Aggregator
单月 10 倍增长背后,商汤小浣熊的反精英叙事
Firefox 152 Adds Tab Mute Shortcut and JPEG XL
Firefox 152 arrives after an unusually busy month for its predecessor. Firefox 151 received no fewer than four minor patches in quick succession, and this new release focuses on making the browser more convenient...
The post Firefox 152 Adds Tab Mute Shortcut and JPEG XL appeared first on Information Security News.
15 Malicious JetBrains Plugins Caught Stealing DeepSeek, OpenAI API Keys
China-Linked FishMonger Ports SprySOCKS to Windows With Kernel-Level Stealth and UEFI Bootkit Hints
Steam Workshop 被滥用来通过 Wallpaper Engine 应用传播恶意软件
Скачал TikTok, остался без зарплаты. Rokarolla обнажает цену доверия к сторонним источникам
UK Social Media Ban for Minors Has Privacy Experts Worried
AIRecon: AI-Powered Penetration Testing Tool with Kali Linux Sandbox
AIRecon is an autonomous penetration testing agent that runs entirely offline, combining a self-hosted Ollama LLM with a Kali Linux Docker sandbox to automate end-to-end security assessments without exposing any data to the cloud. Developed by researcher pikpikcu, it eliminates the prohibitive cost of commercial API-based models like GPT-4 or Claude for recursive recon workflows […]
The post AIRecon: AI-Powered Penetration Testing Tool with Kali Linux Sandbox appeared first on Cyber Security News.
Stolen Keys Let Attacker Mint 300M H Tokens on BSC
The attack on Humanity Protocol’s H token was not a smart contract exploit at all. Instead, it served as a painful reminder of one of crypto’s oldest problems: lose control of your private keys,...
The post Stolen Keys Let Attacker Mint 300M H Tokens on BSC appeared first on Information Security News.
GLP-1 减肥药有助于提高男性睾酮水平和精子质量
iRhythm 确认数据在黑客攻击中被盗
信息安全漏洞周报(2026年第24期)
人工智能重要安全漏洞的通报-OpenClaw多个安全漏洞
145 Mastra npm Packages Compromised via Hijacked Contributor Account
Novo Nordisk Cyberattack: Clinical Trial Data Breach
Novo Nordisk recently fell victim to a sophisticated cyberattack. Consequently, this incident compromised a segment of patient data from clinical trials. Fortunately, the company asserted that names and direct identifiers remained unexposed. Therefore, unauthorized...
The post Novo Nordisk Cyberattack: Clinical Trial Data Breach appeared first on Information Security News.
Полмиллиона евро, Магнус Карлсен и обязательные любители в составе. В Гонконге стартовал необычный командный чемпионат мира по шахматам
SQL Server 2025 AI Features Enable Data Exfiltration
Databases have long evolved beyond mere tabular repositories. However, new functionalities within SQL Server 2025 illustrate the inherent dangers of this progression. Recently, SpecterOps researchers discovered significant vulnerabilities. They detailed how attackers can abuse...
The post SQL Server 2025 AI Features Enable Data Exfiltration appeared first on Information Security News.
恶意 JetBrains Marketplace 插件窃取开发者的 AI API 密钥
Critical LiteLLM Flaw Allows Authentication Bypass via Host Header Injection
A critical security vulnerability has been disclosed in LiteLLM, an increasingly popular proxy used for managing large language model (LLM) APIs. The flaw, tracked as CVE-2026-49468, allows attackers to bypass authentication mechanisms under specific conditions by exploiting improper handling of the Host header. The issue affects LiteLLM versions before 1.84.0 and has been assigned a […]
The post Critical LiteLLM Flaw Allows Authentication Bypass via Host Header Injection appeared first on Cyber Security News.