Aggregator
$4 млн за три дня. Устаревшие смарт-контракты стали главной дырой De-Fi проекта Aztec
把 .o 变成 .ko:GKI 安全特性的铁幕
2026端午致谢 | 端午安康,致敬每一位并肩的安全伙伴(文末活动赢礼品)
FIFA World Cup 2026: Hackers Target Football Fans With Fake Tickets Sites
Mastodon 4.6 adds profile Collections and two-factor controls
People who run accounts on the open source social network Mastodon can now group profiles together and share those groups across the web. The 4.6 release centers on a feature called Collections, along with reworked profiles, email newsletters, server administration controls, and a set of accessibility changes. Server controls The release gives server administrators a control to require two-factor authentication on member accounts. Jerry, the administrator of infosec.exchange, plans to turn the requirement on and … More →
The post Mastodon 4.6 adds profile Collections and two-factor controls appeared first on Help Net Security.
CVE-2026-12466 | Google Chrome up to 149.0.7827.115 on Windows WebRTC heap-based overflow (EUVD-2026-37551 / Nessus ID 321383)
CVE-2026-35273 | Oracle PeopleSoft Enterprise PeopleTools 8.61/8.62 Updates Environment Management missing authentication (EUVD-2026-36199 / Nessus ID 321385)
CVE-2026-42144 | GreycLab CImg prior .3.7.5 PPM File _load_pnm dimension integer overflow (ID 478 / Nessus ID 321387)
国家金融监督管理总局发布《关于银行业保险业人工智能安全开发应用的指导意见》(简称《指导意见》)
CVE-2026-12045 | pgAdmin 4 up to 9.15 Database Driver sql injection (Issue 10022 / WID-SEC-2026-2005)
CVE-2025-15661 | libssh2 up to 1.11.1 SSH src/sftp.c sftp_symlink link_len out-of-bounds (WID-SEC-2026-2007)
CVE-2026-56132 | libexpat up to 2.8.1 xmlparse.c doProlog incorrect synchronization (WID-SEC-2026-2008)
CVE-2026-56131 | libexpat up to 2.8.1 use after free (WID-SEC-2026-2008)
CVE-2026-4660 | HashiCorp Tooling up to 1.8.5 information disclosure (EUVD-2026-20894 / Nessus ID 305826)
The Hacker News Recognizes ANY.RUN as the Best Security Investigation Platform 2026
ANY.RUN has been recognized as the Best Security Investigation Platform 2026 at the Cybersecurity Stars Awards by The Hacker News. This award reflects our dedication to building solutions that make a real impact on daily security operations. At ANY.RUN, we help SOC and MSSP teams worldwide streamline threat investigation workflows through confident decision-making, full malware and phishing visibility, and actionable insights thataccelerate incident investigations and response. We thank our global community of security professionals for continuously trusting our solutions and supporting our growth! Reinforcing Our Position as a Market […]
The post The Hacker News Recognizes ANY.RUN as the Best Security Investigation Platform 2026 appeared first on ANY.RUN's Cybersecurity Blog.