Aggregator
国家金融监督管理总局发布《关于银行业保险业人工智能安全开发应用的指导意见》(简称《指导意见》)
CVE-2026-12045 | pgAdmin 4 up to 9.15 Database Driver sql injection (Issue 10022 / WID-SEC-2026-2005)
CVE-2025-15661 | libssh2 up to 1.11.1 SSH src/sftp.c sftp_symlink link_len out-of-bounds (WID-SEC-2026-2007)
CVE-2026-56132 | libexpat up to 2.8.1 xmlparse.c doProlog incorrect synchronization (WID-SEC-2026-2008)
CVE-2026-56131 | libexpat up to 2.8.1 use after free (WID-SEC-2026-2008)
CVE-2026-4660 | HashiCorp Tooling up to 1.8.5 information disclosure (EUVD-2026-20894 / Nessus ID 305826)
The Hacker News Recognizes ANY.RUN as the Best Security Investigation Platform 2026
ANY.RUN has been recognized as the Best Security Investigation Platform 2026 at the Cybersecurity Stars Awards by The Hacker News. This award reflects our dedication to building solutions that make a real impact on daily security operations. At ANY.RUN, we help SOC and MSSP teams worldwide streamline threat investigation workflows through confident decision-making, full malware and phishing visibility, and actionable insights thataccelerate incident investigations and response. We thank our global community of security professionals for continuously trusting our solutions and supporting our growth! Reinforcing Our Position as a Market […]
The post The Hacker News Recognizes ANY.RUN as the Best Security Investigation Platform 2026 appeared first on ANY.RUN's Cybersecurity Blog.
CVE-2022-37390 | Foxit PDF Reader AcroForm deletePages use after free (ZDI-22-1062 / EUVD-2022-40024)
CVE-2022-37389 | Foxit PDF Reader AcroForm use after free (ZDI-22-1061 / EUVD-2022-40023)
CVE-2022-37388 | Foxit PDF Reader PDF File Parser out-of-bounds (ZDI-22-1060 / EUVD-2022-40022)
CVE-2022-37387 | Foxit PDF Reader AcroForm deletePages use after free (ZDI-22-1059 / EUVD-2022-40021)
Aur0ra
You must login to view this content
CVE-2026-46461 | Dell Server Hardware Manager up to 3.2.2 access control (dsa-2026-243 / EUVD-2026-37997)
CVE-2026-6798 | 2download Connector for 2DL Hosted Checkout Plugin up to 0.1.5 on WordPress Subscription authorization (EUVD-2026-37996)
CVE-2026-3640 | strablengineering STRABL Plugin up to 4.5 on WordPress REST API Webhook Endpoint order __return_true authorization (EUVD-2026-37995)
Девять стран. Один удар. Почти 15000 сайтов-зомби уничтожены. Началась операция против SocGholish
Google sets timeline for Android developer verification enforcement
Android’s developer verification protections will take effect on September 30, 2026, starting with users in Brazil, Indonesia, Singapore, and Thailand. Developers distributing apps through participating stores in those markets must complete the verification process by the deadline. Google Play, HONOR App Market, OPPO App Market, Galaxy Store, Palm Store, V-Appstore, and GetApps will begin verifying app installations, with expansion to certified Android devices globally planned for 2027. Google introduced Android developer verification last year and … More →
The post Google sets timeline for Android developer verification enforcement appeared first on Help Net Security.
世界杯运营系统严重漏洞 黑客可全面接管世界杯转播
Accenture to buy Dragos, runZero, and NetRise in $4.2 billion cybersecurity deal
Accenture is expanding its position with the acquisition of a majority stake in Dragos and all of runZero and NetRise to deliver end-to-end operational technology (OT) security for the critical infrastructure and industrial operations underpinning power grids, pipelines, manufacturing, distribution facilities and data centers. The Dragos Platform will expand to cover the extended environment that controls physical processes, while Accenture’s deep OT security expertise, unique industrial datasets and decades of trusted relationships with critical infrastructure … More →
The post Accenture to buy Dragos, runZero, and NetRise in $4.2 billion cybersecurity deal appeared first on Help Net Security.