-
Notifications
You must be signed in to change notification settings - Fork 36
Open
Labels
Description
每日安全资讯(2026-01-07)
- 奇安信攻防社区
- 安全客-有思想的安全新媒体
- 伊顿 UPS 管理软件曝漏洞 致系统面临高危代码执行风险
- 工作流集成赋能谷歌 Gemini AI,市场份额攀升至 18.2%
- Trust Wallet浏览器扩展遭入侵,700 万美元资产被盗
- 黑客宣称窃取欧洲空间局 200GB 数据
- 信息窃取恶意软件助攻击者劫持合法商业基础设施,用于托管恶意程序
- 人工智能与云计算热潮推动下,2026 年软件工程岗位需求激增至 10.5 万个
- 金狼(Kimwolf)僵尸网络感染 180 万台安卓设备,发起DDoS攻击
- CVE-2025-66848:京东云路由器曝严重漏洞 黑客可直接获取 root 权限
- 新型 WordPress 钓鱼骗局现身 借 Telegram 盗取信用卡信息
- CVE-2026-21440:AdonisJS 9.2 高危新漏洞 支持任意文件写入及远程代码执行
- LevelBlue Blog
- Der Flounder
- SecWiki News
- Microsoft Security Blog
- paper - Last paper
- Recent Commits to cve:main
- Doonsec's feed
- 委内瑞拉遭遇的网络攻防实践与启示
- 【吃瓜】数据污染,俄顾问巴兰尼科夫上校为美军抓获马杜罗出力?
- 委内瑞拉互联网中断事件中的BGP异常分析
- 网盘简单私密的文件共享在线文件传输工具
- 网络安全大模型的商业化路径PK
- Shiro漏洞利用工具,更新V0.2!
- HTTrack爬虫:网站递归式资源抓取工具
- JNPF快速开发平台存在任意文件读取漏洞 附POC
- Robin!AI 让暗网搜索变简单
- 你的选择比努力更重要!2026年船山院士网络安全团队纳新启事
- 【红队技巧方法篇】Windows11下饶过defender获取历史RDP密码
- 【CTF】Tryhackme兔年靶场
- 【Ai好记】一款能直接把音视频整理成图文笔记和思维导图的工具
- 伯恩斯坦:比亚迪是否会威胁到日本汽车制造商在K-car车型市场中的主导地位?
- 0113.Java 应用程序中的 ZIP 滑移导致远程命令执行
- 每日课程更新
- Agentic AI 安全攻防浅度实战
- 谷歌发布《2025 AI投资回报率报告》(附报告下载链接)
- 这22款APP及SDK被通报!
- 狗窝网安团队知识库扩充招新
- 2026管理者破局指南:于细微处见人心,于纷扰中守初心
- 【攻防实战】记一次内网穿透
- 到底什么最重要?
- 【AI安全】Robin!AI 让暗网搜索变简单
- 从手工注入到自动化攻击——sqlmap 实战
- 网安杂谈知识记录本2026.1.6
- 【快乐生活】干眼症缓解措施,从夯到拉
- edu漏洞挖掘:任意密码重置管理员账户&getshell
- G.O.S.S.I.P 阅读推荐 2026-01-06 时间的主人
- EDUSRC之jwt密钥&越权拿下edu某证书站
- 两道殊途同归的初一数学题
- 自证安全,聊聊 Spring Framework 鸡肋漏洞 CVE-2024-38816/CVE-2024-38819 的破局之道
- 攻击者利用FortiWeb漏洞部署Sliver C2进行长期访问
- 3年零差评的网安课,2026卷出新高度:六大权益直接拉满
- 每周论文分享-14
- 网络流量监控与威胁检测工具——FastMonitor
- 公司趁我下班之后偷看我电脑,看到我电脑里有git拉的代码,说我干私活要把我开了。。
- 恒丰银行迈向AI原生银行,已建立AI建设领导小组
- 嘶吼 RoarTalk – 网络安全行业综合服务平台,4hou.com
- Private Feed for M09Ic
- bolucat released 202601061940 at bolucat/Archive
- joaoviictorti starred lalrpop/lalrpop
- OpenAEV-Platform released 2.0.10 at OpenAEV-Platform/openaev
- mgeeky starred maxgoedjen/secretive
- Rvn0xsy starred svnscha/mcp-windbg
- DVKunion forked DVKunion/claude-code-security-review from anthropics/claude-code-security-review
- Ridter starred pamburus/hl
- PrefectHQ released 3.6.10.dev3 at PrefectHQ/prefect
- Ridter starred N7WEra/BofAllTheThings
- zema1 starred xo/dburl
- gh0stkey starred evyatarmeged/Raccoon
- WAY29 starred xixu-me/xget
- pydantic released v1.39.1 at pydantic/pydantic-ai
- Y4tacker:Hacking The World!
