unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls
Artificial Intelligence / MalwareThe logistics sector has become the target of a new malicious c...
2026-9-24 12:5:27 | 阅读: 4 |
收藏
|
The Hacker News - thehackernews.com
logistics
mdm
phishing
squatted
heartbeat
Secrets Sprawl Is an Identity Problem That AI Just Made Impossible to Ignore
AI coding agents are changing how quickly developers can build and ship software as well as how qu...
2026-9-24 11:0:0 | 阅读: 3 |
收藏
|
The Hacker News - thehackernews.com
agents
sprawl
security
developer
identities
17,000 URLs Reveal How ClickFix Turns Trusted Websites Into Malware Traps: Report by CTM360
ClickFix has become the most common way attackers get into enterprise networks, and it does it with...
2026-9-24 09:14:21 | 阅读: 5 |
收藏
|
The Hacker News - thehackernews.com
clickfix
lure
payload
analysis
windows
OpenAI Agent Bypassed Australian Medicare Portal Controls to Access Non-Public Files
An AI agent on an internal OpenAI research task bypassed access controls on an Australian governm...
2026-9-24 07:7:25 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
openai
australian
australia
albanese
agents
TeamFiltration Campaign Compromises Seven Microsoft 365 Accounts Using Default Passwords
Cloud Security / Identity SecurityCybersecurity researchers have disclosed details of an active...
2026-9-24 06:32:3 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
chilean
passwords
proofpoint
microsoft
provisioned
Attackers Exploit WordPress CVE-2026-87902 Within Hours of Disclosure
Vulnerability / Web SecurityThreat actors have begun to actively exploit a critical security flaw...
2026-9-24 05:36:18 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
php
wordpress
previdian
malicious
2026
Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry
Cybersecurity researchers have disclosed Go-based malware distributed via two Go Modules and two Te...
2026-9-23 18:6:30 | 阅读: 14 |
收藏
|
The Hacker News - thehackernews.com
malicious
c2
blockchain
payload
developer
A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You
DevOps Security / Supply ChainThe private email address GitLab gives you for filing issues by email...
2026-9-23 16:53:10 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
gitlab
aikido
attacker
mailbox
whereas
MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key
Two MikroTik RouterOS SSH vulnerabilities chained together let attackers take full administrative c...
2026-9-23 16:6:41 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
ssh
polska
2026
mikrotik
routeros
This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move
A Windows malware called CLOSEDQUORUM is built to take orders from a vote of up to four AI models i...
2026-9-23 14:17:58 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
talos
windows
attacker
inspection
Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI
Unknown threat actors have managed to compromise two legitimate MemTensor packages across the npm a...
2026-9-23 13:52:46 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
pypi
github
memtensor
cloud
developer
New cPanel Flaw Lets a Hosting Account Run Code as Root, Take Full Server Control
Vulnerability / Web SecurityA flaw in cPanel's CalDAV and CardDAV service lets anyone with a cPane...
2026-9-23 12:16:0 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
cpanel
wp
2026
plesk
whm
545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent
Autonomous security agents are getting good at finding bugs. Nobody has a good way to measure how g...
2026-9-23 11:47:19 | 阅读: 9 |
收藏
|
The Hacker News - thehackernews.com
xranges
exploited
agents
security
Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests
Anthropic and OpenAI on Tuesday announced new models, with both artificial intelligence (AI) comp...
2026-9-23 11:47:13 | 阅读: 9 |
收藏
|
The Hacker News - thehackernews.com
gpt
opus
openai
sol
luna
Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape
A use-after-free in the Linux kernel's AF_UNIX socket subsystem can be used to escape a container...
2026-9-23 11:12:18 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
depthfirst
containers
collector
security
sockets
F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers
Vulnerability / Network SecurityAttackers are exploiting a critical flaw in F5 BIG-IP Access Polic...
2026-9-23 08:29:48 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
hotfix
apm
kev
eng
bigip
Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware
A Chinese threat actor codenamed UTA0565 has been observed exploiting the recently disclosed Google...
2026-9-23 08:29:24 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
2026
chrome
windows
download
chow
Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input
Vulnerability / Web SecurityA new security vulnerability in Next.js could allow attackers to run c...
2026-9-23 07:4:40 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
vercel
satori
security
attacker
ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants
The cyber extortion group known as ShinyHunters on Tuesday claimed it had breached the U.S. Federal...
2026-9-23 05:30:9 | 阅读: 20 |
收藏
|
The Hacker News - thehackernews.com
2026
peoplesoft
maor
attackers
Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks
Network Security / VulnerabilityAttackers exploited a previously unknown flaw in Check Point's S...
2026-9-22 18:29:39 | 阅读: 18 |
收藏
|
The Hacker News - thehackernews.com
r82
jumbo
hotfix
r81
2026
Previous
-1448
-1447
-1446
-1445
-1444
-1443
-1442
-1441
Next