Aggregator
加蓬屏蔽所有社交媒体
Submit #754200: SECCN SECCN G10 VPN V3.1.0.181203 Unauthorized RCE [Accepted]
Submit #754033: detronetdip E-commerce 1.0 Cross-Site Scripting (XSS) [Accepted]
Submit #754030: detronetdip E-commerce 1.0 Access Control Violation [Accepted]
14 岁少年的折纸结构能承受自身万倍的重量
Data breach at fintech firm Figure affects nearly 1 million accounts
Самый дорогой долгострой Пентагона. Ядерный щит за $140 млрд снова отложили — денег нет
The era of the Digital Parasite: Why stealth has replaced ransomware
For years, ransomware encryption functioned as the industry’s alarm bell. When systems locked up, defenders knew an attack had occurred. Not anymore. New empirical data show that attackers are actively dismantling that signal. According to Picus Security’s Red Report 2026, adversaries are no longer optimizing for disruption; they’re optimizing for residency. Based on a thorough analysis of more than 1.1 million malicious files and 15.5 million adversarial actions from 2025, this year’s report documents a … More →
The post The era of the Digital Parasite: Why stealth has replaced ransomware appeared first on Help Net Security.
AIOps Outcomes Depend on Data Quality, Not Algorithms
16 Zero-Day Vulnerabilities in Popular PDF Platforms Enable Code Execution and Data Exfiltration
16 zero-day vulnerabilities, including critical OS Command Injection, DOM-based XSS, SSRF, and Path Traversal flaws across Apryse WebViewer (formerly PDFTron) and Foxit PDF cloud services, affecting millions of enterprise users worldwide. The disclosure from Novee Security showcases its AI-augmented human-agent research workflow to demonstrate scalable zero-day discovery across widely deployed, complex PDF platforms. Both Apryse […]
The post 16 Zero-Day Vulnerabilities in Popular PDF Platforms Enable Code Execution and Data Exfiltration appeared first on Cyber Security News.
春晚机器人从跳舞到干活,这家公司把马斯克吹过的牛实现了
Submit #753980: D-Link DCS-931L v1.0.0 Command Injection [Duplicate]
Submit #753973: Tsinghua Unigroup Electronic Archives System 3.2.210802(62532) Unrestricted Upload [Accepted]
Submit #753418: Tsinghua Unigroup Electronic Archives System 3.2.210802(62532) File and Directory Information Exposure [Accepted]
Submit #753383: Tsinghua Unigroup Electronic Archives System 3.2.210802(62532) File and Directory Information Exposure [Duplicate]
Submit #753308: Tsinghua Unigroup Electronic Archives System Versions 1 Total 3.2.210802(62532) SQL Injection [Accepted]
Ваши секреты — больше не достояние окружающих. Samsung встроил в свои смартфоны защиту от подглядывания
Cloud Range launches AI Validation Range to safely test and secure AI before deployment
Cloud Range has introduced its AI Validation Range, a secure, contained virtual cyber range that enables organizations to test, train, and validate AI models, applications, and autonomous agents without risking exposure of sensitive production data. AI adoption is accelerating faster than most organizations can meaningfully validate its security. Security teams are asked to integrate and defend AI systems that they didn’t design and can’t safely evaluate in production. With AI Validation Range, organizations can verify … More →
The post Cloud Range launches AI Validation Range to safely test and secure AI before deployment appeared first on Help Net Security.
MetaMask Users Targeted with Phishing Emails Containing Forged Security Report to Evade Detection
A new phishing campaign is targeting MetaMask users through carefully crafted emails that contain fake security incident reports designed to manipulate victims into compromising their accounts. The attack leverages social engineering tactics by creating a false sense of urgency around account security, specifically pushing users to enable two-factor authentication through malicious links. MetaMask, a widely […]
The post MetaMask Users Targeted with Phishing Emails Containing Forged Security Report to Evade Detection appeared first on Cyber Security News.