Aggregator
极客公园 @ 你!快来加入我们!
用 AI 读书、学习,大脑会萎缩吗?
SolarWinds Dameware Remote Control Service Vulnerability Allows Privilege Escalation
A significant vulnerability, CVE-2025-26396, affects the SolarWinds Dameware Mini Remote Control Service could allow attackers to escalate privileges on affected systems. Security researcher Alexander Pudwill, working with Trend Micro Zero Day Initiative, responsibly disclosed the flaw to SolarWinds. In a coordinated vulnerability disclosure, SolarWinds has released Dameware version 12.3.2, which addresses a critical security vulnerability. […]
The post SolarWinds Dameware Remote Control Service Vulnerability Allows Privilege Escalation appeared first on Cyber Security News.
国际 | 日本出台首部人工智能法
通知 | 《网络安全技术 计算机基本输入输出系统(BIOS)安全技术规范(征求意见稿)》等4项国家标准公开征求意见(附下载)
科来2025协议图:AI 时代的“数字交通规则”
Microsoft and CrowdStrike Teaming Up to Bring Clarity To Threat Actor Mapping
Microsoft and CrowdStrike announced a groundbreaking collaboration yesterday to streamline the confusing landscape of cyberthreat actor identification, marking what industry experts are calling a watershed moment for cybersecurity intelligence sharing. The partnership addresses a critical challenge that has long plagued the cybersecurity industry: the proliferation of different naming conventions for the same threat actors across […]
The post Microsoft and CrowdStrike Teaming Up to Bring Clarity To Threat Actor Mapping appeared first on Cyber Security News.
Кто бы мог подумать: генеративный ИИ спасает госслужбу от самой себя
Live Webinar | How to Choose an MDR Provider. Five Questions You Need to Ask
Top FBI cyber official Cynthia Kaiser exits for Halcyon
The 20-year bureau pro wants to see what it’s like to fight ransomware from the private sector.
The post Top FBI cyber official Cynthia Kaiser exits for Halcyon appeared first on CyberScoop.
#Infosec2025: VEC Attacks Alarmingly Effective at Driving Engagement
Где родился, там и пригодился: с примесями импорта шансов на тендер всё меньше
据称可绕过所有杀毒软件,Windows 加密器在地下论坛出售
APP 常见的 libmsaoaidsec.so 绕过姿势
【即刻说】第8期 | 专访蛮犀安全,聚焦APP 安全的那些事儿,诈骗风险、隐私泄露...
共鉴AI新价值新图景,默安科技邀您共襄全球盛会
New ModSecurity WAF Vulnerability Let Attackers Crash the System
A significant denial of service vulnerability has been discovered in ModSecurity, one of the most widely deployed open-source web application firewall (WAF) engines used to protect Apache, IIS, and Nginx web servers. The vulnerability, designated as CVE-2025-48866, affects all ModSecurity versions prior to 2.9.10 and allows attackers to crash systems through exploitation of the sanitiseArg […]
The post New ModSecurity WAF Vulnerability Let Attackers Crash the System appeared first on Cyber Security News.