# 每日安全资讯(2026-09-21) - Private Feed for M09Ic - [ ] [bolucat released 202609202236 at bolucat/Archive](https://github.com/bolucat/Archive/releases/tag/202609202236) - [ ] [spf13 starred bensyverson/goodall](https://github.com/bensyverson/goodall) - [ ] [ZeddYu starred NandhaKishorM/laya](https://github.com/NandhaKishorM/laya) - [ ] [esrrhs starred esrrhs/forgotten-lib](https://github.com/esrrhs/forgotten-lib) - [ ] [huoji120 starred bitdefender/bddisasm](https://github.com/bitdefender/bddisasm) - [ ] [0xbug starred mnemosyne-oss/mnemosyne](https://github.com/mnemosyne-oss/mnemosyne) - [ ] [ZeddYu starred sbarex/SourceCodeSyntaxHighlight](https://github.com/sbarex/SourceCodeSyntaxHighlight) - [ ] [Chuyu-Team released v1.2.3-Beta.4 at Chuyu-Team/YY-Thunks](https://github.com/Chuyu-Team/YY-Thunks/releases/tag/v1.2.3-Beta.4) - [ ] [Mr-xn starred zhu1090093659/dsh-web](https://github.com/zhu1090093659/dsh-web) - [ ] [Rvn0xsy starred veracrypt/VeraCrypt](https://github.com/veracrypt/VeraCrypt) - [ ] [gh0stkey starred githubnext/localjev](https://github.com/githubnext/localjev) - [ ] [ZeddYu starred alibaba/open-code-review](https://github.com/alibaba/open-code-review) - [ ] [esrrhs contributed to esrrhs/spp](https://github.com/esrrhs/spp/pull/47) - SecWiki News - [ ] [SecWiki News 2026-09-20 Review](http://www.sec-wiki.com/?2026-09-20) - 先知安全技术社区 - [ ] [当授权边界住在父订单里:Vendure GHSA-7qvr-c5vf-xxfh 跨渠道 IDOR 的源码级复盘](https://xz.aliyun.com/news/92859) - [ ] [让 AI 安全接管做主机溯源:HostTraceAI 的权限分级与接入实践](https://xz.aliyun.com/news/92857) - Doonsec's feed - [ ] [这个数据集把3百多万篇论文打包成16TB](https://mp.weixin.qq.com/s/XO9ezbafNWgVwsoQmUbVaw) - [ ] [ROP Emporium 前五题笔记:从栈对齐到坏字符绕过](https://mp.weixin.qq.com/s/YHJTAk9TAxsEOvqpcgQYEg) - [ ] [别让“键盘声”盖过“加油声”](https://mp.weixin.qq.com/s/S06msl-m7dso32BnkTUZ_A) - [ ] [最近爆火的jev到底是什么?安全建设能用吗?](https://mp.weixin.qq.com/s/s8mGOzyWAptPBN7T5ZXfBw) - [ ] [Shopee员工:原本125万早10晚7,现在跳槽到字节150万,纠结要不要去?不过新团队氛围应该会好一些。](https://mp.weixin.qq.com/s/FGq9BsPaRw9yVa5gNkDUaA) - [ ] [EDR攻击技术-内存与执行规避](https://mp.weixin.qq.com/s/z5ZmsAlVj3Bi3-IWOWxyPg) - [ ] [如何用AI Agent拿下漏洞赏金大赛冠军](https://mp.weixin.qq.com/s/XpiVT64ftdDO8lnWP83M2w) - [ ] [活该你能挖到洞](https://mp.weixin.qq.com/s/qsk1ZocvHfdmJrXQtTpJpA) - [ ] [致歉当日凌晨还在偷传!智谱ZCode被实锤:你的代码,正在流向新加坡?](https://mp.weixin.qq.com/s/TI0eLUeLHn3z00NPbTt-yQ) - [ ] [明天10:00!矢安科技与您相约《安全有道》网络安全系列访谈——网络安全人才建设的闵行实践](https://mp.weixin.qq.com/s/ne92lWNHvwsuefrxithUfQ) - [ ] [AI赋能地学未来:水文地质与地下水资源可持续利用前沿](https://mp.weixin.qq.com/s/5rL_l3raJ_HaGUH-7FBrIA) - [ ] [没有大厂实习,普通网安项目怎么讲才能扛住面试追问?](https://mp.weixin.qq.com/s/FQ5IlcSGo53_tuU_LqjMgA) - [ ] [“潮玩网安伴出行 交通枢纽连江城” 武汉天河机场 汉口火车站](https://mp.weixin.qq.com/s/J1kmlSMMprzq1jzKFAcEIw) - [ ] [网络安全进基层 | 进学校:走进武汉信息传播职业技术学院 网安宣传全覆盖](https://mp.weixin.qq.com/s/wIDbioZ6rbXl80hVJKh0zA) - [ ] [网络安全进基层 | 进学校:走进硚口区实验小学 趣味问答学网安](https://mp.weixin.qq.com/s/ZFYq1yhKmfbJ5xeSI54bqA) - [ ] [网络安全进基层 | 进学校:走进中南财经政法大学 