Aggregator
雨水 | 春雨滋养万物昌
9 months 3 weeks ago
遇水则发福泽长,
甘霖天降润苍茫,
春雨滋养万物昌,
破冰生发岁华芳。
Is Russia Reining In Ransomware-Wielding Criminals?
9 months 3 weeks ago
Flurry of Arrests a Potential Prelude to Russia-Ukraine Peace Negotiations
Even before Donald Trump took office on Jan. 20, there were signs that Russian President Vladimir Putin ordered cybercriminals operating inside his country's borders to be reined in, potentially as a bargaining chip in negotiations over Russia's stalemated war of conquest against Ukraine.
Even before Donald Trump took office on Jan. 20, there were signs that Russian President Vladimir Putin ordered cybercriminals operating inside his country's borders to be reined in, potentially as a bargaining chip in negotiations over Russia's stalemated war of conquest against Ukraine.
Why Some States Are Beefing Up Their Health Cyber Regs
9 months 3 weeks ago
States will increasingly be stepping up to fill gaps in the healthcare sector with new cyber legislation and requirements as the Trump administration promises to roll back regulations, predicts attorney Amy Magnano of the law firm Morgan Lewis' healthcare practice.
Attackers Exploit Palo Alto Zero-Day Authentication Bypass
9 months 3 weeks ago
Surge in Attack Attempts Spotted After Palo Alto Networks Details and Patches Flaw
Attackers have stepped up efforts to exploit a vulnerability in the software that runs Palo Alto Networks firewall appliances that could give them direct access to the underlying software. Unauthenticated hackers could use PHP scripts to bypass the PAN-OS management web interface.
Attackers have stepped up efforts to exploit a vulnerability in the software that runs Palo Alto Networks firewall appliances that could give them direct access to the underlying software. Unauthenticated hackers could use PHP scripts to bypass the PAN-OS management web interface.
Researchers Caution AI Benchmark Score Reliability
9 months 3 weeks ago
Leaderboard Race May be More Marketing than Merit
Artificial intelligence model makers routinely publish benchmark scores of their performance, but the leaderboard race may be more an exercise in marketing than an accurate reflection of the models' abilities. Understanding model failures can be more valuable than celebrating high scores.
Artificial intelligence model makers routinely publish benchmark scores of their performance, but the leaderboard race may be more an exercise in marketing than an accurate reflection of the models' abilities. Understanding model failures can be more valuable than celebrating high scores.
Italian Privacy Agency Warns Against Unlawful Spyware Use
9 months 3 weeks ago
Use Other Than for Police Purposes Can Invoke Fine Up to 20 Million Euros
The Italian privacy regulator warned against unlawful uses of Graphite spyware following reports of mass hacking campaigns using the tool. The Italian Data Protection Authority published a warning targeting commercial spyware developed by Israeli firm Paragon Solutions.
The Italian privacy regulator warned against unlawful uses of Graphite spyware following reports of mass hacking campaigns using the tool. The Italian Data Protection Authority published a warning targeting commercial spyware developed by Israeli firm Paragon Solutions.
小米YU7续航820公里;OpenAI或发GPT-4.5狙击马斯克;DeepMind研究副总裁加盟字节跳动 | 极客早知道
9 months 3 weeks ago
《哪吒 2》杀入全球影史前 9;腾讯自研的混元 T1 深度思考模型开启小范围灰测;Ilya Sutskever 的创业公司被曝正筹资超 10 亿美元
CIO和CSO如何积极应对生成式AI带来的颠覆式创新机遇?|大湾区金融安全专刊·安全村
9 months 3 weeks ago
生成式AI在研发效能和安全领域的实践
CIO和CSO如何积极应对生成式AI带来的颠覆式创新机遇?|大湾区金融安全专刊·安全村
9 months 3 weeks ago
生成式AI在研发效能和安全领域的实践
DeepSeek本地化部署有风险!快来看看你中招了吗?
9 months 3 weeks ago
DeepSeek本地化部署有风险!快来看看你中招了吗?
9 months 3 weeks ago
TransparentTribe(透明部落) APT组织CrimsonRAT远控样本分析
9 months 3 weeks ago
TransparentTribe(透明部落) APT组织CrimsonRAT远控样本分析
突破千亿美元!CrowdStrike的顶级理解
9 months 3 weeks ago
整出全球蓝屏事故后,它来到了股生巅峰
突破千亿美元!CrowdStrike的顶级理解
9 months 3 weeks ago
整出全球蓝屏事故后,它来到了股生巅峰
一款通过调用Windows系统白名单文件执行PowerShell命令的工具
9 months 3 weeks ago
.NET 安全攻防知识交流社区
9 months 3 weeks ago
.NET 通过代码审计发现某 OA 系统全局性权限访问绕过漏洞
9 months 3 weeks ago
CVE-2024-57262 | Barebox prior 2025.01.0 SquashFS Symlink Resolution integer overflow
9 months 3 weeks ago
A vulnerability has been found in Barebox and classified as critical. This vulnerability affects unknown code of the component SquashFS Symlink Resolution Handler. The manipulation leads to integer overflow.
This vulnerability was named CVE-2024-57262. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-57261 | Barebox prior 2025.01.0 Memory Allocator integer overflow
9 months 3 weeks ago
A vulnerability, which was classified as critical, was found in Barebox. This affects an unknown part of the component Memory Allocator. The manipulation leads to integer overflow.
This vulnerability is uniquely identified as CVE-2024-57261. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com