Aggregator
第四届京麒CTF开赛 倒计时一天!
某医院小程序逆向签名加解密之泄露百万数据
JVN: 複数のTP-LINK製品における重要情報の平文送信の脆弱性
某医院小程序逆向签名加解密之泄露百万数据
协同作战:甲方视角的体系化 AI 渗透实践
报名开启|2026第二届湾区杯网络安全大赛等你来战!
LLMDYara:面向恶意文件检测的可解释 YARA 规则自动生成系统
CVE-2026-7421 | Passeum Ticketing Plugin up to 1.0 on WordPress Setting get_shop_url shop_name cross site scripting (EUVD-2026-34054 / CNNVD-202606-750)
CVE-2026-10692 | johnhuang316 code-index-mcp up to 2.14.0 search_code_advanced is_safe_regex_pattern regex redos (Issue 84 / EUVD-2026-34057)
CVE-2026-10691 | wonderwhy-er DesktopCommanderMCP up to 0.2.38 start_search src/search-manager.ts SearchResult[] redos (Issue 375 / EUVD-2026-34056)
CVE-2026-10690 | wonderwhy-er DesktopCommanderMCP 0.2.37 read_file src/tools/filesystem.ts readFileFromUrl url server-side request forgery (Issue 410 / EUVD-2026-34053)
Dump1090 For Android Updated to V2
Operation FlutterBridge: Sophisticated Malware Masquerades as Legitimate macOS Utilities
Cybercriminals have devised an insidious method to infiltrate macOS environments. Specifically, they disguise malicious payloads within seemingly innocuous applications. Beneath the elegant aesthetics of podcast players and PDF readers lies a dual-threat mechanism. Consequently,...
The post Operation FlutterBridge: Sophisticated Malware Masquerades as Legitimate macOS Utilities appeared first on Information Security News.
魏哲家:台积电目前不存在失去竞争优势的风险
AI攻防视界:从Mythos破局看漏洞挖掘的工程化跃迁
ITCMON: Interoperable Train Control Monitoring Software Released
HexStrike AI RED-TEAM With 127 Security Tools and BOAZ Red Team Integration
A fork of the original HexStrike AI project has been released as HexStrike AI v6.0, an advanced Model Context Protocol (MCP)-based cybersecurity automation framework that merges 127 professional security tools with BOAZ, a multi-layered, EDR/AV payload evasion engine built for real-world red team operations The platform enables Claude, GPT, VS Code Copilot, Cursor, and any MCP-compatible […]
The post HexStrike AI RED-TEAM With 127 Security Tools and BOAZ Red Team Integration appeared first on Cyber Security News.
漏洞实际价值“大众点评”,微信社群与小程序同步上线
The Aqua Nexus: Google Expands Water Stewardship Pledges Amid AI Expansion
Balancing Compute with Conservation In response to intense public backlash over data center resource consumption, Google expanded its water stewardship commitments. Consequently, the enterprise aims to achieve a net water-positive status by 2030. This...
The post The Aqua Nexus: Google Expands Water Stewardship Pledges Amid AI Expansion appeared first on Information Security News.