unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
The November 2025 Security Update Review
I’ve made it through Pwn2Own Ireland, and while many are celebrated those who served their countr...
2025-11-11 18:30:42 | 阅读: 1 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
microsoft
cves
copilot
windows
attacker
Pwn2Own Ireland 2025: Day Three and Master of Pwn
Pwn2Own Ireland 2025进入最后一天,已奖励$792,750用于发现56个独特零日漏洞。CyCraft退出亚马逊智能插头挑战;Fuzzinglabs未能成功攻击QNAP设备;Xilokar利用4个漏洞成功攻击飞利浦Hue Bridge;Chris Anastasio通过类型混淆漏洞攻破Lexmark打印机;Ben R.和Georgi G.利用输入验证漏洞控制三星Galaxy S25手机并获得奖金与积分。...
2025-10-23 09:41:33 | 阅读: 12 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
earns
phillips
collision
hue
collided
Pwn2Own Ireland 2025 - Day Two Results
Pwn2Own Ireland 2025 第二天比赛中,多支团队通过不同漏洞成功攻击 Canon 打印机、Home Automation 设备、Philips Hue Bridge 和 QNAP 设备等目标,赢得奖金和积分。...
2025-10-22 10:19:24 | 阅读: 15 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
pwn2own
earns
ho
collision
earn
Pwn2Own Ireland 2025: Day One Results
read file error: read notes: is a directory...
2025-10-21 09:26:57 | 阅读: 11 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
overflow
earn
daravigkas
koo
canon
Pwn2Own Ireland 2025: The Full Schedule
嗯,用户让我帮忙总结一下这篇文章的内容,控制在一百个字以内。首先,我需要仔细阅读文章内容,了解主要信息。 文章看起来是关于Pwn2Own Ireland 2025竞赛的。里面提到了很多参赛团队和他们的目标设备,比如打印机、网络存储设备、智能家庭设备等。奖金方面,最高的是WhatsApp的零点击漏洞,奖金高达100万美元。 接下来,我需要提取关键信息:竞赛名称、时间地点、参赛团队、目标设备类别、奖金数额以及特别亮点。然后,把这些信息浓缩成一句话,不超过100字。 要注意的是,不需要使用“文章内容总结”这样的开头,直接描述即可。同时,要确保涵盖主要参赛团队和最高奖项的信息。 最后,检查字数是否符合要求,并确保语言简洁明了。 </think> Pwn2Own Ireland 2025竞赛于2023年10月举行,吸引了众多团队参与打印机、智能家庭设备等领域的安全漏洞挑战,最高奖金达100万美元。...
2025-10-20 17:1:58 | 阅读: 15 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
printers
wednesday
network
philips
hue
Pwn2Own Automotive Returns to Tokyo with Expanded Chargers and More!
Pwn2Own Automotive 2026将于2026年1月21日至23日在东京举行,新增超级充电器类别,并引入AGL操作系统挑战。特斯拉、Alpitronic和Open Charge Alliance为合作伙伴。活动包括随机抽签决定比赛顺序,并设Master of Pwn奖项。...
2025-10-16 15:0:42 | 阅读: 36 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
automotive
pwn2own
charger
contest
tesla
The October 2025 Security Update Review
read file error: read notes: is a directory...
2025-10-14 18:38:44 | 阅读: 80 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
microsoft
windows
security
cves
attacker
Crafting a Full Exploit RCE from a Crash in Autodesk Revit RFA File Parsing
read file error: read notes: is a directory...
2025-10-8 14:0:0 | 阅读: 43 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
revit
windows
astring
rfa
crash
CVE-2025-23298: Getting Remote Code Execution in NVIDIA Merlin
read file error: read notes: is a directory...
2025-9-24 16:41:31 | 阅读: 16 |
收藏
|
0day Fans - www.thezdi.com
security
pickle
checkpoint
nvidia
The September 2025 Security Update Review
read file error: read notes: is a directory...
2025-9-9 19:6:15 | 阅读: 9 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
microsoft
windows
attacker
remote
cves
The August 2025 Security Update Review
read file error: read notes: is a directory...
2025-8-12 18:1:32 | 阅读: 14 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
attacker
microsoft
substance
cves
windows
Pwn2Own Returns to Ireland with a One Million Dollar WhatsApp Target
read file error: read notes: is a directory...
2025-7-31 19:4:37 | 阅读: 18 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
contest
pwn2own
network
cork
award
CVE-2025-20281: Cisco ISE API Unauthenticated Remote Code Execution Vulnerability
Cisco ISE存在反序列化和命令注入漏洞,攻击者可利用${IFS}变量绕过Java限制,在Docker容器内执行代码,并借助privileged模式逃逸至宿主机,最终获得root权限,Cisco已修复该问题。...
2025-7-25 16:30:0 | 阅读: 31 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
injection
payload
ise
attacker
ike
CVE-2025-4919: Corruption via Math Space in Mozilla Firefox
Manfred Paul在Pwn2Own Berlin 2025上利用Firefox IonMonkey JIT编译器中的ExtractLinearSum函数漏洞(CVE-2025-4919),通过边界检查绕过实现任意内存读写。该漏洞源于对数学运算空间处理不当,导致错误合并边界检查条件。Mozilla已修复该问题。...
2025-7-15 14:27:27 | 阅读: 28 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
231
indices
mathspace
additions
The July 2025 Security Update Review
Adobe推迟了7月的安全补丁发布,而微软发布了130多个CVE漏洞补丁,其中10个为关键级别。这些漏洞影响Windows、Office、SQL Server等多个产品,部分可导致远程代码执行或权限提升。建议用户及时更新以应对潜在威胁。...
2025-7-8 17:56:31 | 阅读: 22 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
microsoft
attacker
windows
remote
security
Extracting Embedded MultiMediaCard (eMMC) contents in-system
read file error: read notes: is a directory...
2025-6-20 15:0:58 | 阅读: 15 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
emmc
chip
clk
vddq
signals
The June 2025 Security Update Review
read file error: read notes: is a directory...
2025-6-10 17:24:53 | 阅读: 17 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
microsoft
windows
cves
security
malicious
Pwn2Own Berlin 2025: Day Three Results
read file error: read notes: is a directory...
2025-5-17 09:40:13 | 阅读: 11 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
nvidia
earns
collision
pwn2own
windows
Pwn2Own Berlin 2025: Day Two Results
read file error: read notes: is a directory...
2025-5-16 09:17:17 | 阅读: 16 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
fuzzinglabs
earns
ventuzelo
pwn2own
nvidia
Pwn2Own Berlin 2025: Day One Results
read file error: read notes: is a directory...
2025-5-15 10:10:50 | 阅读: 16 |
收藏
|
Zero Day Initiative - Blog - www.thezdi.com
earns
collision
pwn2own
summoning
privs
Previous
-98
-97
-96
-95
-94
-93
-92
-91
Next