Aggregator
Taxing times: Top IRS scams to look out for in 2026
BeyondTrust 警示远程支持软件存在严重远程代码执行漏洞
Axios 曝高危漏洞,可致 Node.js 服务崩溃
经典 Frida 检测 libmsaoaidsec.so 绕过
【新课】吃透 Windows 内核攻防!专家带练120h+ 生产级实战+AI工具
Bloody Wolf 利用 NetSupport RAT 针对乌兹别克斯坦与俄罗斯发起钓鱼攻击
TeamPCP 蠕虫利用云基础设施构建犯罪平台
黑客利用 Ivanti EPMM 设备部署休眠后门
Claude 桌面扩展零点击远程代码执行漏洞曝光,超万名用户面临远程攻击风险
新型基于 Node.js 的 LTX 窃取器攻击用户窃取登录凭证
思考一下终端安全的现状与防御
Linux 内核漏洞利用入门:pwn.college Kernel Security Writeup
DuckDuckGo enables AI voice chat without saving voice data
DuckDuckGo has added voice chat to Duck.ai, allowing users to speak to an AI assistant while keeping audio private, unrecorded, and excluded from AI training. Voice chat is available in the DuckDuckGo browser and most third-party browsers, with support for Mozilla listed as coming soon. According to the company’s help page, “DuckDuckGo limits access to audio streams and voice data so they are available only to OpenAI, the model provider for voice chats, and only … More →
The post DuckDuckGo enables AI voice chat without saving voice data appeared first on Help Net Security.
CVE-2025-11242 | Teknolist Okulistik up to 21102025 server-side request forgery
YouTube Music 限制免费用户查看歌词
European Governments Breached in Zero-Day Attacks Targeting Ivanti
Open Source, Open Access: 5 Million Servers Expose Critical Git Metadata and Credentials
Approximately five million web servers globally have been identified as misconfigured, exposing sensitive Git administrative metadata and precipitating
The post Open Source, Open Access: 5 Million Servers Expose Critical Git Metadata and Credentials appeared first on Penetration Testing Tools.