# 每日安全资讯(2026-09-24) - SecWiki News - [ ] [SecWiki News 2026-09-23 Review](http://www.sec-wiki.com/?2026-09-23) - Private Feed for M09Ic - [ ] [bolucat released 202609232321 at bolucat/Archive](https://github.com/bolucat/Archive/releases/tag/202609232321) - [ ] [strands-agents released harness-cli/v0.1.2 at strands-agents/harness-sdk](https://github.com/strands-agents/harness-sdk/releases/tag/harness-cli/v0.1.2) - [ ] [anthropics released v2.1.281 at anthropics/claude-code](https://github.com/anthropics/claude-code/releases/tag/v2.1.281) - [ ] [mgeeky starred MiaAI-Lab/GLM-5.3-Flash-EXL3-2x-DGX-Sparks](https://github.com/MiaAI-Lab/GLM-5.3-Flash-EXL3-2x-DGX-Sparks) - [ ] [esrrhs starred esrrhs/obscure](https://github.com/esrrhs/obscure) - [ ] [Rvn0xsy starred ItsssssJack/SlopMonster](https://github.com/ItsssssJack/SlopMonster) - [ ] [gh0stkey starred mikeyobrien/ralph-orchestrator](https://github.com/mikeyobrien/ralph-orchestrator) - [ ] [niudaii starred ShouZhengAI/CS146S_CN](https://github.com/ShouZhengAI/CS146S_CN) - [ ] [OpenAEV-Platform released 3.260923.0 at OpenAEV-Platform/openaev](https://github.com/OpenAEV-Platform/openaev/releases/tag/3.260923.0) - [ ] [zema1 starred zyycn/codex-proxy-rs](https://github.com/zyycn/codex-proxy-rs) - [ ] [pydantic released v2.48.0 at pydantic/pydantic-ai](https://github.com/pydantic/pydantic-ai/releases/tag/v2.48.0) - [ ] [WAY29 starred superagents-lab/jev-search](https://github.com/superagents-lab/jev-search) - Doonsec's feed - [ ] [大模型辅助补丁分析工作流:拆解路由器高危漏洞链](https://mp.weixin.qq.com/s/05KPBW6ey5iLPbJtd6iMKA) - [ ] [FBI招聘官网被黑客挂旗:“你全家信息在我手上”](https://mp.weixin.qq.com/s/GmWNf2AYYZn3d86IdGmMXw) - [ ] [中秋,国庆,我们一起爽学10天!](https://mp.weixin.qq.com/s/Runh00hB9l64NYfPZkllhw) - [ ] [重磅预告|方滨兴院士将在2026年网络空间安全学术会议作主旨报告](https://mp.weixin.qq.com/s/vBNie7CQmxMaEpeSWd_bdw) - [ ] [10月17日专题会议:网络威胁机理及数据集构建学术会议](https://mp.weixin.qq.com/s/FXJ_oIljxpNpAk1q1qagxw) - [ ] [10月17日专题会议:新技术应用安全前沿学术会议](https://mp.weixin.qq.com/s/63PSu2cspOwEf-tqpPXdxg) - [ ] [今天,也是一个特殊的日子。](https://mp.weixin.qq.com/s/qHpsv68p0g7hdNSAPscfvA) - [ ] [最新Deepseek dsh红队模式安装与验证](https://mp.weixin.qq.com/s/ykj51mcgAVue-zwZlrnznA) - [ ] [对抗鲁棒性的形式化保证](https://mp.weixin.qq.com/s/S12RHWnrmclhqKEDnaBofw) - [ ] [新程始发,与你同行|网络信息安全协会纳新圆满落幕](https://mp.weixin.qq.com/s/pX6QZ-WBI8DiMKYAWRXsBw) - [ ] [逆向 skills 路由包 reverse-skill](https://mp.weixin.qq.com/s/toAe-NOapGGw2s6nasywUw) - [ ] [「AI Agent安全治理实测」微软AGT:OWASP智能体十大风险映射,0.07毫秒拦下危险工具调用](https://mp.weixin.qq.com/s/snLSo212Ty12IA0fd2uxcA) - [ ] [最新版火绒下的LNK免杀验证](https://mp.weixin.qq.com/s/KyloFKJlRmfqSkf7ZzZddQ) - [ ] [第十六届网络安全漏洞分析与风险评估大会-人工智能漏洞研究与治理分论坛成功举办](https://mp.weixin.qq.com/s/YU3LC7jV3Q_H_Wl2Z6X_ug) - [ ] [双证加身!新华三再获CNVD与CNNVD认可](https://mp.weixin.qq.com/s/s25OGKk0AvHmKEOf7aSTXw) - [ ] [155个Linux常用命令,赶紧码住!](https://mp.weixin.qq.com/s/6XiqmB2zXiU0xh102eX-YQ) - [ ] [h0day.com 平台全新域名强势上线!](https://mp.weixin.qq.com/s/CSPBg5xstAm2L2yRTlGMAA) - [ ] [全球安全动态日报|20260923|早](https://mp.weixin.qq.com/s/PUr8YhhYBZvGglLfVtuxXQ) - [ ] [(9.3分) CVE-2026-75684:Adobe Connect存储型XSS](https://mp.weixin.qq.com/s/5nDGbOOWFNwC1WgLbb6f2g) - [ ] [AI演唱歌曲:《屏幕背后的光》](https://mp.weixin.qq.com/s/rd8KyzDC7whb0uvuoKeiXg) - [ ] [喜报!赛博研究院获评上海市2026“工赋砺网”专项行动优秀支撑单位](https://mp.weixin.qq.com/s/43TE1LoKyC57TWoRlchUQg) - [ ] [注意!82款移动应用违法违规收集使用个人信息](https://mp.weixin.qq.com/s/vRH-7uIC4bH4wd3FlRhXbg) - [ ] [极速决策模型 JEV 搞定工业物联网异常告警、故障打分,优化智能家居多设备场景联动](https://mp.weixin.qq.com/s/Orr5t9Uwjtrr_Ef6kKSHYA) - [ ] [iPhone 18 Pro vs 三星 S26 Ultra:实测跑分,谁强多少](https://mp.weixin.qq.com/s/RqMhHhRrYq8KoRbImo-ArA) - [ ] [行业资讯|网络安全项目中标情况汇总(9月23日)](https://mp.weixin.qq.com/s/DTUpLSW31QPUOruw86LVwA) - [ ] [数智化时代的认知战:技术如何从“争夺信息”走向“重塑认知”](https://mp.weixin.qq.com/s/P8Bzrbq9_aWfhNHGwjAagw) - [ ] [从 Subst 到 VHDX,一种设计上绕过杀软的代码执行、过启动项,权限维持方式](https://mp.weixin.qq.com/s/pfG-KR1GBfOln0XJK6HKSw) - [ ] [面向商用密码应用安全性评估的数据存储硬盘加密技术实践](https://mp.weixin.qq.com/s/OastofMU0oWDObxn2x72Ug) - [ ] [专家解读 | 江明涛:坚持智能化、绿色化、融合化方向xa0纵深推进数字化绿色化协同转型发展](https://mp.weixin.qq.com/s/pALdcetRuxAmZWqeIBpBvQ) - [ ] [国际 | 利用AI技术对侵略历史进行“算法剪裁” 日本“数字军国主义”正在悄然抬头](https://mp.weixin.qq.com/s/Kyx4ZVWGTm7hfEr_5kxI9Q) - [ ] [评论 | 政务类App不容“模拟造假”](https://mp.weixin.qq.com/s/BoP76GAb76WIdUB8ndZgOw) - [ ] [提示 | 民政部:防范非法养老APP诈骗](https://mp.weixin.qq.com/s/M0uvkTd0tKYB9pnbZwAUWA) - [ ] [2026 CSA大中华区大会 | 绿盟科技方案入选《AI+安全创新实践案例集》“标杆案例”,分享智能体安全防护实践](https://mp.weixin.qq.com/s/gPyJP2dVCrw_tFaxT9QJFQ) - [ ] [绿盟科技出席北京工业大学网络安全前沿及信息产业发展学术论坛系列活动,携手共育网安人才](https://mp.weixin.qq.com/s/f-Y209lxPba9FzmwL1nzDQ) - [ ] [绿盟科技协办|2026年\"经纬杯\"交通运输网络安全大赛报名火热进行中](https://mp.weixin.qq.com/s/ufTeKZqAgiUXgBVuM683tw) - [ ] [斩获CSA标杆案例,亚信AI智能体身份可信治理方案树立行业典范](https://mp.weixin.qq.com/s/brpI7I-pcBCOhDfMttf8NA) - [ ] [DevSecOps流水线中的自动化安全守门员:OWASP ZAP深度集成实战](https://mp.weixin.qq.com/s/IDWUNRT5b5uQhDdbuDX4-g) - [ ] [CTF 入门:别一上来就打 Pwn——一条能坚持走完的学习路线](https://mp.weixin.qq.com/s/6fOz84ERXUU9cs-BhamkRQ) - [ ] [走进 TypeSafe AI 与 Jev:系统一模型的技术原理、创新突破与过度宣发透视](https://mp.weixin.qq.com/s/1shZMATjyHdzyu8ELFk1Rg) - [ ] [190万条俄罗斯高端人才数据疑遭曝光?](https://mp.weixin.qq.com/s/tk-ZHjh7nKrJ7npmtS1TYA) - [ ] [继ZCode之后,Trae也被质疑偷代码,一起拆包逆向验证官方回应](https://mp.weixin.qq.com/s/vI6xvY6FLfGjTJrAKiIS_Q) - [ ] [武汉市网络安全协会关于常态化开展网络安全“双安认定”团体标准贯标工作的通知](https://mp.weixin.qq.com/s/zK5TMbb6fMOthSq9uoin5Q) - [ ] [ISC2速成课程:AI Threat-to-Requirement Mapping](https://mp.weixin.qq.com/s/nOuRSpfnZ2EyL3D4rHs54w) - [ ] [拍桌子才出 root:FiberGateway GR241AG 从 UART 故障注入打到 MEO 公网 WiFi RCE](https://mp.weixin.qq.com/s/HS6sucDbKZm9zE_W1eaIhQ) - [ ] [TWIST 入选 ACM CCS 