手机安全伴我行](https://mp.weixin.qq.com/s/qxf07FC9puuim_x4KFAj4w) - [ ] [网络安全进基层 | 进学校:走进吴家山第五中学 AI 时代网安同行](https://mp.weixin.qq.com/s/N-ikkwbW403uWzk8L79xHQ) - [ ] [网络安全进基层 | 进学校:走进东西湖职校 网安宣传进校园](https://mp.weixin.qq.com/s/dDWJj81JX2cRfZgOALqmrw) - [ ] [网络安全进基层 | 进企业:走进楚昌信息投资有限公司 筑牢网络安全防线](https://mp.weixin.qq.com/s/zNnxVbTgv_GaLlr0tuL45A) - [ ] [网络安全进基层 | 进社区:走进跃进社区 面对面讲解暖人心](https://mp.weixin.qq.com/s/ul9szezk3VmZqqRvLd3M-Q) - [ ] [Gemini 连闯三家真实企业——拦下它的,只是它自己的判断](https://mp.weixin.qq.com/s/297tWKf1WsRdlIbepDc4Og) - [ ] [每周文章分享-276](https://mp.weixin.qq.com/s/SPjH4fK4sCGGifzf6POuiA) - [ ] [【已复现】Cisco ISE 认证绕过漏洞(CVE-2026-76460)](https://mp.weixin.qq.com/s/fAylyI9RH-nJNSPd45rEog) - [ ] [国产开源 WorldClaw 一句话让 AI Agent 驱动 Blender 生成可自由探索、可持续编辑的多视角 3D 开放世界](https://mp.weixin.qq.com/s/tdXEBC0Z367zsuDxRvpONg) - [ ] [总书记为持续做大做强先进制造业指明方向](https://mp.weixin.qq.com/s/T1qapHTfg5QNwNH-IMf30w) - [ ] [Hx0鹰眼 1.0.6-0920:MCP 升到 1.0.12,双浏览器共用一份服务](https://mp.weixin.qq.com/s/rOlj4SITrW0Q61RiLkpglg) - [ ] [(9.1分) CVE-2026-93958:D-Link R95 路由器命令注入](https://mp.weixin.qq.com/s/f2qsP8coahnqHnXQ-0z0nw) - [ ] [一个备份文件引发的血案:从匿名共享到 root 的 5 步攻击链](https://mp.weixin.qq.com/s/2rwq4TSn1ONRYyGY31LMRQ) - [ ] [2026年,你的员工还分得清“老板”和“AI换脸”吗?](https://mp.weixin.qq.com/s/Ndx-lYuVI6JrKAdanusHYg) - [ ] [21个园区和112个企业!第一批国家新兴产业发展示范基地创建对象名单公布](https://mp.weixin.qq.com/s/ltUzw2CIW9vB1tmFBmz0wA) - [ ] [claude code done 的问题](https://mp.weixin.qq.com/s/lxiHsV3vqsjyn7qdUkAwVA) - [ ] [创信资讯丨创信华通2026年国家网络安全宣传周圆满收官(附有奖问答中奖名单)](https://mp.weixin.qq.com/s/PewomlMr9CbSNTcEPh3Gqw) - [ ] [专题·原创 | 智能体黑匣子:智能体行为风险分析与治理建议](https://mp.weixin.qq.com/s/GECT2aSDkZAfPP6_WNqPcQ) - [ ] [关注 | 中央网信办通报30款App收集使用个人信息问题](https://mp.weixin.qq.com/s/jSPbVdrLXc2XPtn10A-v8g) - [ ] [网络安全为人民,网络安全靠人民——中国光大银行2026年国家网络安全宣传周活动综述](https://mp.weixin.qq.com/s/yWqgA6-div7tVM5OHJxaAA) - [ ] [市场监管总局:对平台企业将进一步加强数据、算法、流量和规则监管](https://mp.weixin.qq.com/s/PuMl2pPEGRVHsb-sbzITZw) - [ ] [铁路12306:持续识别遏制恶意抢票行为,拒绝出票133.1万张票](https://mp.weixin.qq.com/s/g3S_wv2QZP0A01Qz4jinDw) - [ ] [前沿 | 和衷共济完善人工智能全球治理](https://mp.weixin.qq.com/s/hKHHsDiHqsRYcjyUyR44MA) - [ ] [行业资讯|永信至诚股东奇安创投拟再减持 合计不超过4,528,845股,约占总股本的3%](https://mp.weixin.qq.com/s/wilqOr7lgoHe2KScawzL8g) - [ ] [张志坤:只有统一,台海和平才能得以实现](https://mp.weixin.qq.com/s/AEL2bz7bxwewhr-LDGvLcw) - [ ] [秦安:这几天要格外小心!中国运动员在日本机场干等6小时!要意识到问题的严重性!](https://mp.weixin.qq.com/s/d88zHow4VgC9zBTn_Tjk3A) - [ ] [威胁警报 | 超500亿条记录泄露!国内用户数据遭遇史上罕见规模曝光](https://mp.weixin.qq.com/s/s-YZIlz5br3XUITYq_Xkkg) - [ ] [2026网安周收官|亚信闪耀全国多地,共筑智能时代安全防线](https://mp.weixin.qq.com/s/WuDx1mbI7BOhq6BcUeMh9Q) - [ ] [【伙伴故事】亚信安全携手宁夏联冠科技深耕西北沃土,共筑区域安全防线](https://mp.weixin.qq.com/s/ZKyTil3YYMOmHflI67NSHw) - [ ] [第83篇 AI全栈 · 四种移动端安全模型及其工作原理](https://mp.weixin.qq.com/s/2fbT29yFt8y7gGMWJqQH6Q) - [ ] [网易智企获评第七届CNCERT上海分中心网络安全应急服务支撑单位,以实战能力筑牢城市数安基石](https://mp.weixin.qq.com/s/sIkXhYCnrxyG7bPb50c0ZQ) - [ ] [美国国家科学基金会X-Labs新增三大研究主题,聚焦下一代科学技术突破](https://mp.weixin.qq.com/s/RmPd2DqmTz6MKtEDH_jcdQ) - [ ] [30款App因个人信息收集使用问题被通报](https://mp.weixin.qq.com/s/N2jqa6fkzQKQCxaBuEpo1w) - [ ] [Linux 内核曝四个提权漏洞,攻击者可借此获取 root 权限](https://mp.weixin.qq.com/s/Euc-zl-ioMRCVfYQoFNPhg) - [ ] [pgAdmin 严重认证绕过漏洞:伪造 HTTP 头即可冒充管理员登录](https://mp.weixin.qq.com/s/dYsPpa3YYDhaVa6VuKKt3w) - [ ] [专家解读 | 关于游乐园强制刷脸案的分析解读](https://mp.weixin.qq.com/s/pLX4G9IU6vtlxSqU9CgTSg) - [ ] [Android17系统性重构安全升级把隐私和防盗做成了系统底座](https://mp.weixin.qq.com/s/TYIfvfyChcqEMVurkwtMdw) - [ ] [安全有你·与AI同行|2026年360网络安全周活动回顾](https://mp.weixin.qq.com/s/v4NGAl4ZWjX_d0DxTdOJYg) - [ ] [第一届创宇杯wp](https://mp.weixin.qq.com/s/ByCpDzTvEFXQhD_gLUGoMw) - [ ] [攻防演练期间,你的口令是不是坑队友?](https://mp.weixin.qq.com/s/vKwBPqVl0Ek2ggabIQJhiA) - [ ] [Step 5 Preview Coding 实测:从 API 接入到 Linux 实机 Debug,它能把工程任务做完吗?](https://mp.weixin.qq.com/s/oWcgGXb_0UQqbZEpE2MS5w) - [ ] [启明星辰集团多年蝉联IDS/IPS、UTM、数据安全市场排名第一](https://mp.weixin.qq.com/s/pOlEV-_nUzfOREpM4Yrl0w) - [ ] [齐向东:智能体重构软件,效率要提上来、风险要管得住](https://mp.weixin.qq.com/s/xcixQcUGuTjDspsb7CD_Sg) - [ ] [奇安信集团2026年国家网络安全宣传周活动圆满落幕](https://mp.weixin.qq.com/s/yFuqtiGag99s6d7BAMJzhw) - [ ] [风控检测_人脸注入,镜头也会说谎](https://mp.weixin.qq.com/s/cnvNoWOEpQYMpqFYE-3KXw) - [ ] [安全可靠测评结果公告(2026年第3号)](https://mp.weixin.qq.com/s/kadPfoSmRZ6EOiYuryIIbQ) - [ ] [每周网安资讯(9.14-9.20)| 网络安全宣传周相关活动持续开展,行业聚焦智能时代安全防护能力建设](https://mp.weixin.qq.com/s/MCEORNBck55lHPrFLDmRzA) - [ ] [人机共智·重构攻防|WiFi万能钥匙,助力第十届安全开发者峰会(SDC2026)](https://mp.weixin.qq.com/s/2K1eNT2YKRVDTZSljBqK9g) - [ ] [[Black Hat 2023] Pwn House of minho 解题报告](https://mp.weixin.qq.com/s/7HZj14qHVJqvsozmGRFIZw) - [ ] [大模型测试接连“越狱”,Gemini突破隔离访问真实业务系统](https://mp.weixin.qq.com/s/x35Uvh_HTHpmDCLmjhPkXw) - Recent Commits to cve:main - [ ] [Update Sun Sep 20 12:11:41 UTC 2026](https://github.com/trickest/cve/commit/b383f70c179a1b2e7044c1c3475eaabf2e3d5de5) - Paper - 知道创宇404实验室 - [ ] [大模型中转站研究与测评报告(2026)](https://paper.seebug.org/3521) - MaskRay - [ ] [Linker I/O tricks and their downsides](https://maskray.me/blog/linker-io-tricks-and-their-downsides) - Kitploit — Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal! - [ ] [TCPViewer v1.18.0](https://kitploit.com/en/posts/github-proxymanapp-tcpviewer-v1180) - [ ] [zi v2.2.1](https://kitploit.com/en/posts/github-z-shell-zi-v221) - [ ] [uBlock v1.75.1b0](https://kitploit.com/en/posts/github-gorhill-ublock-1751b0) - [ ] [adnullenum](https://kitploit.com/en/tools/github/crypt0p3g/adnullenum) - [ ] [irdoc-app](https://kitploit.com/en/tools/github/soc-irdoc/irdoc-app) - [ ] [discord-crasher](https://kitploit.com/en/tools/github/aftermathlabs/discord-crasher) - [ ] [ntlmscout](https://kitploit.com/en/tools/github/boydhacks/ntlmscout) - [ ] [cyberbro v0.15.0](https://kitploit.com/en/posts/github-stanfrbd-cyberbro-v0150) - [ ] [boha v0.20.2](https://kitploit.com/en/posts/github-oritwoen-boha-v0202) - [ ] [Decepticon v1.1.44](https://kitploit.com/en/posts/github-purpleailab-decepticon-v1144) - [ ] [kontext-cli v1.8.1](https://kitploit.com/en/posts/github-kontext-security-kontext-cli-v181) - [ ] [ZX-DDoS](https://kitploit.com/en/tools/github/mrgoofydev/zx-ddos) - [ ] [webanalyze v0.4.6](https://kitploit.com/en/posts/github-rverton-webanalyze-v046) - [ ] [miasma v0.4.3](https://kitploit.com/en/posts/github-austin-weeks-miasma-v043) - [ ] [macsurf v2.3](https://kitploit.com/en/posts/github-mplsllc-macsurf-v23) - [ ] [FMD Android v0.17.0](https://kitploit.com/en/posts/gitlab-fmd-foss-fmd-android-v0170) - [ ] [BrowserBox v19.0.3](https://kitploit.com/en/posts/github-browserbox-browserbox-v1903) - [ ] [haruspex v0.10.0](https://kitploit.com/en/posts/github-0xdea-haruspex-v0100) - [ ] [pybatfish v2026.09.17](https://kitploit.com/en/posts/github-batfish-pybatfish-v20260917) - [ ] [XcInspector](https://kitploit.com/en/tools/gitlab/swiftdevcollective/xcodeprojectsecurity) - [ ] [mythic_telegram_profile](https://kitploit.com/en/tools/github/davidcarliez/mythic_telegram_profile) - [ ] [CyberChef v11.5.0](https://kitploit.com/en/posts/github-gchq-cyberchef-v1150) - Malware-Traffic-Analysis.net - Blog Entries - [ ] [2026-09-15: SmartApeSG ClickFix to unidentified RAT to MeshAgent](https://www.malware-traffic-analysis.net/2026/09/15/index.html) - CCC Event Blog - [ ] [Mostly Harmless](https://events.ccc.de/2026/09/21/mhl-2026/) - Reverse Engineering - [ ] [The QVM bytecode format in Project I.G.I. (2000), and holding a Python reimplementation to byte-for-byte output across all 884 scripts the game ships.](https://www.reddit.com/r/ReverseEngineering/comments/1wlpyi3/the_qvm_bytecode_format_in_project_igi_2000_and/) - [ ] [search instructions assembly easy (X86,RISCV,AARCH64,etc)](https://www.reddit.com/r/ReverseEngineering/comments/1wlhgxs/search_instructions_assembly_easy/) - [ ] [Moddable Zelda 2 PC / Web port with Online Multiplayer Co-op and Widescreen Released (Rust + WASM)](https://www.reddit.com/r/ReverseEngineering/comments/1wlcp5z/moddable_zelda_2_pc_web_port_with_online/) - [ ] [IDA Pro MCP with deterministic agent operations and evidence-backed findings](https://www.reddit.com/r/ReverseEngineering/comments/1wlcs3g/ida_pro_mcp_with_deterministic_agent_operations/) - 奇客Solidot–传递最新科技情报 - [ ] [每个 英伟达 GPU 包含了 10-40 个 RISC-V 核心](https://www.solidot.org/story?sid=85436) - [ ] [美国俄勒冈州数据中心用电量接近总用电量的四分之一](https://www.solidot.org/story?sid=85435) - [ ] [尼泊尔寻求从气候赔偿基金获得 2000 万美元的赔偿](https://www.solidot.org/story?sid=85434) - [ ] [微软花费 12 万美元 token 将 Copilot 运行时移植到 Rust 语言](https://www.solidot.org/story?sid=85433) - [ ] [西班牙下令屏蔽 Archive.today 及相关存档网站](https://www.solidot.org/story?sid=85432) - [ ] [Ubuntu 26.10 改用 Linux 7.3 Kernel](https://www.solidot.org/story?sid=85431) - [ ] [对所有亿万富翁征收 3% 的税能拯救数百万人的生命](https://www.solidot.org/story?sid=85430) - [ ] [科学家记录到产下死婴后伤心欲绝的雌鲸](https://www.solidot.org/story?sid=85429) - [ ] [学习新语言可能是老年人保持大脑健康的最佳方法](https://www.solidot.org/story?sid=85428) - [ ] [北美最大动物通道将动物车祸事故减少 