-
Notifications
You must be signed in to change notification settings - Fork 36
Open
Labels
Description
每日安全资讯(2025-12-23)
- SecWiki News
- LevelBlue Blog
- Armin Ronacher's Thoughts and Writings
- 安全客-有思想的安全新媒体
- 【原创首发】首个“AI勒索软件”--纽约大学团队“PromptLock”深度剖析
- 记一次挖矿木马样本分析
- 电视中的 “狼”:规模达 180 万的 Kimwolf 僵尸网络流量超谷歌,称霸物联网领域
- “脚本麻雀” 组织利用自动化技术生成并发送攻击邮件
- 黑客窃取数百万 PornHub 用户数据用于敲诈勒索
- 黑客发起定向钓鱼攻击,HubSpot 用户成攻击目标
- 微软发布紧急带外更新修复影响 IIS 站点的 MSMQ 漏洞
- 微软为 Office、SharePoint、Exchange、Teams 及 Entra 推出基线安全模式
- 人工智能超级应用横空出世:OpenAI 推出 ChatGPT 应用目录,剑指数字生活核心入口
- Exim 恶意记录漏洞:失败补丁与 SQL 注入如何引发严重堆溢出漏洞
- WatchGuard 防火墙遭零日漏洞猛攻:CVSS 9.3 高危漏洞致企业防火墙被劫持
- n8n 深陷危机:CVSS 10.0 严重远程代码执行漏洞致服务器完全受控
- Der Flounder
- 嘶吼 RoarTalk – 网络安全行业综合服务平台,4hou.com
- Recent Commits to cve:main
- paper - Last paper
- Private Feed for M09Ic
- bolucat released 202512221938 at bolucat/Archive
- Ridter starred pr0v3rbs/CVE-2025-32463_chwoot
- WAY29 starred Claudate/project-multilevel-index
- mgeeky starred NtDallas/BOF_ExecuteAssembly
- CHYbeta starred GH05TCREW/pentestagent
- rabbitmask starred UfoMiao/zcf
- Ridter contributed to linshenkx/prompt-optimizer
- CHYbeta starred agentskills/agentskills
- WAY29 starred chen08209/FlClash
- VMRay
- Malwarebytes
- LevelBlue SpiderLabs Blog
- Malware-Traffic-Analysis.net - Blog Entries
- 奇客Solidot–传递最新科技情报
- 黑海洋Wiki | Web开发工具包 | 网络安全攻防实战 | 区块链技术文档教程 - 免费资源平台
- Happy Hacking!
- 安全分析与研究
- HackerNews
- 黑鸟
- 腾讯玄武实验室
- 技艺丛谈
- 安全内参
- 雷神众测
- 青山青吖
- 代码卫士
- 威努特安全网络
- 安全研究GoSSIP
- 安全圈
- 数世咨询
- 安全牛
- 补天平台
- M01N Team
- 情报分析师
- 嘶吼专业版
- 火绒安全
- 微步在线
- 极客公园
- 中国信息安全
- 腾讯安全威胁情报中心
- 字节跳动技术团队
- 李姐姐的扫描器
- 360数字安全
- 迪哥讲事
- 安全419
- 安全行者老霍
- Over Security - Cybersecurity news aggregator
- The Infostealer Gateway: Uncovering the Latest Methods in Defense Evasion
- Nissan says thousands of customers exposed in Red Hat breach
- Spotify disables accounts after open-source group scrapes 86 million songs from platform
- New MacSync malware dropper evades macOS Gatekeeper checks
- DDoS incident disrupts France’s postal and banking services ahead of Christmas
- CISA flags ASUS Live Update CVE, but the attack is years old
- Interpol-led action decrypts 6 ransomware strains, arrests hundreds
- Device Code Phishing: la minaccia che non ruba password, ma compromette gli account utente
- Cyber security: com’è cambiata e cosa aspettarsi per il futuro, con uno sguardo all’AI
- Cyber spies use fake New Year concert invites to target Russian military
- South Korea to require facial recognition for new mobile numbers
- Judge rules that NSO cannot continue to install spyware via WhatsApp pending appeal
- Malicious npm package steals WhatsApp accounts and messages
- Nefilim ransomware hacker pleads guilty to computer fraud
- Romanian water authority hit by ransomware attack over weekend
- Coupang breach affecting 33.7 million users raises data protection questions
- University of Phoenix data breach impacts nearly 3.5 million individuals
- Phishing 2.0, l’era degli LLM: i rischi e come difendersi
- Romanian national water agency hit by BitLocker ransomware attack
- Not all CISA-linked alerts are urgent: ASUS Live Update CVE-2025-59374
- Kaspersky lancia l’allarme: il cybercrime finanziario ha alza il livello nel 2025
- Strategic Sourcing e governance del rischio cyber: una gestione sostenibile delle terze parti digitali
- DORA e Data Act, fra requisiti e obblighi: il quadro normativo sui contratti per la supply chain ICT
- Ukrainian hacker admits affiliate role in Nefilim ransomware gang
- Advent Of Configuration Extraction – Part 4: Turning capa Into A Configuration Extractor For TinyShell variant
- Critical RCE flaw impacts over 115,000 WatchGuard firewalls
- La nuova frontiera cyber del terrorismo: ora c’è anche l’intelligenza artificiale
- Docker Hardened Images now open source and available for free
- CERT-AGID 13-19 dicembre: phishing PagoPA e smishing INPS
- CNVD漏洞平台
- Securityinfo.it
- 看雪学苑
- SANS Internet Storm Center, InfoCON: green
- Schneier on Security
- TorrentFreak
- Security Affairs
- Romanian Waters confirms cyberattack, critical water operations unaffected
- Ukrainian hacker pleads guilty to Nefilim Ransomware attacks in U.S.
- Infy Returns: Iran-linked hacking group shows renewed activity
- University of Sydney discloses a data breach impacting 27,000 people
- Waymo suspends service after power outage hit San Francisco
- The Hacker News
- Fake WhatsApp API Package on npm Steals Messages, Contacts, and Login Tokens
- ⚡ Weekly Recap: Firewall Exploits, AI Data Theft, Android Hacks, APT Attacks, Insider Leaks & More
- How to Browse the Web More Sustainably With a Green Browser
- Android Malware Operations Merge Droppers, SMS Theft, and RAT Capabilities at Scale
- The Register - Security
- Poisoned WhatsApp API package steals messages and accounts
- Palo Alto's new Google Cloud deal boosts AI integration, could save on cloud costs
- Spy turned startup CEO: 'The WannaCry of AI will happen'
- Hacktivists scrape 86M Spotify tracks, claim their aim is to preserve culture
- Conman and wannabe MI6 agent must repay £125k to romance scam victim
- Around 1,000 systems compromised in ransomware attack on Romanian water agency
- There’s so much stolen data in the world, South Korea will require face scans to buy a SIM
- Through gritted teeth, Apple and Google allow alternative app stores in Japan
- Daniel Miessler
- Security Weekly Podcast Network (Audio)