Aggregator
从 开源项目JustSoc 学习态势感知的原理
Надоела слежка? Один яркий свитер — и вы официально невидимы для искусственного интеллекта
Qilin Ransomware Affiliates Abuse CVE-2026-0257 to Gain Unauthorized VPN Access
AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code
Submit #860128: Node.js @umijs/utils 4.6.63 OS Command Injection [Accepted]
North Korea’s IT worker scheme funds Russia’s war effort
DTEX researchers found a series of transactions in a payment wallet showing North Korean IT worker salaries flowing into sanctioned entities that support the regime’s military programs.
The post North Korea’s IT worker scheme funds Russia’s war effort appeared first on CyberScoop.
【专门性证据:构建以可靠性为核心的实质审查机制】
【电子数据质证「两步分析法」】
Everest
You must login to view this content
Everest
You must login to view this content
SecWiki News 2026-07-21 Review
Submit #860088: itsourcecode Hospital Management System V1.0 SQL Injection [Duplicate]
Submit #860032: itsourcecode Hospital Management System V1.0 SQL Injection [Accepted]
Submit #860031: Node.js jsforce 3.10.16 OS Command Injection [Accepted]
Hackers Abuse GitHub Actions to Backdoor AsyncAPI npm Packages With Miasma RAT
A supply chain attack has pushed Miasma malware into trusted AsyncAPI npm packages, putting developer systems and automated build environments at risk. Attackers used a compromised release process to publish malicious code through the project’s legitimate npm namespace. The affected packages had a combined reach of about 2.9 million weekly downloads, although download figures do […]
The post Hackers Abuse GitHub Actions to Backdoor AsyncAPI npm Packages With Miasma RAT appeared first on Cyber Security News.
Submit #860017: QUSETIONS MiniCode-Python v0.1.0 54d47f3 OS Command Injection [Accepted]
DragonForce
You must login to view this content
Fastjson 1.2.83 漏洞分析
1. 核⼼原理 1.1 漏洞⼊⼝:fastjson 的 @type 处理 fastjson 解析 JSON 时 […]
The post Fastjson 1.2.83 漏洞分析 first appeared on print("").