91%](https://www.solidot.org/story?sid=85427) - HackerNews - [ ] [ShinyHunters 入侵 Clop 泄露站点,威胁勒索该勒索软件团伙](http://0.0.0.0:8080/post/64708) - [ ] [朝鲜 WaterPlum 黑客感染全球 30,000 台设备](http://0.0.0.0:8080/post/64707) - [ ] [BragJack 攻击通过恶意扩展劫持 AI 浏览器代理](http://0.0.0.0:8080/post/64706) - [ ] [Orkes Conductor 工作流平台存在严重预认证 RCE,已被在野利用](http://0.0.0.0:8080/post/64705) - [ ] [SolarWinds 修补 ARM 硬编码密钥漏洞,该漏洞可导致未认证 RCE](http://0.0.0.0:8080/post/64704) - [ ] [Claude Opus 5 帮助研究人员通过漏洞链接管 OpenAI 员工账户](http://0.0.0.0:8080/post/64703) - 安全内参 - [ ] [谷歌AI首次失控并入侵三家公司](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516632&idx=1&sn=904712252f2e8f9063d4fe0d0865b064) - [ ] [存在信息安全问题,7家大模型运营单位被约谈](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516632&idx=2&sn=9a342ea71fc44ca26abc97131772f75d) - 黑鸟 - [ ] [这个数据集把3百多万篇论文打包成16TB](https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451188881&idx=1&sn=f7ba0ae2afecbb0614ea45385a7a600d) - 代码卫士 - [ ] [迪拜GISEC|奇安信面向全球发布代码安全智能体Qcode Agents](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527182&idx=1&sn=971828aec6e6525182dc8b268871484a) - [ ] [SolarWinds 修复 ARM 硬编码密钥严重漏洞,可导致未认证RCE](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527182&idx=2&sn=9d18e0362a63cc3239c2b30d7fd7fc36) - [ ] [Fortinet:Orkes Conductor 工作流平台上严重的预认证 RCE 已遭利用](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527182&idx=3&sn=354366cc3bff3cacc12308d508f2ab28) - 我的安全视界观 - [ ] [我的读书笔记:从打焦虑老鼠到打boss](https://mp.weixin.qq.com/s?__biz=MzI3Njk2OTIzOQ==&mid=2247488073&idx=1&sn=cf1b22e8d56e85b17c5c95c58ab2ea74) - 奇安信 CERT - [ ] [【已复现】WordPress Click2Shell 核心预认证远程代码执行漏洞(QVD-2026-70986)安全风险通告](https://mp.weixin.qq.com/s?__biz=MzU5NDgxODU1MQ==&mid=2247507652&idx=1&sn=e065cea7a0b67f4c462701e2cfc0c551) - 看雪学苑 - [ ] [人机共智·重构攻防|WiFi万能钥匙,助力第十届安全开发者峰会(SDC2026)](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458620796&idx=1&sn=8576b87125fb41988c3382a219e557d9) - [ ] [[Black Hat 2023] Pwn House of minho 解题报告](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458620796&idx=2&sn=48bad90cbb2c2db3fc17a98662193cc3) - [ ] [大模型测试接连“越狱”,Gemini突破隔离访问真实业务系统](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458620796&idx=3&sn=6b032c5aeded4185ca7dde4b0ada35ed) - 安全分析与研究 - [ ] [EDR攻击技术-内存与执行规避](https://mp.weixin.qq.com/s?__biz=MzA4ODEyODA3MQ==&mid=2247497182&idx=1&sn=a0db59456d6efc58a16920b629a9171e) - 安全学术圈 - [ ] [2026年度互联网体系结构全国重点实验室开放课题](https://mp.weixin.qq.com/s?__biz=MzU5MTM5MTQ2MA==&mid=2247495946&idx=1&sn=b613ca5ff9cfb75abba117bb3caac7c1) - 知道创宇404实验室 - [ ] [大模型中转站研究与测评报告(2026)](https://mp.weixin.qq.com/s?__biz=MzAxNDY2MTQ2OQ==&mid=2650991169&idx=1&sn=af2299e87c3f2592f05f3e7152d6e9d8) - 信息安全国家工程研究中心 - [ ] [湖南省公安厅公布“护网—2026”专项行动8起典型案例](https://mp.weixin.qq.com/s?__biz=MzU5OTQ0NzY3Ng==&mid=2247505166&idx=1&sn=c45098e8a0406ca9d8f60a0e7a87c743) - 威努特安全网络 - [ ] [从虚拟化到超融合,一文看懂企业IT底座如何演进](https://mp.weixin.qq.com/s?__biz=MzAwNTgyODU3NQ==&mid=2651144275&idx=1&sn=230a01e20be4707cfdbc3776befb0bbe) - 安全客 - [ ] [3000 美元、3 个人、72 小时:AI 把 OpenAI 的论坛打穿了](https://mp.weixin.qq.com/s?