Aggregator
养龙虾,别“虾”浪!直击龙虾市集 PLUS「安全实战工坊」!
1 month 2 weeks ago
内含“养虾”福利,互动就有机会抱走好礼~
百度“龙虾”全家桶开张 🦞 安全虾正式上岗!
1 month 2 weeks ago
3月17日,在 AI DAY 现场,百度“龙虾”全家桶正式亮相,包括“云端虾”“手机虾”“安全虾”等多款产品上新,还发布了全新自研“桌面虾”产品 DuMate 及全球首款“家用小龙虾”。
CVE-2026-32565 | WebberZone Contextual Related Posts Plugin up to 4.2.1 on WordPress authorization (EUVD-2026-12812)
1 month 2 weeks ago
A vulnerability was found in WebberZone Contextual Related Posts Plugin up to 4.2.1 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation results in missing authorization.
This vulnerability is identified as CVE-2026-32565. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-1217 | Yoast Duplicate Post Plugin up to 4.5 on WordPress Republish Feature clone_bulk_action_handler/republish_request authorization (EUVD-2026-12800)
1 month 2 weeks ago
A vulnerability has been found in Yoast Duplicate Post Plugin up to 4.5 on WordPress and classified as critical. Affected is the function clone_bulk_action_handler/republish_request of the component Republish Feature. The manipulation leads to missing authorization.
This vulnerability is referenced as CVE-2026-1217. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.
vuldb.com
AI+安全,问鼎国际!默安科技斩获日内瓦国际发明展金奖
1 month 2 weeks ago
默安科技的国际范儿~
New ClickFix Scam Tricks Users Into Mapping Hacker-Controlled Drives
1 month 2 weeks ago
A new ClickFix scam tricks Windows users into running hidden commands that map hacker-controlled drives and load malware…
Deeba Ahmed
无数挖坑题的反面
1 month 2 weeks ago
#数学思维
在△ABC、△DEF中,AB=DE、AC=DF,∠C=∠F>=90,求证△ABC≌△DEF。
这是道相当基础的三角形全等证明题,也是无数挖坑题的反面。
特朗普政府澄清无意让私营公司直接参与进攻性网络行动
1 month 2 weeks ago
美国公私网络合作新模式:利用私企技术影响对手行动
知名巨头近8万台设备所有数据被攻击者一键清空
1 month 2 weeks ago
这可能是针对企业集权平台的最大规模攻击之一
Зашли, осмотрелись и остались на пять лет. Как выглядит «гостеприимство» в сетях военных ведомств
1 month 2 weeks ago
Хозяева даже не подозревали, что в их кабинетах давно сменили замки.
OpenClaw 爆火之后,我体验了全球第一个 AI 员工
1 month 2 weeks ago
我们需要的是一个 AI 工具,还是一个 AI 同事?
瑞士构建 BGP 的安全替代
1 month 2 weeks ago
边界网关路由(BGP)不是为安全设计的,而是为构成互联网的数以千计的自治系统之间大规模快速路由数据包设计的。过去四十年,BGP 运作良好,但其安全缺陷也日益显现。为堵上漏洞,BGP 引入了一系列补丁和扩展如 Resource Public Key Infrastructure (RPKI)、BGPsec 和 RPKI-based Route Origin Authorization (ROA),但无法从根本上解决问题。瑞士苏黎世联邦理工学院开发的 SCION——代表 Scalability, Control, and Isolation On Next-Generation Networks——尝试从根本上改变互联网的路由架构,提供一种更安全的替代。SCION 的首席架构师 Adrian Perrig 是苏黎世联邦理工的计算机科学教授,一直致力于提升互联网的安全。他发现安全无法拼拼凑凑,必须彻底改变设计。SCION 尝试通过三个关联机制解决 BGP 的安全缺陷:其一是多路径路由,两点之间能同时建立数十条甚至数百条并行路径,一条路径发生故障,系统会在几毫秒内完成重路由;其二是不依赖证书颁发机构的隔离域名 ISD 机制;其三是加密路径验证,路径上的每个路由器都提供一个加密签名。瑞士银行已成功测试了 SCION。
苹果紧急发布WebKit安全修复,同源策略绕过漏洞影响iOS/macOS
1 month 2 weeks ago
苹果紧急修复WebKit高危漏洞,建议用户开启自动安装
今晚7点!安全圈顶流 “养虾局”:AI Agent 安全养虾实战,教你敏捷落地
1 month 2 weeks ago
“养虾” 也讲安全?
特别预警|开发者请注意:使用OpenAI Codex 可能被攻击
1 month 2 weeks ago
政企"养虾"遭遇安全暗礁?360终端安全智能体为"龙虾"穿上防弹衣
1 month 2 weeks ago
养“虾”人狂飙,安全圈抓狂,360终端安全智能体:都别慌
File Browser 满分漏洞可用于完全控制管理员权限
1 month 2 weeks ago
速修复
简单的自定义字体渲染即可投毒 ChatGPT、Claude、Gemini 等 AI 系统
1 month 2 weeks ago
速修复
AI Issues Will Drive Half of Incident Response Efforts by 2028, Says Gartner
1 month 2 weeks ago
Gartner has urged security teams to get involved in AI projects from the start to avoid costly incident response