Aggregator
TexSaw CTF 2026 Writeup
帆软报表历史漏洞分析(二)
CyberStrikeLab Lab13 渗透实战全流程详解
帆软报表FineReport历史漏洞分析(一)
结合代码浅分析DigitalOcean Droplet Agent 命令注入预授权 RCE 漏洞(CVE-2026-24516)
CVE-2026-24291-Windows权限提升漏洞“RegPwn”复现分析
CVE-2026-3672 Jeecgboot3.9.1/3.9.0 WAF绕过:正则缺陷导致SQL注入
第三届长城杯半决赛-wso2:SOAP管理接口+H2文件读写绕过waf
DIR815栈溢出漏洞复现新手入门
Indian Bank Warns Users of Fake LPG Payment and KYC Update Scams to Steal Banking Info
Indian Bank has issued an urgent cybersecurity advisory warning its customers about a rapidly spreading wave of fraudulent LPG payment and KYC update messages that are being used to steal banking credentials and drain accounts. Cybercriminals are exploiting growing public concern over LPG cylinder availability to circulate deceptive messages across SMS, WhatsApp, and other messaging […]
The post Indian Bank Warns Users of Fake LPG Payment and KYC Update Scams to Steal Banking Info appeared first on Cyber Security News.
2026 SUCTF Pwn 方向 WriteUp:堆溢出、内核 Page Cache 篡改与 V8 引擎利用
LiteLLM供应链攻击分析:多段被注释备用载荷的发现
【CVE-2026-31816】 Budibase 未授权访问漏洞代码分析
提示词注入视角下的 AI Webshell 检测绕过技术研究
软件安全赛2026线上初赛by NPUSEC
Multiple OpenSSL Vulnerabilities Exposes Sensitive Data in RSA KEM Handling
OpenSSL has released a broad April 2026 security update that fixes seven vulnerabilities across supported branches, led by CVE-2026-31790, a moderate-severity flaw in RSA KEM RSASVE encapsulation that can expose uninitialized memory to a malicious peer. The advisory directs users of vulnerable 3.x releases to move to OpenSSL 3.0.20, 3.3.7, 3.4.5, 3.5.6, or 3.6.2, depending […]
The post Multiple OpenSSL Vulnerabilities Exposes Sensitive Data in RSA KEM Handling appeared first on Cyber Security News.