2026:面向云上大模型服务的隐私保护新方案](https://mp.weixin.qq.com/s/HdKnOTTy-wMGJkWofXFRzg) - [ ] [OpenViking × LLM-Wiki:让团队文档不再“各说各话”](https://mp.weixin.qq.com/s/rL5SQf7VQ9BV5wG9kaHGng) - [ ] [滴滴云平台事业群邀你并肩同行!](https://mp.weixin.qq.com/s/9NY9e8ZHSG1TXSjfQwZZGA) - [ ] [同一套坏习惯:QNAP CGI 预认证 RCE 到容器逃逸(CVE-2026-34007/34008)](https://mp.weixin.qq.com/s/3AFwMx2x46GkHV9uckaM4A) - [ ] [喜报|云弈科技斩获“创客北京2026”通州赛区优秀项目奖](https://mp.weixin.qq.com/s/TT4ko0snMEW-AXYIz7Im4w) - [ ] [金融标准一图读懂《金融数据安全 数据安全能力体系》](https://mp.weixin.qq.com/s/K7p9Nm9Vqpm2J1Th3VZJmw) - [ ] [NDSSxa02026网络安全顶会 | 网页内容如何防大模型偷走:内容发布端的主动防窃取新思路](https://mp.weixin.qq.com/s/lp9FxADh8XyuwtYC_0Qhyg) - [ ] [ShinyHunters宣称攻破FBI](https://mp.weixin.qq.com/s/bAXg7Pcau4vxGidqkvMzrQ) - [ ] [筑牢校园网络安全xa0“防火墙”|我司专家开展校园网络安全专题培训](https://mp.weixin.qq.com/s/bssJRIHWNVvaYdVR8vJATA) - [ ] [青藤云安全入选CNNVD“人工智能安全漏洞治理联盟”成员单位](https://mp.weixin.qq.com/s/S9jzh-2tEoH2gtGk9lCPSQ) - [ ] [F5 BIG-IP遭0Day攻击,OAuth服务器无需认证即可被远程利用](https://mp.weixin.qq.com/s/zwBuzMttM7xYjpz5iCtwSQ) - [ ] [东南大学自动化学院团队在控制领域顶刊IEEE TAC发表无线网络化状态估计最新研究成果](https://mp.weixin.qq.com/s/rFdqtpFC0bBCD5FOtzY1cg) - [ ] [Cisco Talos披露新型AI恶意软件,四大模型投票决定攻击行动](https://mp.weixin.qq.com/s/lV_XXsmwMeadk7Xw6GBsKw) - [ ] [微软SharePoint曝出高危RCE漏洞,低权限账号即可远程拿下服务器](https://mp.weixin.qq.com/s/VmErImAG1RuOcK-Rg5hLcw) - [ ] [Linux内核曝KVM高危漏洞,ARM64客户机可直接读写主机内存](https://mp.weixin.qq.com/s/NCFX8oJd47HnOTKvCgdIRQ) - [ ] [详细介绍Jev模型](https://mp.weixin.qq.com/s/MFMBuIzEfK-t0yGTff2JZA) - [ ] [人机共智·重构攻防|华为,助力第十届安全开发者峰会(SDC2026)](https://mp.weixin.qq.com/s/Mo_mfWuovA01-OGamd1DvQ) - [ ] [HITCON2017 babyfirst-revenge 看雪 CTF 复现](https://mp.weixin.qq.com/s/cy0ACr4tcYM0m1dpgFmRBA) - [ ] [F5 BIG-IP APM OAuth授权服务器存在零日漏洞,可无登录远程代码执行](https://mp.weixin.qq.com/s/TjO5htR9S8eKogVmV_wLQg) - [ ] [主机厂公钥如何安全下发?X.509证书在汽车网络安全中的应用](https://mp.weixin.qq.com/s/bTQOurADaHDlVGBnFZje0g) - [ ] [演讲嘉宾 | 岚图汽车车载边缘网络负责人确认出席吉利汽车车载边缘网络通信大会](https://mp.weixin.qq.com/s/KPgbZdX5dILJ2cyKfKujog) - [ ] [“驰芯半导体”完成超2亿元融资](https://mp.weixin.qq.com/s/rm9UU0OuQHjC_cuJm3OYYg) - [ ] [传:中国调查博通!](https://mp.weixin.qq.com/s/47k9Qq4WVw0P6_fgxBivMA) - [ ] [Google Earth 实景三维数据下载实战](https://mp.weixin.qq.com/s/vzRcyt0AKGm2ZaDJisdIuQ) - [ ] [基于docker的分布式afrog漏洞扫描](https://mp.weixin.qq.com/s/urTPXg_QLn7WRK3gLNlKcA) - [ ] [【复现】WordPress Comment2Shell零点击存储型XSS可导致RCE漏洞(CVE-2026-93485)](https://mp.weixin.qq.com/s/8qavYfv5gVIMRBi5uXZSeQ) - [ ] [征集令 | 第二批 “人工智能+制造” 场景应用水平评价(AIQ)企业开始申报!](https://mp.weixin.qq.com/s/-I_f857Fw2vPqVcbxo_mEA) - [ ] [划重点!国家网信办最新数据出境政策问答,这些合规口径要掌握](https://mp.weixin.qq.com/s/ixDbcGKYoBzI1cNs7N78Fw) - [ ] [FBI疑似发生重大数据泄露,所有警员数据外泄](https://mp.weixin.qq.com/s/zcSO93Bg8aW6wRSB3HdXMQ) - [ ] [又一家银行因数据安全问题被“双罚”!信息科技部人员负有责任](https://mp.weixin.qq.com/s/8-mExXLZ8Ix1kNhdDvnWyw) - [ ] [海康安防后渗透利用分析](https://mp.weixin.qq.com/s/lYqLl0pRO8v-a5NVhGtjoQ) - [ ] [奇安信参建,粤港澳大湾区算力枢纽韶关数据中心集群一体化安全保障运营平台正式发布](https://mp.weixin.qq.com/s/rDlUBypTtQEGgZVT4eVhtg) - [ ] [齐向东到访郑州大学](https://mp.weixin.qq.com/s/HdX5LcEdL3ivtsKL5uU9SQ) - [ ] [AI编程工具泄露数据引热议,奇安信:效率与安全缺一不可](https://mp.weixin.qq.com/s/27YWv8dQEQ2_mKeR5CkG9g) - [ ] [2026年“美亚杯”虚拟货币专题](https://mp.weixin.qq.com/s/isucamu3xdCRKEgp-_bqKw) - [ ] [张照龙:AI时代呼唤体系化安全能力重构,观安亮相上海网安产业创新推进会](https://mp.weixin.qq.com/s/Et1Wa1sSKdEFuoyUWsRESQ) - [ ] [秋分|昼夜平分 万物收成](https://mp.weixin.qq.com/s/cAtu43IhYAfKqrdGLm2l3w) - [ ] [《国家电子政务外网电子认证及信任服务体系能力提升三年行动计划》首场省级宣贯暨工作部署会在京召开](https://mp.weixin.qq.com/s/zDy0lUzmbY-041jODxXZGA) - [ ] [《网络安全技术 人工智能应用安全 政务》国家标准启动会顺利召开](https://mp.weixin.qq.com/s/YIB7sLFlfOii6kyiTHRYQQ) - [ ] [矩阵爆破逆向:条件断点的妙用](https://mp.weixin.qq.com/s/wCzyqal2CwFjdxXTAKzQ9Q) - [ ] [【免费领】杀手级渗透工具 BurpSuite 实战技术教程](https://mp.weixin.qq.com/s/dYfNDr9H8og_WMfdVpy57Q) - [ ] [从《人工智能安全治理框架3.0》看 AgentGuard:智能体安全如何实践](https://mp.weixin.qq.com/s/Up22GZNnMWhDg79k_uRDyA) - [ ] [财政部发布《关于加快推进会计数智化工作的指导意见》(征求意见稿)](https://mp.weixin.qq.com/s/8QT8yZm8b9sltjQdSMwbnQ) - [ ] [郑州市发改委印发《郑州市公共数据资源授权运营实施方案》](https://mp.weixin.qq.com/s/qtRkvAac0x_iUxH_JAs-ww) - [ ] [错误码排查从 3~8 小时到分钟级,Agent怎么做到的?](https://mp.weixin.qq.com/s/0QSAGGgffJoaG3iO6wItng) - [ ] [智能体能加“朋友圈”啦!](https://mp.weixin.qq.com/s/bpdubzNB3xYHkIM4zgw7qg) - [ ] [企业动态 | 恒安嘉新出席2026年北京互联网大会](https://mp.weixin.qq.com/s/edSLV9jXKCoT1vYiApnnvA) - [ ] [恒安嘉新与海光信息达成战略合作 聚力打造云-网-边-端多场景智能体解决方案](https://mp.weixin.qq.com/s/-GeJ2mNRQ7w6uqNCqa_8JQ) - [ ] [2026国家网络安全宣传周 | 恒安嘉新亮相网安周多省联动 斩获多项荣誉](https://mp.weixin.qq.com/s/6s9qkqHz26dGQvwpccoD4Q) - [ ] [恒安嘉新亮相 2026 华为全联接大会,斩获多项鲲鹏生态重磅奖项](https://mp.weixin.qq.com/s/VyHfsTybFu4pNglLL5wuSw) - [ ] [企业动态-恒安嘉新出席2026中国联通合作伙伴大会xa0袋鼠智能体硬件产品首发展出](https://mp.weixin.qq.com/s/u3Xci4pbYvmiaW2gVkgPAA) - [ ] [企业的动态 | 恒安嘉新亮相南京2026国际低空产业大会](https://mp.weixin.qq.com/s/eXnK-ZvwJqaBTCPpSG6RMQ) - [ ] [关于我对socket的理解,不知道正确与否?](https://mp.weixin.qq.com/s/eUDl5d00XtG16DaU6zKPyg) - [ ] [从“能用”到“敢用”,如何补齐 Agent 的安全盲区?长亭在云栖大会给出答案](https://mp.weixin.qq.com/s/vIlPXKbrz0dV41iOuW9AEg) - [ ] [更名蝶变:五年深耕 小西牛正式迈入网安合规运营新周期](https://mp.weixin.qq.com/s/MBTRroPR-t0HgDgMZw34sw) - [ ] [数智拓远 善治久安 | 第十六届网络安全漏洞分析与风险评估大会在重庆举办](https://mp.weixin.qq.com/s/SCqLj0rWgjGvclRa5Gh25Q) - [ ] [每次重装系统都要重装软件?手把手教你打造自己的“自用预装全家桶”Windows镜像](https://mp.weixin.qq.com/s/cQZLTbGq01Zc5i5xJCfibw) - [ ] [梁文锋不去就对了!