Aggregator
7项国家级奖项!360在2025网安周获CNVD、CCTGA、ANVA认可
在2025年国家网络安全宣传周期间,第22届中国网络安全年会暨网络安全协同防御分论坛在昆明成功举办。论坛现场,360数字安全集团凭借在漏洞挖掘、安全应急、漏洞报送、反病毒技术支持及网络威胁治理等领域的创新技术实力及突出贡献,从众多参评企业中突围,一举揽获7项国家级奖项,获评“CNVD技术组支撑单位”、“2024年CNVD协作特别贡献单位”、“2024年漏洞信息报送突出贡献单位”、“2024年漏洞应急工作突出贡献单位”、“ANVA杰出工作单位(企业)”、“ANVA成员单位”及“CCTGA优秀成员单位”称号,充分彰显其在网络安全领域的领军地位。
中国网络安全年会已成为国内网络安全“产、学、研、用”各界进行技术业务交流的桥梁和纽带,对于提高我国网络安全保障水平具有重要作用。360此次获奖,是国家监管机构对360数字安全集团全年高质量安全研究成果、对国家网络安全机构的支持工作、以及对行业建设的积极推动的高度认可。
作为国家网络空间安全建设的中坚力量,360长期配合国家网络安全重要支撑部门,依托漏洞研究院、安全能力中心、漏洞云、高级攻防实验室、互联网产品事业群等顶尖技术团队,聚焦数字安全及AI前沿技术创新,在威胁检测、分析预警及安全响应领域已建成覆盖攻击特征库、漏洞库、恶意代码库的完善体系,为技术落地与服务保障奠定了坚实基础。在核心业务领域,360的技术实力与服务能力进一步得到验证:
漏洞挖掘与风险管理方面,作为CNVD的长期合作伙伴,360积极发挥自身在漏洞与风险研判、报送等方面的优势,为CNVD贡献了大量原创漏洞和公开漏洞信息。此外,360还提供高级持续性威胁深度分析、安全漏洞信息报送与处置、恶意代码监测、网络安全应急处置等多维度的支撑工作。
反网络病毒与威胁方面,360充分利用安全大模型技术,实现恶意样本检测分析和威胁治理能力的智能升级,为ANVA等国家机构的安全运营与管理提供强有力支撑。具体来看,360安全大模型深度赋能检测引擎,有效增强对已知与未知攻击行为的智能化识别能力;同时赋能云网边端各层级安全产品,构建起协同作战的立体化安全防护网。
网络安全协同治理方面,360积极投身网络威胁研究工作,充分发挥技术优势与龙头作用,为CCTGA提供威胁情报,并承担大量情报研究和处置工作。通过情报共享、威胁认定、协同处置、信息发布等多项措施助力降低网络威胁,保障网络安全。
未来,360将继续加大在网络安全领域的研发投入,不断创新技术、优化产品及服务,为用户提供更加全面、高效的网络安全解决方案。同时,切实履行“网络安全国家队”职责,与 CNVD、CCTGA、ANVA等机构及行业伙伴协同合作,共同推动网络安全事业发展,为构建安全可信的网络空间贡献力量。
Кажется, у хакеров теперь тоже есть опенсорс. При поддержке Microsoft
Catchpoint improves monitoring posture with AI capabilities
Catchpoint released two AI-powered capabilities designed to simplify digital resilience for critical applications: Catchpoint Root Cause Analysis (RCA) and Catchpoint Advisor, which improve monitoring posture and bring immediate insights into IT incidents, ending the guesswork. With IT teams facing challenges in diagnosing and resolving issues before they disrupt users, the new AI capabilities couldn’t come at a timelier moment. Most organizations have embedded AI into their workflows which requires them to treat these AI engines … More →
The post Catchpoint improves monitoring posture with AI capabilities appeared first on Help Net Security.
一枚令牌统御万物——借助 Actor 令牌获取所有 Entra ID 租户的全局管理员权限
JVN: OpenAM(OpenAMコンソーシアム版)にサービス運用妨害(DoS)につながる脆弱性
Google patches sixth Chrome zero-day exploited in attacks this year
极端高温催生新法律保护工人
Думали, что BitLocker — это самая надёжная защита? Поздравляем, её можно обойти с помощью загрузчика 2011 года
Researchers Expose Hidden Alliances Between Ransomware Groups
In the rapidly evolving cyber threat landscape, understanding the true nature of ransomware operations has become increasingly complex. Gone are the days when security teams could treat each ransomware family as a discrete, unified entity. The “post-Conti era” has ushered in a fractured marketplace of mutations, in which allegiances shift, identities blur, and hidden connections […]
The post Researchers Expose Hidden Alliances Between Ransomware Groups appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
美国国会要求 Valve、Discord 和 Twitch CEO 就用户激进化作证
DAAMC 研讨会推动链上合规议程:逾 100 位各界嘉宾共商香港稳定币反洗钱路径
中文互联网基础语料3.0正式发布
Absolute Security Rehydrate restores compromised endpoints
Absolute Security released Rehydrate, empowering enterprises to recover from IT or cyber incidents remotely and at scale to minimize operational downtime. Enterprises with business operations that have been stopped by Windows PCs made inoperable by cyberattacks, ransomware strikes, and IT incidents can use this innovation to automate the at-scale restoration of connected devices to a fully operational state, typically in 30 minutes or less, remotely and with a single click. “Ransomware attacks, security breaches, and … More →
The post Absolute Security Rehydrate restores compromised endpoints appeared first on Help Net Security.
Хотите стать хакером? Теперь для этого есть удобное приложение с галочками. Просто выберите, что украсть.
Malicious Typosquatted PyPI Packages Spreading SilentSync RAT
On August 4, 2025, Zscaler ThreatLabz uncovered two malicious Python packages—sisaws and secmeasure—that deliver SilentSync, a Python-based remote access trojan (RAT), to unsuspecting developers. Both packages leverage typosquatting to impersonate legitimate libraries in the Python Package Index (PyPI), posing a serious supply-chain risk to projects that install them. SilentSync’s versatile capabilities include remote command execution, […]
The post Malicious Typosquatted PyPI Packages Spreading SilentSync RAT appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Ping Identity debuts AI framework to keep humans in control
Ping Identity announced a new AI framework designed to close the trust gap created by the rise of AI agents, along with AI-powered assistants that boost administrator productivity. This framework makes verifiable trust a foundation of every digital interaction, helping enterprises unlock frictionless convenience, strengthen governance, and open new channels for growth. “We can no longer implicitly trust what we see, hear, or receive digitally,” said Peter Barker, CPO at Ping Identity. “As AI becomes … More →
The post Ping Identity debuts AI framework to keep humans in control appeared first on Help Net Security.
Pixie Dust Wi-Fi Attack Exploits Routers WPS to Obtain PIN and Connect With Wireless Network
The newly publicized Pixie Dust attack has once again exposed the critical vulnerabilities inherent in the Wi-Fi Protected Setup (WPS) protocol, enabling attackers to extract the router’s WPS PIN offline and seamlessly join the wireless network. By targeting weak randomization in the registrar’s nonces, this exploit subverts the intended security of WPS without requiring proximity […]
The post Pixie Dust Wi-Fi Attack Exploits Routers WPS to Obtain PIN and Connect With Wireless Network appeared first on Cyber Security News.