code Editors exploited for silent supply chain attacks
1 year 1 month ago
The Rules File Backdoor attack targets AI code editors like GitHub Copilot and Cursor, making them inject malicious code via a supply chain vulnerability. Pillar Security researchers uncovered a dangerous new supply chain attack vector called ‘Rules File Backdoor.’ Threat actors could use the technique to silently compromise AI-generated code by injecting malicious code. The attack […]
Pierluigi Paganini
新型 Rules File Backdoor 攻击使黑客能够通过 AI 代码编辑器注入恶意代码
1 year 1 month ago
安全客
«Плати или я звоню Сноудену»: вымогатели нашли новую тактику шантажа
1 year 1 month ago
Нестандартный аргумент в переговорах Ox Thief начинает новую эру атак.
5 Identity Threat Detection & Response Must-Haves for Super SaaS Security
1 year 1 month ago
Identity-based attacks are on the rise. Attackers are targeting identities with compromised credentials, hijacked authentication methods, and misused privileges. While many threat detection solutions focus on cloud, endpoint, and network threats, they overlook the unique risks posed by SaaS identity ecosystems. This blind spot is wreaking havoc on heavily SaaS-reliant organizations big and small
The Hacker News
搭载满血DeepSeek大模型,360企业安全浏览器斩获企业数智化转型实践成果殊荣
1 year 1 month ago
获评企业数智化转型实践成果!360企业安全浏览器推动AI普惠
搭载满血DeepSeek大模型,360企业安全浏览器斩获企业数智化转型实践成果殊荣
1 year 1 month ago
获评企业数智化转型实践成果!360企业安全浏览器推动AI普惠
CVE-2024-6382
1 year 1 month ago
Currently trending CVE - Hype Score: 3 - Incorrect handling of certain string inputs may result in MongoDB Rust driver constructing unintended server commands. This may cause unexpected application behavior including data modification. This issue affects MongoDB Rust Driver 2.0 versions prior to 2.8.2
最高10万元 | 生服专测邀你开挖!
1 year 1 month ago
上号!开挖!
最高10万元 | 生服专测邀你开挖!
1 year 1 month ago
上号!开挖!
最高10万元 | 生服专测邀你开挖!
1 year 1 month ago
上号!开挖!
最高10万元 | 生服专测邀你开挖!
1 year 1 month ago
上号!开挖!
最高10万元 | 生服专测邀你开挖!
1 year 1 month ago
上号!开挖!
最高10万元 | 生服专测邀你开挖!
1 year 1 month ago
上号!开挖!
GitHub Action 被攻陷,引发连锁供应链攻击
1 year 1 month ago
确切攻击方法尚不清晰
ChatGPT 漏洞被用于攻击美国政府组织机构
1 year 1 month ago
尽管该漏洞属于中危级别,但已成为真实的攻击向量。
GitHub Actions 现新一轮供应链攻击
1 year 1 month ago
安全客
观点 | “对症下药”治理网络敲诈勒索犯罪
1 year 1 month ago
随着信息网络与社会生活的深度融合,违法犯罪行为也正在向网络空间扩散。近年来,利用网络制造散播谣言、负面信息进行敲诈勒索的案件时有发生,严重损害人民群众和企事业单位的名誉权、财产权等合法权益,危害网络安全、社会稳定和经济发展。