网络安全资讯
来自顶级安全媒体的最新动态
共 1540 篇文章,第 2 / 52 页
Oleksii Oleksiyovych Lytvynenko has been sentenced to 4 years in prison after he was arrested in Ireland in 2023. The post Ukrainian Conti Ransomware Developer Sentenced to 4 Years...
Tracked as CVE-2026-85102 and CVE-2026-85103, the flaws could be exploited for remote code execution. The post Check Point Patches Critical VPN Vulnerabilities appeared first on Se...
Financials have not been disclosed, but the estimated cost is in the tens of millions of dollars. The post Kiteworks Acquires Bonfy.AI to Fill the AI Gap in Data Governance appeare...
A misconfigured test server containing engineering material, including internal configurations, was accessed by threat actors. The post Surfshark Systems Targeted by Hackers appear...
Anthropic reveals how criminal groups are increasingly targeting AI vendors' own infrastructure, including to steal a pre-release Claude model. The post Anthropic Says Russian Hack...
A Russian threat actor used AI to build, test, and deploy exploits against hundreds of organizations worldwide. The post PaperCut Flaws Exploited in AI-Powered Attacks appeared fir...
Cybersecurity researchers have identified an active Android banking malware campaign targeting users in Indonesia, orchestrated by the financially motivated threat group GoldFactor...
Researchers have uncovered a coordinated campaign of malicious browser extensions targeting cryptocurrency traders on both Chrome and Firefox. Four extensions — J7Tracker, VREO, an...
A new wave of social engineering attacks is targeting employees through voice-based phishing calls, exploiting Bring Your Own Device (BYOD) policies to infiltrate Microsoft 365 ...
Mandiant founder and cybersecurity veteran brings more than 30 years of public and private sector experience to Amazon’s board. The post Mandiant Founder Kevin Mandia Joins Amazon ...
As the cyber scam industry expands globally, the U.S. government wants banks to share more information about what's happening to their customers....
A notice dated September 4 but not widely shared shows that IDScan acknowledged a data breach but did not specify how many people were affected....
Ronzelle Green, most recently a senior official at the National Geospatial-Intelligence Agency, will be U.S. Cyber Command's chief AI officer....
Threat actors are exploiting Google Play's Early Access program to distribute thousands of deceptive Android applications that promise cash rewards, cryptocurrency earnings, free s...
Check Point has disclosed and patched two critical vulnerabilities affecting how its firewall and management products handle VPN certificates, both carrying a maximum CVSS score of...
A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security flaws in ...
The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and drops a tampered banking app inside it, security firm Group-IB sai...
The disgruntled researcher continued their vendetta against Microsoft by publishing yet another zero-day exploit for Windows Defender....
Significant cybersecurity M&A deals announced by Brinqa, Cribl, Echo, Fortinet, Kiteworks, Palo Alto Networks, and Visa. The post Cybersecurity M&A Roundup: 33 Deals Anno...
Both Anthropic and OpenAI have seen high-profile resignations in recent years that were tied to safety concerns. The post Anthropic Researcher Resigns With Warning About the Danger...
Vinnie Liu was recruited by the NSA when he was just 17 years old. He is now the CEO of Bishop Fox. The post Hacker Conversations: Vinnie Liu, Performer Turned Ringmaster appeared ...
Deceptive apps in Early Access are being used by dishonest developers for their own benefit. The post Deceptive Android Apps Exploit Google Play Early Access to Evade Reviews appea...
Join the webinar for a focused, 20-minute discussion on Frontier Pace Governance, an approach to balancing automation, policy, and business risk as IT operations accelerate. The po...
Tracked as CVE-2026-19490, the authentication bypass flaw has been exploited in the wild since at least September 3. The post Critical NetScaler Vulnerability Exploited in Attacks ...
Wildberries told several Russian media outlets earlier this week that payments to some sellers were delayed by security measures introduced after a distributed denial-of-service (D...
The individual has not yet been avowed — the formal process in Britain by which an intelligence or security figure’s identity is publicly acknowledged — as routine security conside...
CISA added three actively exploited vulnerabilities affecting Cisco, Citrix, and Fortinet products to its Known Exploited Vulnerabilities (KEV) catalog on Wednesday, setting a Sept...
A Wiz Research investigation has revealed that nearly 10% of internet-facing LiteLLM gateways scanned in February 2026 were still configured with sk-1234, the example admin master ...
Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model broke into real third-party systems, marking the latest in a growing list of case...
Starting Friday, businesses operating in the EU will have just 24 hours to notify the government any time they discover serious product security incidents....