__biz=MzA5ODA0NDE2MA==&mid=2649790496&idx=1&sn=36c4c96154b3e68efee24e175e0c5c75) - 电子物证 - [ ] [【同一份电子数据,当事人、辩护人、鉴定人看到的是什么?】](https://mp.weixin.qq.com/s?__biz=MzAwNDcwMDgzMA==&mid=2651049159&idx=1&sn=265c4bd4671630b242c65b90c97075ca) - [ ] [【从“恢复文件”到“还原真相”:电子数据司法鉴定的发展历程】](https://mp.weixin.qq.com/s?__biz=MzAwNDcwMDgzMA==&mid=2651049159&idx=2&sn=12a44425c2e5a051a48f19e0b6bb8fd5) - 微步在线 - [ ] [有没有人管管AI Agent?](https://mp.weixin.qq.com/s?__biz=MzI5NjA0NjI5MQ==&mid=2650188217&idx=1&sn=952410dc5270d04be4210d9a28a26806) - [ ] [2026网安周,微步再获三项大奖](https://mp.weixin.qq.com/s?__biz=MzI5NjA0NjI5MQ==&mid=2650188217&idx=2&sn=c21a69b1638d585baf1f3f6d062d0a12) - 中国信息安全 - [ ] [专题·原创 | 智能体黑匣子:智能体行为风险分析与治理建议](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267164&idx=1&sn=982ac9561ff7c3552b3636cabba2da87) - [ ] [关注 | 中央网信办通报30款App收集使用个人信息问题](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267164&idx=2&sn=8625d7195e4401e1cd3afcd453ff0650) - [ ] [网络安全为人民,网络安全靠人民——中国光大银行2026年国家网络安全宣传周活动综述](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267164&idx=3&sn=723dd16b4e8645725c1ee62569a8d418) - [ ] [市场监管总局:对平台企业将进一步加强数据、算法、流量和规则监管](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267164&idx=4&sn=a8b740e2833b4964db7acc009a15f071) - [ ] [铁路12306:持续识别遏制恶意抢票行为,拒绝出票133.1万张票](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267164&idx=5&sn=65d26bd50f3cc723091ba10d614fb3e1) - [ ] [前沿 | 和衷共济完善人工智能全球治理](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267164&idx=6&sn=b95f567ac3790fcc4db28a8fbe3d6f55) - 京东安全应急响应中心 - [ ] [【活动】桂香映月,京东安全邀您共庆中秋佳节](https://mp.weixin.qq.com/s?__biz=MjM5OTk2MTMxOQ==&mid=2727851350&idx=1&sn=81268c6e9fa936beaf85afe748d9a2e0) - 字节跳动安全中心 - [ ] [一文了解|SkillScan 智能体技能安全扫描最佳实践](https://mp.weixin.qq.com/s?__biz=MzUzMzcyMDYzMw==&mid=2247496381&idx=1&sn=012b12d8082f3763f8311722ac1f2e57) - 数世咨询 - [ ] [零信任是未来,但企业仍然需要 VPN](https://mp.weixin.qq.com/s?__biz=MzkxNzA3MTgyNg==&mid=2247543964&idx=1&sn=b301dd8347b13bbfb85d0d6ddf11861f) - [ ] [报告发布 | 网络安全人才实战能力报告—AI赋能篇](https://mp.weixin.qq.com/s?__biz=MzkxNzA3MTgyNg==&mid=2247543964&idx=2&sn=10376af982e4524aefa3a2b6c537e7c9) - 安全牛 - [ ] [别再等加密告警了!LockBit攻击链揭示:真正的阻断窗口在文件变密文之前](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142785&idx=1&sn=e9c605768257387bb1277723fcfd690e) - [ ] [中央网信办通报30款App:涉未公开收集规则、强制索权等问题;国家网信办就未成年人健康安全使用网络规定征求意见 牛览](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142785&idx=2&sn=7e6be159819cbb5aa924425c08a2e9c6) - 奇安信病毒响应中心 - [ ] [每周勒索威胁摘要](https://mp.weixin.qq.com/s?__biz=MzI5Mzg5MDM3NQ==&mid=2247498643&idx=1&sn=4508c928745d55f2c0d06e474dff67cb) - 国家互联网应急中心CNCERT - [ ] [中文互联网基础语料4.0等三类高质量数据集正式发布](https://mp.weixin.qq.com/s?