占豪:联合国这场AI会,就是美国设的是鸿门宴](https://mp.weixin.qq.com/s/BUZvJcFMt5Vj2ZuhLMn9fg) - [ ] [7项安全认证“最高级”!360再添国家级AI安全一级资质](https://mp.weixin.qq.com/s/3wPY5XMYzHzkC9_B_plvDw) - [ ] [上汽集团网络安全应急响应团队走进360上海城市安全大脑](https://mp.weixin.qq.com/s/AXhTVJaTfhMZ7Mpe8rLzlQ) - [ ] [2026北京互联网大会 | 启明星辰周涛:智能体安全风险与治理实践](https://mp.weixin.qq.com/s/09ici4yLzJ6hU771qtNU9A) - [ ] [AI被一条摩斯密码骗走20万美金的那天,另一个AI正在自己挖0day](https://mp.weixin.qq.com/s/yZ5RYNW7LX19ijVzG8cKpw) - [ ] [某资产管理系统打点过程中的免杀经历](https://mp.weixin.qq.com/s/Sk2SCBaETjWrNaR9eV6Tvw) - [ ] [李乐成任安徽省委书记](https://mp.weixin.qq.com/s/N0sqQmhTY9jKCMumkckvXw) - [ ] [政策赋能词元经济 北京市加快词元经济发展的行动方案政策宣贯会成功举办](https://mp.weixin.qq.com/s/dBK-R6qHMcdPP2VyeL9FeA) - [ ] [国家标准《工业机器人软件供应链安全管理要求》参编单位征集](https://mp.weixin.qq.com/s/5lHHwjGx9ovZX3YPCxUuvg) - [ ] [一款整合型漏洞扫描工具](https://mp.weixin.qq.com/s/4349Ypkl0r5B-uAHSTkgxg) - [ ] [载誉前行,不负信赖|OnePanda团队全力护航2026银川市“网信杯”大赛圆满收官](https://mp.weixin.qq.com/s/7av8CfSc5yir_OeqebWopw) - [ ] [渗透测试基础总结,建议收藏!(附PDF)](https://mp.weixin.qq.com/s/v-ZHGxezoiOwNrDrsIYTOg) - [ ] [再战MuMu模拟器:改完能启动,为什么几分钟又崩了?](https://mp.weixin.qq.com/s/crLFEWfcZq6sYgUmYsaFNg) - [ ] [ZCode 静默打包代码库之后: AI 编程 Agent 的安全边界该重画了](https://mp.weixin.qq.com/s/otVjloPma21Hj6HVx-B-yg) - [ ] [PetoBin把EXE转成bin工具思路](https://mp.weixin.qq.com/s/DLrrq77xSglEKf-YZWNo_g) - [ ] [某大厂员工爆料:以后研发人员试用期转正、年度KPI、晋升,全都要参考Token消耗数据,用得少的人,不仅晋升无望,甚至可能被替代。](https://mp.weixin.qq.com/s/nQ9PnrrK-GAUwOxIEoRKKg) - [ ] [一个漏洞5000?入行网安这些年,我挖洞的真实感受......](https://mp.weixin.qq.com/s/9qAzEsy38ePrZbnapxXLMw) - [ ] [专家解读 | 筑牢政务系统第三方运维中的数据安全防线](https://mp.weixin.qq.com/s/uni0F9SEMcN-Q6MTdQr30w) - [ ] [【圆满收官】PolarEDF2026秋季个人挑战赛获奖名单已公布!快来看看吧!](https://mp.weixin.qq.com/s/h4oGa9HZuR5XA2nWhX65Ig) - [ ] [欧盟启动《欧洲机构投资者公约》,促进对欧洲科技初创企业的投资](https://mp.weixin.qq.com/s/9mg7Xl7RBgYrLnnxd0w33A) - [ ] [美方如何从中国空间规划推演实时杀伤网](https://mp.weixin.qq.com/s/EJKq7k_h6YF_v2DH4E4JUw) - [ ] [天融信获评首批国家人工智能安全漏洞库优秀技术支撑单位](https://mp.weixin.qq.com/s/mskfbXSg2TLw8dIi82pK1g) - [ ] [天融信与北京交通大学网络空间安全学院、国家保密学院联合党日活动成功举行](https://mp.weixin.qq.com/s/ukTwEAhzNQiLnDks3Jxt9w) - [ ] [【喜报】1篇研究成果被国际顶级会议NDSS 2027录用](https://mp.weixin.qq.com/s/_bHQGBqL5ZVtrOijZVAHcg) - [ ] [银基科技与上海海思签署战略合作,全栈数字钥匙方案再添「芯」底座](https://mp.weixin.qq.com/s/TafCRkhRs1zUmVox9s6DOQ) - [ ] [【原创情报】致远某门户样式引擎 Groovy远程代码执行](https://mp.weixin.qq.com/s/2SVd_ECtRl9y2arWJej00A) - [ ] [首批获证!安恒信息获国家信息安全测评“人工智能安全类一级”资质](https://mp.weixin.qq.com/s/1P4rFRBXaWDar60sMWOWMQ) - [ ] [安全简讯(2026.09.23)](https://mp.weixin.qq.com/s/wnJGclv6i79adG21MtBy6Q) - [ ] [【漏洞通告】Microsoft SharePoint远程代码执行漏洞(CVE-2026-65660)](https://mp.weixin.qq.com/s/K01KffioMR0FOdsOLbtK2Q) - [ ] [深化交流,共筑安全|中国舰船研究院七环科技莅临四叶草安全指导交流](https://mp.weixin.qq.com/s/RAdunuDqxd-TlropNDxBWg) - [ ] [不调 API,我用本地 laya 模型给 484 篇笔记做了自动分类](https://mp.weixin.qq.com/s/OJaJ4gXh7FMQR-_AkQRWsQ) - [ ] [缺口140万、月薪30K还经验不限,网络安全是普通人的机会吗?](https://mp.weixin.qq.com/s/yWotPTUDKSHtpx-MrVuWMQ) - [ ] [中国铁塔股份有限公司吉林省分公司2026年网络安全支撑服务采购项目比选公告](https://mp.weixin.qq.com/s/TEhMPvdz9TTuNYQbNF70sA) - [ ] [2026年福建省大学生数据安全大赛9月30日开始报名!](https://mp.weixin.qq.com/s/-6BoqXok2y0B8CsmJxhakA) - [ ] [2026新域新质创新大赛决赛入围项目公示](https://mp.weixin.qq.com/s/DzY2UzFEwmMpfsQjhCnOKw) - [ ] [第六届“长城杯”网络安全大赛圆满收官](https://mp.weixin.qq.com/s/sE7pkjvWapovCu7t3HySnA) - [ ] [烽台科技赛场 | 2026北京市职工职业技能大赛密码技术应用员竞赛暨 “网安联杯” 密码技术应用员职业技能竞赛初赛赛场之一成功举办](https://mp.weixin.qq.com/s/SkEX04Y2aD_xSqbYvtcQ1Q) - [ ] [赛查查喊你来投票! | 投出你最喜欢的安全赛事](https://mp.weixin.qq.com/s/bSnRvEGurNmdjrH5K3a-oA) - [ ] [“冀信杯2026”学生组 CTF 题解](https://mp.weixin.qq.com/s/guJnHjQGDyWY1RaEZmeScA) - [ ] [一场 CTF 的 48 小时:从开题到提交 flag,怎么打才不崩](https://mp.weixin.qq.com/s/xiEQyLmooneW0UtYjwwzgw) - [ ] [深化扫黑除恶专项斗争 | 警方打掉一网络暴力违法犯罪团伙,抓获涉案人员98名](https://mp.weixin.qq.com/s/IFOmhvoJ3zvs4aIw1EXLrw) - [ ] [安全透视 | 智能体权限:当AI拥有了操作能力](https://mp.weixin.qq.com/s/qw_fsTd8y92orugw0pWjgQ) - [ ] [秋分 | 金气秋分 火绒守护网安宁](https://mp.weixin.qq.com/s/QOc0F877-VCo01-6zTgooQ) - [ ] [火绒小问答--「个人版」近期top问题解答](https://mp.weixin.qq.com/s/-PsDhwNpcbiii3nbbb9DAA) - [ ] [诚邀渠道合作伙伴共启新征程](https://mp.weixin.qq.com/s/G4NIQWoJ7ibyXDWzXhud4g) - [ ] [玲珑安全AI课 -深层次学习AI和skills工程](https://mp.weixin.qq.com/s/tpDbHaRmp5Cvot43GHk6eA) - [ ] [直击2026中国无线电大会|从主论坛到专网、星闪,“无线专网”成多场分论坛共同关键词](https://mp.weixin.qq.com/s/yH_tKxDSlc8jI7mBILeqCw) - [ ] [钓鱼不用假网站了?拆解 EvilTokens:一个把\"盗号\"做成订阅制的设备码钓鱼平台](https://mp.weixin.qq.com/s/8hfSoyolJWCfIClbB5YNFA) - [ ] [【木马分析】安卓远控木马-System Service:46 项权限、27 条远程命令,静默窃听偷拍钓鱼](https://mp.weixin.qq.com/s/5Q9v9nXK62Bhj66s7tRsBg) - [ ] [SRC或攻防渗透项目资产聚合平台(SAD2)](https://mp.weixin.qq.com/s/_xflWP3siRAjFzL7miXiGg) - [ ] [计算机扫盲系列|02](https://mp.weixin.qq.com/s/m3ACPaZhWmkwyJsMqBPeKA) - [ ] [AMC 资产盘活模式、风险应对及财务效应全解析](https://mp.weixin.qq.com/s/AWhXO88xXRRzS7PchCaHWw) - [ ] [科普:手机安全设置](https://mp.weixin.qq.com/s/JHvBb8RdLQrZH1UBDKblXA) - [ ] [最后冲刺!诚邀参与2026网民网络安全感满意度调查2026网民网络安全感满意度调查进入冲刺阶段,诚邀您参与](https://mp.weixin.qq.com/s/Vwxup92qmM12FgHBh7SAFQ) - [ ] [习近平总书记关于网络意识形态工作的重要论述](https://mp.weixin.qq.com/s/0d-V9nfabbrYJOCna9TK9Q) - [ ] [国家互联网信息办公室关于《国务院关于保障未成年人健康安全使用网络的规定(征求意见稿)》公开征求意见的通知](https://mp.weixin.qq.com/s/MKyAdI-7mOsT5NpfeK68gA) - [ ] [全国首个!武汉AI安全服务率先走进东盟](https://mp.weixin.qq.com/s/LR0U7_uAu1aoObNt6Poptw) - [ ] [给大家分享一款本地分类分级神器](https://mp.weixin.qq.com/s/IfzjYU9h-i9g0eZCqsmG0w) - [ ] [中国法治国际论坛(2026)在深圳开幕 陈文清出席并讲话](https://mp.weixin.qq.com/s/H7wlw7OqJHvIwhR7inpMig) - [ ] [190页Kali渗透技术实战,全网最细最全教程](https://mp.weixin.qq.com/s/VOzSgKKp4dcmyEdFrvaD1A) - [ ] [华顺信安赵武受邀出席2026年网络安全漏洞分析与风险评估大会](https://mp.weixin.qq.com/s/8wRaU1za5omzxVtPYean4A) - [ ] [应急实战之BYOVD技术初探](https://mp.weixin.qq.com/s/QLvG31GwhjZ3iGEh0p4vJw) - [ ] [学海观澜|国家重点研发计划“重大需求导向的数学理论及应用”等重点专项 2026年度项目申报指南征求意见](https://mp.weixin.qq.com/s/YS-gbUOPgWfLAHJws8N5Rg) - [ ] [ShinyHunters黑客组织称入侵FBI 窃大量前任现任职员资料](https://mp.weixin.qq.com/s/UuY9PWj3aAErWZyFJxZBcA) - [ ] [打击涉企网络犯罪 维护市场经营秩序·上海 今年依法清理涉企不实信息8.7万余条](https://mp.weixin.qq.com/s/rGthhPYWVizM13hAi3boSw) - [ ] [网络安全为人民,网络安全靠人民|2026年国家网络安全宣传周成都系列活动公众体验活动侧记](https://mp.weixin.qq.com/s/jCJ_xpa8sCuzNWYIbxgqxw) - [ ] [动态|第十六届网络安全漏洞分析与风险评估大会在重庆举办](https://mp.weixin.qq.com/s/9NbK54Sl6upPRnnV4eGbfA) - [ ] [字节跳动通报:114名员工违规被辞退 多名员工泄露内部保密信息](https://mp.weixin.qq.com/s/eZHsDCKtH6fmbUakmHfFpQ) - [ ] [AI向善,安全有道|蓉港之约网络安全技术交流活动:共话跨境黑灰产治理与安全合规](https://mp.weixin.qq.com/s/hFfurF_SY3smyNNNsbnF8g) - [ ] [AI向善,安全有道|第二届基础软硬件智能化漏洞治理生态创新技术交流活动:为基础软硬件漏洞治理织密协同之网](https://mp.weixin.qq.com/s/Mqxbi5Kw7_DVSvMauMWJ4g) - [ ] [菲律宾交通牌照系统遭黑客入侵 全部业务暂停](https://mp.weixin.qq.com/s/J9msueAbl6TIgtYlPy9leQ) - [ ] [AI向善,安全有道|“AI+网信安全”技术交流活动:从智能防御到智能体安全治理](https://mp.weixin.qq.com/s/ajsgOgihk2SHXoJNQ5b5JQ) - [ ] [AI向善,安全有道|大模型与智能体安全技术研讨活动:当智能体开始“办事”,安全防线向运行时延伸](https://mp.weixin.qq.com/s/mZ3nZchWCqsGNeOJuv-3ig) - [ ] [AI向善,安全有道|青少年网络安全人才培养研讨活动:AI时代青少年网络安全人才培养与选拔的探索](https://mp.weixin.qq.com/s/4aFnQx1kwLctvHUU0HQ2xQ) - [ ] [安卓完美云机蜚卓通多开压测,无头骑士可干到App的78多开](https://mp.weixin.qq.com/s/shm6en2oqBwH_W7g9Hp7eg) - [ ] [智守网安 · 行启新章 | 任子行2026年校招开始啦!](https://mp.weixin.qq.com/s/V1q16bBb1eS8TpjHTBvRMQ) - [ ] [首批入选!中孚信息入选国家人工智能漏洞库技术支撑单位,斩获年度优秀技术支撑单位奖](https://mp.weixin.qq.com/s/AiOnYaOb3fK5sH5BIz7pow) - [ ] [详解美国空军F-22A战斗机最新升级情况](https://mp.weixin.qq.com/s/SOL5ZIkGgge2UJU4sosf6g) - [ ] [为了云吸猫买了个智能摄像头,顺手挖出两个CNNVD二级贡献奖是什么体验?](https://mp.weixin.qq.com/s/mmR-JDbWAIA7Itib_yFmRQ) - [ ] [以技立身 共筑安全防线xa0| 2026年“添翼计划”安全产品交付运营培训班(第四期)圆满收官](https://mp.weixin.qq.com/s/7qjKgfo4DcAuI7xUsMgdTQ) - [ ] [桂香盈袖,安全守候](https://mp.weixin.qq.com/s/KU0ftTT7LFf87cTpleolSg) - [ ] [【已复现】漏洞通告 | WordPress未授权路径遍历致条件性RCE漏洞(CVE-2026-87902)](https://mp.weixin.qq.com/s/TceDN0GDeSHdeKGtS0lajA) - [ ] [【已复现】漏洞通告 | WordPress Core 存储型跨站脚本漏洞(CVE-2026-93485)](https://mp.weixin.qq.com/s/X1QW48iclYj-PgDfZyyPFg) - [ ] [人工智能时代网络安全的机遇与挑战](https://mp.weixin.qq.com/s/mxU79kzfqmeqpu2nEMxBKA) - [ ] [【驻场专栏】9月第四周|全国长期驻场岗位汇总](https://mp.weixin.qq.com/s/f9ESi1HuQACK5shVKY7BLQ) - [ ] [十五五开局,PE/VC 迎来大变局:募投退全面回暖,行业进入提质时代](https://mp.weixin.qq.com/s/3-5_22oSEaryvrDPb0UeJQ) - [ ] [GaGaSpeedVaultBox,一个把保险箱钥匙只交给你的开源密码管理器](https://mp.weixin.qq.com/s/NIEmXvfWid-cjC1pBWJwYw) - [ ] [【军事基建】美资助菲律宾苏比克湾船厂维修扩建项目调查](https://mp.weixin.qq.com/s/yxFmqkyJJ0TiAl5rzY7qAQ) - [ ] [AI自动化信息收集一把梭](https://mp.weixin.qq.com/s/R6b2sak2Sb70vs80va7zeQ) - [ ] [山石网科×西北工业大学,共探AI应用新实践](https://mp.weixin.qq.com/s/YV6VrwuOCID2oLZYRR_ePw) - [ ] [首批!奇安信率先获得国家级人工智能安全服务资质](https://mp.weixin.qq.com/s/TeT1R81VORs36MtvZPx5VQ) - [ ] [Check Point 紧急修复已遭利用的 Management Server 0day](https://mp.weixin.qq.com/s/GUrhp3P5_EAbjyRMXbtcPA) - [ ] [首批+最多!奇安信获国家人工智能安全漏洞库技术支撑单位及15项漏洞奖励](https://mp.weixin.qq.com/s/3Cieu8_dCc5Yh9C0g22XTA) - Microsoft Security Blog - [ ] [Reimagining the SOC for the agentic era in Microsoft Defender](https://www.microsoft.com/en-us/security/blog/2026/09/23/reimagining-the-soc-for-the-agentic-era-in-microsoft-defender/) - ElcomSoft blog - [ ] [Low-Level Extraction of the Apple Watch S4/S5](https://blog.elcomsoft.com/2026/09/low-level-extraction-of-the-apple-watch-s4-s5/) - obaby 𝐢𝐧⃝ void - [ ] [钱,钱,钱](https://zhongxiaojie.cn/2026/09/1963/) - Recent Commits to cve:main - [ ] [Update Wed Sep 23 12:06:58 UTC 2026](https://github.com/trickest/cve/commit/de428761b3e198aebce7df6e8c1d1b8fbf96b86a) - Kitploit — Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal! - [ ] [fad-checker](https://kitploit.com/en/tools/github/9pings/fad-checker) - [ ] [recurse](https://kitploit.com/en/tools/github/recurse-labs/recurse) - [ ] [LocalStranger](https://kitploit.com/en/tools/github/nbs32k/localstranger) - [ ] [HimitsuShell](https://kitploit.com/en/tools/github/himitsushell/himitsushell) - [ ] [HTTP3-Adapter](https://kitploit.com/en/tools/github/t0xodile-swig/http3-adapter) - [ ] [EnvVisualizer](https://kitploit.com/en/tools/github/w4r10ck423/envvisualizer) - [ ] [gophoner](https://kitploit.com/en/tools/github/m4elstr0m/gophoner) - [ ] [evillimiter-ng](https://kitploit.com/en/tools/github/kevincrrl/evillimiter-ng) - [ ] [cplt](https://kitploit.com/en/tools/github/navikt/cplt) - [ ] [TransparentTorProxy](https://kitploit.com/en/tools/github/onyks-os/transparenttorproxy) - [ ] [DROS-VEP-lite](https://kitploit.com/en/tools/github/top-celestial-company-ltd/dros-vep-lite) - [ ] [Oihk-pentesting](https://kitploit.com/en/tools/github/broskigx/oihk-pentesting) - [ ] [rcekit](https://kitploit.com/en/tools/github/kabiri-labs/rcekit) - [ ] [cryptoptic](https://kitploit.com/en/tools/github/nationwide-group-oss/cryptoptic) - [ ] [ndaal_public_SBOM_Auditor](https://kitploit.com/en/tools/gitlab/vpierre/ndaal_public_sbom_auditor) - [ ] [gopacket](https://kitploit.com/en/tools/github/mandiant/gopacket) - [ ] [Web-App-PenTesting](https://kitploit.com/en/tools/github/sarthak4126/web-app-pentesting) - [ ] [blackarch](https://kitploit.com/en/tools/github/blackarch/blackarch) - [ ] [pentoo-overlay](https://kitploit.com/en/tools/github/pentoo/pentoo-overlay) - Horizon3 - [ ] [Federal & Mission-Critical Security Validation](https://horizon3.ai/intelligence/blogs/federal-mission-critical-security-validation/) - Reverse Engineering - [ ] [Breaking Obfuscated Binaries with AI Agents: An Attacker’s Playbook](https://www.reddit.com/r/ReverseEngineering/comments/1wojno0/breaking_obfuscated_binaries_with_ai_agents_an/) - [ ] [LocalStranger is a PoC for vulnerable "Microsoft Windows Hardware Compatibility Publisher" signed driver, including a basic unsigned driver kd mapper and NT-AUTHORITY escalation.](https://www.reddit.com/r/ReverseEngineering/comments/1wo0ein/localstranger_is_a_poc_for_vulnerable_microsoft/) - [ ] [Analysis & YARA