unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face Breach
OpenAI on Tuesday revealed the rogue artificial intelligence (AI) agent that escaped its sealed eva...
2026-7-29 06:45:2 | 阅读: 27 |
收藏
|
The Hacker News - thehackernews.com
hugging
evaluation
openai
security
artifactory
Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js
Beta release versions of two npm packages in the @joyfill namespace have been compromised to delive...
2026-7-29 04:20:57 | 阅读: 22 |
收藏
|
The Hacker News - thehackernews.com
detached
blockchain
aptos
payload
bsc
Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack
Anthropic says Claude Mythos Preview helped derive an end-to-end key-recovery attack against HAWK-2...
2026-7-28 18:59:7 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
hawk
anthropic
lattice
mythos
seven
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
Linux / Endpoint SecurityA new Mirai-derived botnet called Tengu can use a compromised Linux devic...
2026-7-28 15:1:33 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
nozomi
tengu
urlhaus
c2
apk
24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management...
2026-7-28 14:41:36 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
bmc
ipmi
remote
passwords
JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach
Vulnerability / Artificial IntelligenceJFrog has confirmed that OpenAI models exploited a zero-day...
2026-7-28 13:33:47 | 阅读: 14 |
收藏
|
The Hacker News - thehackernews.com
openai
jfrog
artifactory
hugging
evaluation
Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root
OpenWrt has shipped version 24.10.8 to close a critical DHCPv6 stack overflow and a wider set of re...
2026-7-28 12:56:14 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
openwrt
luci
2026
dhcpv6
odhcpd
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
Malware / Cyber EspionageThe Iranian state-backed hacking group tracked as Nimbus Manticore (aka...
2026-7-28 11:55:20 | 阅读: 10 |
收藏
|
The Hacker News - thehackernews.com
bridgehead
arcbridge
tunneling
nightledger
windows
Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In
Vulnerability / Enterprise SecurityJetBrains is urging customers of on-premise versions of TeamCit...
2026-7-28 08:11:22 | 阅读: 51 |
收藏
|
The Hacker News - thehackernews.com
teamcity
security
jetbrains
2026
63077
Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit
STAR Labs has published a Linux kernel exploit that turns an ordinary local user into root on the C...
2026-7-28 08:4:44 | 阅读: 23 |
收藏
|
The Hacker News - thehackernews.com
lee
2026
upstream
analysis
memfd
Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost
AI Security / Vulnerability ManagementMicrosoft has launched its first cybersecurity-specific mode...
2026-7-28 06:7:22 | 阅读: 26 |
收藏
|
The Hacker News - thehackernews.com
mdash
microsoft
gpt
mai
cybergym
Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw
Vulnerability / Threat IntelligenceA maximum-severity security flaw impacting on-premises versio...
2026-7-28 04:43:53 | 阅读: 24 |
收藏
|
The Hacker News - thehackernews.com
vco
security
2026
arista
NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework
NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and share open...
2026-7-27 18:10:5 | 阅读: 24 |
收藏
|
The Hacker News - thehackernews.com
hugging
nvidia
alliance
nooa
openai
Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption
Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted blockcha...
2026-7-27 17:16:28 | 阅读: 31 |
收藏
|
The Hacker News - thehackernews.com
xlab
jackskid
dysphoria
cncert
ens
Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw
Vulnerability / Website SecurityPublic exploit details released on July 27 show how an unauthentic...
2026-7-27 14:40:0 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
vbulletin
php
pagenav
2026
forums
⚡ Weekly Recap: Rogue AI Agents, Check Point Exploit, Slopsquatting, ClickFix Lures and More
Monday starts with the usual promise that everything is under control. Then the logs wake up.This...
2026-7-27 14:10:54 | 阅读: 31 |
收藏
|
The Hacker News - thehackernews.com
2026
security
malicious
windows
phishing
n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process
Vulnerability / Enterprise Securityn8n has patched a high-severity expression-sandbox escape that...
2026-7-27 13:5:15 | 阅读: 19 |
收藏
|
The Hacker News - thehackernews.com
n8n
security
joes
2026
arrow
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update
Cybersecurity researchers have flagged a Microsoft Teams-themed phishing campaign that employs "sec...
2026-7-27 12:37:49 | 阅读: 18 |
收藏
|
The Hacker News - thehackernews.com
rmm
phishing
microsoft
github
zerobec
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware
The China-linked cybercrime group behind the use of income tax-related phishing lures targeting Ind...
2026-7-27 10:51:45 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
cruciferra
analysis
security
payload
windows
TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments
Cyber Attack / Threat IntelligenceCybersecurity researchers have flagged fresh malicious cyber act...
2026-7-27 08:48:47 | 阅读: 29 |
收藏
|
The Hacker News - thehackernews.com
teleshim
c2
stage
windows
threatlabz
Previous
6
7
8
9
10
11
12
13
Next