Aggregator
微软开源 Windows Subsystem for Linux
我近期在产品上的折腾
Malicious PyPI Packages Exploit Instagram and TikTok APIs to Validate User Accounts
2025攻防演练必修高危漏洞集合(1.0版)
【HVV必备工具包】5款渗透测试神器大盘点!
锦行科技线上微课堂第二期火热来袭!
Containers are just processes: The illusion of namespace security
In the early days of commercial open source, major vendors cast doubt on its security, claiming transparency was a flaw. In fact, that openness fueled strong communities and faster security improvements, making OSS often more secure than proprietary code. Today, a new kind of misinformation has emerged, the opposite of FUD: it downplays real open source security risks that should raise concern. The biggest security fallacy today is that Linux namespaces are security boundaries. From … More →
The post Containers are just processes: The illusion of namespace security appeared first on Help Net Security.
CVE-2024-5878 | SimpleLightbox Photo Gallery, Sliders, Proofing and Themes up to 2.1.5 on WordPress JavaScript Library cross site scripting
CVE-2025-4322 | Motors Plugin up to 5.6.67 on WordPress Password Update unverified password change (EUVD-2025-15813)
CVE-2024-23282
CVE-2025-4971 | Broadcom Automic Automation up to 21.0.13/24.3.0 HF3 untrusted search path (EUVD-2025-15812)
CVE-2025-3079 | Canon imageRUNNER/imageCLASS/i-sensys/Satera insufficiently protected credentials (EUVD-2025-15810)
CVE-2025-3078 | Canon imageRUNNER ADVANCE insufficiently protected credentials (EUVD-2025-15811)
CVE-2025-1308 | Pure Storage PX Backup up to 2.6.0/2.7.3/2.8.1 log file (EUVD-2025-15792)
Why legal must lead on AI governance before it’s too late
In this Help Net Security interview, Brooke Johnson, Chief Legal Counsel and SVP of HR and Security, Ivanti, explores the legal responsibilities in AI governance, highlighting how cross-functional collaboration enables safe, ethical AI use while mitigating risk and ensuring compliance. From a legal and governance perspective, what are the biggest risks of unmanaged AI use? The core risks lie at the intersection of technology, ethics and law. GenAI tools, while powerful, introduce challenges in areas … More →
The post Why legal must lead on AI governance before it’s too late appeared first on Help Net Security.
Proposed GDPR Revisions Stokes Privacy Concerns
Privacy rights groups urged the European Commission to retreat from proposals to revise the GDPR. Europe pledged to lessen record-keeping obligations for companies with up to 500 employees so long as the data processing isn't "likely to result in a high risk."
Debt Collector Hack Affects Long List of Clients, Patients
A 2024 hacking incident at a debt collection firm has affected a growing list of clients and at least hundreds of thousands of individuals so far, including 210,000 patients of Harbin Clinic in Georgia and nearly 90,000 patients of Texas-based Vitruvian Health, also known as Hamilton Health Care.
Japanese Parliament Passes Active Cyber Defense Law
The Japanese Parliament passed the long-delayed active cyber defense bill on Friday, paving the way for government agencies to monitor external telecommunications and preemptively respond to signs of cyberattacks, including neutralizing attackers' servers.
Hackers Nab 15 Years of UK Legal Aid Applicant Data
Hackers stole from the U.K. Ministry of Justice personal information pertaining to criminal defendants in need of an attorney, the British government disclosed Monday. The ministry on Monday said it detected on April 23 a breach that targeted the Legal Aid Agency.