rules: Fake HWMonitor DLL Sideloading campaign delivering Blakcsee Stealer](https://www.reddit.com/r/ReverseEngineering/comments/1woeh3v/analysis_yara_rules_fake_hwmonitor_dll/) - [ ] [Made the PowerVision PowerRay Wizard underwater drone usable again by cracking the proprietary Vision+ app, forcing it to activate the drone offline. + patched/fixed open-source community driver for easier installation](https://www.reddit.com/r/ReverseEngineering/comments/1wo9b59/made_the_powervision_powerray_wizard_underwater/) - [ ] [HimitsuShell: shell scripts invisible to kernel tracing](https://www.reddit.com/r/ReverseEngineering/comments/1wo7u15/himitsushell_shell_scripts_invisible_to_kernel/) - [ ] [HellGates, custom CPU (encrypted) gate-level challenge](https://www.reddit.com/r/ReverseEngineering/comments/1wnsxbc/hellgates_custom_cpu_encrypted_gatelevel_challenge/) - Malwarebytes - [ ] [How device code phishing gives scammers access to your account](https://www.malwarebytes.com/blog/how-to/2026/09/how-device-code-phishing-gives-scammers-access-to-your-account) - [ ] [Fake Claude Max giveaway hides a Google account phishing trap](https://www.malwarebytes.com/blog/threat-intel/2026/09/fake-claude-max-giveaway-hides-a-google-account-phishing-trap) - [ ] [ShinyHunters claims FBI breach was revenge for “false” report](https://www.malwarebytes.com/blog/news/2026/09/shinyhunters-claims-fbi-breach-was-revenge-for-false-report) - PortSwigger Research - [ ] [HTTP/3 in Burp Suite - it’s time to find a bigger wordlist](https://portswigger.net/research/http3-in-burp-suite) - 奇客Solidot–传递最新科技情报 - [ ] [年检显示高里程电动车比汽油车更可靠](https://www.solidot.org/story?sid=85467) - [ ] [不要被 AI 炒作愚弄](https://www.solidot.org/story?sid=85466) - [ ] [英国准备施压 Google 向 Android 和 Chrome 用户展示 AI 助手选择屏](https://www.solidot.org/story?sid=85465) - [ ] [全球陆地热浪更早到来、发展得更快](https://www.solidot.org/story?sid=85464) - [ ] [美国准备再次制裁 ICC](https://www.solidot.org/story?sid=85463) - [ ] [八种常用食品防腐剂与高血压相关](https://www.solidot.org/story?sid=85462) - [ ] [丰田命令员工训练人形机器人,否认会替代人类员工](https://www.solidot.org/story?sid=85461) - [ ] [地热变形虫能在 63 摄氏度下生存](https://www.solidot.org/story?sid=85460) - [ ] [Adobe 推出 Android 版免费视频编辑工具 Premiere](https://www.solidot.org/story?sid=85459) - [ ] [黑客声称入侵了 FBI 窃取雇员信息](https://www.solidot.org/story?sid=85457) - Offensive Security Blog: Latest Trends in Hacking | Praetorian - [ ] [Hannibal Puts Autonomous Penetration Testing Under Your Control](https://www.praetorian.com/blog/autonomous-penetration-testing-hannibal/) - HackerNews - [ ] [新型 ClosedQuorum Windows 恶意软件利用 AI 做出攻击决策](http://0.0.0.0:8080/post/64725) - [ ] [瑞典因影响 220 万人的数据泄露事件对 Miljödata 处以 18.3 万美元罚款](http://0.0.0.0:8080/post/64724) - [ ] [恶意外部 MFA 提供商可在登录期间窃取密码](http://0.0.0.0:8080/post/64723) - [ ] [Check Point 警告管理服务器零日漏洞已在定向攻击中被利用](http://0.0.0.0:8080/post/64722) - [ ] [Bifrost AI 网关严重漏洞让攻击者无需凭据即可运行命令](http://0.0.0.0:8080/post/64721) - [ ] [恶意 npm 包伪装成 Twilio 漏洞赏金探测工具,可外泄凭据](http://0.0.0.0:8080/post/64720) - 威努特安全网络 - [ ] [威努特超融合一体机亮相华为全联接大会](https://mp.weixin.qq.com/s?__biz=MzAwNTgyODU3NQ==&mid=2651144335&idx=1&sn=16b16a59aceb2f8c15a73bad78502c5a) - 黑鸟 - [ ] [大模型辅助补丁分析工作流:拆解路由器高危漏洞链](https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451188917&idx=1&sn=2b435005b72fd15365234372ea566281) - 安全客 - [ ] [一块公交站牌沦为"肉鸡",公安部这份通报,把物联网安全的老底揭开了](https://mp.weixin.qq.com/s?__biz=MzA5ODA0NDE2MA==&mid=2649790517&idx=1&sn=32560d336d96f8302ca192be34730f41) - 安全内参 - [ ] [FBI疑似发生重大数据泄露,所有警员数据外泄](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516652&idx=1&sn=f269a2ee7bbe70908bd9847c904be6a9) - [ ] [又一家银行因数据安全问题被“双罚”!信息科技部人员负有责任](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516652&idx=2&sn=25cb1b2cff7d646034b774e66180cf20) - 代码卫士 - [ ] [首批!奇安信率先获得国家级人工智能安全服务资质](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527217&idx=1&sn=2f5a2f5f060793699fc8cc74a52e5a59) - [ ] [Check Point 紧急修复已遭利用的 Management Server 0day](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527217&idx=2&sn=e2ba8e5eb1fd1d64813208a89591b659) - [ ] [首批+最多!奇安信获国家人工智能安全漏洞库技术支撑单位及15项漏洞奖励](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527217&idx=3&sn=8175d7230a5e360b9d49abd46e4ec13f) - 青衣十三楼飞花堂 - [ ] [换了个新款老头机](https://mp.weixin.qq.com/s?__biz=MzUzMjQyMDE3Ng==&mid=2247489953&idx=1&sn=a1cd1d3cda1084bc76fe066aeebcb5f7) - 安全分析与研究 - [ ] [对抗鲁棒性的形式化保证](https://mp.weixin.qq.com/s?__biz=MzA4ODEyODA3MQ==&mid=2247497194&idx=1&sn=bd294a8c52f80c6a428e76421674bbb3) - 信息安全国家工程研究中心 - [ ] [金融标准一图读懂《金融数据安全 数据安全能力体系》](https://mp.weixin.qq.com/s?__biz=MzU5OTQ0NzY3Ng==&mid=2247505286&idx=1&sn=8021477ec0a95b3bb041c7c57c7e2e0f) - 软件安全与逆向分析 - [ ] [安卓完美云机蜚卓通多开压测,无头骑士可干到App的78多开](https://mp.weixin.qq.com/s?__biz=MzU3MTY5MzQxMA==&mid=2247485493&idx=1&sn=c4cd5d7cc4c129c4073f64eb896fc9d0) - 中国信息安全 - [ ] [面向商用密码应用安全性评估的数据存储硬盘加密技术实践](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267269&idx=1&sn=e59332f468d01521efed74b9aa19a6cd) - [ ] [专家解读 | 江明涛:坚持智能化、绿色化、融合化方向 纵深推进数字化绿色化协同转型发展](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267269&idx=2&sn=214a097b7953b728f4be9684b76dd317) - [ ] [国际 | 利用AI技术对侵略历史进行“算法剪裁” 日本“数字军国主义”正在悄然抬头](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267269&idx=3&sn=46b1bf5eab8c1a93f77a16efde0ec2dc) - [ ] [评论 | 政务类App不容“模拟造假”](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267269&idx=4&sn=5cbc2ec471d7e177e47710f1a75638df) - [ ] [提示 | 民政部:防范非法养老APP诈骗](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664267269&idx=5&sn=7452b2aacd68f3870850c4dc1cc42e11) - 安全圈 - [ ] [【安全圈】WordPress曝Click2Shell漏洞:管理员点击链接直达RCE](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652079083&idx=1&sn=1f478cebe104c5edeee7dcbb3a9eca43) - [ ] [【安全圈】F5曝BIG-IP致命零日漏洞:未认证请求击穿OAuth直达RCE](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652079083&idx=2&sn=0ce805bc063237b686b25b2402f18126) - [ ] [【安全圈】Next.js曝光9.5分严重漏洞:动态制图缺陷致服务端RCE](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652079083&idx=3&sn=15ced44e506d301ae85956077004e955) - 数世咨询 - [ ] [制造业为何频遭勒索?