Aggregator
CNVD漏洞周报2025年第21期
CVE-2017-7018 | Apple Safari up to 10.1.1 WebKit memory corruption (HT207921 / EDB-42373)
CVE-2007-1243 | Audins Audiens 3.3 unistall.php cnf=disinstalla Remote Code Execution (EDB-29676 / XFDB-32707)
安全热点周报:Google 修复了在攻击中被利用的新 Chrome 零日漏洞
Arkana Ransomware Group Allegedly Claims Breach of Ticketmaster Databases
Arkana Security Group claims to have successfully gained access to Ticketmaster’s database infrastructure and exfiltrated massive volumes of sensitive customer data. The threat actors have reportedly announced their intentions to sell comprehensive datasets containing ticket sales records, payment methodologies, customer demographic profiles, and internal fraud resolution documentation on dark web marketplaces. This incident potentially affects […]
The post Arkana Ransomware Group Allegedly Claims Breach of Ticketmaster Databases appeared first on Cyber Security News.
New Zealand Government Mandates DMARC Under New Secure Email Framework
New Zealand mandates DMARC enforcement under its new Secure Government Email framework. Learn what this means and how agencies can ensure compliance.
The post New Zealand Government Mandates DMARC Under New Secure Email Framework appeared first on Security Boulevard.
格尔抗量子密码态势感知系统正式发布
安全专家敦促应五年内启动后量子密码迁移
Atari снова в деле — 128 байт хватило, чтобы победить ChatGPT в шахматах
学习管理系统Moodle核心代码安全审计
CVE-2025-5867 | RT-Thread 5.1.0 lwp_syscall.c csys_sendto null pointer dereference (Issue 10299 / EUVD-2025-17443)
CVE-2025-5894 | Honding Smart Parking Management System up to 1.4 authorization (EUVD-2025-17442)
CVE-2025-5868 | RT-Thread 5.1.0 lwp_syscall.c sys_thread_sigprocmask how array index (Issue 10303 / EUVD-2025-17441)
Цель — инженер. Время — 01:00. Метод — фишинг. Итог — украдены ключи и установлен майнер
US Tries to Claw Back $7m Taken by North Korean IT Workers
谷歌CEO皮查伊:为什么说AI意义将超越火与电?
谷歌CEO桑达尔·皮查伊接受《Lex Fridman Podcast》深度访谈,分享了从个人成长到AI战略的深刻见解。一年前谷歌在AI竞赛中被批评落后,但随着Gemini系列模型发布,已重回领先地位。皮查伊的核心决策原则是"信号降噪"——将外界批评视为噪音,专注第一性原理和长期技术趋势。他在压力下果断合并DeepMind与Google Brain两大AI团队,推动公司全面转向"AI优先"。皮查伊认为AI是比火与电更深远的技术革命,因其递归自我改进能力将极大加速创造本身。关于AGI时间表,他预测略晚于2030年,但对P(Doom)保持乐观,相信人类会在面临真正威胁时团结应对。在产品层面,谷歌正通过AI Overviews和AI Mode重塑搜索体验,同时布局XR和机器人等未来计算平台。皮查伊的童年经历——从缺水缺电到拥有热水和电话的技术跃迁——塑造了他对科技改变生活力量的坚定信念。他倡导"登月思维",认为雄心勃勃的目标能吸引顶尖人才,即使只实现60%也是巨大成功。查看全文
Beware for Developers: 16 React Native Packages with Millions of Downloads Compromised Overnight
Cybersecurity researchers have uncovered a large-scale attack targeting the npm ecosystem, compromising 16 popular React Native packages with a combined download count exceeding one million per week. The attack, detected on June 6th, 2025, represents a significant escalation in the ongoing campaign by a sophisticated threat actor, previously linked to the compromise of the rand-user-agent […]
The post Beware for Developers: 16 React Native Packages with Millions of Downloads Compromised Overnight appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.