Aggregator
山东大学 | MiniCAT:了解和检测小程序中的跨页面请求伪造漏洞
Hanko: Open-source authentication and user management
Hanko is an open-source, API-first authentication solution purpose-built for the passwordless era. “We focus on helping developers and organizations modernize their authentication flows by migrating users towards passkeys, while still supporting all common authentication methods like email/password, MFA, OAuth, as well as SAML SSO,” Felix Magedanz, CEO at Hanko, told Help Net Security. “What truly sets us apart is our commitment to developer experience,” explained Magedanz. Hanko is fully open source and licensed under AGPL … More →
The post Hanko: Open-source authentication and user management appeared first on Help Net Security.
LlamaFirewall:构建安全 AI 代理的开源防护系统
CVE-2024-28956
CVE-2025-24495
CVE-2024-45332
中国 AI 大厂,被 Deepseek 掀了牌桌之后
CVE-2025-4902 | D-Link DI-7003GV2 24.04.18D1 R(68125) /H5/versionupdate.data sub_48F4F0 information disclosure (EUVD-2025-15647)
CVE-2025-4903 | D-Link DI-7003GV2 24.04.18D1 R(68125) sub_41F4F0 unverified password change
CVE-2025-4904 | D-Link DI-7003GV2 24.04.18D1 R(68125) /H5/webgl.data sub_41F0FC information disclosure
CVE-2025-4905 | iop-apl-uw basestation3 up to 3.0.4 basestation3/QC.py load_qc_pickl qc_file deserialization
CVE-2025-4906 | PHPGurukul Notice Board System 1.0 /login.php Username sql injection
Mark Zuckerberg’s Vision: AI Companions and the Loneliness Epidemic
In this episode, we explore Mark Zuckerberg’s bold claim that AI friends will replace human friendships, and discuss the potential implications of a world where technology mediates our connections. We also update listeners on the recent developments in the 23andMe bankruptcy case and what it means for former customers. Joining the conversation is co-host Scott […]
The post Mark Zuckerberg’s Vision: AI Companions and the Loneliness Epidemic appeared first on Shared Security Podcast.
The post Mark Zuckerberg’s Vision: AI Companions and the Loneliness Epidemic appeared first on Security Boulevard.
Inside MITRE ATT&CK v17: Smarter defenses, sharper threat intel
In this Help Net Security video, Adam Pennington, MITRE ATT&CK Lead, breaks down what’s new in the ATT&CK v17 release. He highlights the addition of the ESXi platform, new and updated techniques for Linux, refinements to mitigation guidance, and over 140 new analytics to help defenders act faster. Pennington also discusses changes across ATT&CK for enterprise, ICS, and mobile, emphasizing community contributions and the framework’s continued evolution to track emerging adversary behavior.
The post Inside MITRE ATT&CK v17: Smarter defenses, sharper threat intel appeared first on Help Net Security.