Aggregator
BTS Hackers Nabbed: South Korea Extradites Alleged Leader of a Vishing Ring
The Ministry of Justice of South Korea has announced the extradition of a suspected leader of a transnational hacking group — a 34-year-old Chinese national wanted for a series of high-profile thefts targeting wealthy...
The post BTS Hackers Nabbed: South Korea Extradites Alleged Leader of a Vishing Ring appeared first on Penetration Testing Tools.
盛邦安全战略投资微纳星空 落子太空新基建安全领域建设
近日,盛邦安全(股票代码:688651)宣布战略投资北京微纳星空科技股份有限公司(简称“微纳星空”)。此次投资是盛邦安全继2024年控股天御云安、2025年初入股星展测控后,在卫星互联网安全领域的第三笔产业投资,意味着其“空天地一体化安全版图”进一步延伸至卫星制造端。
此次战略合作中,双方将深度融合各自专业优势,聚焦卫星防护、脆弱性检测及通讯传输安全,打造覆盖卫星全生命周期的安全服务体系,全力助推中国商业航天高质量协同发展。
产业布局深化,聚焦空天安全防线
微纳星空成立于2017年,作为国内最早一批以卫星研制业务为核心的商业航天企业,具备自主卫星平台和核心部组件的研发能力,已建立完整的卫星整星设计和集成测试能力。
盛邦安全作为卫星互联网安全领域的领先者,凭借前瞻布局和核心技术,2021年开始投入卫星互联网领域的研发,申请并积累多项该领域专利,成为国内最早进军该安全领域的企业之一。目前,公司已构建起覆盖卫星、基站、系统和终端的空天地一体化纵深安全防护体系,其卫星互联网安全解决方案从查、防、应用等维度,形成了以安全检测、安全应用防御、安全组网为代表的产品矩阵,涵盖卫星互联网测绘、入网认证、通信加密、脆弱性分析及安全加固等核心业务,并在低空通信安全领域逐渐形成自身优势。
安全生态升级,共推天基新基建落地
算力上天、6G及深海科技正成为卫星互联网领域的创新应用方向,为卫星通信与互联网应用塑造了全新发展场景。盛邦安全深度融合网络空间测绘、安全加密与脆弱性分析等核心技术,持续强化空天地一体安全检测与防护能力,积极拓展卫星互联网在各类高可靠需求场景中的应用。公司已先后携手天御云安、星展测控产业链公司,此次对微纳星空的战略投资,正是安全业务与空天基础设施的深度融合的战略动作,不断深化对卫星系统全方位安全防护的探索,为构建自主可控、安全可靠的空天信息产业体系提供了技术支撑。在与微纳星空的协同中,双方共同推进涵盖卫星制造与安全防护的新基建产业链建设,为太空基础设施提供坚实可靠的技术支撑。通过持续的战略投入,公司将不断巩固在空天安全领域的先发优势,完善卫星互联网安全产业链布局,为我国商业航天发展提供安全保障。
蓝海已来,空天市场扩容
随着国内卫星建设进入快车道,大规模星座组网带来巨大的安全市场的需求。从地面移动网络到空天卫星应用,通信疆域的扩展开辟了新增市场空间,为网络安全市场带来了新的增量机遇。盛邦安全此次战略投资,不仅体现了公司把握时代脉搏的战略眼光,更展现了其深耕卫星互联网安全产业发展的坚定决心。未来,盛邦安全将持续在卫星互联网安全领域深入探索和布局,为公司的发展开拓新的成长曲线,引领卫星互联网安全治理的新时代。
盛邦安全战略投资微纳星空 落子太空新基建安全领域建设
Anatsa Android Trojan Expands Its Global Reach and Targets 831 Financial Apps
Researchers at Zscaler ThreatLabz have released a new report on the evolution of the banking trojan Anatsa (also known as TeaBot), first discovered in 2020. This malware targets Android devices and is designed to...
