Aggregator
欢迎申请 G.O.S.S.I.P 2026 暑期实习
万亿美元 AI 公司,面试时禁止使用 AI
万亿美元 AI 公司,面试时禁止使用 AI
Acoustic Infiltration: Perceived Audio Peripheral Transformed into Remote Exploitation Bridge
A desktop speaker tethered via USB has unexpectedly morphed into a conduit for remote system compromise. Security specialist Rasmus Moorats discovered a critical flaw in the ubiquitous Sound Blaster Katana V2X soundbar. Consequently, this...
The post Acoustic Infiltration: Perceived Audio Peripheral Transformed into Remote Exploitation Bridge appeared first on Information Security News.
CVE-2026-10060 | TRENDnet TEW-432BRP 3.10B20 /goform/formSetRoute ip/mask/gateway command injection
CVE-2026-10061 | TRENDnet TEW-432BRP 3.10B20 /goform/formWPS peerPin command injection
CVE-2026-10062 | TRENDnet TEW-432BRP 3.10B20 /goform/formSetRoute ip/mask/gateway stack-based overflow
CVE-2026-10063 | TRENDnet TEW-432BRP 3.10B20 /goform/formWPS peerPin stack-based overflow
CVE-2026-10064 | TRENDnet TEW-432BRP 3.10B20 /goform/formSetPortTr special_name stack-based overflow
CVE-2026-49199 | Acer Predator Connect W6x up to W6x_GBL_2.00.000005 MQTT command injection (EUVD-2026-33269)
CVE-2026-45609 | spring-ai-community mcp-security up to 0.1.8 server-side request forgery
CVE-2026-40528 | OpenSC up to 0.26.x Profile src/pkcs15init/profile.c do_key_value key stack-based overflow (WID-SEC-2026-1755)
CVE-2026-40510 | OpenSC up to 0.27.0 PIV src/libopensc/card-piv.c piv_process_history stack-based overflow (WID-SEC-2026-1755)
CVE-2026-48501 | cli up to 2.92.x authorization (GHSA-8xvp-7hj6-mcj9)
CVE-2026-40425 | Danelec MacGregor Voyage Data Recorder G4e up to 5.249 file access (EUVD-2026-33403)
The Cryptographic Shield: Android Combats AI Voice Cloning and Spoofing Scams
Android smartphones possess a novel mechanism to counteract telephone fraud. This capability integrates seamlessly into the native Google Phone application. Furthermore, the technology supports devices running Android 12 or subsequent versions. The system meticulously...
The post The Cryptographic Shield: Android Combats AI Voice Cloning and Spoofing Scams appeared first on Information Security News.
Sovereign Incursion: Unpatched Flaw Threatens Cisco SD-WAN Infrastructure
The Emergence of the Catalyst Threat Cisco recently issued a critical advisory regarding its software-defined networking management architectures. Specifically, adversaries are actively weaponizing a novel vulnerability within the Catalyst SD-WAN Manager platform. Currently, an...
The post Sovereign Incursion: Unpatched Flaw Threatens Cisco SD-WAN Infrastructure appeared first on Information Security News.
The Deflate Collapse: Active Exploitation Threatens SolarWinds Serv-U Infrastructure
Adversaries are actively weaponizing a critical vulnerability within the SolarWinds Serv-U managed file transfer platform. Remarkably, threat actors require neither valid credentials nor administrative privileges to execute the exploit. Instead, a solitary, meticulously constructed...
The post The Deflate Collapse: Active Exploitation Threatens SolarWinds Serv-U Infrastructure appeared first on Information Security News.