Aggregator
CVE-2026-37460 | FRRouting FRR 10.0/10.6 BGP rfapi_rib.c rfapiRibBi2Ri denial of service (EUVD-2026-34083)
Взломали, извинились, починили. Группировка Nova показала чудеса клиентского сервиса.
Meta 给予员工每次最多 30 分钟退出跟踪
Microsoft responds to security challenges facing code, AI agents, and models
Microsoft has introduced a series of security tools and capabilities focused on AI-driven vulnerability discovery, AI agents, and AI models. The updates include a multi-agent vulnerability discovery system, new controls for managing and securing AI agents, data protection capabilities, and tools designed to identify potentially vulnerable or compromised AI models before deployment. MDASH targets exploitable vulnerabilities Microsoft expanded the preview of MDASH, a multi-model agentic vulnerability discovery system that now integrates with Microsoft Defender. The … More →
The post Microsoft responds to security challenges facing code, AI agents, and models appeared first on Help Net Security.
Space Bears
You must login to view this content
Akira
You must login to view this content
Akira
You must login to view this content
Akira
You must login to view this content
Five OpenClaw 0-Days let Attackers to Hijack Trusted AI Agent Access
Five zero-day flaws in OpenClaw allowed attackers to bypass trust boundaries and hijack AI agent access across multiple messaging platforms. OpenClaw, which integrates AI agents with services such as Slack, Discord, Microsoft Teams, Matrix, and Telegram, relies heavily on user-defined allowlists to determine who can interact with an agent. This trust model assumes that only […]
The post Five OpenClaw 0-Days let Attackers to Hijack Trusted AI Agent Access appeared first on Cyber Security News.
网络首发 | 安徽大学崔杰教授团队:车内网中基于属性加密的可撤销访问控制机制研究
WordPress Plugin Vulnerability Exposes 500,000+ Websites to Privilege Escalation Attacks
A critical security flaw in the widely used Kirki WordPress plugin has exposed over 500,000 websites to potential account takeover attacks, with researchers warning that approximately 150,000 sites are actively vulnerable due to affected versions. Tracked as CVE-2026-8206 with a CVSS score of 9.8, the vulnerability impacts Kirki plugin versions 6.0.0 through 6.0.6. The issue […]
The post WordPress Plugin Vulnerability Exposes 500,000+ Websites to Privilege Escalation Attacks appeared first on Cyber Security News.
Трамп придумал идеальный закон об ИИ: выглядит как контроль, работает как отсутствие контроля
What 345 Days of Untested Exposure Looks Like at a Bank
数学家警告 AI 对数学专业的威胁
KRYBIT
You must login to view this content
Russia’s FSB Says Foreign Spies Infected Officials’ Phones With Malware
Hackers Using AI Tools to Automate Active Directory Attacks and EDR Evasion
A threat actor used AI-assisted tools to automate Active Directory discovery and test endpoint detection and response (EDR) evasion techniques, highlighting the rise of AI-supported post-exploitation frameworks. The activity was identified after a suspicious endpoint triggered alerts tied to payloads stored in a user directory. Investigation revealed a collection of malicious components forming a structured […]
The post Hackers Using AI Tools to Automate Active Directory Attacks and EDR Evasion appeared first on Cyber Security News.