unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More
A package gets installed. A login prompt opens. A box sits exposed to the internet. Nothing looks...
2026-8-24 14:32:10 | 阅读: 1 |
收藏
|
The Hacker News - thehackernews.com
2026
security
software
remote
WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords
Cybersecurity researchers have flagged two new malware families called WordlistLoader and SynkLoad...
2026-8-24 12:35:36 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
microsoft
clickfix
stealer
malicious
Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt
If your developers are using AI coding tools, you are probably already seeing the upside: faster de...
2026-8-24 11:58:0 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
security
webinar
debt
activestate
Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account
Vulnerability / Identity SecurityRed Hat and the Keycloak project have released patches to addre...
2026-8-24 11:56:34 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
keycloak
2026
rhbk
rhsa
attacker
Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor
Cyber Espionage / Cyber AttackCybersecurity researchers have flagged a cyber espionage campaign ta...
2026-8-24 11:51:36 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
windows
c2
myanmar
coolclient
quicagent
The Outsized Shadow: Why 5% of AI Users Are Your Biggest Security Risk
Artificial Intelligence / Browser SecurityBig security risks come in small packages. While enterpr...
2026-8-24 11:30:0 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
security
akamai
eshed
agents
prompts
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit
Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-...
2026-8-24 08:8:31 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
spectre
talos
10147
uat
c2
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit
The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400...
2026-8-22 14:32:41 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
doj
settlement
parents
ban
bytedance
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
Cybersecurity researchers have discovered a set of trojanized npm packages that masquerade as worki...
2026-8-21 18:53:0 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
streak
beacon
redc2
windows
c2
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
Check Point Research has disclosed a technique that uses Microsoft Defender's own legitimately sign...
2026-8-21 15:52:10 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
btr
windows
defender
sysmon
microsoft
Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
Malware / Automotive SecurityCybersecurity researchers have flagged a new malware family that's sp...
2026-8-21 15:41:44 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
software
c2
badbox
proxy
malicious
Wazuh and AI For Enhanced SOC Workflows
Artificial Intelligence (AI) has become one of this decade's defining technologies. From healthcare...
2026-8-21 11:21:39 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
wazuh
security
cloud
llm
Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0
Vulnerability / Enterprise SecurityCisco has published another round of security updates for Cross...
2026-8-21 10:3:11 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
2026
security
software
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure
Vulnerability / Enterprise SecurityA newly disclosed security flaw in GitLab has come under active...
2026-8-21 07:4:25 | 阅读: 20 |
收藏
|
The Hacker News - thehackernews.com
gitlab
watchtowr
security
attacker
landed
Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution
Vulnerability / Threat IntelligenceMicrosoft on Thursday warned of a maximum-severity security fla...
2026-8-21 06:6:11 | 阅读: 27 |
收藏
|
The Hacker News - thehackernews.com
microsoft
security
exploited
entra
thursday
Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads
The Rust Project has deleted malicious versions of three widely used Rust crates from crates.io a...
2026-8-20 20:22:35 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
crates
arrayref
malicious
crate
payload
Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts
Three distinct suspected Russian cyber espionage threat clusters have been observed leveraging legi...
2026-8-20 19:59:19 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
phishing
attacker
unc7005
2026
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More
A lot of this week’s trouble starts with something trusted doing exactly what it was allowed to do.S...
2026-8-20 17:23:48 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
security
2026
remote
glm
kriminal
AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure
The U.S. government on Wednesday warned of an "active threat" targeting critical infrastructure or...
2026-8-20 16:59:44 | 阅读: 25 |
收藏
|
The Hacker News - thehackernews.com
s7
plcs
siemens
plc
agents
New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data
Adversa AI has disclosed an attack technique that it says can cause xAI's Grok chatbot to send a us...
2026-8-20 14:36:27 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
grok
adversa
xai
2026
gemini
Previous
-285
-284
-283
-282
-281
-280
-279
-278
Next