Aggregator
CVE-2025-46391 | Emby MediaBrowser 4.9.0.35 access control
CVE-2025-7202 | Elgato Key Light up to 1.0.3(218) cross-site request forgery
CVE-2025-46386 | Emby MediaBrowser 4.9.0.35 authorization
CVE-2025-7771 | TechPowerUp ThrottleStop 3.0.0.0 IOCTL Interface ThrottleStop.sys MmMapIoSpace exposed ioctl with insufficient access control (erUp-2025-001)
CVE-2025-22469 | SATO CL4-6NX Plus/CL4-6NX-J Plus prior 1.15.5-r1 os command injection (EUVD-2025-23819)
CVE-2025-22470 | SATO CL4-6NX Plus/CL4-6NX-J Plus prior 1.15.5-r1 Lua Script unrestricted upload (EUVD-2025-23818)
CVE-2025-6013 | HashiCorp Vault/Vault Enterprise up to 1.20.1 LDAP Auth Method whitespace (WID-SEC-2025-1730)
ControlVault должен был защищать Dell. Теперь он помогает прятать бэкдор
Descope enhances AI identity security with Agentic Identity Control Plane
Descope launched Agentic Identity Control Plane, a solution that enables security teams to institute policy-based governance, auditing, and identity management for their AI agent and Model Context Protocol (MCP) ecosystems. The Agentic Identity Control Plane builds on top of the existing Descope Agentic Identity Hub to mark a huge step forward in Descope’s vision of becoming the identity provider for AI agents. As AI agents, LLMs, and MCP servers continue gaining rapid adoption, security leaders … More →
The post Descope enhances AI identity security with Agentic Identity Control Plane appeared first on Help Net Security.
【安全圈】Bing搜索投毒攻击:窃取域控权限的“IT管理软件陷阱”
【安全圈】Trend Micro Apex One 关键 RCE 漏洞遭在野利用,企业需紧急修复
【安全圈】黑客伪造企业应用骗取微软365账户权限,Tycoon钓鱼工具包成幕后黑手
【安全圈】Dell百万笔记本重大漏洞:恶意攻击者可永久控制设备并窃取生物识别数据
AI Slashes Workloads for vCISOs by 68% as SMBs Demand More – New Report Reveals
How Top SOCs Defend Against Emerging Threats with Live Attack Data
Adobe 紧急修复 AEM Forms 中的两个0day漏洞
LegalPwn:利用法律免责条款,操纵ChatGPT等主流AI工具执行恶意代码
WhatsApp adds new security feature to protect against scams
MIND launches autonomous DLP platform to put data protection on autopilot
MIND announced the general availability of the first autonomous DLP platform, enabling security teams to safely use GenAI, go beyond compliance, and automate data protection across all IT environments by reducing manual work and preventing sensitive data leaks. Built from the ground up as an AI-native DLP platform to automate the entire lifecycle of data protection, MIND delivers: Data discovery: Automated and continuous inventory of sensitive data at rest and user/agentic AI/non-human activities to remove … More →
The post MIND launches autonomous DLP platform to put data protection on autopilot appeared first on Help Net Security.