www.wsj.com/tech/how-a-c...
www.wsj.com/tech/how-a-c...
#AI #人工智能 #AI安全 #网络安全
thehackernews.com/2026/09/us-a...
#AI #人工智能 #AI安全 #网络安全
thehackernews.com/2026/09/us-a...
📖 Read more: www.helpnetsecurity.com/2026/09/10/c...
#cybersecurity #cybersecuritynews #APT #firewall #ransomware #vulnerability @cisco.com @talosintelligence.com @horizon3ai.bsky.social
📖 Read more: www.helpnetsecurity.com/2026/09/10/c...
#cybersecurity #cybersecuritynews #APT #firewall #ransomware #vulnerability @cisco.com @talosintelligence.com @horizon3ai.bsky.social
QUIRSO 发现该漏洞在披露后 5 天便出现利用活动,发现 47 个国家/地区的 361 个受害 IP 地址。
攻击者利用漏洞获取 vCenter 代码执行能力,并建立持久化、获取凭据、进行 vSphere 探测及部署 Reverse SSH,最终入侵 ESXi 主机并部署 Babuk 衍生勒索软件。
QUIRSO 以中等置信度评估该活动与疑似具有中国关联(Chinese-nexus)的威胁行为者有关,但尚无足够证据将其归因于 APT 组织或中国政府。
medium.com/@quirso_de/g...
QUIRSO 发现该漏洞在披露后 5 天便出现利用活动,发现 47 个国家/地区的 361 个受害 IP 地址。
攻击者利用漏洞获取 vCenter 代码执行能力,并建立持久化、获取凭据、进行 vSphere 探测及部署 Reverse SSH,最终入侵 ESXi 主机并部署 Babuk 衍生勒索软件。
QUIRSO 以中等置信度评估该活动与疑似具有中国关联(Chinese-nexus)的威胁行为者有关,但尚无足够证据将其归因于 APT 组织或中国政府。
medium.com/@quirso_de/g...
thehackernews.com/2026/08/chin...
thehackernews.com/2026/08/chin...
A public letter from tech and cybersecurity executives called for restrictions on Fable 5 to be repealed on Sunday.
www.theverge.com/ai-artificia...
A public letter from tech and cybersecurity executives called for restrictions on Fable 5 to be repealed on Sunday.
www.theverge.com/ai-artificia...
ShadowPad 是一种高度复杂的模块化恶意软件,已成为网络安全领域的重要威胁。 该恶意软件最初被归因于与中国有关联的国家支持型威胁组织 APT41,但此后已逐渐演变为多个高级持续性威胁(APT)组织共享使用的攻击工具。
#网络安全 #网络威胁 #威胁情报 #恶意软件 #APT
cyberint.com/blog/dark-we...
Talos uncovered a BadIIS variant operating as a MaaS ecosystem for Chinese-speaking threat actors, enabling SEO fraud and traffic hijacking.
-
IOCs: BadIIS, demo. pdb, lwxatisme
-
#BadIIS #Malware #ThreatIntel
Talos uncovered a BadIIS variant operating as a MaaS ecosystem for Chinese-speaking threat actors, enabling SEO fraud and traffic hijacking.
-
IOCs: BadIIS, demo. pdb, lwxatisme
-
#BadIIS #Malware #ThreatIntel
www.theregister.com/2026/04/30/c...
www.theregister.com/2026/04/30/c...
#网络安全 #APT攻击 #信息安全 #数据泄露
thehackernews.com/2026/04/chin...
#网络安全 #APT攻击 #信息安全 #数据泄露
thehackernews.com/2026/04/chin...
thehackernews.com/2026/04/chin...
thehackernews.com/2026/04/chin...
#网络安全 #软件供应链攻击 #开发者安全 #StoatWaffle #朝鲜
thehackernews.com/2026/03/nort...
#网络安全 #软件供应链攻击 #开发者安全 #StoatWaffle #朝鲜
thehackernews.com/2026/03/nort...
相关活动利用与地区冲突相关的诱饵内容,试图投递 PlugX 和 Cobalt Strike 等工具,显示出网络间谍行为者在地缘政治事件发生时能够迅速调整其行动重点。
#网络安全 #网络间谍活动 #地缘政治风险 #威胁情报
#网络安全 #AI网络攻击 #网络威胁 #Fortinet
thehackernews.com/2026/03/open...
#网络安全 #AI网络攻击 #网络威胁 #Fortinet
thehackernews.com/2026/03/open...
Cybersecurity researchers have disclosed details of a new mobile spyware platform dubbed ZeroDayRAT that's being advertised on Telegram as a way to grab sensitive data and facilitate real-time surveillanc…
#hackernews #news
Cybersecurity researchers have disclosed details of a new mobile spyware platform dubbed ZeroDayRAT that's being advertised on Telegram as a way to grab sensitive data and facilitate real-time surveillanc…
#hackernews #news
#网络安全威胁 #AI安全 #网络攻防
www.theregister.com/2026/02/12/g...
#网络安全威胁 #AI安全 #网络攻防
www.theregister.com/2026/02/12/g...
www.infosecurity-magazine.com/news/north-k...
www.infosecurity-magazine.com/news/north-k...