- GuidePoint Security
- Bug Bounty in InfoSec Write-ups on Medium
- LevelBlue SpiderLabs Blog
- Horizon3.ai
- Sandfly Security Blog RSS Feed
- VMRay
- SentinelOne
- Malware-Traffic-Analysis.net - Blog Entries
- Malwarebytes
- PortSwigger Research
- daniel.haxx.se
- Adam Caudill
- 腾讯玄武实验室
- 奇客Solidot–传递最新科技情报
- HackerNews
- 安全分析与研究
- 黑鸟
- 代码卫士
- 安全内参
- 安全研究GoSSIP
- 黑哥虾撩
- 青衣十三楼飞花堂
- 吾爱破解论坛
- 威努特安全网络
- 安全学术圈
- 二道情报贩子
- 安全圈
- 网安杂谈
- 极客公园
- 中国信息安全
- 火绒安全
- 奇安信威胁情报中心
- 安全牛
- 情报分析师
- 阿里安全响应中心
- 复旦白泽战队
- 看雪学苑
- 嘶吼专业版
- 吴鲁加
- 知道创宇404实验室
- 数世咨询
- 360数字安全
- DEF CON Announcements!
- Over Security - Cybersecurity news aggregator
- Taiwan says China's attacks on its energy sector increased tenfold
- Microsoft cancels plans to rate limit Exchange Online bulk emails
- New D-Link flaw in legacy DSL routers actively exploited in attacks
- Kimwolf Android botnet abuses residential proxies to infect internal devices
- Jaguar Land Rover wholesale volumes down 43% after cyberattack
- Why Effective CTEM Must be an Intelligence-Led Program
- UK government admits years of cyber policy have failed, announces reset
- Sedgwick confirms breach at government contractor subsidiary
- How generative AI accelerates identity attacks against Active Directory
- Are Copilot prompt injection flaws vulnerabilities or AI limits?
- Singapore Cyber Agency Warns of Critical IBM API Connect Vulnerability (CVE-2025-13915)
- WhiteDate - 6,076 breached accounts
- 迪哥讲事
- 黑伞安全
- Have I Been Pwned latest breaches
- 希潭实验室
- Qualys Security Blog
- Schneier on Security
- Dark Space Blogspot
- Full Disclosure
- Multiple Security Misconfigurations and Customer Enumeration Exposure in Convercent Whistleblowing Platform (EQS Group)
- Panda3d v1.10.16 Uncontrolled Format String in Panda3D egg-mkfont Allows Stack Memory Disclosure
- Panda3d v1.10.16 egg-mkfont Stack Buffer Overflow
- Panda3d v1.10.16 deploy-stub Unbounded Stack Allocation Leading to Uninitialized Memory
- MongoDB v8.3.0 Integer Underflow in LMDB mdb_load
- Bioformats v8.3.0 Untrusted Deserialization of Bio-Formats Memoizer Cache Files
- Bioformats v8.3.0 Improper Restriction of XML External Entity Reference in Bio-Formats Leica Microsystems XML Parser
- MongoDB v8.3.0 Heap Buffer Underflow in OpenLDAP LMDB mdb_load
- zlib v1.3.1.2 Global Buffer Overflow in TGZfname() of zlib untgz Utility via Unbounded strcpy() on User-Supplied Archive Name
- SigInt-Hombre v1 / dynamic Suricata detection rules from real-time threat feeds
- Security Vulnerability in Koller Secret: Real Hidden App (com.koller.secret.hidemyphoto)
- Linux Kernel Block Subsystem Vulnerabilities
- SANS Internet Storm Center, InfoCON: green
- Deeplinks
- The Hacker News
- Two Chrome Extensions Caught Stealing ChatGPT and DeepSeek Chats from 900,000 Users
- Unpatched Firmware Flaw Exposes TOTOLINK EX200 to Full Remote Device Takeover
- Fake Booking Emails Redirect Hotel Staff to Fake BSoD Pages Delivering DCRat
- What is Identity Dark Matter?
- VS Code Forks Recommend Missing Extensions, Creating Supply Chain Risk in Open VSX
- New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands
- Critical AdonisJS Bodyparser Flaw (CVSS 9.2) Enables Arbitrary File Write on Servers
- Security Affairs
- Graham Cluley
- The Register - Security
- Brightspeed investigates breach as crims post stolen data for sale
- Fake Windows BSODs check in at Europe's hotels to con staff into running malware
- Crypto wallet shop Ledger confirms customer data lifted in Global-e snafu
- Students bag extended Christmas break after cyber hit on school IT
- UK injects just £210M into cyber plan to stop Whitehall getting pwnd
- One criminal, 50 hacked organizations, and all because MFA wasn't turned on
- Randy Westergren
- Security Weekly Podcast Network (Audio)