__biz=MzIwNDk0MDgxMw==&mid=2247502220&idx=1&sn=2d3d2c2f9bc189650ea57c3a23ff80fb) - 极客公园 - [ ] [三折叠终于不像奇观了,但它还是 19999 元](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113853&idx=1&sn=ca690c9116740eca386ceaf897880bab) - [ ] [造物 100#07 | 给硬盘养个图书馆员、指纹钥匙给 AI 上锁、AI 对讲机「住」着科幻宇宙](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113845&idx=1&sn=e6320562f572c95082a4f501208e8a69) - [ ] [Meta 个人助手登顶美国 App Store;张雪机车发 5 款新车,最贵 13.8 万;淘宝闪购「制服」获法国设计最高奖,马云深度参与](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113837&idx=1&sn=63f4b2922fc564ee6f28eb94aa795aad) - 慢雾科技 - [ ] [威胁情报|FomoPeek App Store 投毒与 iOS 内核利用分析](https://mp.weixin.qq.com/s?__biz=MzU4ODQ3NTM2OA==&mid=2247506141&idx=1&sn=1c78b33f87575f53b34850e3d6f96651) - 360数字安全 - [ ] [360发布“U+隐私搜索”,护航中国—东盟AI数据安全合作](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586957&idx=1&sn=259e8bed2c5a35f8456f21037ffcefe7) - [ ] [360数字安全集团与星链南天达成京东渠道战略合作](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586957&idx=2&sn=9d10202db0d0467beecdfe79e2c8aec8) - T00ls安全 - [ ] [T00ls十八载风雨同舟 - anticode](https://mp.weixin.qq.com/s?__biz=Mzg3NzYzODU5NQ==&mid=2247485852&idx=1&sn=d634de580e573a7ba35ee86f974291b7) - OnionSec - [ ] [三十七次面试](https://mp.weixin.qq.com/s?__biz=MzUyMTUwMzI3Ng==&mid=2247486021&idx=1&sn=44bb054c4ea72284c70af4860902c68b) - 白泽安全实验室 - [ ] [研究人员利用Claude Opus模型及智能体,72小时攻破OpenAI公司安全防御系统](https://mp.weixin.qq.com/s?__biz=MzI0MTE4ODY3Nw==&mid=2247492997&idx=1&sn=80bcc401fe292eec10072fa64eca35fd) - Over Security - [ ] [Malicious npm packages evade install-script defenses at runtime](https://www.bleepingcomputer.com/news/security/malicious-npm-packages-evade-install-script-defenses-at-runtime/) - [ ] [IDScan confirms hackers stole millions of driver's licenses during data breach](https://this.weekinsecurity.com/idscan-confirms-hackers-stole-millions-of-drivers-licenses-during-data-breach/) - [ ] [Researchers escape OpenAI Codex sandbox to run commands on host](https://www.bleepingcomputer.com/news/security/researchers-escape-openai-codex-sandbox-to-run-commands-on-host/) - [ ] [Le Migliori 10 Librerie Open-Source per React Native Che Abbiamo Starrato Questa Stagione](https://hackerstribe.com/2026/le-migliori-10-librerie-open-source-per-react-native-che-abbiamo-starrato-questa-stagione/) - [ ] [Il fronte cyber del porto](https://guerredirete.substack.com/p/il-fronte-cyber-del-porto) - 情报分析师 - [ ] [【开源实战】如何调查一家美国“间谍餐厅”,一家老餐馆如何连接CIA现职人员与退休官员](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569748&idx=1&sn=db54ae8a22f890e96c966ce4fc9a7105) - [ ] [美中央情报局解密71份总统每日简报与反恐预警档案政治化风险](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569748&idx=2&sn=15ebb0d61050146db268adc86c6a7d74) - Instapaper: Unread - [ ] [Intervista al TG1 sulle conseguenze del data breach Revolut](https://www.dalchecco.it/intervista-tg1-databreach-revolut-pec/) - [ ] [An undercover Google analyst infiltrated a notorious supply-chain hacking gang](https://www.wired.com/story/an-undercover-google-analyst-infiltrated-a-notorious-supply-chain-hacking-gang/) - [ ] [Sequestro dei messaggi contenuti in un telefono è conforme al diritto