Aggregator
CVE-2026-5342 | LibRaw up to 0.22.0 TIFF/NEF decoders_libraw.cpp nikon_load_padded_packed_raw load_flags/raw_width out-of-bounds (Issue 795)
小学生求阴影面积
Venom Stealer MaaS Platform Commoditizes ClickFix Attacks
Submit #781223: LibRaw 0.22.0 Out-of-Bounds Read [Accepted]
Iran Calls U.S. Tech Companies ‘Legitimate Targets,’ Threatens to Attack
The Iranian government is threatening to attack the Middle East operations of more than a dozen U.S. tech companies, including Microsoft, Nvidia, and Google, calling them "legitimate targets." Meanwhile, pro-Iranian threat groups expand their operations as the U.S. and Israel continues their bombing campaign against Iran.
The post Iran Calls U.S. Tech Companies ‘Legitimate Targets,’ Threatens to Attack appeared first on Security Boulevard.
过去一年最活跃的勒索软件组织是 Qilin
WorldLeaks
You must login to view this content
WorldLeaks
You must login to view this content
【CVE-2026-28451】OpenClaw存在的SSRF 漏洞代码层面原理分析
European-Chinese geopolitical issues drive renewed cyberespionage campaign
Proofpoint researchers say the group behind the surge, TA416, had turned away from Europe for a few years.
The post European-Chinese geopolitical issues drive renewed cyberespionage campaign appeared first on CyberScoop.
《商业竞争分析》面世,现接受预订
【工具】开源情报可视化指挥大屏汇总
DragonForce
You must login to view this content
SuperAgers: старики с суперсилой. Их мозг растит новые нейроны даже в 80, когда у других всё умирает
North Korean hackers linked to Axios npm supply chain compromise
The software supply chain attack that resulted in the compromise of npm packages of Axios, an extremely popular HTTP client library, is believed to be the work of financially-motivated North Korean attackers. Links to UNC1069 On March 31, 2026, unknown attackers managed to publish two backdoored Axios npm packages after gaining access to a maintainer’s npm account. The malicious versions introduced a hidden dependency containing a post-install script, and this script executed automatically during installation … More →
The post North Korean hackers linked to Axios npm supply chain compromise appeared first on Help Net Security.
Akira
You must login to view this content
Akira
You must login to view this content