unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone
Vulnerability / DNS SecurityEvery release of the Unbound DNS resolver before 1.26.1 has a critical...
2026-9-17 12:30:0 | 阅读: 1 |
收藏
|
The Hacker News - thehackernews.com
2026
nlnet
81642
remote
security
Can You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This Webinar
Security Operations / Artificial IntelligenceA new CVE drops. Your scanner finds it. The severity...
2026-9-17 11:50:0 | 阅读: 1 |
收藏
|
The Hacker News - thehackernews.com
security
prove
matters
mythos
gap
CISO's Expert Guide to Agentic Pentesting for Websites
Attackers now weaponize new vulnerabilities in about five days (Mandiant, part of Google Cloud). Th...
2026-9-17 10:50:53 | 阅读: 1 |
收藏
|
The Hacker News - thehackernews.com
agentic
2026
attackers
annual
engagement
China-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin America
Malware / Cyber EspionageThe China-aligned state-sponsored threat actor known as FamousSparrow ha...
2026-9-17 10:5:45 | 阅读: 0 |
收藏
|
The Hacker News - thehackernews.com
sparrowocky
eset
america
latin
OpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized Uploads
2026-9-17 09:53:38 | 阅读: 0 |
收藏
|
The Hacker News - thehackernews.com
openai
2026
agents
alignment
BIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPS
2026-9-17 08:0:29 | 阅读: 0 |
收藏
|
The Hacker News - thehackernews.com
2026
isc
resolver
fourteen
attacker
Gyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata Records
2026-9-17 07:30:1 | 阅读: 0 |
收藏
|
The Hacker News - thehackernews.com
helpfeel
gyazo
captures
attacker
maintenance
Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution
Vulnerability / Web SecurityA critical security flaw in Issabel Framework, a web-based framework f...
2026-9-16 15:50:59 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
2026
issabel
coded
asterisk
security
Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers
Enterprises in Russia have emerged as the target of three threat activity clusters tracked as Night...
2026-9-16 15:27:49 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
windows
victim
ransomware
c2
attackers
One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude
Security researchers at Forever Security have shown that one ordinary browser extension could take...
2026-9-16 14:36:44 | 阅读: 5 |
收藏
|
The Hacker News - thehackernews.com
security
chrome
forever
comet
opera
Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories
Artificial Intelligence / Software SecurityMandiant says an attacker hijacked an active AI coding-...
2026-9-16 13:37:7 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
attacker
mandiant
shai
hulud
poisoned
Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can't Install Fix
Parallels Desktop for Mac has a flaw that lets an ordinary local account run code as root, the high...
2026-9-16 13:14:5 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
jfrog
2026
machine
silicon
macs
N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security
N0va is targeting organizations across North America and Europe with phishing campaigns that impers...
2026-9-16 11:58:0 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
n0va
security
phishing
tier
Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation
Vulnerability / Mobile SecurityGoogle has disclosed that a high-severity security flaw in its Pixe...
2026-9-16 11:15:58 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
2026
security
58704
remote
cellular
Threat Intelligence Alone Won't Close the Exploitation Gap
Threat Intelligence / Security ValidationA leaked credential shows up in a criminal marketplace, o...
2026-9-16 11:15:48 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
security
tlpt
pentera
exposure
backlog
Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks
Acronis has warned that a high-severity security flaw in its Backup plugin for cPanel and Web Host...
2026-9-16 11:8:54 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
acronis
backup
security
cpanel
hf3
Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells
Vulnerability / Web SecurityThreat actors are exploiting a critical security flaw in WooCommerce...
2026-9-16 05:48:28 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
php
wordpress
remote
wordfence
2026
Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens
Vulnerability / API SecurityA critical security flaw in WSO2 API Manager has come under active exp...
2026-9-16 05:18:6 | 阅读: 14 |
收藏
|
The Hacker News - thehackernews.com
wso2
universal
plane
2026
watchtowr
KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens
Cybersecurity researchers have shed light on a previously undocumented Brazilian banking malware...
2026-9-15 18:54:14 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
kremlin
malicious
stage
chrome
c2
Iranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and Journalists
Cybersecurity agencies in the United States, the United Kingdom, and the Netherlands have detailed...
2026-9-15 16:29:51 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
iran
windows
security
network
attackers
Previous
-1245
-1244
-1243
-1242
-1241
-1240
-1239
-1238
Next