dell'UE](https://login.wolterskluwer.eu/as/H22IUkMvlW/resume/as/authorization.ping) - The Honeynet Project - [ ] [Conpot 1.0.0 released](https://honeynet.org/2026/09/20/conpot-1.0.0/) - KitPloit - PenTest Tools! - [ ] [TCPViewer v1.18.0](https://kitploit.com/en/posts/github-proxymanapp-tcpviewer-v1180) - [ ] [zi v2.2.1](https://kitploit.com/en/posts/github-z-shell-zi-v221) - [ ] [uBlock v1.75.1b0](https://kitploit.com/en/posts/github-gorhill-ublock-1751b0) - [ ] [adnullenum](https://kitploit.com/en/tools/github/crypt0p3g/adnullenum) - [ ] [irdoc-app](https://kitploit.com/en/tools/github/soc-irdoc/irdoc-app) - [ ] [discord-crasher](https://kitploit.com/en/tools/github/aftermathlabs/discord-crasher) - [ ] [ntlmscout](https://kitploit.com/en/tools/github/boydhacks/ntlmscout) - [ ] [cyberbro v0.15.0](https://kitploit.com/en/posts/github-stanfrbd-cyberbro-v0150) - [ ] [boha v0.20.2](https://kitploit.com/en/posts/github-oritwoen-boha-v0202) - [ ] [Decepticon v1.1.44](https://kitploit.com/en/posts/github-purpleailab-decepticon-v1144) - [ ] [kontext-cli v1.8.1](https://kitploit.com/en/posts/github-kontext-security-kontext-cli-v181) - [ ] [ZX-DDoS](https://kitploit.com/en/tools/github/mrgoofydev/zx-ddos) - [ ] [webanalyze v0.4.6](https://kitploit.com/en/posts/github-rverton-webanalyze-v046) - [ ] [miasma v0.4.3](https://kitploit.com/en/posts/github-austin-weeks-miasma-v043) - [ ] [macsurf v2.3](https://kitploit.com/en/posts/github-mplsllc-macsurf-v23) - [ ] [FMD Android v0.17.0](https://kitploit.com/en/posts/gitlab-fmd-foss-fmd-android-v0170) - [ ] [BrowserBox v19.0.3](https://kitploit.com/en/posts/github-browserbox-browserbox-v1903) - [ ] [haruspex v0.10.0](https://kitploit.com/en/posts/github-0xdea-haruspex-v0100) - [ ] [pybatfish v2026.09.17](https://kitploit.com/en/posts/github-batfish-pybatfish-v20260917) - [ ] [XcInspector](https://kitploit.com/en/tools/gitlab/swiftdevcollective/xcodeprojectsecurity) - [ ] [mythic_telegram_profile](https://kitploit.com/en/tools/github/davidcarliez/mythic_telegram_profile) - [ ] [CyberChef v11.5.0](https://kitploit.com/en/posts/github-gchq-cyberchef-v1150) - Security Affairs - [ ] [U.S. CISA adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog](https://securityaffairs.com/199430/security/u-s-cisa-adds-linux-kernel-flaws-to-its-known-exploited-vulnerabilities-catalog-2.html) - [ ] [AI Hallucinations Nearly Triggered a US-China Military Confrontation](https://securityaffairs.com/199415/ai/ai-hallucination-nearly-triggered-a-us-china-military-confrontation.html) - [ ] [SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 115](https://securityaffairs.com/199409/malware/security-affairs-malware-newsletter-round-115.html) - [ ] [Security Affairs newsletter Round 595 by Pierluigi Paganini – INTERNATIONAL EDITION](https://securityaffairs.com/199400/security/security-affairs-newsletter-round-595-by-pierluigi-paganini-international-edition.html)
每日安全资讯(2026-09-21)