Aggregator
斯特兰蒂斯计划扩大与中国零跑汽车合作
CVE-2026-7650 | oleksandrz E2Pdf Plugin up to 1.32.17 on WordPress Shortcode e2pdf-download ID cross site scripting
CVE-2026-7475 | wowdevs Sky Addons Plugin up to 3.3.2 on WordPress REST API sky_script_content cross site scripting
CVE-2026-5341 | mirceatm NMR Strava Activities Plugin up to 1.0.14 on WordPress Shortcode strava_nmr_connect cross site scripting
CVE-2026-6213 | Remote Spark SparkView 1122 reliance on untrusted inputs in a security decision
Zara data breach exposed personal information of 197,000 people
解开 Windows 微信 4.0 版本的主数据库
喜报 | 我实验室获“2026数字中国创新大赛”数字安全赛道金奖
Ivanti EPMM vulnerability exploited in zero-day attacks (CVE-2026-6973)
Ivanti has released fixes for 5 high-severity vulnerabilities in its Endpoint Manager Mobile (EPMM) solution, one of which (CVE-2026-6973) has being exploited as a zero-day by attackers. “We are aware of a very limited number of customers exploited with CVE-2026-6973,” the company said in a security advisory published on Thursday. About CVE-2026-6973 CVE-2026-6973 is caused by improper input validation and allows remote attackers with administrative privileges to execute arbitrary code on vulnerable instances. “If customers … More →
The post Ivanti EPMM vulnerability exploited in zero-day attacks (CVE-2026-6973) appeared first on Help Net Security.
One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity Risk
Одна команда — и ты root. Новая уязвимость в Linux даёт полный контроль без ошибок и без следов
【立即修复】Dirty Frag 漏洞已公开 EXP!一条命令阻断攻击路径
数智广电的安全命题,长亭科技在CCBN2026给了答案
Weekly Threat Landscape Digest – Week 19
Critical Vulnerabilities in Spring Cloud Config Overview: Multiple high-severity vulnerabilities disclosed in Spring Cloud Config, a component for centralized configuration […]
The post Weekly Threat Landscape Digest – Week 19 appeared first on HawkEye.
任天堂 Switch 2 涨价 50 美元
Google is turning Android Studio into a policy watchdog
Google has expanded Play Policy Insights in Android Studio to help developers catch policy issues while coding, including warnings for common problems such as missing login credentials. Later this year, developers who connect their Play developer account directly to Android Studio will receive tailored insights. By leveraging SDK Index, a searchable list of Android SDKs that shows permissions, developer details, and Google Play registration status, they will also receive SDK insights in their workflows to … More →
The post Google is turning Android Studio into a policy watchdog appeared first on Help Net Security.