Posts of last few hours
Please support the site operations by clicking ads.
Пауза в развитии ИИ обернулась угрозой тройных выплат.
https://www.securitylab.ru/news/577685.php
Shiba Inu's $1 dream faces a mathematical reality check as SHIB's huge circulating supply would require an extraordinary $589 trillion market valuation in 2026.
https://hackread.com/shiba-inu-reach-1-2026-math-behind-shib-dream/
Ireland's Data Protection Commission (DPC) has fined Google €403 million ($463M) for multiple GDPR violations related to processing users' location data. [...]
https://www.bleepingcomputer.com/news/security/google-fined-403-million-over-location-data-privacy-violations/
Рекордные цифры выглядят страшнее, чем реальный масштаб угрозы.
https://www.securitylab.ru/news/577672.php
近期,境外媒体披露了一则消息:美国正在调查油轮和天然气船遭遇的潜在网络攻击,担忧的焦点,是黑客干扰船舶电子系统
https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451188900&idx=2&sn=8f234231e7af3ab6f759f35e87f2ec11
2026年4月,一起巨额加密货币劫案震动行业。去中心化金融(DeFi)协议KelpDAO被盗走2.92亿美元,入侵的入口是跨链通信服务商LayerZero。
https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451188900&idx=1&sn=9e37579e2000bd27023018b3586aeb97
The Irish DPC found that Google users were unaware that their location was being used to influence them with ads
https://www.infosecurity-magazine.com/news/google-hit-with-403m-gdpr-fine/
Belgium’s national table tennis federation is investigating a cyberattack after a hacker claimed to have stolen data on tens of thousands of members.
https://therecord.media/belgium-table-tennis-cyberattack
Компания подробно объяснила работу системы, но дискуссия о приватности никуда не делась.
https://www.securitylab.ru/news/577676.php
https://cyber.gc.ca/en/alerts-advisories/exim-security-advisory-av26-944
The AI giant disclosed six examples of concerning model activity and published a new framework for investigating and disclosing such incidents.
https://www.darkreading.com/cyber-risk/rogue-behavior-openai-more-model-misalignment-incidents
Microsoft has fixed a known issue that causes copy-and-paste failures for Excel users after installing the September 2026 security updates. [...]
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-broken-excel-copy-and-paste-for-all-office-users/
https://cyber.gc.ca/en/alerts-advisories/ibm-security-advisory-av26-943
深度集成 Gemini、运行 Android 的笔记本电脑 Googlebooks 将于 10 月 4 日上市。Google 硬件合作伙伴中除了宏碁推出一款起售价 899 美元的型号外,其余厂商的产品都超过 1000 美元。Googlebook 不同于 Chromebook 面向低端市场,它面向的是中端笔记本电脑市场。Googlebooks 的 Continue On 功能允许用户在手机或 Googlebook 之间无缝切换,但需要应用开发者支持;Cast My Apps 可以直接在 Googlebook 上使用 Android 手机已安装应用;Play Store 是 Googlebook 获取应用的主要渠道,侧载受到了限制,只能安装运行已通过 Google 验证身份的开发者的应用;通过深度集成 Gemini Intelligence,用户仅仅移动光标就能激活被称为“Magic Pointer”的 AI 功能,AI 会分析屏幕上的内容,根据上下文提供建议,能从多个应用中提取数据。比如将光标指向电邮中的日期即可创建日历预约。
https://www.solidot.org/story?sid=85446
Sekoia said Exvicy, a new ClickFix MaaS framework, reused code from rival service ErrTraffic
https://www.infosecurity-magazine.com/news/exvicy-clickfix-framework/
Администратор домена оказался страшнее вируса.
https://www.securitylab.ru/news/577706.php
A browser. A plugin. A package. A login screen. Normal stuff. That is basically the problem this week.
The trouble keeps showing up inside things people already trust: code that takes a bad turn, old payloads coming back, exposed systems, weak checks, fake fixes, and attack paths that look almost too easy. Even the research side is getting messy, with more findings, more automation, and not
https://thehackernews.com/2026/09/weekly-recap-cisco-0-day-ai-agent-rce.html
Cybersecurity researchers have disclosed details of a new campaign dubbed TASK#STOMP that delivers a PowerShell backdoor designed to harvest sensitive data from compromised hosts.
The backdoor "automatically harvests and exfiltrates business documents, watches the filesystem for new files in real time, steals Wi-Fi passwords and clipboard contents, takes screenshots, and accepts arbitrary
https://thehackernews.com/2026/09/taskstomp-powershell-backdoor-steals.html
The FBI's CJIS Security Policy v6.1 strengthens requirements around encryption and vulnerability scanning while continuing the shift toward more continuous security assessment. Specops explains what changed and how agencies can address password, MFA, and identity requirements as they prepare for upcoming audits. [...]
https://www.bleepingcomputer.com/news/security/fbis-cjis-v61-what-security-teams-need-to-know/
The university, commonly known as LMU Munich, said Saturday that an attacker accessed enrollment data stored on one of its IT systems.
https://therecord.media/cyberattack-hits-university-of-munich-potentially-exposing-data
Latest Blog Posts
- 4 weeks 2 days ago
- 3 months ago
- 3 months ago
- 3 months ago
- 3 months ago
- 7 months 3 weeks ago
- 1 year 1 month ago
- 1 year 1 month ago
- 1 year 2 months ago
- 1 year 6 months ago