The post Anatsa Android Trojan Expands Its Global Reach and Targets 831 Financial Apps appeared first on Penetration Testing Tools.
A New Mac Trojan Is on the Prowl, and It’s Cheaper Than Its Top Competitor
A new macOS trojan, emerging on the dark web under the name Mac.c, is rapidly gaining popularity and beginning to compete with one of the underground market’s most notorious threats, AMOS. Analysts at Moonlock...
The post A New Mac Trojan Is on the Prowl, and It’s Cheaper Than Its Top Competitor appeared first on Penetration Testing Tools.
A Rare Look Inside a Hacker’s Toolbox Reveals a Stealthy Chinese Proxy Service
A few days ago, the website DDoSecrets published a data dump allegedly originating from the workstation of an operator involved in a campaign against organizations in South Korea and Taiwan. The author of the...
The post A Rare Look Inside a Hacker’s Toolbox Reveals a Stealthy Chinese Proxy Service appeared first on Penetration Testing Tools.
代码显示谷歌正在为安卓开发与iOS的快速共享功能 并且使用端到端加密传输
The Silent Data Leak Crisis in Australia’s Supply Chains
Help TDS: How a Stealthy WordPress Malware Turned into a Global Scam Platform
A large-scale campaign compromising WordPress websites has been uncovered, tied to the evolution of the Help TDS system and the malicious plugin woocommerce_inputs. According to research from GoDaddy Security, between late 2024 and June...
The post Help TDS: How a Stealthy WordPress Malware Turned into a Global Scam Platform appeared first on Penetration Testing Tools.
«Код потерялся» — оправдание года. Создатели шпионского ПО не могут исправить собственные ошибки
CVE-2008-4077 | LedgerSMB up to 1.2.14 resource management (Nessus ID 254300 / XFDB-45033)
CVE-2009-4487 | nginx 0.7.64 Terminal input validation (EDB-33490 / Nessus ID 254298)
CVE-2006-4976 | John Lim Adodb Date Library Error Message server.php sql injection (Nessus ID 254305)
CVE-2008-7185 | GNOME Rhythmbox 0.11.5 g_hash_table_lookup input validation (EDB-31968 / Nessus ID 254308)
CVE-2025-54567 | QEMU up to 10.0.3 VF Enable Bit write Mask hw/pci/pcie_sriov.c incorrect provision of specified functionality (Nessus ID 254417 / WID-SEC-2025-1644)
Unmasked by a Blunder: Chinese Hackers Exposed in Massive Vietnam Espionage Campaign
Researchers from Ctrl-Alt-Int3l have published a detailed analysis of a large-scale operation targeting Vietnamese universities. Their investigation was made possible thanks to open directories where attackers, through a critical oversight, had left behind a...
The post Unmasked by a Blunder: Chinese Hackers Exposed in Massive Vietnam Espionage Campaign appeared first on Penetration Testing Tools.
Trust Betrayed: A Malicious Go Package Is a Brute-Force Tool and a Data Thief
Experts at Socket have uncovered a malicious Go package named golang-random-ip-ssh-bruteforce, which masquerades as a tool for brute-forcing SSH credentials but in reality exfiltrates them to its author via Telegram. The module’s logic is...
The post Trust Betrayed: A Malicious Go Package Is a Brute-Force Tool and a Data Thief appeared first on Penetration Testing Tools.
Security Culture: When Are We Really Creating Change? with Marisa Fagan
Beyond the Breach: A New Malware-as-a-Service Campaign Deploys Stealthy Payloads
A new campaign has been observed within the malware-as-a-service (MaaS) ecosystem, where attackers employ a multi-stage delivery chain using PowerShell scripts hosted on external web servers. This technique conceals the final executables, delays investigations,...
The post Beyond the Breach: A New Malware-as-a-Service Campaign Deploys Stealthy Payloads appeared first on Penetration Testing Tools.