Aggregator
CVE-2025-14221 | SourceCodester Online Banking System 1.0 /?page=user First Name/Last Name cross site scripting
CVE-2024-52702 | MyBB 1.8.38 install\index.php Website Name cross site scripting (Issue 4859)
南非企鹅因食物短缺大规模饿死
Submit #702619: itsourcecode Student Management System V1.0 SQL Injection [Accepted]
Submit #702487: itsourcecode Student Management System V1.0 SQL Injection [Accepted]
Submit #702484: itsourcecode Student Management System V1.0 SQL Injection [Accepted]
CVE-2019-16693 | phpipam 1.4 order.php table sql injection (Issue 2738 / EDB-52453)
CVE-2019-25024 | OpenRepeater up to 2.1 ajax_system.php post_service os command injection (EDB-52452)
CISA Releases New AI-in-OT Security Guidance: Key Principles & Risks
CISA and global partners issue new guidance for secure AI integration in operational technology, highlighting risks, governance, behavioral analytics, and OT safety.
The post CISA Releases New AI-in-OT Security Guidance: Key Principles & Risks appeared first on Security Boulevard.
NVIDIA research shows how agentic AI fails under attack
Enterprises are rushing to deploy agentic systems that plan, use tools, and make decisions with less human guidance than earlier AI models. This new class of systems also brings new kinds of risk that appear in the interactions between models, tools, data sources, and memory stores. A research team from NVIDIA and Lakera AI has released a safety and security framework that tries to map these risks and measure them inside real workflows. The work … More →
The post NVIDIA research shows how agentic AI fails under attack appeared first on Help Net Security.
WannaGame Championship 2025
Date: Dec. 6, 2025, 1 a.m. — 08 Dec. 2025, 01:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://ctf.cnsc.com.vn/
Rating weight: 29.00
Event organizers: Wanna.One
Inside the Fix: AI-Powered Root Cause Analysis of CVE-2025-60719
雷神众测漏洞周报2025.12.1-2025.12.7
Каждая видеокарта — потенциальный предатель. Linux научился изолировать «железных» шпионов
MuddyWater Deploys UDPGangster Backdoor in Targeted Turkey-Israel-Azerbaijan Campaign
Calibre 最新更新加入 AI,不满的用户创建了移除 AI 的分支
The Bastion: Open-source access control for complex infrastructure
Operational teams know that access sprawl grows fast. Servers, virtual machines and network gear all need hands-on work and each new system adds more identities to manage. A bastion host tries to bring order to this problem. It acts as a single entry point for sysadmins and developers who connect to infrastructure through ssh. This model is old in theory, but The Bastion open-source project shows how far a purpose-built access layer can go. A … More →
The post The Bastion: Open-source access control for complex infrastructure appeared first on Help Net Security.