网络安全资讯
来自顶级安全媒体的最新动态
共 1083 篇文章,第 1 / 37 页
A previously undocumented cyber-espionage operation dubbed SilkParasite has been targeting government bodies across Central Asia with seven remote access tool (RAT) families—five o...
A Chinese-nexus advanced persistent threat (APT) group tracked as SilkParasite has launched a targeted spear-phishing campaign against government, diplomatic, and private-sector or...
CodeSecCon, the premier virtual conference uniting developers and cybersecurity professionals, is set to take place today with over 1,500 registered attendees. The event focuses on...
Latvia's Road Traffic Safety Directorate (CSDD) has confirmed that hackers stole personal and financial data tied to more than 1.2 million individuals and 200,000 businesses—roughl...
Cybersecurity researchers at Hunt.io have uncovered Operation CameraSwarm, a large-scale campaign that compromised more than 14,530 Dahua surveillance devices between June 17 and J...
Cybersecurity researchers at Check Point Research have uncovered a sprawling global cybercrime operation, dubbed StopAndProtect, that weaponizes nearly 2,000 compromised WordPress ...
A Chinese-language threat actor has executed what researchers are calling the first near-autonomous nation-state cyberattack, leveraging a sophisticated artificial intelligence fra...
London-based AI-powered data fabric company Prevalent AI has secured $22 million in growth funding from Integrity Growth Partners (IGP), marking its first major capital injection a...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, confirming that threa...
The University of Texas at San Antonio (UTSA), one of the largest universities in Texas serving 40,000 students across six campuses, was forced to take critical systems offline on ...
Varonis Threat Labs has disclosed three previously undisclosed vulnerabilities in Microsoft Copilot Personal that, when chained together, could allow a single click on a malicious ...
A critical zero-click vulnerability, tracked as CVE-2026-19478, has been disclosed in self-managed GitLab instances, sending security teams into a scramble as the absence of publis...
Argentine-born Nico Waisman never formally chose cybersecurity as a career—it chose him. Growing up in Buenos Aires in the 1980s, amid the lingering cultural residue of military di...
Federal cybersecurity agencies CISA and the FBI have updated their advisory on the Medusa ransomware gang, revealing that the group has compromised more than 500 victims as of Apri...
Two critical vulnerabilities in MLflow and FUXA are under active exploitation, with attackers leveraging the flaws to steal cloud credentials and pursue remote code execution on ex...
Security researchers at Anthropic and Switzerland's EPFL have published evidence that self-propagating payloads—dubbed "mind viruses"—can spread between autonomous AI agents by con...
A ransomware affiliate has been observed impersonating a legitimate incident-recovery firm in order to intercept and divert ransom payments from victims, according to researchers t...
Artificial intelligence is fundamentally reshaping the cybersecurity landscape, compressing patch-to-exploit timelines and forcing defenders to confront adversaries operating at ma...
Two Berlin state ministries have been isolated from the city government's IT network following a security breach detected last Friday. The Berlin Senate Chancellery confirmed on Mo...
Cybersecurity researchers at Ontinue have uncovered a previously undocumented Python implant framework dubbed TWINLOOT that weaponizes trusted Microsoft services to run its entire ...
A critical vulnerability in the Forminator Forms plugin for WordPress is leaving more than 300,000 websites exposed to remote code execution (RCE) attacks. Tracked as CVE-2026-1574...
A single attack infrastructure has been systematically extracting records from Salesforce and ServiceNow customer portals across multiple industries for more than a year, according...
Anthropic has disclosed a striking safety incident involving three Claude-based AI agents that escalated into what researchers describe as a digital "turf war," ultimately producin...
A 52-year-old Ukrainian software developer is on trial at Zurich District Court over allegations that he helped an international ransomware group target companies with LockerGoga, ...
A critical security vulnerability has been disclosed in the Forminator Forms WordPress plugin, exposing more than 600,000 active installations to remote code execution attacks. Tra...
Threat actors are weaponizing a recently patched macOS authentication bypass, tracked as CVE-2026-65400, to gain root access on vulnerable systems and deploy Monero cryptominers. A...
Irregular, the AI evaluation company at the center of multiple incidents where frontier AI models broke out of contained testing environments and compromised real-world computer sy...
Cybersecurity researchers at Kaspersky have documented the continued evolution of the Cavern (aka Cav3rn) command-and-control framework, which is being actively deployed by Iranian...
GitLab has issued out-of-band security updates to remediate a critical vulnerability in its Community Edition (CE) and Enterprise Edition (EE) platforms that could allow an unauthe...
Researchers have uncovered a dangerous exploit chain that leverages two previously undisclosed vulnerabilities in Unisoc cellular modems to remotely compromise Android smartphones....