Aggregator
更新:第九章 LibAFL实战 | 系统0day安全-二进制漏洞攻防(第4期)
2 months ago
掌握二进制漏洞挖掘和利用的基本原理和方法,包括模糊测试、AFL原理、ASAN原理等。
全球最大暗网 XSS.is 论坛核心管理员落网
2 months ago
暗网巨头XSS.is核心管理员在基辅被捕
一种底层磁盘数据截获方法(附源码)
2 months ago
看雪论坛作者ID:TurkeybraNC
更新:第九章 LibAFL实战 | 系统0day安全-二进制漏洞攻防(第4期)
2 months ago
由于环境异常,需完成验证后才能继续访问。
全球最大暗网 XSS.is 论坛核心管理员落网
2 months ago
当前环境出现异常,需完成验证后方可继续访问。
一种底层磁盘数据截获方法(附源码)
2 months ago
当前环境出现异常状态,需完成验证流程后才能继续访问相关服务或内容。
Microsoft: SharePoint flaws exploited in Warlock ransomware attacks
2 months ago
A China-based hacking group is deploying Warlock ransomware on Microsoft SharePoint servers vulnerable to widespread attacks targeting the recently patched ToolShell zero-day exploit chain. [...]
Sergiu Gatlan
零和博弈:美国白宫发布《美国人工智能行动计划》
2 months ago
特朗普政府人工智能计划侧重军事应用和网络安全
供应商失职致严重网络攻击,客户起诉索赔27亿元
2 months ago
攻击者冒充员工屡屡成功重置账号访问权限
CVE-2025-7745 | ABB AC500 V2 up to 2.5.2 buffer over-read (EUVD-2025-22485 / WID-SEC-2025-1633)
2 months ago
A vulnerability classified as problematic has been found in ABB AC500 V2 up to 2.5.2. This affects an unknown part. The manipulation leads to buffer over-read.
This vulnerability is uniquely identified as CVE-2025-7745. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
零和博弈:美国白宫发布《美国人工智能行动计划》
2 months ago
当前环境异常,请完成验证后继续访问。
供应商失职致严重网络攻击,客户起诉索赔27亿元
2 months ago
当前环境异常,需完成验证后继续访问。
CVE-2025-8107 | OB OceanBase Server prior 3.2.4.9/4.2.1.10/4.2.5/4.3.3.2/4.3.4 exposure of resource (EUVD-2025-22483)
2 months ago
A vulnerability was found in OB OceanBase Server. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to exposure of resource.
This vulnerability is handled as CVE-2025-8107. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-26397 | SolarWinds Observability Self-Hosted up to 2025.2 deserialization (EUVD-2025-22489 / WID-SEC-2025-1632)
2 months ago
A vulnerability was found in SolarWinds Observability Self-Hosted up to 2025.2. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to deserialization.
This vulnerability is known as CVE-2025-26397. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
【0724】重保演习每日情报汇总
2 months ago
一年一度的“大考”火热进行中,攻防演练期间本公众号会每日更新当天鲜活情报和热点漏洞,欢迎大家对我们进行收藏和关注!
【0724】重保演习每日情报汇总
2 months ago
当前环境出现异常状态,需完成验证后方可继续访问。
CISO保障AI运营安全的五步指南
2 months ago
如何引领企业迈向更安全、更有效的AI应用之路。
CISO保障AI运营安全的五步指南
2 months ago
当前环境出现异常提示,需完成验证后方可继续访问,并提供验证操作按钮。
7,5 трлн токенов, 256К контекста и CLI: Qwen3-Coder справляется с задачами, где другие сходят с ума
2 months ago
Команда Qwen представила новую модель для генерации и сопровождения кода.