Aggregator
Please support the site operations by clicking ads.
关于美军基地小卖部们的冰柜集体罢工事件
AI网络武器能力评估:中美哪家大模型遥遥领先?
Attackers use rogue ScreenConnect clients to spread malware
A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory. ScreenConnect is a popular remote support and access solution tailored for IT departments and managed service providers (MSPs). The platform can be hosted by ConnectWise (in their cloud) or self-hosted by organizations (on-prem or … More →
The post Attackers use rogue ScreenConnect clients to spread malware appeared first on Help Net Security.
Multiple Class Action Lawsuits Filed Against IDScan
公安部提示:勒索病毒造成巨大损失,建议企业提高警惕!
Магнитную память уменьшили ниже 10 нм без обычной литографии
OpenAI just hit a milestone on the road to self-improving AI
OpenAI has announced that it has reached a goal set last fall of having an automated research intern by September 2026. The milestone means a system can carry out well-defined research tasks under human direction, including work that would take a skilled researcher several days. The company is also working toward creating an automated AI researcher by March 2028. All categories of research activity have increased since the start of the year (Source: OpenAI) “Transparency … More →
The post OpenAI just hit a milestone on the road to self-improving AI appeared first on Help Net Security.
中国白色家电欧洲市场份额达到两成
Самый опасный кибер-ИИ OpenAI приходит в ChatGPT Plus
Autistici/Inventati 在被美国列为恐怖分子组织后宣布关闭
Telerik UI Flaws Let Attackers Chain AES-CBC Padding Oracle to Unauthenticated RCE
Security researchers have identified a critical vulnerability chain in Progress Telerik UI for ASP.NET AJAX, which allows unauthenticated attackers to escalate from a cryptographic padding oracle to remote code execution on exposed web applications. Documented by Tanto Security researcher Marcio Almeida, this vulnerability affects Telerik UI for ASP.NET AJAX versions 2010.1.309 through 2026.2.519. To address […]
The post Telerik UI Flaws Let Attackers Chain AES-CBC Padding Oracle to Unauthenticated RCE appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Kimsuky Uses OpenCode AI Agent and GitHub PATs in Operation GitPower Attacks
North Korea-linked threat actor Kimsuky has expanded its Operation GitPower activity with malicious LNK shortcuts, GitHub Personal Access Token (PAT)-authenticated payload delivery, and AI-generated decoy documents linked to the OpenCode coding agent. Genians Security Center analyzed 13 malicious LNK samples collected between August 11 and August 19, 2026. The files were delivered in ZIP archives […]
The post Kimsuky Uses OpenCode AI Agent and GitHub PATs in Operation GitPower Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Утечка Trezor оказалась в пять раз больше. Нашлись данные 67000 клиентов, которых давно не должно было существовать
Why AI Agent Sandboxes Are Failing Security Tests
N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw
Researcher Publishes CrowdStrike Privilege Escalation Zero Day
一枚硬币大小的植入设备,60秒接管波音737的“神经中枢”:Bus Driver攻击深度解析
Critical N-able N-central Flaw Enables Pre-Auth Remote Code Execution
N-able has released a security update to address CVE-2026-86218, a critical-severity vulnerability in its N-central remote monitoring and management platform. This vulnerability could enable pre-authenticated remote code execution on an affected server. The issue is fixed in N-central version 2026.3 Hotfix 4, build 2026.3.1.14. Because an attacker may exploit this vulnerability before logging in, it […]
The post Critical N-able N-central Flaw Enables Pre-Auth Remote Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.