unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit
STAR Labs has published a Linux kernel exploit that turns an ordinary local user into root on the C...
2026-7-28 08:4:44 | 阅读: 24 |
收藏
|
The Hacker News - thehackernews.com
lee
2026
upstream
analysis
memfd
Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost
AI Security / Vulnerability ManagementMicrosoft has launched its first cybersecurity-specific mode...
2026-7-28 06:7:22 | 阅读: 26 |
收藏
|
The Hacker News - thehackernews.com
mdash
microsoft
gpt
mai
cybergym
Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw
Vulnerability / Threat IntelligenceA maximum-severity security flaw impacting on-premises versio...
2026-7-28 04:43:53 | 阅读: 24 |
收藏
|
The Hacker News - thehackernews.com
vco
security
2026
arista
NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework
NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and share open...
2026-7-27 18:10:5 | 阅读: 24 |
收藏
|
The Hacker News - thehackernews.com
hugging
nvidia
alliance
nooa
openai
Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption
Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted blockcha...
2026-7-27 17:16:28 | 阅读: 32 |
收藏
|
The Hacker News - thehackernews.com
xlab
jackskid
dysphoria
cncert
ens
Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw
Vulnerability / Website SecurityPublic exploit details released on July 27 show how an unauthentic...
2026-7-27 14:40:0 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
vbulletin
php
pagenav
2026
forums
⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More
Monday starts with the usual promise that everything is under control. Then the logs wake up.This...
2026-7-27 14:10:54 | 阅读: 31 |
收藏
|
The Hacker News - thehackernews.com
2026
security
malicious
windows
phishing
n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process
Vulnerability / Enterprise Securityn8n has patched a high-severity expression-sandbox escape that...
2026-7-27 13:5:15 | 阅读: 19 |
收藏
|
The Hacker News - thehackernews.com
n8n
security
joes
2026
arrow
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update
Cybersecurity researchers have flagged a Microsoft Teams-themed phishing campaign that employs "sec...
2026-7-27 12:37:49 | 阅读: 18 |
收藏
|
The Hacker News - thehackernews.com
rmm
phishing
microsoft
github
zerobec
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware
The China-linked cybercrime group behind the use of income tax-related phishing lures targeting Ind...
2026-7-27 10:51:45 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
cruciferra
analysis
security
payload
windows
TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments
Cyber Attack / Threat IntelligenceCybersecurity researchers have flagged fresh malicious cyber act...
2026-7-27 08:48:47 | 阅读: 29 |
收藏
|
The Hacker News - thehackernews.com
teleshim
c2
stage
windows
threatlabz
GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption
Software Supply Chain / DevSecOpsGitHub has announced a new cooldown mechanism in Dependabot, allo...
2026-7-27 08:1:23 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
cooldown
github
software
dependabot
pypi
Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable
Browser Security / MalvertisingA malvertising operation dubbed SourTrade is making victims' brow...
2026-7-25 18:48:44 | 阅读: 30 |
收藏
|
The Hacker News - thehackernews.com
confiant
bun
download
landing
bytecode
Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available
Vulnerability / Application SecuritySecurity firms ThreatBook and Imperva say attackers are target...
2026-7-25 12:52:43 | 阅读: 30 |
收藏
|
The Hacker News - thehackernews.com
alibaba
fat
attacker
autotype
imperva
CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking
For years, phishing campaigns targeting financial institutions followed the same playbook. Victims...
2026-7-25 10:14:21 | 阅读: 23 |
收藏
|
The Hacker News - thehackernews.com
phishing
insurance
attackers
victim
Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE
Vulnerability / RansomwareThreat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful S...
2026-7-25 10:14:3 | 阅读: 23 |
收藏
|
The Hacker News - thehackernews.com
cl0p
ptc
extortion
security
remote
DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts
The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web p...
2026-7-25 09:53:41 | 阅读: 29 |
收藏
|
The Hacker News - thehackernews.com
devman
affiliate
affiliates
victim
huntress
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git
Vulnerability / Application SecuritySecurity researchers depthfirst published working exploit code...
2026-7-25 08:34:15 | 阅读: 18 |
收藏
|
The Hacker News - thehackernews.com
gitlab
oj
security
depthfirst
memory
BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom an...
2026-7-24 15:12:35 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
victim
jumpsec
clickfix
meeting
chrome
Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Vulnerability / Enterprise SecurityResearchers H0j3n and Aniq Fakhrul published a working exploit...
2026-7-24 14:15:21 | 阅读: 28 |
收藏
|
The Hacker News - thehackernews.com
microsoft
machine
windows
chase
enrollment
Previous
7
8
9
10
11
12
13
14
Next