国内 先知社区 2026/09/09
从 APP 异常请求发现外围服务器文件上传漏洞:我是如何30分钟发现高危的
记录一次真实众测中的攻击面扩展过程。文中资产信息均已脱敏,仅用于技术交流。
国内 先知社区 2026/09/06
JeecgBoot JimuReport v2.5.1 未授权 RCE 漏洞分析与 Aviator 沙箱逃逸
本文分析了 JeecgBoot JimuReport v2.5.1 中因硬编码签名密钥导致的未授权访问及 Aviator 表达式注入漏洞。攻击者通过伪造签名进入接口,利用__instance__和__env__内置变量重写 functionMissing 实现沙箱逃逸,最终调用 Runtime.ex
国内 先知社区 2026/09/06
逆向新手的第一课:一个血量数据,教你走完"搜数 → 访问断点 → 逐层回溯"全流程
面向逆向新手,以人物血量为目标,用 CE 搜数锁定地址,再在 x32dbg 下访问断点、逐层回溯,最终定位"基址 + 偏移"并总结通用套路与常见坑点。
国内 先知社区 2026/09/06
2026polarctf秋季赛部分题解
2026polarctf秋季赛部分题解,接触agent之后第一次比较独立的比赛,简单题较多,难一点的依旧搓不出来
国内 先知社区 2026/09/06
PolarCTF网络安全2026秋季个人挑战赛-Web方向全wp
本文记录了多道 Web CTF 题目的分析与解题过程,涵盖 PHP 反序列化、客户端逻辑篡改、路径穿越、SSTI、CBC 字节翻转、参数与请求方法绕过、信息泄露以及 Shiro 反序列化等常见 Web 安全漏洞。文章通过分析题目源码、前端 JavaScript 和接口逻辑,结合实际请求与脚本利用,逐 ...
国内 先知社区 2026/09/05
CVE-2026-9762:IBM JCC getConnection 触发反序列化链分析
IBM JCC getConnection 反序列化
国内 先知社区 2026/09/05
MetInfo CMS v7.6 前台 search 参数 SQL 注入漏洞分析与利用
本文分析了 MetInfo CMS v7.6 版本中因 para 参数经 Base64 解码后绕过转义过滤导致的 SQL 注入漏洞。通过追踪 get_search_list_sql 函数调用链,构造特定 JSON payload 实现时间盲注攻击并提取管理员凭证。该漏洞允许未授权攻击者直接获取数据
国内 先知社区 2026/09/04
一个 `/` 引发的沙箱失守:CVE-2026-55830 RestrictedPython 策略绕过——从复现到字节码的完整剖析
Python 3.8 的 PEP 570 给函数签名引入了 positional-only 参数(`/` 语法),AST 上对应一个新字段 `posonlyargs`。RestrictedPython 的名字校验器 `check_function_argument_names()` 逐字段枚举检查了 ...
国际 Bruce Schneier 2026/09/09
Driver’s License Data for Sale
A database of 153 million drivers licenses is for sale on the dark web. Brian Krebs has more detail.
国际 Dark Reading 2026/09/09
Identity-Based AI Attack Threatens Security of Enterprise Data
"Workflow identity hijacking" can bypass standard security controls and hijack an organization's data by sending a basic request through an unauthenti ...
国际 The Hacker News 2026/09/09
Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA
Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer logs to create "stolen keys" that grant illicit access ...
国际 The Hacker News 2026/09/09
Webinar: Learn How to Answer “Are We Exposed?” Faster After a New CVE
A major vulnerability is disclosed. The alert lands immediately. Then comes the harder question: Are we actually exposed? For many security teams, ans ...
国际 The Hacker News 2026/09/09
DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval
A flaw in DeepSeek Harness, DeepSeek's open-source tool for running AI coding agents on a developer's machine, let a sandboxed agent turn off its own ...
国际 Bruce Schneier 2026/09/09
Claude Fable Solves a Historical Cipher
Claude Fable 5.1 solved a 370-year-old cipher in forty-four minutes. This tracks with what I wrote about AIs doing mathematics: It's good at things th ...
