Aggregator
吾爱破解论坛网络诊断修复工具 v3.0
1 week 1 day ago
吾爱破解论坛网络诊断修复工具面向吾爱破解论坛(www.52pojie.cn)用户的 Windows 网络诊断修复工具,一键检测并修复论坛无法访问、访问速度缓慢、DNS 劫持等常见网络问题。
«Звонит ваш банк». Спойлер: нет — это мошенник с подпиской за £1200. Спецслужбы разоблачили платформу Russian Coms
1 week 1 day ago
В Лондоне предъявили обвинения пятерым продавцам платформы для мошеннических звонков Russian Com.
SonicWall warns of active exploitation of two SMA 1000 zero-days
1 week 1 day ago
SonicWall warns of active attacks exploiting two SMA 1000 zero-days, including a flaw enabling arbitrary command execution. SonicWall confirmed the active exploitation of two zero-day vulnerabilities affecting Secure Mobile Access (SMA) 1000 appliances. The vulnerabilities were internally discovered and reported by Adam Babis of the company’s PSIRT. The company investigated multiple incidents indicating these vulnerabilities […]
Pierluigi Paganini
诚邀渠道合作伙伴共启新征程
1 week 1 day ago
火绒小问答--「个人版」近期top问题解答
1 week 1 day ago
火绒小问答--「个人版」近期top问题解答
2026-07微软漏洞通告
1 week 1 day ago
2026-07微软漏洞通告
抽奖啦 | “绒”携清风 安然度伏
1 week 1 day ago
抽奖啦 | “绒”携清风 安然度伏
勒索最新趋势:不加密只盗窃 一家美国政府机构支付了100万美元赎金
1 week 1 day ago
一个美国政府实体支付了约100万美元,以防止被盗文件被公开,这是根据Ransom-ISAC的一份新案例研究,该研究基于一份泄露的谈判聊天记录和支付留下的区块链轨迹。
Nigeria Deepens Cybersecurity Efforts as Cybercriminals See More Profits
1 week 1 day ago
The West African country advanced rules to force organizations to disclose cyberattacks, joining other nations in a shift to mandated transparency.
Robert Lemos
CVE-2026-15804 | MetaGuru HCM up to 7.5.2 sql injection (EUVD-2026-44598)
1 week 1 day ago
A vulnerability described as critical has been identified in MetaGuru HCM up to 7.5.2. Affected is an unknown function. Such manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2026-15804. The attack can be launched remotely. No exploit exists.
vuldb.com
CVE-2026-15583 | Grafana MCP Server up to 0.17.1 URL X-Grafana-URL server-side request forgery (EUVD-2026-44597)
1 week 1 day ago
A vulnerability marked as problematic has been reported in Grafana MCP Server up to 0.17.1. This impacts an unknown function of the component URL Handler. This manipulation of the argument X-Grafana-URL causes server-side request forgery.
This vulnerability is handled as CVE-2026-15583. The attack can be initiated remotely. There is not any exploit available.
vuldb.com
CVE-2026-14251 | Red Hat OpenShift GitOps ClusterRole Reconciler Name denial of service (EUVD-2026-44596)
1 week 1 day ago
A vulnerability labeled as problematic has been found in Red Hat OpenShift GitOps. This affects an unknown function of the component ClusterRole Reconciler. The manipulation of the argument Name results in denial of service.
This vulnerability is known as CVE-2026-14251. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
网络安全信息与动态周报2026年第28期(7月6日-7月12日)
1 week 1 day ago
本周,互联网网络安全态势整体评价为良。
300余项隐患清零!360"破阵子"渗透测试智能体为国家重点行业做安全体检
1 week 1 day ago
360“破阵子”服务金融、政府等百余家机构 AI渗透测试能力实现规模化落地
Fortinet adds AI controls and data loss prevention to FortiEndpoint
1 week 1 day ago
Fortinet has announced new capabilities for its unified endpoint platform, FortiEndpoint, designed to help organizations securely adopt AI, protect sensitive data, and reduce risk. By bringing AI visibility and control, native data security, endpoint risk scoring, and FortiAI-assisted operations into FortiEndpoint, Fortinet enables security teams to better govern AI usage, reduce sensitive data exposure, enforce risk-aware access, and simplify security operations across distributed environments. “Organizations need a simpler and more effective way to manage security … More →
The post Fortinet adds AI controls and data loss prevention to FortiEndpoint appeared first on Help Net Security.
Industry News
US charges alleged operators of Russian bulletproof hosting service
1 week 1 day ago
U.S. federal prosecutors have unsealed charges against three Russian nationals, accusing them of providing bulletproof hosting (BPH) services to ransomware gangs that caused over $62 million in damages to victims worldwide. [...]
Sergiu Gatlan
“金鹰计划”启动:美国政府依托前沿AI构建漏洞发现与修复协同体系
1 week 1 day ago
特朗普政府“金鹰计划”以AI赋能网络安全漏洞发现与修复
伊朗利用电信漏洞实时监视美军位置,疑似用于作战打击行动
1 week 1 day ago
数字监控技术已成为国家安全严重威胁
微软周二例行安全更新修复了 570 个漏洞
1 week 1 day ago
微软在本周二释出了 7 月例行安全更新,修复了创纪录的 570 个漏洞。微软将补丁数量的激增归于 AI 辅助的漏洞发现。其中近 60 个 Bug 的风险等级归类为高危级。微软还修复了 3 个 0day,其中 2 个正被利用。2 个被利用的 0day 都是提权漏洞,包括 CVE-2026-56155 和 CVE-2026-56164。第三个 0day 则能绕过 Windows BitLocker 的安全功能,微软表示尚未发现该漏洞被利用。