Aggregator
CVE-2023-4541 | Ween Admin Panel up to 20231229 sql injection
CVE-2026-23941 | Erlang OTP RFC 9112 httpd_request.erl Content-Length request smuggling (Nessus ID 302363 / WID-SEC-2026-0721)
CVE-2026-23942 | Erlang OTP ssh_sftpd ssh_sftpd.erl path traversal (Nessus ID 302365 / WID-SEC-2026-0721)
CVE-2026-23943 | Erlang OTP ssh_transport.erl data amplification (Nessus ID 302364 / WID-SEC-2026-0721)
CISA chief frets about open-source vulnerabilities, delayed security improvements
Acting director Nick Andersen’s comments came as a wave of malware attacks hit tech that’s publicly available for collaboration.
The post CISA chief frets about open-source vulnerabilities, delayed security improvements appeared first on CyberScoop.
50 лет астрономы видели только половину Вселенной. Гигантский телескоп в Андах закроет этот пробел
Announcing Claude Compliance API support with Cloudflare CASB
Authorities Have Taken Down “First VPN” Used in Ransomware Attacks
In a major international law enforcement success, authorities from seven countries dismantled First VPN, a criminal virtual private network linked to global cybercrime, during a coordinated operation on May 19 and 20, 2026. Dubbed Operation Saffron, the joint action was led by French and Dutch authorities and supported by Europol and Eurojust, resulting in the […]
The post Authorities Have Taken Down “First VPN” Used in Ransomware Attacks appeared first on Cyber Security News.
Mini Shai-Hulud Compromises @antv npm Packages to Steal CI/CD Credentials
A new and sophisticated supply chain attack has been uncovered, targeting one of the most trusted corners of the open-source software world. Dubbed “Mini Shai-Hulud,” this campaign went after the @antv npm package ecosystem, a collection of widely used data visualization libraries powering dashboards and applications for developers globally. The attack was quiet, precise, and […]
The post Mini Shai-Hulud Compromises @antv npm Packages to Steal CI/CD Credentials appeared first on Cyber Security News.
Rhadamanthys and the Limits of Private Sector Ops
Brain Cipher
You must login to view this content
142 тысячи звёзд на GitHub, ключи к моделям и шифр Виженера. Imperva взломала одну из самых популярных ИИ-платформ мира
Microsoft open-sources tools for designing and testing AI agents
Microsoft has open-sourced two tools aimed at bringing security discipline to AI agent development: Clarity, a structured design review tool, and RAMPART, a continuous testing framework. The release comes from Microsoft’s AI Red Team, the company’s internal unit that stress-tests its own AI systems, and both tools have been used internally before being open-sourced. RAMPART: A test harness RAMPART is built on top of PyRIT, Microsoft’s existing open-source red-teaming library, and is designed to slot … More →
The post Microsoft open-sources tools for designing and testing AI agents appeared first on Help Net Security.
European authorities take down prolific cybercrime VPN service
Officials arrested the alleged administrator of First VPN, seized its servers and domains. Europol said the service appeared in almost every major recent cybercrime investigation.
The post European authorities take down prolific cybercrime VPN service appeared first on CyberScoop.
Deleted Google API Keys Remain Active up to 23 Minutes, Study Finds
«Белый интернет» для своих, VPN втридорога для всех остальных. Как Иран разделил доступ к сети на касты
在地下_马识途_摘录(13)
DragonForce
You must login to view this content
RALord
You must login to view this content