国际 The Hacker News 2026/09/09
Alby Hub Critical Flaw Could Let Attackers Take Over Internet-Exposed Bitcoin Wallets
Bitcoin wallet company Alby has warned of a critical flaw in Alby Hub that could have let an attacker take over a wallet and send its funds, but only ...
国际 The Hacker News 2026/09/09
U.S. Agencies Accuse China AI Firms of Distilling Claude, GPT, Gemini, and Grok
U.S. cybersecurity and intelligence agencies have accused China-based artificial intelligence (AI) companies of conducting "systematic extraction" of ...
国际 The Hacker News 2026/09/09
Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild. The medi ...
国内 Seebug Paper 2026/09/09
POLYFLOW:一种用于静态跨语言信息流分析的神经符号框架
作者:Haoran Yang、Zhixuan Zhong、Jiawei Guo、Haipeng Cai 原文链接:https://arxiv.org/pdf/2608.29808v1 摘要 现代软件系统通常由多种相互交互的编程语言构建而成。这种构建方式导致了额外的、往往隐蔽的漏洞,这些漏洞深藏于因语 ...
国际 The Hacker News 2026/09/09
New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root
cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-relat ...
国际 The Hacker News 2026/09/09
F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans
Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in ...
国际 Krebs on Security 2026/09/08
Microsoft Plugs Nearly 1,000 Security Holes
Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest singl ...
国际 Dark Reading 2026/09/08
Patch Tuesday Sets Another Record With 974 CVEs
Attackers are actively exploiting two of the vulnerabilities and another 58 are more likely to be exploited, according to Microsoft.
国际 Dark Reading 2026/09/08
Attackers Use Multi-Hop Google Redirects for Phishing Campaign
Threat actors are abusing multiple Google services to evade detection, ultimately harvesting credentials or installing ScreenConnect remote access.
国际 Dark Reading 2026/09/08
OpenAI Agents Took Over Wiki Site Before Hugging Face Attack
Researchers and OpenAI disagree on whether the earlier incident involving DseWiki, which the company did not disclose, was a “hack."
国际 Dark Reading 2026/09/08
ClickFix Campaigns Abuse Legitimate Services for Persistent Access
Two separate attacks demonstrate how threat actors are finding new ways to compromise organizations by using the popular social engineering tactic.
国际 Bruce Schneier 2026/09/08
AIs as Modern Genies
This essay was written with Barath Raghavan, and originally appeared in Lawfare. In April, an artificial intelligence (AI) agent conducting a routine ...
国际 Dark Reading 2026/09/08
Cybercriminals Hack Brazilian Government Servers to Host Phishing Sites
A Chinese-language group is compromising government and education sites to create a reverse-proxy network with gambling-themed sites.
国际 Bruce Schneier 2026/09/08
Stealing AI Reasoning Traces
Interesting research: "Stealing Reasoning Traces from Proprietary LLM APIs": Abstract: Leading large language model providers now conceal their models ...
国际 Bruce Schneier 2026/09/07
Automobile Camouflage to Hide from Flock Cameras
Not sure it's practical, but it's certainly striking.
国际 Troy Hunt 2026/09/06
Weekly Update 520: The Unscripted Edition
I've started playing around with YouTube's "create video thumbnail", which hopefully will give me back a bit of time in my day (it used to b ...
国际 Bruce Schneier 2026/09/04
Friday Squid Blogging: Squid on a Stick at the New York State Fair
Looks tasty. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered. Blog moderation policy.
国际 Bruce Schneier 2026/09/04
Using a VM to Contain an AI Agent
It won't work: My suspicion was that GPT 5.6-Cyber would succeed, but the frequency and manner of its success removed all doubt. We have to reassess s ...
国际 Dark Reading 2026/09/04
Companies Have 6 Months to Prepare for Automated Attacks
Frontier AI models have already demonstrated they can autonomously — and in some cases, inadvertently — conduct end-to-end compromises, but the situat ...