问题已不只是漏洞,而是身份与配置管理](https://mp.weixin.qq.com/s?__biz=MzkxNzA3MTgyNg==&mid=2247544045&idx=1&sn=2e0fee7119c59025ce7ba73fc833d836) - [ ] [投稿 | 早期证明可能让机密数据面临高风险](https://mp.weixin.qq.com/s?__biz=MzkxNzA3MTgyNg==&mid=2247544045&idx=2&sn=2e4f71801f5647306b0e87805c631dcd) - [ ] [行业动态 | 第十六届网络安全漏洞分析与风险评估大会在重庆举办](https://mp.weixin.qq.com/s?__biz=MzkxNzA3MTgyNg==&mid=2247544045&idx=3&sn=f5600d3c3b9b27e66094867d2412e267) - 微步在线 - [ ] [微步入选CNNVD人工智能安全漏洞治理联盟成员单位,并获漏洞一级贡献奖](https://mp.weixin.qq.com/s?__biz=MzI5NjA0NjI5MQ==&mid=2650188274&idx=1&sn=998880533218e42a20641d75cfa4d241) - 腾讯科恩实验室 - [ ] [内核的退与守:微软 WESP 如何重划终端安全边界](https://mp.weixin.qq.com/s?__biz=MzU1MjgwNzc4Ng==&mid=2247513345&idx=1&sn=fbaf8819307d73727a1a8d37b6ec3157) - 看雪学苑 - [ ] [人机共智·重构攻防|华为,助力第十届安全开发者峰会(SDC2026)](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458621086&idx=1&sn=f257ef5c39824d9b599e370eae2f1b5e) - [ ] [HITCON2017 babyfirst-revenge 看雪 CTF 复现](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458621086&idx=2&sn=533a3e69a43779501ce1971feff32da7) - [ ] [F5 BIG-IP APM OAuth授权服务器存在零日漏洞,可无登录远程代码执行](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458621086&idx=3&sn=bb7cbcd85bba87195da00496fc84cfb8) - 青藤云安全 - [ ] [青藤云安全入选CNNVD“人工智能安全漏洞治理联盟”成员单位](https://mp.weixin.qq.com/s?__biz=MzAwNDE4Mzc1NA==&mid=2650851930&idx=1&sn=820105c412a9406ff0bda1bf349aee5b) - 复旦白泽战队 - [ ] [从《人工智能安全治理框架3.0》看 AgentGuard:智能体安全如何实践](https://mp.weixin.qq.com/s?__biz=MzU4NzUxOTI0OQ==&mid=2247499992&idx=1&sn=fe84a5abb255e094c904e7088438e61c) - 极客公园 - [ ] [从数人头到数智能体:一场正在发生的企业生产力换血](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653114033&idx=1&sn=2d1d206aa8f34540147a77a459563e5c) - [ ] [阿里整合 AI 办公力量后,千问办公怎么打这场大战?](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653114033&idx=2&sn=c9b31f0a70466292034a399be91e8f3a) - [ ] [OpenAI 发布 GPT-6 Sol 和 Luna;传字节跳动豆包收缩对话团队;千问发布 AI 手机全栈解决方案 | 极客早知道](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113996&idx=1&sn=9aeb474d01f3e62844f02ff0152a9507) - 字节跳动技术团队 - [ ] [TWIST 入选 ACM CCS 2026:面向云上大模型服务的隐私保护新方案](https://mp.weixin.qq.com/s?__biz=MzI1MzYzMjE0MQ==&mid=2247522837&idx=1&sn=9a517deecee420b33ef098ae4fc00802) - [ ] [OpenViking × LLM-Wiki:让团队文档不再“各说各话”](https://mp.weixin.qq.com/s?__biz=MzI1MzYzMjE0MQ==&mid=2247522837&idx=2&sn=bad9384fcc463a40aca07d4a442c7121) - 火绒安全 - [ ] [秋分 | 金气秋分 火绒守护网安宁](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247537960&idx=1&sn=4ac1403e171be1bfc40bcfc36203d8b1) - [ ] [火绒小问答--「个人版」近期top问题解答](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247537960&idx=2&sn=4529a8807a479f7b403c31896894db0a) - [ ] [诚邀渠道合作伙伴共启新征程](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247537960&idx=3&sn=331f9daa4b9877e0c02e2fb16b4a9f87) - 安全牛 - [ ] [AI SOC Agent落地实战:为什么70%在试点,只有15%真正见效?](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142836&idx=1&sn=6c0d5719a8fdf889f58456d2bf686b08) - [ ] [从XDR到AI原生安全运营:技术演进与实践应用指南](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142836&idx=2&sn=af9e41fc54edf0241b6ccbabc3ded7f7) - 慢雾科技 - [ ] [金融行动特别工作组报告|如何理解和应对游戏与博彩风险](https://mp.weixin.qq.com/s?__biz=MzU4ODQ3NTM2OA==&mid=2247506206&idx=1&sn=cd8ed1e4448e317d5b1d593d210af79a) - 谛听ditecting - [ ] [谛听 | 面向工业物联网低幅值投毒攻击的精准防御方法](https://mp.weixin.qq.com/s?__biz=MzU3MzQyOTU0Nw==&mid=2247503523&idx=1&sn=5ca861f20a5050998dcaa1f171c74eec) - 情报分析师 - [ ] [【特工超强记忆法】从解密档案到开源实战的调查课](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569777&idx=1&sn=f1116bb0914b35d9a43ef4eab4d8d5eb) - [ ] [法国诺曼底列车脱轨致44人受伤并疑涉蓄意破坏,需关注欧洲关键交通基础设施面临的安全威胁及其对反破坏、反恐和应急防护工作的启示](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569777&idx=2&sn=898177befd46ac80b14004a3285e8001) - T00ls安全 - [ ] [十八年同行,内核依旧年轻 - wacky 第五弹](https://mp.weixin.qq.com/s?__biz=Mzg3NzYzODU5NQ==&mid=2247485882&idx=1&sn=d7db8f67b753a84014d21052bb40c4d9) - 奇安信威胁情报中心 - [ ] [钓鱼不用假网站了?拆解 EvilTokens:一个把"盗号"做成订阅制的设备码钓鱼平台](https://mp.weixin.qq.com/s?__biz=MzI2MDc2MDA4OA==&mid=2247520699&idx=1&sn=b4a8db679a8cbb6193e926d72fbe3c4a) - Qualys Security Blog - [ ] [CISA BOD 26-04 Timelines for Three Linux Kernel CVEs](https://blog.qualys.com/category/product-tech) - Beacon Tower Lab - [ ] [战场升级,悬赏加码丨DayDayPOC 0day漏洞悬赏计划第二期正式启动](https://mp.weixin.qq.com/s?__biz=MzkyNzcxNTczNA==&mid=2247488409&idx=1&sn=69dfa9481cd75b1b3fdc3caea1ce88ef) - 360数字安全 - [ ] [7项安全认证“最高级”!360再添国家级AI安全一级资质](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586971&idx=1&sn=011efc97c25ecec5b487ff5259827f9b) - [ ] [上汽集团网络安全应急响应团队走进360上海城市安全大脑](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586971&idx=2&sn=25e4a63389705c620640a4452333acbc) - OnionSec - [ ] [昨天想逃离深圳,今天又看见了它的温柔](https://mp.weixin.qq.com/s?