unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Small praise for modern compilers - A case of Ubuntu printing vulnerability that wasn’t
文章描述了在macOS和Linux系统中发现的一个与IPP-USB协议相关的缓冲区溢出漏洞。该漏洞存在于Ubuntu 22.04的`ippusbxd`包中,但由于现代编译器的FORTIFY_SOURCE功能和-Wstringop-overflow警告,该漏洞已被缓解且无法被利用。此外,Ubuntu已转向使用更安全的`ipp-usb`包替代`ippusbxd`。...
2025-2-10 13:32:19 | 阅读: 17 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
printer
ipp
ippusbxd
overflow
pthread
Changing the tide: Reflections on threat data from 2024
文章指出2024年 CVE 数量显著增加(+38%),高危漏洞激增(+36%)。攻击者主要通过公共应用和有效账户入侵。建议加强身份验证、定期修补漏洞,并关注即将到期的 Windows 10 支持。...
2025-2-6 19:17:4 | 阅读: 20 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
claimed
security
talos
Google Cloud Platform Data Destruction via Cloud Build
文章探讨了Google Cloud Platform (GCP) 的Cloud Build服务存在的安全风险,包括供应链攻击和恶意代码执行。Orca Security和Cisco Talos的研究显示,威胁者可通过提交代码或获取凭证利用Cloud Build执行恶意操作。防御建议包括限制权限、监控异常活动及配置安全措施以减少风险。...
2025-2-6 11:2:14 | 阅读: 11 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
cloud
github
gcloud
encryption
gcp
Defeating Future Threats Starts Today
2025-1-30 19:17:9 | 阅读: 8 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
security
threats
talos
emea
careers
Talos IR trends Q4 2024: Web shell usage and exploitation of public-facing applications spike
2025-1-30 11:2:14 | 阅读: 17 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
ransomware
quarter
percent
remote
network
Whatsup Gold, Observium and Offis vulnerabilities
2025-1-29 17:2:6 | 阅读: 45 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
talos
whatsup
offis
gold
Whatsup Gold, Observium and Offis vulnerabilities
抱歉,我无法直接访问外部链接或查看网页内容。如果您能提供文章的具体内容或要点,我可以帮您进行总结!...
2025-1-29 16:47:5 | 阅读: 12 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
New TorNet backdoor seen in widespread campaign
2025-1-28 11:1:17 | 阅读: 18 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
tornet
machine
victim
purecrypter
c2
Seasoning email threats with hidden text salting
2025-1-24 13:46:20 | 阅读: 16 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
phishing
salting
parsers
threats
evading
Everything is connected to security
Thursday, January 23,...
2025-1-23 19:18:22 | 阅读: 15 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
security
talos
agriculture
proxy
Find the helpers
Thursday, January 16, 2025 14:15...
2025-1-16 19:16:15 | 阅读: 11 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
talos
security
helpers
claimed
Slew of WavLink vulnerabilities
2025-1-15 13:1:26 | 阅读: 133 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
talos
overflow
injection
wavlink
Microsoft Patch Tuesday for January 2025 — Snort rules and prominent vulnerabilities
Tuesday, January 14, 2025 16:15 M...
2025-1-14 21:17:0 | 阅读: 101 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
microsoft
remote
attacker
security
windows
Do we still have to keep doing it like this?
2025-1-9 19:17:1 | 阅读: 11 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
wendy
security
talos
malicious
keynote
Welcome to the party, pal!
Thursday, December 19...
2024-12-19 19:16:34 | 阅读: 10 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
claimed
christmas
passkeys
coinminer
Acrobat out-of-bounds and Foxit use-after-free PDF reader vulnerabilities found
2024-12-19 19:1:53 | 阅读: 17 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
talos
foxit
acrobat
malicious
Exploring vulnerable Windows drivers
2024-12-19 11:17:39 | 阅读: 28 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
windows
memory
security
malicious
Something to Read When You Are On Call and Everyone Else is at the Office Party
Thursday, December 12, 2024 14:05...
2024-12-13 03:17:14 | 阅读: 10 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
security
gap
malicious
russia
vital
The evolution and abuse of proxy networks
2024-12-12 19:3:34 | 阅读: 32 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
proxy
sponsored
network
vpns
malicious
Microsoft Patch Tuesday for December 2024 contains four critical vulnerabilities
2024-12-11 05:1:31 | 阅读: 19 |
收藏
|
Over Security - Cybersecurity news aggregator - blog.talosintelligence.com
microsoft
remote
windows
attacker
Previous
8
9
10
11
12
13
14
15
Next