Aggregator
US seizes over 1,000 websites in FIFA World Cup piracy crackdown
【已支持检测&常见问题汇总】Fastjson 1.2.83 远程代码执行漏洞二次更新
ServiceNow уверяет: «мы не взломаны». А как насчёт клиентов, которые сами хостят платформу?
【安全圈】假验证码投放木马,这招正在全球扩散
【安全圈】僵尸网络盯上你的AI服务,偷的不是密码
【安全圈】GPT写代码翻车,误删用户整个家目录
流行野生动物数据库发现 AI 生成的假图
Hackers Exploit ServiceNow AI Platform Flaw to Gain Unauthenticated Remote Code Execution
Threat actors are actively exploiting CVE-2026-6875, a critical pre-authentication remote code execution vulnerability in the ServiceNow AI Platform. This vulnerability allows attackers to escape a restricted server-side script sandbox and execute code without valid credentials. Reports from Defused indicate observed exploitation activity targeting this flaw. Initially, ServiceNow’s advisory stated it was not aware of any […]
The post Hackers Exploit ServiceNow AI Platform Flaw to Gain Unauthenticated Remote Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
JADEPUFFER Deploys ENCFORGE Ransomware Built to Destroy AI Models and Training Data
JADEPUFFER has escalated from automated database extortion to purpose-built AI model destruction, deploying a custom Go ransomware dubbed ENCFORGE to encrypt and effectively wipe high‑value AI and ML artifacts across an entire stack. A missing‑authentication bug in the /api/v1/validate/code endpoint that enables unauthenticated arbitrary Python execution on the host. That initial operation chained reconnaissance, credential […]
The post JADEPUFFER Deploys ENCFORGE Ransomware Built to Destroy AI Models and Training Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.