unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
A cybercrime crew left one of its own servers wide open on the internet for three weeks, and it exp...
2026-7-10 11:30:2 | 阅读: 30 |
收藏
|
The Hacker News - thehackernews.com
2026
crew
joomla
socradar
wordpress
Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking
Researchers ran 281 of the most popular free VPN apps on the Google Play Store through a new testin...
2026-7-10 10:56:23 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
tunnel
network
security
mvpnalyzer
flagged
Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access
Enterprise Security / AuthenticationA threat actor has been targeting organizations spanning multi...
2026-7-10 10:30:20 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
passkey
phishing
microsoft
victim
okta
Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency Wallets
Security firm Coinspect has disclosed a crypto wallet flaw it calls Ill Bloom, and attackers are al...
2026-7-10 09:0:5 | 阅读: 17 |
收藏
|
The Hacker News - thehackernews.com
phrase
coinspect
wallets
funds
phrases
Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks
Cybercrime / Law EnforcementA 41-year-old former ransomware negotiator has been sentenced to nearl...
2026-7-10 08:10:12 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
martino
ransomware
blackcat
martin
Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs
Developer Security / Supply Chain SecurityDatadog Security Labs is warning of "several overlapping...
2026-7-9 18:38:49 | 阅读: 28 |
收藏
|
The Hacker News - thehackernews.com
github
security
enumerating
datadog
pats
New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware
Microsoft has taken apart a destructive Windows backdoor it calls GigaWiper. What stands out is h...
2026-7-9 18:8:7 | 阅读: 24 |
收藏
|
The Hacker News - thehackernews.com
microsoft
gigawiper
windows
ransomware
wiper
npm 12 Disables Install Scripts by Default to Reduce Supply Chain Risk
Supply Chain Security / DevSecOpsGitHub has officially announced the release of npm version 12 wit...
2026-7-9 16:49:2 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
publishing
gats
bypass
pnpm
github
ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories
Most security mess starts as admin work. A link gets clicked. A tool gets trusted. A bucket name get...
2026-7-9 15:9:28 | 阅读: 15 |
收藏
|
The Hacker News - thehackernews.com
remote
attacker
ransomware
security
phishing
AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps Up
AI has changed how fast attacks move. Work that once took an attacker days now takes minutes. Using...
2026-7-9 12:26:58 | 阅读: 16 |
收藏
|
The Hacker News - thehackernews.com
attackers
network
attacker
mythos
clears
Summer of Clearinghouses
Everyone seems to have announced a clearinghouse over the past few weeks. We did too. Ours is calle...
2026-7-9 11:0:0 | 阅读: 26 |
收藏
|
The Hacker News - thehackernews.com
upstream
embargo
GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint Defenses
Malware / Endpoint SecurityCybersecurity researchers have flagged a new ransomware family called G...
2026-7-9 10:43:9 | 阅读: 24 |
收藏
|
The Hacker News - thehackernews.com
ransomware
poisonx
symantec
security
Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges
Vulnerability / Endpoint SecurityMicrosoft has released security updates for a Defender vulnerabil...
2026-7-9 08:48:48 | 阅读: 21 |
收藏
|
The Hacker News - thehackernews.com
microsoft
2026
software
security
eclipse
Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images
Meta has announced that its new artificial intelligence (AI) model Muse Image lets people use publi...
2026-7-9 07:21:6 | 阅读: 30 |
收藏
|
The Hacker News - thehackernews.com
reuse
reels
stories
tap
Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running It
Ask an AI coding agent to scan open-source code for security holes, and it might run the attacker's...
2026-7-9 05:15:2 | 阅读: 27 |
收藏
|
The Hacker News - thehackernews.com
claude
security
sonnet
library
payload
GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding Agents
Researchers at Wiz found that a flaw in six popular AI coding assistants lets a booby-trapped code...
2026-7-9 04:27:18 | 阅读: 31 |
收藏
|
The Hacker News - thehackernews.com
wiz
ssh
developer
anthropic
claude
Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes
Cybersecurity researchers have disclosed details of a new threat actor dubbed Lurking Lizard that h...
2026-7-9 04:1:49 | 阅读: 30 |
收藏
|
The Hacker News - thehackernews.com
proxy
residential
lurking
ipidea
network
AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers
Sophos looked at a week of its own endpoint data and found that AI coding agents such as Claude Cod...
2026-7-8 17:2:12 | 阅读: 30 |
收藏
|
The Hacker News - thehackernews.com
agents
sophos
claude
attacker
windows
New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware
AI coding assistants have a habit of making things up. Ask one to fetch a popular tool, and it will...
2026-7-8 15:7:24 | 阅读: 28 |
收藏
|
The Hacker News - thehackernews.com
attacker
invents
machine
gemini
repository
Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS
Vulnerability / Network SecurityUbiquiti has shipped updates to address multiple critical security...
2026-7-8 14:38:5 | 阅读: 31 |
收藏
|
The Hacker News - thehackernews.com
unifi
2026
network
attacker
affects
Previous
5
6
7
8
9
10
11
12
Next