unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Elementor CSRF Flaw Lets Attackers Take Over Sites After Admin Clicks Crafted Link
Vulnerability / Web Security Details have emerged about a high-severity security flaw in the Elem...
2026-9-26 09:55:22 | 阅读: 4 |
收藏
|
The Hacker News - thehackernews.com
wordpress
security
elementor
attacker
wp
SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild
Vulnerability / Network SecurityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) o...
2026-9-26 08:49:53 | 阅读: 4 |
收藏
|
The Hacker News - thehackernews.com
2026
routeros
microsoft
security
Kiteworks Urges Customers to Shut Down Systems for 9 Hours Over Possible Cyber Attack
Threat Intelligence / VulnerabilityKiteworks (formerly Accellion) is urging customers to shut down...
2026-9-26 07:48:33 | 阅读: 5 |
收藏
|
The Hacker News - thehackernews.com
kiteworks
nine
authorities
Compromised GitHub Actions Came Back Online and Resumed Executing Mini Shai-Hulud Malware
Malware / Supply Chain AttackTwo actions-cool GitHub Actions have been disabled for a second time...
2026-9-25 14:44:41 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
github
2026
workflows
repository
malicious
PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence
Malware / Social EngineeringCybersecurity researchers have flagged a new version of PamStealer tha...
2026-9-25 13:18:6 | 阅读: 4 |
收藏
|
The Hacker News - thehackernews.com
payload
jxa
zsh
exchange
wavel
The SOC Doesn't Need to Start Over with Every Alert
Security leaders keep debating whether AI will produce an entirely new class of cyberattack. The ne...
2026-9-25 11:30:0 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
forwarding
matters
verdict
stateful
lands
Bitget Says Suspected North Korean Hackers Stole $351.6M After Backend Compromise
Cryptocurrency / Cybercrime Cryptocurrency exchange Bitget said suspected North Korean threat act...
2026-9-25 10:35:55 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
bitget
north
wallets
exchange
involving
Roundcube Pre-Auth SQL Injection Flaw Actively Exploited in the Wild
Vulnerability / Email SecurityThe Canadian Centre for Cyber Security has warned that a now-patched...
2026-9-25 10:14:2 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
roundcube
2026
security
exploited
centre
Cloudflare Fixes Flaw That Let One Container Read Another Customer's Leftover Disk Data
Cloud Security / VulnerabilityA flaw in Cloudflare Containers let a paying customer read data tha...
2026-9-25 04:49:22 | 阅读: 9 |
收藏
|
The Hacker News - thehackernews.com
containers
wiping
held
recovered
kilobyte
WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV
Vulnerability / Web SecurityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA), on T...
2026-9-25 04:46:34 | 阅读: 18 |
收藏
|
The Hacker News - thehackernews.com
2026
security
magento
kev
Unpatched OnePlus Flaws Let Installed Android Apps Gain Root Without Permissions
Vulnerability / Mobile SecurityA OnePlus 15 running the latest OxygenOS can be rooted by a malicio...
2026-9-24 18:10:18 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
oneplus
moorats
warned
ships
phones
ThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories
This week, the dangerous stuff keeps arriving dressed as something boring. An update. A login box. A...
2026-9-24 17:52:43 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
security
2026
poisoning
malicious
phishing
Placeholder third-party[.]com Referenced Across 1,700+ Repositories Now Serves Malicious Content
The "third-party[.]com" domain, commonly used as a documentation placeholder, has been observed ser...
2026-9-24 15:27:32 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
windows
security
placeholder
clickfix
serving
Hacked Ukrainian Sites Serve Fake Cloudflare ClickFix Lures for Psychedelic Stealer
An active ClickFix campaign has been observed compromising legitimate Ukrainian business websites t...
2026-9-24 14:29:6 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
boundsiphon
windows
remotepanel
stealer
clickfix
Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls
Artificial Intelligence / MalwareThe logistics sector has become the target of a new malicious c...
2026-9-24 12:5:27 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
logistics
mdm
phishing
squatted
heartbeat
Secrets Sprawl Is an Identity Problem That AI Just Made Impossible to Ignore
AI coding agents are changing how quickly developers can build and ship software as well as how qu...
2026-9-24 11:0:0 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
agents
sprawl
security
developer
identities
17,000 URLs Reveal How ClickFix Turns Trusted Websites Into Malware Traps: Report by CTM360
ClickFix has become the most common way attackers get into enterprise networks, and it does it with...
2026-9-24 09:14:21 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
clickfix
lure
payload
analysis
windows
OpenAI Agent Bypassed Australian Medicare Portal Controls to Access Non-Public Files
An AI agent on an internal OpenAI research task bypassed access controls on an Australian governm...
2026-9-24 07:7:25 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
openai
australian
australia
albanese
agents
TeamFiltration Campaign Compromises Seven Microsoft 365 Accounts Using Default Passwords
Cloud Security / Identity SecurityCybersecurity researchers have disclosed details of an active...
2026-9-24 06:32:3 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
chilean
passwords
proofpoint
microsoft
provisioned
Attackers Exploit WordPress CVE-2026-87902 Within Hours of Disclosure
Vulnerability / Web SecurityThreat actors have begun to actively exploit a critical security flaw...
2026-9-24 05:36:18 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
php
wordpress
previdian
malicious
2026
Previous
-1601
-1600
-1599
-1598
-1597
-1596
-1595
-1594
Next