Aggregator
安全NTA+网络NPM,斗象“双项全能”流量产品受众多高校青睐
CVE-2006-4089 | Alsaplayer PlaylistWindow.cpp memory corruption (EDB-28367 / Nessus ID 22286)
Let’s talk about AI and end-to-end encryption
Homeowners are clueless about how smart devices collect their data
Homeowners are increasingly concerned about data privacy in smart home products, according to Copeland. Homeowners see smart devices as boosting home security Homeowners are still generally comfortable in using new technology, but this year smart thermostat non-owners are less likely to feel comfortable using new tech compared to 2022 levels. Smart device owners tend to be younger compared to non-owners with more from the boomer generation. However, 2024 homeowners are less likely to consider themselves … More →
The post Homeowners are clueless about how smart devices collect their data appeared first on Help Net Security.
CISA Releases Guidelines For Closing Software Understanding Gap
The Cybersecurity and Infrastructure Security Agency (CISA) has released a pivotal report calling for urgent action to address the “software understanding gap.” This comprehensive document highlights the significant disparity between the rapid advancement in software production and the corresponding investment in understanding and maintaining these systems. The report emphasizes that this gap poses a considerable […]
The post CISA Releases Guidelines For Closing Software Understanding Gap appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Hackers Deploy Web Shell To Abuse IIS Worker And Exfiltrate Data
An attacker exploited a vulnerability in the batchupload.aspx and email_settings.aspx pages on the target server that allowed them to upload a malicious web shell to the IIS worker process (w3wp.exe). They initially attempted to upload a web shell to another location but failed to interact with it. Network traffic analysis revealed the source of the […]
The post Hackers Deploy Web Shell To Abuse IIS Worker And Exfiltrate Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
EU takes decisive action on healthcare cybersecurity
The Commission has presented an EU action plan aimed at strengthening the cybersecurity of hospitals and healthcare providers. The initiative is an essential step in shielding the healthcare sector from cyber threats. Digitalization is revolutionizing healthcare, enabling better patient services through innovations such as electronic health records, telemedicine, and AI-driven diagnostics. However, cyberattacks can delay medical procedures, create gridlock in emergency rooms, and disrupt vital services, which, in severe cases, could directly impact the lives … More →
The post EU takes decisive action on healthcare cybersecurity appeared first on Help Net Security.
三平米搞定干湿分区、洗烘与智能马桶:我的卫生间改造复盘
每周勒索威胁摘要
每周勒索威胁摘要
每周勒索威胁摘要
每周勒索威胁摘要
Pumakit 高级 Linux 根据套件威胁分析
European Privacy Group Sues TikTok and AliExpress for Illicit Data Transfers to China
European Privacy Group Sues TikTok and AliExpress for Illicit Data Transfers to China
Raphael AI – 世界上首个无需注册、免费无限制的 AI 绘图工具,由 FLUX.1-Dev 模型驱动[早用早享受,晚了用不到]
Can anyone teach me how to create a RAT for android?
New infosec products of the week: January 17, 2025
Here’s a look at the most interesting products from the past week, featuring releases from Atsign, Cisco, Commvault, and IT-Harvest. Cisco AI Defense safeguards against the misuse of AI tools Cisco AI Defense is purpose-built for enterprises to develop, deploy and secure AI applications with confidence. Automated testing checks AI models for hundreds of potential safety and security issues. This AI-driven algorithmic red team identifies potential vulnerabilities and recommends guardrails in AI Defense for security … More →
The post New infosec products of the week: January 17, 2025 appeared first on Help Net Security.