Aggregator
Уровень угрозы — критический. Разведка США зафиксировала попытки Израиля прослушать команду Трампа
Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: OWASP Agent Memory Guard: Stop AI agents from being weaponized through their own memory Agent Memory Guard is an open-source runtime defense layer that sits between an agent and its memory store, screening every read and write through a pipeline of detectors and a YAML policy. The project is the OWASP reference implementation for ASI06, Memory Poisoning, one entry in … More →
The post Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast appeared first on Help Net Security.
市场疑虑AI技术能否带来回报,芯片股暴跌拖累美股
CVE-2026-11463 | USCiLab Cereal up to 1.3.2 Shared Pointer type confusion (Issue 870)
Submit #814456: USCiLab cereal 1.3.2 CWE-1287, CWE-843 (Type Confusion) [Accepted]
CVE-2026-11462 | Chengdu Everbrite Network Technology BeikeShop up to 1.6.0.22 Stripe Plugin StripeController.php callback Request improper authorization
Claude Cowork到7月5日前5小时使用限额翻倍 但是!周总限额是完全不变的
CVE-2026-11461 | NousResearch hermes-agent up to 0.12.0 resume Endpoint hermes_state.py resolve_session_by_title Title authorization
Submit #831466: BeikeShop 1.6.0 Design/Logic Flaw [Accepted]
CVE-2026-11460 | Boost Serialization up to 1.91 improper validation of specified type of input (Issue 331)
Submit #829402: NousResearch hermes-agent <= v0.12.0 Authorization Bypass Through User-Controlled Key (CWE-639) [Accepted]
Submit #814455: boostorg boost serialization 1.91 CWE-1287, CWE-843 (Type Confusion) [Accepted]
CVE-2026-26422 | Clash Verge Rev clash-verge-service-ipc up to 2.2.x IPC Endpoint permission assignment (EUVD-2026-34977)
Instagram Fixes Password Reset Flaw That Exposes User Emails and Phone Numbers
A critical logic bug in Instagram’s web-based password reset flow on June 6, 2026, exposed unredacted email addresses and phone numbers associated with user accounts, including those belonging to high-profile individuals such as Meta CEO Mark Zuckerberg and model Georgina Rodriguez. Instagram’s parent company Meta deployed an emergency hotfix within hours of the disclosure, but […]
The post Instagram Fixes Password Reset Flaw That Exposes User Emails and Phone Numbers appeared first on Cyber Security News.