Aggregator
Akira
You must login to view this content
AL26-013 Security incident impacting GitHub internal repositories
Federal audit reveals NIST’s NVD is plagued by poor planning and duplication
A report from the Commerce Inspector General details how mismanagement allowed a backlog of 27,000 unprocessed security flaws to grow unchecked, while the agency duplicated work with a similar CISA program.
The post Federal audit reveals NIST’s NVD is plagued by poor planning and duplication appeared first on CyberScoop.
Post-quantum cryptography is not the future. It is your current reality.
For most of the last decade, post-quantum cryptography lived in a particular kind of conversation. It came up at security conferences. It appeared in NIST press releases. CISOs nodded politely when it surfaced in briefings, filed it under “things to deal with eventually,” and moved on to the quarter’s actual fires. That conversation is over. […]
The post Post-quantum cryptography is not the future. It is your current reality. appeared first on Cyber Security News.
【课程】战略情报撰写-1(视频)
宋清渭回忆录_岁月纪实
Ransomware Uses SYSTEM Scheduled Task to Encrypt Local Drives With Elevated Privileges
A newly analyzed ransomware strain called The Gentlemen is raising serious alarms across the cybersecurity community. Built in the Go programming language and obfuscated with a tool called Garble, it combines powerful per-file encryption with an aggressive ability to spread itself silently across entire networks without any human intervention. Organizations in education, healthcare, transportation, and […]
The post Ransomware Uses SYSTEM Scheduled Task to Encrypt Local Drives With Elevated Privileges appeared first on Cyber Security News.
SecWiki News 2026-05-29 Review
将遏制网络犯罪的关口前移 by ourren
AI 渗透测试 Agent 的 Harness 工程演进、防御与我的思考 by ourren
更多最新文章,请访问SecWiki
As Global Powers Explore Humanoid Robots, Cyber-Risk Looms
Flathub 禁止 AI 生成的应用
Билет за 10 тысяч долларов, трибуна только на картинке. Мошенники построили вокруг чемпионата мира по футболу сеть поддельных сайтов
CMD
You must login to view this content
JINX-0164 Threat Actor Using LinkedIn Social Engineering to Deploy Custom macOS Malware
A new threat actor tracked as JINX-0164 has been running calculated attacks against cryptocurrency organizations, using LinkedIn profiles to lure developers into downloading custom macOS malware. Active since at least mid-2025, the group has combined social engineering, credential theft, and supply chain sabotage into a seamless operation that puts the entire software development pipeline at […]
The post JINX-0164 Threat Actor Using LinkedIn Social Engineering to Deploy Custom macOS Malware appeared first on Cyber Security News.
「2026 企业出海安全论坛」深圳站圆满落幕
Google 恨你和我
Attackers Abuse Trusted Developer Tooling to Exfiltrate Source Code and Secrets
A wave of sophisticated supply chain attacks has put millions of software developers on high alert, with threat actors turning everyday developer tools into weapons for stealing credentials, cloud tokens, and source code. What makes these campaigns especially alarming is how they exploit the very systems developers trust most: their editors, automated pipelines, and version […]
The post Attackers Abuse Trusted Developer Tooling to Exfiltrate Source Code and Secrets appeared first on Cyber Security News.
一次针对食品生产厂的真实网络战:黑客如何同时摧毁IT系统与工业设施
RALord
You must login to view this content