Skip to main content

XMT

短闻

信流 · 上滑连读 · 来源可核

今日 稍后 搜索 RSS

当前信源:Dark Reading · 清除信源筛选

1 / 24
Aggregate Dark Reading 网络安全 13″

Chinese Actor Weaponizes Deepseek AI Agent to Attack Security Firm

Researchers intercepted and investigated the model, which was attempting to compromise more than 1,200 hosts for proxyjacking to launch further attacks.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

Anthropic: Claude Attacks Result of Security Gaps, Not Model Issues

Last month's incidents in which the AI model breached real-world systems derived from over-permissioning, especially with Internet access.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 11″

New Tool Traces AI Videos Back to Their Source

Researchers dug into the root of the problem with the goal of promoting industry collaboration on improved protective measures.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

Attackers Exploit N-able Patch Bypass Flaw on RMM Servers

Over the weekend, the vendor discovered another vector of authentication bypass CVE-2026-18577 that gives attackers administrator access.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 11″

Device Code Phishing Up 1,500% in 2026; Vishing Doubles

Newer social engineering techniques help attackers ignore entrenched security controls and limit the evidence they leave behind.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 13″

AI Notetaker Lets Hackers Spy on Government, Corporate Video Calls

A Google Firebase misconfiguration lets users of tl;dv, an AI meeting tool, query any other users' meeting information and potentially join calls.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 13″

Smoke#Screen RMM Takeover Gambit Exposes Threat Actor Playbook

The attacks use diverse social engineering lures and rotating payloads to deliver ScreenConnect for persistent remote access to compromised networks.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 15″

Flaws in Google APK for Python Unlock Agent-to-Agent Attack

Google has fixed the issues, which exploited a trust boundary between two AI agents with different privilege levels to trigger automation that could compromise the supply chain.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 14″

Angola's Largest Telco Breached Hours Before IPO

Unitel, Angola's dominant mobile operator, continues to recover from a cyberattack that caused outages the day of the government-owned telco's public offering.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 13″

15 TP-Link Bugs Expose Risks in Zero-Trust Provisioning

Researchers are calling attention to the risks inherent in automated network device provisioning, using a world-leading device manufacturer as a case study.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

CSS: The Hidden Threat Lurking in Your Inbox

CSS was once just about design. Now researchers warn it's powerful enough to exfiltrate data from webmail — and some vendors aren't prepared.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 13″

AI Browsers Vulnerable to 'PleaseFix' Zero-Click Agent Hijacking

Attackers can take control of agents through malicious instructions hidden in content supplied to AI browsers, and there's no simple fix for the threat.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

No Perfect Fix for AI Browser Prompt Injection Flaws

AI browsers from top vendors remain vulnerable to prompt injection attacks despite multiple security guardrails, according to new research.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 17″

AI Sends Global Crime Syndicates Into Fraud Nirvana

Organized crime is convincingly scamming at scale, making billions thanks to AI-enabled voice cloning, deepfake real-time video overlays, LLM-driven persona management, and automated translation.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 15″

From Bobmojis to Bobbleheads: How the Democratic Party Built a Security-First Culture

Two former chief security officers of the Democratic National Committee explain that a strong security-first mindset requires executive support — and a dose of absurdity.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 14″

Researcher Claims Control of ChatGPT Secure Sandbox

A researcher demonstrated a proof-of-concept attack chain that provided C2-style influence over ChatGPT's isolated sandbox during a session at Black Hat USA 2026.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

Déjà Vu? Meta's AI Escapes Testing Lab in Hacking Joyride

In the span of three weeks, OpenAI, Anthropic, and Meta have all disclosed AI agent sandbox escape events affecting real organizations.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 13″

The Coordination Gap: How Attackers Are Outpacing Law Enforcement

The fight against cybercrime continues because threat actors have adapted their strategies to avoid deterrents, but law enforcement still operates in silos.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 16″

Sherlock Holmes Was the 'OG' Social Engineer

The crime solver wore disguises, spied on targets, and built intelligence networks long before modern-day tactics emerged. He has lessons for today's ethical- and unethical hackers.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 12″

AI-Generated Patches Fail Half the Time

A study of more than 6,000 patches found that even working patches can introduce new bugs, break something else, or are open to bypass.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 13″

Outdated Cybercrime Laws Put Security Researchers at Risk

A public policy expert mapped global cybercrime laws to develop a five-point framework for protecting ethical hackers and good-faith security research.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 11″

Coruna, DarkSword iOS Exploits Proliferate Globally

Sophisticated iPhone exploit chains previously limited to nation-states are spreading far and wide to organized cybercrime groups.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 10″

The Patch Gap: Why Defenders Need to Think in Chains, Not Checklists

It's time to turn from CVSS-backed patching to choke-point patching focused on breaking chains to critical assets.

RSS 官方收录 · 可信分层展示

详情 原文 分享图
Aggregate Dark Reading 网络安全 14″

Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius

The maximum-severity vulnerability, which still has no CVE, allows malicious, remote administrator access to the business-analytics platform and its downstream users.

RSS 官方收录 · 可信分层展示

详情 原文 分享图