Aggregator
Windows存储0-Day漏洞让攻击者远程删除目标文件
Гении ошибались 40 лет: студент случайно открыл новый способ хранения данных
EFF Leads Fight Against DOGE and Musk's Access to US Federal Workers' Data
Breaking macOS Apple Silicon Kernel Hardening: KASLR Exploited
Security researchers from Korea University have successfully demonstrated a groundbreaking attack, dubbed SysBumps, which bypasses Kernel Address Space Layout Randomization (KASLR) in macOS systems powered by Apple Silicon processors. This marks the first successful breach of KASLR on Apple’s proprietary ARM-based architecture, revealing significant vulnerabilities in the kernel hardening mechanisms of modern macOS systems. KASLR […]
The post Breaking macOS Apple Silicon Kernel Hardening: KASLR Exploited appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
黑客利用提示注射来篡改Gemini AI的长期记忆
[LLM+AIGC] 03.零基础DeepSeek云端(硅基流动、腾讯云、国家超算平台)搭建及API接入
[LLM+AIGC] 03.零基础DeepSeek云端(硅基流动、腾讯云、国家超算平台)搭建及API接入
[LLM+AIGC] 03.零基础DeepSeek云端(硅基流动、腾讯云、国家超算平台)搭建及API接入
New Malware Abuses Microsoft Graph API to Communicate via Outlook
A newly discovered malware, named FINALDRAFT, has been identified leveraging Microsoft Outlook as a command-and-control (C2) communication channel through the Microsoft Graph API. This sophisticated malware was uncovered by Elastic Security Labs during an investigation targeting a foreign ministry. The discovery highlights the growing trend of cybercriminals exploiting legitimate cloud services for covert operations, blending […]
The post New Malware Abuses Microsoft Graph API to Communicate via Outlook appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
分享图片
PAN-OS authentication bypass hole plugged, PoC is public (CVE-2025-0108)
Palo Alto Networks has fixed a high-severity authentication bypass vulnerability (CVE-2025-0108) in the management web interface of its next-gen firewalls, a proof-of-concept exploit (PoC) for which has been made public. “Palo Alto Networks is not aware of any malicious exploitation of this issue,” the company says. Fixed PAN-OS vulnerabilities (and unexpected reboots) CVE-2025-0108 was discovered by Assetnote researchers aftey they decided to analyze the patches for CVE-2024-0012 and CVE-2024-9474, which have been exploited by attackers … More →
The post PAN-OS authentication bypass hole plugged, PoC is public (CVE-2025-0108) appeared first on Help Net Security.
前端加密靶场-记录(Js-Forword使用)
Israeli Electronics Systems Company Allegedly Breached and Access Offered for Sale on Darknet
【安全圈】微软提高了Copilot AI漏洞赏金计划的奖励
【安全圈】美国指控五人与分散蜘蛛网络犯罪团伙有关
【安全圈】CISA警告称,黑客正在利用Trimble Cityworks
【安全圈】Ollama 安全警告:你的 IP 可能已泄露,显卡正被“白嫖”!
AI and Security - A New Puzzle to Figure Out
RedNote App Security Flaw Exposes User Files on iOS and Android Devices
Serious security vulnerabilities have been uncovered in the popular social media and content-sharing app, RedNote, compromising the privacy and security of millions of users globally. Researchers revealed critical flaws allowing attackers to intercept sensitive user data, access device files, and exploit insecure encryption mechanisms on iOS and Android platforms. The app’s use of inadequate cryptographic […]
The post RedNote App Security Flaw Exposes User Files on iOS and Android Devices appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.