Aggregator
【安全圈】OpenAI 确认在 TanStack 供应链攻击中出现安全漏洞
【安全圈】Pwn2Own Berlin 2026 首日发放 52.3 万美元奖金,Win11 被攻破 3 次
【安全圈】新型远程控制木马被披露,黑客伪造苹果与雅虎 CDN 域名攻击
Weekly Threat Landscape Digest – Week 20
Privilege Escalation Vulnerability in VMware Fusion Overview: A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in a SETUID binary operation within […]
The post Weekly Threat Landscape Digest – Week 20 appeared first on HawkEye.
What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack Surface
TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS Updates
Thieves unlock stolen iPhones using cheap tools sold on Telegram
Helping a friend recover a stolen phone, Infoblox researchers uncovered a thriving Telegram-based underground marketplace selling unlocking tools and phishing infrastructure used to monetize stolen iPhones. Activation Lock can remotely disable a stolen iPhone and prevent normal resale, with owners also able to lock individual components. Even with those protections, more than 7.35 million iPhones are reportedly stolen each year in the United States alone. “A locked device is almost worthless on the black market, … More →
The post Thieves unlock stolen iPhones using cheap tools sold on Telegram appeared first on Help Net Security.