Aggregator
香港科技大学(广州)& 香港理工大学 | 注入与泄露:基于电磁注入和硬件非线性的主动侧信道泄露诱导方法
Rokarolla Android trojan targets banking and crypto users, enables device takeover
A newly discovered Android banking trojan, dubbed Rokarolla, targets 217 banking and cryptocurrency applications and can execute 137 commands on infected devices, according to researchers at Zimperium. Named after its command-and-control (C2) infrastructure, Rokarolla is primarily distributed through malicious websites that impersonate popular applications such as TikTok and Google Chrome, fooling users into downloading what appears to be a legitimate app. Banker malware impersonating a legitimate app and requesting accessibility service (Source: Zimperium) Zimperium said … More →
The post Rokarolla Android trojan targets banking and crypto users, enables device takeover appeared first on Help Net Security.
CVE-2026-45645 | Microsoft Office -/0.37.3 untrusted pointer dereference (Nessus ID 321311)
Sensitive Enterprise Data Uploads to AI Models Double in a Year
India's Telegram ban hit the UAE too. Here's how to get around it
Oracle security advisory – June 2026 quarterly rollup (AV26-605)
Купил серый айфон. Готовься объяснять оператору, откуда у тебя этот IMEI
The Agentic SOC: Solving Security’s Investigation Capacity Crisis in the Frontier AI Era
SpyCloud Report Finds Phishing Attacks Surge as Employee Data Is Exposed at 86% of Fortune 100 Companies
Introducing the Cloudflare One stack: agent-powered deployment
Flip expands platform with digital identity, no-code apps, and AI automation
Flip has announced Frontline Identity and Flip Fusion, two new offerings that help organizations securely connect frontline employees to enterprise systems, applications and AI-powered workflows. Flip’s new products expand the platform beyond employee communications, helping organizations provide secure digital identity, enterprise application access and AI-powered workflow automation through a single mobile experience. Frontline Identity brings secure digital identity to frontline workers Flip’s Frontline Identity is a digital identity and authentication platform purpose-built for frontline workers. … More →
The post Flip expands platform with digital identity, no-code apps, and AI automation appeared first on Help Net Security.
Submit #836150: YZNCMS 2.1.5 RCE [Duplicate]
Submit #836149: YZNCMS 2.1.5 SQL Injection [Duplicate]
Corelight enhances Open NDR to detect AI-driven threats and unknown assets
Corelight has expanded its Open NDR platform to include native network performance monitoring and passive asset classification capabilities. The release adds asset visibility to its existing anomaly detection foundation, helping security teams defend against AI-powered threats that can discover and weaponize vulnerabilities faster than patching programs can respond. This new AI-driven threat landscape renders strategies that rely on endpoint controls and patching alone insufficient. With this release, the same Zeek-based analysis engine that powers Corelight’s … More →
The post Corelight enhances Open NDR to detect AI-driven threats and unknown assets appeared first on Help Net Security.
CVE-2022-30952 | Pipeline SCM API for Blue Ocean Plugin up to 1.25.3 on Jenkins exposure of resource (EUVD-2022-3909)
CVE-2022-36368 | IPFire up to 2.26 Web User Interface cross site scripting (EUVD-2022-39082)
CVE-2022-36413 | Zoho ManageEngine ADSelfService Plus up to 6203 IDM Application password recovery (EUVD-2022-39125)
Нажал «Apply» и потерял ключи. Фальшивые ИИ-плагины для JetBrains воруют доступы к OpenAI и DeepSeek
Space Bears
You must login to view this content