Aggregator
Ютубер собрал Arduino-черепаху в 7 раз больше обычной — и она всё ещё ездит сама
Phoenix Invicta Extension Malware Strips CSP Headers to Bypass Manifest V3
Popular browser extensions have historically been perceived as benign, utilitarian artifacts—innocuous implements such as color droppers, ad-blockers, or
The post Phoenix Invicta Extension Malware Strips CSP Headers to Bypass Manifest V3 appeared first on Penetration Testing Tools.
CVE-2026-42232 | n8n-io n8n up to 1.123.31/2.17.3/2.18.0 prototype pollution (GHSA-hqr4-h3xv-9m3r / EUVD-2026-27104)
CVE-2026-42231 | n8n-io n8n up to 1.123.31/2.17.3/2.18.0 XML prototype pollution (GHSA-q5f4-99jv-pgg5 / EUVD-2026-27102)
CVE-2026-42230 | n8n-io n8n up to 1.123.31/2.17.3/2.18.0 /mcp-oauth/register redirect_uri (GHSA-f6x8-65q6-j9m9 / EUVD-2026-27100)
CVE-2026-42228 | n8n-io n8n up to 1.123.31/2.17.3/2.18.0 WebSocket Endpoint /chat authorization (GHSA-f77h-j2v7-g6mw / EUVD-2026-27096)
CVE-2026-42229 | n8n-io n8n up to 1.123.31/2.17.3/2.18.0 Query String sql injection (GHSA-mp4j-h6gh-f6mp / EUVD-2026-27098)
CVE-2026-3117 | Mattermost up to 11.5.1 Gitlab Plugin authorization (WID-SEC-2026-1154)
CVE-2026-4643 | Mattermost Desktop App up to 5.4.13/6.0.1/6.1.x window.close unusual condition (EUVD-2026-30758 / WID-SEC-2026-1565)
CVE-2026-3471 | Mattermost Desktop App up to 5.4.13/6.0.1/6.1.x improper authorization in handler for custom url scheme (EUVD-2026-30757 / WID-SEC-2026-1565)
Suspected Iranian Hackers Breach US Gas Station Fuel Monitoring Systems
American fueling stations have fallen victim to a coordinated cyber-infiltration campaign. Unidentified adversaries breached the telemetry frameworks responsible
The post Suspected Iranian Hackers Breach US Gas Station Fuel Monitoring Systems appeared first on Penetration Testing Tools.
智领安全・云启新境|锐捷安全云办公 4.0 焕新升级,重塑企业数字办公基石
山石网科2026:双A引擎驱动下的价值重估与高质量增长
4月全球数据泄露态势月报来了:全球数百亿行数据流出,这些行业最危险
TIL: 移除图片下方多余的空白
Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential Stealer
Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential Stealer
Babel Street targets AI-driven threats with new agentic investigation capabilities
Babel Street has launched Insights Investigator, a new agentic capability that puts tradecraft-trained AI agents at the front edge of investigative work while ensuring analysts remain in control of scope, logic, and outcomes of their missions. As part of the Babel Street Insights platform, Investigator represents a shift from search and AI-assisted queries to analyst-directed, AI-executed investigations. Threat actors are no longer constrained by human bandwidth. Nation-state adversaries, organized criminal networks, and hostile foreign intelligence … More →
The post Babel Street targets AI-driven threats with new agentic investigation capabilities appeared first on Help Net Security.