国际 Dark Reading 2026/09/04
AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?
A tidal wave of bug reports is overwhelming software vendors, exposing secure-by-design failures and creating disclosure bottlenecks.
国际 Bruce Schneier 2026/09/04
Security Vulnerability in a Voting System
It's a vulnerability that allows someone to recover the order of ballots cast, newly exploited with AI tools. Nearly four years since the original vul ...
国内 Seebug Paper 2026/09/04
UiAs:基于多模态无线信号的用户无关3D人脸反欺骗
作者:Zhiwei Chen,Lebin Lyu,Yimo Zhang,Dingyu Zhong等 原文链接:https://arxiv.org/pdf/2608.29084v1 摘要 人脸认证已广泛应用于安全敏感的应用中,而日益逼真的3D欺骗攻击正构成越来越大的威胁。高保真3D面具可以再现人脸外观 ...
国内 Seebug Paper 2026/09/02
SIR:面向计算机使用智能体的自我改进型红队测试
作者:Chen Xiong, Zhiyuan He, Pin-Yu Chen, Stjepan Picek, Tsung-Yi Ho 原文链接:https://arxiv.org/html/2608.30207v1 摘要 计算机使用智能体(Computer Use Agents, CUA)是一类视觉 ...
国际 Krebs on Security 2026/09/01
FBI Probes Service Selling 153M+ Drivers Licenses
A new identity theft service launched on the dark web this week is selling digital scans of more than 153 million drivers licenses from people in the ...
国际 Troy Hunt 2026/09/01
Weekly Update 519: Breaches & Data Integrity
It does feel like I've bitten off too much and am now chewing like crazy this week. The 3D printing talk with Elle in Oslo, the "normal" NDC info ...
国内 Seebug Paper 2026/09/01
Drishti:面向 5G 核心网的AI主导、人工导向的漏洞审计
作者:Sriram Ramachandran、Levente Csikor、Dinil Mon Divakaran 原文链接:https://arxiv.org/html/2608.30112v1 摘要 开源漏洞的候选生成已不再是稀缺资源。AI辅助代码审查如今能廉价地产生缺陷候选,而行业项目则将其与 ...
国内 Seebug Paper 2026/08/28
通过基于搜索的优化从工业网络流量中恢复过程变量
作者:Chuan Sheng, Shan Jiang, Xiaogang Zhu, Wanlun Ma, Jianming Zhao, Yu Yao, Sheng Wen, Yang Xiang 原文链接:https://arxiv.org/pdf/2608.16403v1 摘要 过程变量(PV)为 ...
国际 Krebs on Security 2026/08/27
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrati ...
国际 Troy Hunt 2026/08/25
A Cautionary Tale About Data Breach Claims, Verification and Carhartt
You're not going to believe this, but turns out you can't always take criminals at their word. Actually, I'll walk that back a bit as i ...
国内 Seebug Paper 2026/08/25
基于结构化风险指标的零样本威胁检测大语言模型框架
作者:Abdullah Alghamdi, Siamak Layeghy, Marius Portmann 原文链接:https://arxiv.org/pdf/2608.16508v1 关键词:入侵检测、内部威胁检测、高级持续性威胁、大语言模型、零样本学习、检索增强生成、异常检测 摘要 我们提出了 ...
国际 Troy Hunt 2026/08/24
Weekly Update 518: IoT Doorlock Nirvana with UniFi
I genuinely think I've nailed the IoT door lock situation! Well, Ubiquiti has, but I think I've worked out how to put it all into a resident ...
国际 Troy Hunt 2026/08/23
Welcoming the Sri Lankan Government to Have I Been Pwned
Today, we welcome the 48th government onboarded to Have I Been Pwned’s free gov service: Sri Lanka. Sri Lanka CERT now has access to monitor Sr ...
