Aggregator
Девять строк, которым 1300 лет. Исследователи нашли новый след древнейшего английского стихотворения
CVE-2026-30691 | cyntler react 1.17.1 TXTRenderer cross site scripting
CVE-2026-20240 | Splunk Enterprise/Cloud Platform splunk_archiver App coldToFrozen.sh denial of service (SVD-2026-0504)
CVE-2026-20238 | Splunk AI Toolkit up to 5.7.2 Configuration File authorize.conf authorization (SVD-2026-0502)
CVE-2026-20239 | Splunk Enterprise/Cloud Platform log file (SVD-2026-0503)
从开源投毒到AI生成代码:供应链安全为何成为企业安全的主战场?
Processes & Culture Top Reasons Behind Data Breaches
CVE-2026-6763 | Mozilla Firefox up to 149 File Remote Code Execution (Nessus ID 310350 / WID-SEC-2026-1228)
CVE-2026-6762 | Mozilla Firefox up to 149 HTML (Nessus ID 310182 / WID-SEC-2026-1228)
CVE-2026-6760 | Mozilla Firefox up to 149 Cookies Remote Code Execution (Nessus ID 310636 / WID-SEC-2026-1228)
CVE-2026-6761 | Mozilla Firefox up to 149 Networking Remote Code Execution (Nessus ID 310182 / WID-SEC-2026-1228)
DevilNFC Android Malware Uses Kiosk Mode to Trap Victims During NFC Relay Attacks
A dangerous new Android malware called DevilNFC has emerged, combining NFC relay attacks with a Kiosk Mode trap that locks victims inside a fake banking screen until their card data is stolen. The malware targets customers across Europe and LATAM with technical precision rarely seen in independently built tools. Unlike previous threats, DevilNFC does not […]
The post DevilNFC Android Malware Uses Kiosk Mode to Trap Victims During NFC Relay Attacks appeared first on Cyber Security News.
灵境 AIDR 技术首发 | 以 AI 治理 AI,悬镜智能体安全卫士新品发布
В 1931 году Гёдель доказал, что математику нельзя свести к закрытой системе правил. Спустя 90 лет учёные всё ещё спорят, что именно это значит
FTC warns 12 major tech firms of violating Take It Down Act
基于 Hypervisor 的 Denuvo DRM 绕过与 "社工闭环" 威胁模型研究
ISC BIND security advisory (AV26-490)
国务院令第834号已落地:软件供应链安全,企业欠缺的不是工具,是这三件事
PinTheft Linux Vulnerability Let Attackers Gain Root Access – PoC Released
A proof-of-concept (PoC) exploit was published for a new Linux Local Privilege Escalation (LPE) vulnerability dubbed “PinTheft.” Discovered by Aaron Esau of the V12 security team, the flaw allows local attackers to gain root access by exploiting an RDS zerocopy double-free bug. A kernel patch is currently available, prompting the researchers to release their PoC […]
The post PinTheft Linux Vulnerability Let Attackers Gain Root Access – PoC Released appeared first on Cyber Security News.