Aggregator
CVE-2026-31450 | Linux Kernel up to 6.19.10 ext4 ext4_inode_attach_jinode memory corruption (Nessus ID 313522 / WID-SEC-2026-1252)
AGENT-MINER:攻击通用 AI 智能体与自动化风险挖掘
第四届京麒CTF开赛 倒计时一天!
某医院小程序逆向签名加解密之泄露百万数据
JVN: 複数のTP-LINK製品における重要情報の平文送信の脆弱性
某医院小程序逆向签名加解密之泄露百万数据
协同作战:甲方视角的体系化 AI 渗透实践
报名开启|2026第二届湾区杯网络安全大赛等你来战!
LLMDYara:面向恶意文件检测的可解释 YARA 规则自动生成系统
CVE-2026-7421 | Passeum Ticketing Plugin up to 1.0 on WordPress Setting get_shop_url shop_name cross site scripting (EUVD-2026-34054 / CNNVD-202606-750)
CVE-2026-10692 | johnhuang316 code-index-mcp up to 2.14.0 search_code_advanced is_safe_regex_pattern regex redos (Issue 84 / EUVD-2026-34057)
CVE-2026-10691 | wonderwhy-er DesktopCommanderMCP up to 0.2.38 start_search src/search-manager.ts SearchResult[] redos (Issue 375 / EUVD-2026-34056)
CVE-2026-10690 | wonderwhy-er DesktopCommanderMCP 0.2.37 read_file src/tools/filesystem.ts readFileFromUrl url server-side request forgery (Issue 410 / EUVD-2026-34053)
Dump1090 For Android Updated to V2
Operation FlutterBridge: Sophisticated Malware Masquerades as Legitimate macOS Utilities
Cybercriminals have devised an insidious method to infiltrate macOS environments. Specifically, they disguise malicious payloads within seemingly innocuous applications. Beneath the elegant aesthetics of podcast players and PDF readers lies a dual-threat mechanism. Consequently,...
The post Operation FlutterBridge: Sophisticated Malware Masquerades as Legitimate macOS Utilities appeared first on Information Security News.
魏哲家:台积电目前不存在失去竞争优势的风险
AI攻防视界:从Mythos破局看漏洞挖掘的工程化跃迁
ITCMON: Interoperable Train Control Monitoring Software Released
HexStrike AI RED-TEAM With 127 Security Tools and BOAZ Red Team Integration
A fork of the original HexStrike AI project has been released as HexStrike AI v6.0, an advanced Model Context Protocol (MCP)-based cybersecurity automation framework that merges 127 professional security tools with BOAZ, a multi-layered, EDR/AV payload evasion engine built for real-world red team operations The platform enables Claude, GPT, VS Code Copilot, Cursor, and any MCP-compatible […]
The post HexStrike AI RED-TEAM With 127 Security Tools and BOAZ Red Team Integration appeared first on Cyber Security News.