Aggregator
Please support the site operations by clicking ads.
[Virtual Event] Building a Secure AI Strategy for the Enterprise
3 weeks 3 days hence
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
5 hours 15 minutes ago
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
$200 за подписку не спасли. OpenAI перестала продавать Pro из-за дефицита вычислительной мощности
6 hours 9 minutes ago
Новый всплеск спроса заставил компанию выбирать между ростом и стабильностью.
DeepSeek V4.1 Flash: большая модель, которой нужно вчетверо меньше HBM
7 hours 5 minutes ago
Разработчики нашли способ снять одно из главных ограничений современных LLM.
CVE-2026-85706
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 13 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain conditions, an unauthenticated user could have read arbitrary files from the GitLab server due to improper path ...
CVE-2026-42018
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 14 - JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.
CVE-2026-42016
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 14 - JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation check of the token signature/issuer and not the token’s scope.
CVE-2026-84869
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 13 - A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances. ScreenConnect servers are not impacted.
CVE-2026-81963
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 11 - Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
CVE-2026-85103
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 2 - A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.
CVE-2026-85102
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 2 - Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.
CVE-2026-67277
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 1 - RouterOS accepts a "related" btest connection before the corresponding primary session has completed authentication. An unauthenticated client can use this state to start an IPv4 UDP test. With "random-data=false", the sender transmits an uninitialized tail from a kernel packet ...
CVE-2025-25249
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 1 - A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4 all versions, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 ...
CVE-2026-86060
8 hours 4 minutes ago
Currently trending CVE - Hype Score: 1 - RouterOS contains an argument-handling flaw in the SSH login
path involving usernames that begin with a prohibited character, allowing for the trusted RouterOS policy mask to be changed, leading to privilege escalation. Exploitation requires an unauthenticated SSH session to ...
Биороботы получили мышцы с диапазоном движения в 11 раз больше
8 hours 16 minutes ago
Алгоритм одновременно выращивает мышцу и проектирует скелет.
Новый Android-вымогатель крадёт OTP, пишет экран и тайно фотографирует жертву
9 hours 17 minutes ago
Mantax Otax объединяет несколько сценариев атаки, которые раньше чаще встречались по отдельности.
Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited
9 hours 20 minutes ago
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Zero trust AI agents demand a different kind of security In this interview, Chris Webber, VP, Product Marketing at Teleport, explains why zero trust principles need to change for AI agents. He covers how agents act fast, unpredictably, and continuously, and why old ideas like least privilege and point-in-time verification fall short. AI-Infra-Guard: Open-source security scanner for AI systems Tencent’s … More →
The post Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited appeared first on Help Net Security.
Help Net Security
Квантовый навигатор без GPS уменьшили до одного чипа
10 hours 1 minute ago
Квантовый датчик на фотонном чипе сможет определять движение там, где спутниковый сигнал недоступен.
«Алиса» может остаться навсегда. Удаление приложения предлагают запретить
10 hours 43 minutes ago
«Яндекс» оспаривает трактовку о неудаляемости помощника.