国内 Seebug Paper 2026/08/20
TwinGridShield:面向 LLM 电网智能体动作的后果感知运行时授权
作者:Md Fazley Rafy 原文链接:https://arxiv.org/html/2608.15391v1 摘要 大语言模型(LLM)辅助的能源管理工具可以将自然语言上下文转换为结构化的电网指令,但语法有效性并不等同于物理可接受性。本文提出TwinGridShield——一个与模型无关的运 ...
国内 Seebug Paper 2026/08/19
面向部署的资源高效神经符号框架:用于运营技术网络中可解释的DDoS检测
作者:Mikiyas Alemayehu, Mohamed Chahine Ghanem, Hamza Kheddar, Aohan Li, and J. J. Garcia-Luna-Aceves 原文链接:https://arxiv.org/html/2608.16769v1 摘要 运营技术(O ...
国际 Troy Hunt 2026/08/18
Weekly Update 517: Cyber Ransoms
The current ransomware situation is a bit of a kludge (deep breath): a lot of ransomware (which often doesn't even involve "ware", it's just ...
国际 Krebs on Security 2026/08/14
Who’s Tracking You? Use This New Service to Find Out
It can be daunting to determine who's responsible for showing ads on the websites we visit, or who's harvesting data from the mobile apps we use every ...
国际 Troy Hunt 2026/08/12
Weekly Update 516: Live From Vietnam
A little wind noise, a little connectivity flakiness, and a little lip-sync issues from YouTube, but look at that view! 🤩 Back to business, it ...
国际 Krebs on Security 2026/08/11
Microsoft Plugs Nearly 400 Security Holes
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including on ...
国际 Krebs on Security 2026/08/06
Canadian Man Pleads Guilty in Snowflake Extortions
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and c ...
国际 Troy Hunt 2026/08/03
Welcoming the Nepalese Government to Have I Been Pwned
Today, we welcome the 47th government onboarded to Have I Been Pwned’s free gov service: Nepal. Their National Cyber Security Centre now has ac ...
国际 Krebs on Security 2026/07/30
Read This Before You Buy That TV Streaming Stick
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-t ...
国际 Krebs on Security 2026/07/22
LG to Ban Residential Proxies from Smart TV Apps
The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one's television into an alw ...
国内 腾讯玄武实验室 2026/07/17
Xuanwu Atuin AI 在 CyberGym 上的表现:GLM-5.2 更新结果
我们此前报道过,由 GLM-5.1 驱动的腾讯玄武 Atuin AI 在 CyberGym 上取得了 84.0% 的 pass@1,见文章链接。 现在我们使用 GLM‑5.2 重新评估了 Atuin AI。在相同的评估方法下,Atuin AI 达到了 84.8% 的 pass@1(1,278 / 1 ...
国内 腾讯玄武实验室 2026/02/28
幽灵依赖:Agentic Coding 范式下的新型供应链安全威胁
Author: Tianchu Chen of Tencent Xuanwu Lab 0x00 简介随着 LLM(大语言模型)能力的跃升,AI 软件开发模式正从“人写代码,AI 补全”的 Copilot 模式,向“AI 主导决策,自动执行”的 Agentic Coding 模式演进。在 Agenti ...
国内 腾讯玄武实验室 2026/02/02
AI网络爬虫安全白皮书
Author: Guancheng Li and Zheng Wang of Tencent Xuanwu Lab 本文是腾讯玄武实验室发布的《AI网络爬虫安全白皮书》。我们系统分析了 AI 时代服务端浏览器 / 爬虫在真实业务中的典型使用方式,以及由此带来的新的攻击面与风险。 在这篇白皮书中,我们 ...
国内 腾讯玄武实验室 2026/01/06
ComfyUI-Manager 远程代码执行风险通告
近期腾讯玄武实验室发现可视化 AI 工作流工具 ComfyUI 的官方扩展组件 ComfyUI-Manager 中存在一个高危漏洞(CVE-2025-67303)。利用该漏洞可在无需任何账号的情况下远程入侵安装 ComfyUI 的系统。玄武实验室在发现漏洞后向 ComfyUI 官方进行了报告,目前该 ...