unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers have chained two flaws in JFrog Artifactory, the repository that software build pipelines...
2026-9-11 07:31:5 | 阅读: 3 |
收藏
|
The Hacker News - thehackernews.com
jfrog
2026
wiz
artifactory
attackers
China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor
A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used to...
2026-9-11 07:14:9 | 阅读: 1 |
收藏
|
The Hacker News - thehackernews.com
sogou
attacker
machine
windows
chromium
PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws
Vulnerability / Cyber AttackPaperCut on Thursday released a new security maintenance release that...
2026-9-11 06:46:18 | 阅读: 0 |
收藏
|
The Hacker News - thehackernews.com
security
emergency
maintenance
papercut
development
Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware
Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored att...
2026-9-11 06:19:59 | 阅读: 0 |
收藏
|
The Hacker News - thehackernews.com
2026
fmc
20079
20316
ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories
A lot of this week’s security news has the same awkward answer to one question: “Why was that allowe...
2026-9-10 17:47:38 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
phishing
security
malicious
microsoft
remote
Google Play Early Access Abused to Push Thousands of Deceptive Android Apps
Mobile Security / Artificial IntelligenceBad actors are misusing Google Play's Early Access progra...
2026-9-10 14:36:47 | 阅读: 7 |
收藏
|
The Hacker News - thehackernews.com
casino
developers
ratings
deceptive
rewards
Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE
Check Point has patched two critical vulnerabilities in the way its firewall and management product...
2026-9-10 11:45:5 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
security
remote
hotfix
2026
jumbo
PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances
A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence...
2026-9-10 11:41:53 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
development
papercut
greynoise
stages
retry
Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks
The Gigabud banking trojan now installs a second Android app that creates a work profile on an infe...
2026-9-10 11:33:43 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
ib
vwork
gigabud
trojan
CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline
Vulnerability / Network SecurityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) o...
2026-9-10 10:36:46 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
2026
remote
pivotc2
network
socradar
Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example "sk-1234" Admin Key
Nearly one in ten of the internet-facing LiteLLM servers that Wiz Research scanned in February acce...
2026-9-10 07:12:55 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
litellm
wiz
mcp
2026
cloud
Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6
Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model...
2026-9-10 07:4:1 | 阅读: 6 |
收藏
|
The Hacker News - thehackernews.com
claude
anthropic
agents
openai
mythos
U.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in Crypto
The U.S. Department of Justice (DoJ) on Wednesday announced coordinated actions aimed at an illicit...
2026-9-9 18:26:5 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
xinbi
guarantee
wallets
usdt
marketplace
Four Spy Groups Used the Same Chrome and Windows Exploit Kit Within a Week
Multiple espionage-motivated threat activity clusters have been found deploying a previously undocu...
2026-9-9 16:34:5 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
bluemoon
2026
chrome
phishing
sideloading
Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA
Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer l...
2026-9-9 14:23:55 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
jwts
stealer
compute
okta
Webinar: Learn How to Answer “Are We Exposed?” Faster After a New CVE
Security Operations / Artificial IntelligencA major vulnerability is disclosed. The alert lands im...
2026-9-9 11:57:36 | 阅读: 11 |
收藏
|
The Hacker News - thehackernews.com
security
tines
exposure
webinar
workflows
DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval
A flaw in DeepSeek Harness, DeepSeek's open-source tool for running AI coding agents on a developer...
2026-9-9 11:17:7 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
security
harness
deepseek
approval
ox
Alby Hub Critical Flaw Could Let Attackers Take Over Internet-Exposed Bitcoin Wallets
Vulnerability / CryptocurrencyBitcoin wallet company Alby has warned of a critical flaw in Alby Hu...
2026-9-9 10:43:4 | 阅读: 9 |
收藏
|
The Hacker News - thehackernews.com
alby
reachable
network
machine
umbrel
U.S. Agencies Accuse China AI Firms of Distilling Claude, GPT, Gemini, and Grok
U.S. cybersecurity and intelligence agencies have accused China-based artificial intelligence (AI)...
2026-9-9 09:32:26 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
claude
gpt
frontier
security
Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
Vulnerability / Browser SecurityGoogle on Thursday released updates to patch 230 security vulnerab...
2026-9-9 09:11:3 | 阅读: 14 |
收藏
|
The Hacker News - thehackernews.com
2026
security
chrome
webgl
8010
Previous
-730
-729
-728
-727
-726
-725
-724
-723
Next