unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker Commands
Ask an AI agent to summarize the reviews on a product page, and a single planted review can make it...
2026-7-16 11:32:28 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
attacker
agents
punctuation
github
injection
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor
An advanced malware previously attributed to a China-linked threat actor has resurfaced after more...
2026-7-16 11:17:23 | 阅读: 8 |
收藏
|
The Hacker News - thehackernews.com
stupig
daxin
windows
taiwan
2026
AI Can Find Bugs, But Human Knowledge Still Proves Them
Artificial intelligence (AI) is changing offensive security, but it has not changed the standard th...
2026-7-16 10:10:0 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
security
matters
prove
tester
validated
Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-Wide
Pull the certificate off the flash of a Shark RV2320EDUS robot vacuum, and you can run root command...
2026-7-16 09:23:19 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
sharkninja
vacuum
shark
tokay0
scoped
OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 Sol
OpenAI has disclosed details of GPT-Red, an internal automated red-teaming model that scales prompt...
2026-7-16 08:42:31 | 阅读: 5 |
收藏
|
The Hacker News - thehackernews.com
gpt
openai
injection
injections
teaming
Zoom Patches Critical Windows Flaw That Could Enable Account Takeover
Vulnerability / Enterprise SecurityZoom has released security updates for a critical security flaw...
2026-7-16 07:22:44 | 阅读: 19 |
收藏
|
The Hacker News - thehackernews.com
windows
client
vdi
workplace
2026
TuxBot v3 Evolution Shows Signs of LLM-Assisted IoT Botnet Development
Cybersecurity researchers have disclosed details of a previously unreported Internet-of-Things (IoT...
2026-7-15 18:43:8 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
c2
tuxbot
llm
developer
reasoning
OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor Apps
A malware framework called OkoBot has been running on Windows machines since April 2025, and one of...
2026-7-15 15:30:30 | 阅读: 20 |
收藏
|
The Hacker News - thehackernews.com
phrase
ledger
seedhunter
ssh
malicious
Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security Flaws
Vulnerability / Browser SecurityMozilla has released updates to address two critical flaws in Fire...
2026-7-15 13:18:53 | 阅读: 20 |
收藏
|
The Hacker News - thehackernews.com
2026
coldfusion
security
7871
SASE Has An AI Blind Spot. Inspecting Packets Is No Longer Enough.
Network Security / Enterprise SecurityFor years, routing traffic through cloud proxies was good en...
2026-7-15 11:50:1 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
security
network
inspection
cloud
proxy
Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch Tuesday
Vulnerability / Enterprise SecuritySecurity researcher Chaotic Eclipse (aka Nightmare-Eclipse) has...
2026-7-15 11:7:7 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
2026
microsoft
security
New Webinar: Closing the Approval Gap in AI-Era Ad Tech
Web Security / Supply Chain SecurityA single approved marketing tag can quietly load fourth-party...
2026-7-15 11:6:57 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
security
approval
gap
approved
taboola
Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code Execution
Open a repository in Cursor on Windows and, if a file named git.exe is sitting in the project root,...
2026-7-15 10:55:22 | 阅读: 9 |
收藏
|
The Hacker News - thehackernews.com
mindgard
windows
cymulate
repository
firm
Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet Malware
Four compromised npm packages in the @asyncapi namespace have been observed distributing a multi-st...
2026-7-15 09:16:13 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
payload
miasma
ipfs
asyncapi
stage
Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin Commands
Vulnerability / Enterprise SecuritySonicWall has warned of active exploitation of two zero-day vul...
2026-7-15 05:30:21 | 阅读: 22 |
收藏
|
The Hacker News - thehackernews.com
appliances
hotfix
2026
security
Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack
Microsoft shipped its largest Patch Tuesday on record today, and two of the fixes close holes that...
2026-7-14 20:25:47 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
microsoft
2026
exploited
remote
bypass
SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify Data
Enterprise Security / VulnerabilitySAP has rolled out updates to address multiple vulnerabilities...
2026-7-14 18:17:57 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
client
2026
attacker
security
cloud
Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail Reads
Any other browser extension that can run a script on claude.ai can still trigger Claude for Chrome...
2026-7-14 17:27:23 | 阅读: 13 |
收藏
|
The Hacker News - thehackernews.com
claude
anthropic
manifold
forged
claudebleed
LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts
Cybersecurity researchers have flagged a previously undocumented Rust-based remote access trojan (R...
2026-7-14 16:52:37 | 阅读: 27 |
收藏
|
The Hacker News - thehackernews.com
security
labubarat
blackpoint
nvidia
remote
RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue Metadata
Vulnerability / Network SecurityCybersecurity researchers have disclosed details of two access con...
2026-7-14 13:48:7 | 阅读: 12 |
收藏
|
The Hacker News - thehackernews.com
broker
client
rabbitmq
network
attacker
Previous
3
4
5
6
7
8
9
10
Next