Aggregator
Please support the site operations by clicking ads.
Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data
HTB-Certificate:从空字节截断到黄金证书
September Windows Server updates break Remote Desktop Services
Conti ransomware crew member sentenced to four years in prison
Oleksii Lytvynenko joined the notorious group in 2021 and was directly involved in attacks on at least 12 companies.
The post Conti ransomware crew member sentenced to four years in prison appeared first on CyberScoop.
Windows11 0day内核提权漏洞分析与利用(CVE-2026-62737)
奶龙杯 CTF Pwn 方向四道题目 WriteUp 汇总
空密码的授权令:MariaDB 纯 SQL 攻击链,从 lowpriv 到容器内命令执行
数字中国全解
php代码审计——WeiPHP 5.0 bind_follow wp_where() EXP 数组 SQL 注入漏洞审计
从一行 CSS 注释开始:把 PostCSS CVE-2026-45623 这条攻击链走一遍
CVE-2026-55106:authentik LDAP debug 接口越权读取漏洞复现与源码分析
从一次 DTLS 握手到栈溢出:CVE-2026-59692(GStreamer)复现与底层代码分析
CVE-2026-73653:Vitest Browser Mode 权限绕过漏洞原理与代码分析
2026-09-10: Atomic macOS (AMOS) Stealer infection
2026-09-08: XWorm infection
Hawley probes OpenAI over Hugging Face breach
The Republican lawmaker called OpenAI’s leadership decisions “reckless,” and used recent warnings about the existential risk of AI to bolster his inquiry.
The post Hawley probes OpenAI over Hugging Face breach appeared first on CyberScoop.
AL26-020 - Vulnerabilities Impacting MikroTik RouterOS - CVE-2026-67276, CVE-2026-67277 and CVE-2026-86060
AI lets small actors run state-level hacking campaigns, Anthropic report finds
The report details a Russian-aligned espionage campaign against more than 20 organizations, an exploit foundry run by Chinese undergraduates and ShinyHunters-affiliated breaches, among other disrupted operations.
The post AI lets small actors run state-level hacking campaigns, Anthropic report finds appeared first on CyberScoop.