Aggregator
速速自查!500stars 云利用工具投毒分析
【已复现】Linux内核Fragnesia权限提升漏洞(CVE-2026-46300)
copy failed 原理详解
AMSI对抗技术
伪装为HelloGPT安装程序的银狐木马样本分析
JDK 21 反序列化过滤器绕过与 Post-TemplatesImpl 利用链构造
提示词注入原理及注入开源模型的一种特定手法
ASM 劫持:绕过、篡改与无痕驻留
NSO Group WhatsApp Attack: Meta Exposes New Spyware Exploits
In the mercenary realm of commercial surveillance, judicial injunctions rarely deter those who have engineered lucrative empires upon human vulnerabilities. Recently, Meta disclosed audacious new attempts by the notorious NSO Group to compromise WhatsApp...
The post NSO Group WhatsApp Attack: Meta Exposes New Spyware Exploits appeared first on Information Security News.
复现 ICLR 2026 在审《TrojanPraise》:从 12% 到 42% 的 LoRA 越狱调参实战
【漏洞研究】多层内容解析链引发的 XSS 语义错位绕过及根因分析
Critical Ivanti Sentry Exploit Endangers Corporate Gateways
A single day of delayed patching could transform a corporate security gateway into a highly convenient ingress point for malicious actors. Shadowserver experts recently reported massive exploitation attempts targeting a critical Ivanti Sentry vulnerability....
The post Critical Ivanti Sentry Exploit Endangers Corporate Gateways appeared first on Information Security News.
提示词注入也能获得上万美元赏金?Gemini App 漏洞分析
Apple Container Machines Bring Linux to Mac
Apple wants to make life easier for developers who write code on a Mac but deploy their finished applications to Linux. At WWDC, the company introduced container machines. These are persistent Linux virtual machines...
The post Apple Container Machines Bring Linux to Mac appeared first on Information Security News.
GoFlateLoader Malware Loader: Golang Infostealer Threat
Occasionally, the simplest method to conceal malicious software relies not upon intricate camouflage, but rather upon excessive digital weight. GoFlateLoader utilizes this precise technique. It is a Golang loader designed to deliver infostealers like...
The post GoFlateLoader Malware Loader: Golang Infostealer Threat appeared first on Information Security News.
Google Search Data Policy: AI Training and User Privacy
Google will commence archiving a broader spectrum of user search data. Consequently, this new policy encompasses images from Google Lens and voice queries. Furthermore, it includes recordings from the Search Live function and spoken...
The post Google Search Data Policy: AI Training and User Privacy appeared first on Information Security News.
微软更新Windows 11多款内置应用提供修复和优化 包括媒体播放器增加自定义字幕
Google Sues Outsider Enterprise Over AI Phishing Scams
Google recently filed a lawsuit against a suspected Chinese cybercriminal network. The corporation refers to this massive syndicate as Outsider Enterprise. Allegedly, this group sold sophisticated phishing kits to other fraudsters. Furthermore, they facilitated...
The post Google Sues Outsider Enterprise Over AI Phishing Scams appeared first on Information Security News.