Aggregator
ZDI-CAN-26057: Samsung
ZDI-CAN-26058: Samsung
ZDI-CAN-25772: Samsung
ZDI-CAN-25885: Samsung
ZDI-CAN-25873: Samsung
ZDI-CAN-26359: Ubiquiti Networks
ZDI-CAN-25955: Samsung
ZDI-CAN-26007: Nokia
ZDI-CAN-25800: Samsung
ZDI-CAN-26498: Apple
ZDI-CAN-25874: Samsung
全球云上数据泄露风险分析简报(第五期):配置错误叠加供应链投毒与第三方组件漏洞,大模型数据链暴露全生态安全脆弱性
AI 训练数据藏雷:近 12,000 个 API 密钥与密码曝光
The CISO’s bookshelf: 10 must-reads for security leaders
Discover essential reads for CISOs in this curated list of books covering cybersecurity leadership, risk management, zero trust, board communication, and more. Why CISOs Fail, 2nd Edition Author: Barak Engel Barak Engel expands on the ideas from his original 2017 book, offering a fresh perspective on why security leaders struggle to make a lasting impact. With a central thesis that security is more about human behavior than technology, Engel challenges traditional views of cybersecurity management. … More →
The post The CISO’s bookshelf: 10 must-reads for security leaders appeared first on Help Net Security.
Gartner发布2025年网络安全六大预测
Google Unveils GoStringUngarbler to Crack Go-Based Malware Encryption
Google’s FLARE team has released GoStringUngarbler, an open-source tool designed to dismantle string obfuscation in Go binaries protected by the garble compiler. This innovation addresses growing concerns over malware authors exploiting garble’s advanced literal transformations, which render traditional static analysis ineffective. The tool combines emulation-driven string extraction with binary patching to produce deobfuscated executables, fundamentally altering […]
The post Google Unveils GoStringUngarbler to Crack Go-Based Malware Encryption appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
89% of enterprise AI usage is invisible to the organization
Organizations have zero visibility into 89% of AI usage, despite security policies according to a LayerX report. 71% of connections to GenAI tools are done using personal non-corporate accounts. Among logins using corporate accounts, 58% of connections are done without Single-Sign On (SSO). These interactions bypass organizational identity and access management (IAM) systems, leaving security teams blind to how GenAI tools are used and what data is being shared. Casual GenAI users unaware of data … More →
The post 89% of enterprise AI usage is invisible to the organization appeared first on Help Net Security.