Aggregator
Hidden Attacks Most Teams Miss
2025年度工业信息安全感知与评估技术工业和信息化部重点实验室开放课题
超值999!知道创宇ZoomEye终身会员限时回归!基于ZoomEye的恶意站点高效发现与扩展实战
超值999!知道创宇ZoomEye终身会员限时回归!基于ZoomEye的恶意站点高效发现与扩展实战
Microsoft Speeds Up Windows Recovery (QMR) & Allows Smart App Control Toggle
Microsoft is testing an accelerated version of its Quick Machine Recovery (QMR) feature alongside an updated iteration of
The post Microsoft Speeds Up Windows Recovery (QMR) & Allows Smart App Control Toggle appeared first on Penetration Testing Tools.
2027 Time Bomb: Covert NuGet Packages Target SQL and PLCs with Scheduled Sabotage
Researchers discovered several NuGet packages in the public registry that conceal covert sabotage code scheduled to activate in
The post 2027 Time Bomb: Covert NuGet Packages Target SQL and PLCs with Scheduled Sabotage appeared first on Penetration Testing Tools.
From Ransomware Negotiator to Cybercriminal: Inside the $1.27M BlackCat Heist
Helping companies negotiate with ransomware gangs has always seemed like a peculiar business. In theory, one mediates with
The post From Ransomware Negotiator to Cybercriminal: Inside the $1.27M BlackCat Heist appeared first on Penetration Testing Tools.
OpenAI’s GPT-5.1 Family & $200/Mo Pro Tier Leak Ahead of Rollout
OpenAI is preparing for the public release of its GPT-5.1 family. The lineup will include the standard GPT-5.1
The post OpenAI’s GPT-5.1 Family & $200/Mo Pro Tier Leak Ahead of Rollout appeared first on Penetration Testing Tools.
Landfall Spyware: Zero-Click Image Exploit Spied on Samsung Phones for a Year
A next-generation spyware operated undetected for nearly a year, hiding deep within Samsung Galaxy smartphones and exploiting a
The post Landfall Spyware: Zero-Click Image Exploit Spied on Samsung Phones for a Year appeared first on Penetration Testing Tools.
AI Assistants Nearly Exposed My Entire Home Network to the Internet
A seemingly simple idea — to streamline the management of a home network and enhance its security —
The post AI Assistants Nearly Exposed My Entire Home Network to the Internet appeared first on Penetration Testing Tools.
Still Using ‘123456’? 2025 Study Reveals the World’s Weakest Passwords
In 2025, users continue to rely on the most elementary password combinations to protect their accounts. A study
The post Still Using ‘123456’? 2025 Study Reveals the World’s Weakest Passwords appeared first on Penetration Testing Tools.
英特尔工程师收到裁员通知后下载1.8万份机密文件跑路 现在英特尔正在追查数据泄露
Nevada Ransomware Attack: Inside the $1.3M Recovery After Zero-Ransom Strategy
Authorities in the U.S. state of Nevada have released a detailed technical report dissecting a large-scale cyberattack that
The post Nevada Ransomware Attack: Inside the $1.3M Recovery After Zero-Ransom Strategy appeared first on Penetration Testing Tools.
从“空白页”到突破口:渗透测试中的信息发现七种思路
WhatsApp Opens Up: Cross-Platform Messaging Goes Live for European Beta Testers
WhatsApp has begun testing its long-anticipated cross-platform messaging feature. In the new Android beta version 2.25.33.8, users can
The post WhatsApp Opens Up: Cross-Platform Messaging Goes Live for European Beta Testers appeared first on Penetration Testing Tools.
开放签电子签章系统审计
Google Issues Emergency Chrome Update for WebGPU High-Severity Remote Code Exploit
Google has released an emergency security update for the Chrome browser, addressing a series of vulnerabilities that could
The post Google Issues Emergency Chrome Update for WebGPU High-Severity Remote Code Exploit appeared first on Penetration Testing Tools.
ArcaneDoor Strikes Cisco Firewalls Again: New DoS Exploit Variant Emerges
Cisco has warned customers of a fresh wave of attacks against its firewalls: adversaries have been striking vulnerable
The post ArcaneDoor Strikes Cisco Firewalls Again: New DoS Exploit Variant Emerges appeared first on Penetration Testing Tools.
7 ChatGPT Flaws Exposed: ‘Zero-Click’ Injection Steals Data, Bypasses Security
Tenable Research has identified seven new vulnerabilities and exploitation techniques in ChatGPT that allow attackers to extract private
The post 7 ChatGPT Flaws Exposed: ‘Zero-Click’ Injection Steals Data, Bypasses Security appeared first on Penetration Testing Tools.