unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Know Your Enemy: Browser-Based Attack Techniques in 2026
Given that the browser is where business apps are accessed and used, it makes sense that attacks ar...
2026-9-30 11:58:0 | 阅读: 2 |
收藏
|
The Hacker News - thehackernews.com
phishing
malicious
clickfix
security
AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub
AI coding agents asked to share screenshots of code changes for review have put internal company im...
2026-9-30 11:30:0 | 阅读: 2 |
收藏
|
The Hacker News - thehackernews.com
glow
repository
agents
github
gitshot
US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access
ANY.RUN researchers traced a US-focused CSuite phishing campaign across 351 sandbox analyses, with...
2026-9-30 10:45:0 | 阅读: 2 |
收藏
|
The Hacker News - thehackernews.com
csuite
phishing
tier
remote
attackers
Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT
Unknown threat actors have been observed exploiting a newly patched security flaw in Citrix NetSc...
2026-9-30 08:24:35 | 阅读: 3 |
收藏
|
The Hacker News - thehackernews.com
php
netscaler
shells
2026
sig
OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted
A High-severity OpenSSL flaw can leak heap memory to the other side of a DTLS connection or crash...
2026-9-30 08:9:28 | 阅读: 5 |
收藏
|
The Hacker News - thehackernews.com
dtls
2026
security
handshake
resend
Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution
Vulnerability / Network SecurityCybersecurity researchers have disclosed technical details of a re...
2026-9-30 05:30:30 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
netscaler
security
handshake
fragment
overflow
French Tax Data Theft Using Stolen Staff Passwords Went Undetected for Seven Weeks
An attacker used stolen passwords of staff at France's tax administration to take tax data on hun...
2026-9-29 17:47:1 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
dgfip
attacker
anssi
tax
ader
Russia's Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver Backdoor
Russian state hackers known as Star Blizzard have been using fake event invitations to trick people...
2026-9-29 17:20:8 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
microsoft
windows
defender
invitations
ukraine
New Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing Defenses
Vulnerability / Hardware SecurityA group of academics from VUSec and Scuola Superiore Sant'Anna ha...
2026-9-29 17:0:0 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
attacker
spectre
btr
stale
btb
Kiteworks Fixes Critical Flaw Found During Nine-Hour Precautionary Shutdown
Vulnerability / Enterprise SecurityKiteworks on Monday said it worked with federal intelligence au...
2026-9-29 14:13:20 | 阅读: 3 |
收藏
|
The Hacker News - thehackernews.com
kiteworks
exploited
security
frank
specifics
101 Malicious npm Packages Add Developers' WhatsApp Accounts to Groups Without Consent
Cybersecurity researchers have identified a cluster of 101 npm packages that are used to trap devel...
2026-9-29 13:45:10 | 阅读: 4 |
收藏
|
The Hacker News - thehackernews.com
baileys
followers
security
malicious
ox
Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters Investigation
Dutch authorities have confirmed that they arrested a 24-year-old man from Amsterdam in connection...
2026-9-29 08:35:10 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
stap
van
security
arrested
Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials
Identity Security / Artificial IntelligenceA malicious MCP server could trick an application bui...
2026-9-29 06:8:25 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
mcp
client
attacker
cycode
security
OpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized Actions
Artificial Intelligence / Supply ChainOpenAI on Monday shelved plans to release GPT-6.1 Astra, a n...
2026-9-29 05:12:32 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
gpt
astra
development
openai
journal
OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot
OpenAI said it has made the decision to pause training of its most powerful models after one of i...
2026-9-29 04:45:20 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
openai
2026
agents
australian
evaluation
Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
Vulnerability / Endpoint SecurityApple has released security updates to address a vulnerability in...
2026-9-28 19:18:1 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
security
addressed
2026
tahoe
sequoia
Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks
Hackers have used a malware family called NeedyMantis to maintain long-term access to networks they...
2026-9-28 18:35:42 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
microsoft
needymantis
3069
malicious
defender
IAM for AI agents: A Practical Enterprise Framework
What is IAM for AI agents?AI agents authenticate, invoke tools, and act across enterprise systems...
2026-9-28 18:20:38 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
agents
governance
identities
lifecycle
Bitget Says Attacker Exploited Third-Party Security Product Flaw to Steal $388M
Vulnerability / CybercrimeThe attacker who stole about $388 million from the cryptocurrency exchan...
2026-9-28 17:42:18 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
bitget
wallets
attacker
funds
monday
RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
RatHat's operators build and publish the Android banking trojan and control infected phones from a...
2026-9-28 17:38:33 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
cleafy
2026
phones
gemini
rathat
Previous
-1747
-1746
-1745
-1744
-1743
-1742
-1741
-1740
Next