unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between...
2026-8-12 11:47:38 | 阅读: 1 |
收藏
|
The Hacker News - thehackernews.com
reasoning
replay
traces
openai
anthropic
Enterprise Defenses Recovered at the Edge and Collapsed Inside
Enterprise defenses are tuned to catch the attacks that make noise. This year's data shows attacker...
2026-8-12 11:41:34 | 阅读: 0 |
收藏
|
The Hacker News - thehackernews.com
quiet
defenses
2026
memory
attackers
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
Vulnerability / Web SecurityAdobe has shipped updates to address multiple critical security vulner...
2026-8-12 11:13:3 | 阅读: 3 |
收藏
|
The Hacker News - thehackernews.com
2026
coldfusion
incorrect
security
9400
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
Vulnerability / Threat IntelligenceThreat actors have begun to actively exploit a recently patched...
2026-8-12 09:1:54 | 阅读: 3 |
收藏
|
The Hacker News - thehackernews.com
2026
ssh
attacker
vcenter
reverse
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-steali...
2026-8-12 08:4:52 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
litellm
trivy
cloudsek
malicious
pypi
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
Enterprise Security / VulnerabilitySAP has released patches to address a maximum-severity security...
2026-8-12 07:31:40 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
2026
attacker
cloud
injection
security
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
The security researcher going by the name Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and...
2026-8-12 06:41:38 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
windows
microsoft
2026
attacker
eclipse
Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS
Network Security / VulnerabilityCisco has warned that a new vulnerability impacting Secure Firewal...
2026-8-12 06:15:58 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
ftd
hotfix
ssp
asa
fw
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
Vulnerability / Windows SecurityMicrosoft released its monthly security updates on Tuesday, and on...
2026-8-11 20:10:55 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
2026
microsoft
windows
attacker
Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing
Cybersecurity researchers have discovered a new version of the Kimwolf/AISURU Android and Internet...
2026-8-11 19:36:37 | 阅读: 3 |
收藏
|
The Hacker News - thehackernews.com
kimwolf
proxy
c2
boxes
network
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client
Vulnerability / Software SecurityAnyone sharing their screen on a Zoom call could have taken over...
2026-8-11 19:8:47 | 阅读: 2 |
收藏
|
The Hacker News - thehackernews.com
security
client
firm
2026
zsb
Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands
Social Engineering / MalwareThe Computer Emergency Response Team of Ukraine (CERT-UA) has disclose...
2026-8-11 18:36:47 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
sourceforge
wireguard
attackers
victim
meeting
Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
Vulnerability / Enterprise SecuritySecurity researchers found a way to enter Microsoft SharePoin...
2026-8-11 16:47:44 | 阅读: 9 |
收藏
|
The Hacker News - thehackernews.com
rapid7
microsoft
firm
bypass
security
DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt
The ransomware group known as DeadLock has been observed using decentralized infrastructure to faci...
2026-8-11 16:35:27 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
ransomware
victim
encryption
proxy
deadlock
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is fo...
2026-8-11 13:11:23 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
gpt
openai
daybreak
security
A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
A malicious SIM card can order the device it sits in to run commands of the attacker's choosing. On...
2026-8-11 12:5:3 | 阅读: 5 |
收藏
|
The Hacker News - thehackernews.com
quectel
qualcomm
modem
cellular
attacker
Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
Cryptography / Software Supply ChainMozilla has scrapped the cryptographic key behind Firefox and...
2026-8-11 12:4:51 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
mozilla
repository
revocation
subkey
thunderbird
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
Insider Threat / Cyber Espionage Security researchers invented a cryptocurrency startup, advertis...
2026-8-11 11:35:3 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
north
watermark
korean
hiring
machine
Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11
Vulnerability / Enterprise SecurityWindows Plug and Play can be abused to fetch signed vendor soft...
2026-8-11 10:48:26 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
windows
microsoft
remote
redirection
sierra
Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets
AI Security / Cyber AttackA malicious tool server connected to an AI coding assistant can quietly...
2026-8-11 10:24:0 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
mcp
asset
malicious
claude
sonnet
Previous
-21
-20
-19
-18
-17
-16
-15
-14
Next