__biz=MzUyMTUwMzI3Ng==&mid=2247486033&idx=1&sn=2365119937b3b8306a4cc58913df1eea) - Over Security - [ ] [Placeholder domain used in dev docs now serves ClickFix attacks](https://www.bleepingcomputer.com/news/security/placeholder-domain-used-in-dev-docs-now-serves-clickfix-attacks/) - [ ] [New RemControl Android banking malware targets users in Europe and Canada](https://www.bleepingcomputer.com/news/security/new-remcontrol-android-banking-malware-targets-users-in-europe-and-canada/) - [ ] [UK regulator to investigate Pornhub parent company for alleged age verification failings](https://therecord.media/uk-regulator-to-investigate-pornhub-parent-company-privacy) - [ ] [Check Point warns of hackers exploiting Security Gateway VPN RCE flaw](https://www.bleepingcomputer.com/news/security/check-point-warns-of-hackers-exploiting-security-gateway-vpn-rce-flaw/) - [ ] [No evidence of successful foreign meddling in 2024 election, spy agencies found](https://therecord.media/trump-harris-election-meddling-russia) - [ ] [Hackers start exploiting critical WordPress flaw for code execution](https://www.bleepingcomputer.com/news/security/hackers-start-exploiting-critical-wordpress-flaw-for-code-execution/) - [ ] [Malicious AI agents steal 600K credit cards, infect 100+ sites with skimmers](https://www.bleepingcomputer.com/news/security/malicious-ai-agents-steal-600k-credit-cards-infect-100-plus-sites-with-skimmers/) - [ ] [Ryuk ransomware operator gets 2-year sentence after extorting victims for $1.2 million](https://therecord.media/ransomware-ryuk-sentenced-DOJ) - [ ] [Attacco all’FBI, ShinyHunters rivendica il colpo: cosa sappiamo davvero](https://www.cybersecurity360.it/news/attacco-allfbi-shinyhunters-rivendica-il-colpo-cosa-sappiamo-davvero/) - [ ] [InfraTrust report warns network management systems under attack](https://www.bleepingcomputer.com/news/security/infratrust-report-warns-network-management-systems-under-attack/) - [ ] [Claude Opus 5.5 spinge l’AI nella cyber: più capacità, più controlli](https://www.cybersecurity360.it/news/claude-opus-5-5-spinge-lai-nella-cyber-piu-capacita-piu-controlli/) - [ ] [FBI investigating alleged ShinyHunters breach of its jobs site](https://therecord.media/fbi-investigating-alleged-shinyhunters-job-site-breach) - [ ] [In corso un phishing a tema “bollo auto” ai danni di ACI](https://cert-agid.gov.it/news/in-corso-un-phishing-a-tema-bollo-auto-ai-danni-di-aci/) - [ ] [How One Kubernetes YAML Can Hand Over a GCP Organization](https://www.bleepingcomputer.com/news/security/how-one-kubernetes-yaml-can-hand-over-a-gcp-organization/) - [ ] [Norton 360 Advanced: anti-truffa Pro con IA per 10 dispositivi](https://www.cybersecurity360.it/cultura-cyber/norton-360-advanced-anti-truffa-pro-ia-10-dispositivi/) - [ ] [Latvia arrests suspected hacker for electronics repair company breach](https://therecord.media/latvia-hacker-arrest-cyberattack) - [ ] [Burnham announces plan for new UK center to fight disinformation](https://therecord.media/uk-disinformation-russia-center) - [ ] [Arista patches actively exploited VeloCloud Orchestrator zero-day](https://www.bleepingcomputer.com/news/security/arista-patches-actively-exploited-velocloud-orchestrator-zero-day/) - [ ] [Microsoft: September Windows updates break Always On VPN connections](https://www.bleepingcomputer.com/news/microsoft/microsoft-september-2026-windows-updates-break-always-on-vpn-connections/) - [ ] [Phishing Risk Across 5 Key US Industries: ANY.RUN Data & Mitigation Strategies](https://any.run/cybersecurity-blog/phishing-risk-industries/) - [ ] [Garante privacy, 120 giorni per contestare: resta il nodo dei tempi delle sanzioni](https://www.cybersecurity360.it/news/garante-privacy-120-giorni-per-contestare-resta-il-nodo-dei-tempi-delle-sanzioni/) - [ ] [EU Turns the Tables on Big Tech Over Children’s Safety](https://thecyberexpress.com/eu-kids-act-sets-new-social-media-rules/) - [ ] [Microsoft Upgrades SharePoint Flaw From Spoofing to 8.8 RCE](https://thecyberexpress.com/cve-2026-65660-sharepoint-rce-flaw/) - [ ] [Shiny Hunters Claim FBI Breach, Offer Sample of Alleged Stolen Data](https://thecyberexpress.com/shiny-hunters-fbi-breach-fbijobs-agent-data/) - [ ] [Harness’ Rahul Sood: AppSec in the Agentic Era Is About More Than Code. It’s About Authority](https://thecyberexpress.com/the-cyber-express-rahul-sood-interview/) - [ ] [AI, il costo nascosto della produttività: quando generare costa meno che verificare](https://www.cybersecurity360.it/cultura-cyber/ai-il-costo-nascosto-della-produttivita-quando-generare-costa-meno-che-verificare/) - [ ] [Assessing Cyber Threats to 2024 Worldwide Elections](https://www.sekoia.com/blog/guarding-democracy-assessing-cyber-threats-to-2024-worldwide-elections) - [ ] [Mallox Ransomware Affiliate Uses PureCrypter in MS-SQL Attacks](https://www.sekoia.com/blog/mallox-ransomware-affiliate-leverages-purecrypter-in-microsoft-sql-exploitation-campaigns) - [ ] [How to empower the MSSP business with Sekoia's AI SOC platform?](https://www.sekoia.com/blog/how-to-empower-the-mssp-business-with-the-sekoia-soc-platform) - [ ] [DoppelGänger: inside the pro-Russian influence campaign](https://www.sekoia.com/blog/master-of-puppets-uncovering-the-doppelganger-pro-russian-influence-campaign) - [ ] [Meet Sekoia TDR: Our Threat Detection & Research Team](https://www.sekoia.com/blog/introducing-sekoia-tdr) - [ ] [PikaBot: a Guide to its Deep Secrets and Operations](https://www.sekoia.com/blog/pikabot-a-guide-to-its-deep-secrets-and-operations) - [ ] [Combining Sekoia Intelligence and OpenCTI](https://www.sekoia.com/blog/combining-sekoia-intelligence-and-opencti) - [ ] [From On-Premise to SaaS SOC platforms: The Cybersecurity Market Shift](https://www.sekoia.com/blog/whats-up-with-the-new-kids) - [ ] [Efficiency-Driven SOC Operations: Integrated AI SOC Platform](https://www.sekoia.com/blog/efficiency-driven-soc-operations) - [ ] [Exploring the Benefits of MITRE ATT&CK in Sekoia SOC Platform](https://www.sekoia.com/blog/how-sekoia-io-uses-the-mitre-attck-framework-to-enhance-soc-capabilities) - [ ] [MuddyWater replaces Atera by custom MuddyRot implant](https://www.sekoia.com/blog/muddywater-replaces-atera-by-custom-muddyrot-implant-in-a-recent-campaign) - [ ] [Advanced Security Solutions for SMEs: The Technology Shift](https://www.sekoia.com/blog/technological-evolution-and-the-rise-of-advanced-security-solutions-for-smes) - [ ] [Solving the 7777 Botnet enigma: A cybersecurity quest](https://www.sekoia.com/blog/solving-the-7777-botnet-enigma-a-cybersecurity-quest) - [ ] [Emulating and Detecting Scattered Spider-like Attacks](https://www.sekoia.com/blog/emulating-and-detecting-scattered-spider-like-attacks) - [ ] [Enabling New Service Models With SSDP](https://www.sekoia.com/blog/enabling-new-service-models-with-ssdp) - [ ] [A glimpse into the Quad7 operators' next moves and associated botnets](https://www.sekoia.com/blog/a-glimpse-into-the-quad7-operators-next-moves-and-associated-botnets) - [ ] [Securing Gold : Hunting typosquatted domains during the Olympics](https://www.sekoia.com/blog/securing-gold-hunting-typosquatted-domains-during-the-olympics) - [ ] [WebDAV-as-a-Service: The Infrastructure Behind Emmenhtal](https://www.sekoia.com/blog/webdav-as-a-service-uncovering-the-infrastructure-behind-emmenhtal-loader-distribution) - [ ] [SilentSelfie: Revealing a major campaign against Kurdish websites](https://www.sekoia.com/blog/silentselfie-uncovering-a-major-watering-hole-campaign-against-kurdish-websites) - [ ] [Why it’s time to replace your legacy SIEM with a SOC platform](https://www.sekoia.com/blog/why-its-time-to-replace-your-legacy-siem-with-a-soc-platform) - [ ] [Hadooken and K4Spreader: The 8220 Gang's Latest Arsenal](https://www.sekoia.com/blog/hadooken-and-k4spreader-the-8220-gangs-latest-arsenal) - [ ] [Bulbature, beneath the waves of GobRAT](https://www.sekoia.com/blog/bulbature-beneath-the-waves-of-gobrat) - [ ] [Mamba 2FA: A new contender in the AiTM phishing ecosystem](https://www.sekoia.com/blog/mamba-2fa-a-new-contender-in-the-aitm-phishing-ecosystem) - Arturo Di Corinto - [ ] [Guerra Profonda all’Università delle Nazioni Unite](https://dicorinto.it/guerra-profonda/guerra-profonda-alluniversita-delle-nazioni-unite/) - 洞源实验室 - [ ] [AI安全之外,我想聊聊安全BP](https://mp.weixin.qq.com/s?__biz=Mzg4Nzk3MTg3MA==&mid=2247488776&idx=1&sn=97b4a8da6d1881eb39804d8f64d7710d) - 安全419 - [ ] [更名蝶变:五年深耕 小西牛正式迈入网安合规运营新周期](https://mp.weixin.qq.com/s?__biz=MzUyMDQ4OTkyMg==&mid=2247555561&idx=1&sn=893309a107938fe7938e202512a9ea71) - [ ] [数智拓远 善治久安 | 第十六届网络安全漏洞分析与风险评估大会在重庆举办](https://mp.weixin.qq.com/s?__biz=MzUyMDQ4OTkyMg==&mid=2247555561&idx=2&sn=f387b207223dbbd3e2e63f12e4388b98) - ICT Security Magazine - [ ] [IA e dati degli studenti: la catena che il fornitore non copre](https://www.ictsecuritymagazine.com/articoli/ia-a-scuola-dati-studenti/) - [ ] [Centri per l’Impiego Virtuali: l’impegno di ARPAL Puglia e WINDTRE per una PA più vicina ai territori con AI e servizi multicanale](https://www.ictsecuritymagazine.com/notizie/centri-impiego-virtuali-arpal-puglia-windtre/) - SANS Internet Storm Center, InfoCON: green - [ ] [Macfinger ClickFix campaign, (Tue, Sep 22nd)](https://isc.sans.edu/diary/rss/33360) - [ ] [ISC Stormcast For Wednesday, September 23rd, 2026 https://isc.sans.edu/podcastdetail/10106, (Wed, Sep 23rd)](https://isc.sans.edu/diary/rss/33362) - SEI Blog - [ ] [Four Open-Source Text-to-Speech Systems and When to Use Them](https://www.sei.cmu.edu/blog/four-open-source-text-to-speech-systems-and-when-to-use-them/?utm_source=blog&utm_medium=rss&utm_campaign=my_site_updates) - Schneier on Security - [ ] [Research on Models Engaging in Genie-Like Behavior](https://www.schneier.com/blog/archives/2026/09/research-on-models-engaging-in-genie-like-behavior.html) - KitPloit - PenTest Tools! - [ ] [fad-checker](https://kitploit.com/en/tools/github/9pings/fad-checker) - [ ] [recurse](https://kitploit.com/en/tools/github/recurse-labs/recurse) - [ ] [LocalStranger](https://kitploit.com/en/tools/github/nbs32k/localstranger) - [ ] [HimitsuShell](https://kitploit.com/en/tools/github/himitsushell/himitsushell) - [ ] [HTTP3-Adapter](https://kitploit.com/en/tools/github/t0xodile-swig/http3-adapter) - [ ] [EnvVisualizer](https://kitploit.com/en/tools/github/w4r10ck423/envvisualizer) - [ ] [gophoner](https://kitploit.com/en/tools/github/m4elstr0m/gophoner) - [ ] [evillimiter-ng](https://kitploit.com/en/tools/github/kevincrrl/evillimiter-ng) - [ ] [cplt](https://kitploit.com/en/tools/github/navikt/cplt) - [ ] [TransparentTorProxy](https://kitploit.com/en/tools/github/onyks-os/transparenttorproxy) - [ ] [DROS-VEP-lite](https://kitploit.com/en/tools/github/top-celestial-company-ltd/dros-vep-lite) - [ ] [Oihk-pentesting](https://kitploit.com/en/tools/github/broskigx/oihk-pentesting) - [ ] [rcekit](https://kitploit.com/en/tools/github/kabiri-labs/rcekit) - [ ] [cryptoptic](https://kitploit.com/en/tools/github/nationwide-group-oss/cryptoptic) - [ ] [ndaal_public_SBOM_Auditor](https://kitploit.com/en/tools/gitlab/vpierre/ndaal_public_sbom_auditor) - [ ] [gopacket](https://kitploit.com/en/tools/github/mandiant/gopacket) - [ ] [Web-App-PenTesting](https://kitploit.com/en/tools/github/sarthak4126/web-app-pentesting) - [ ] [blackarch](https://kitploit.com/en/tools/github/blackarch/blackarch) - [ ] [pentoo-overlay](https://kitploit.com/en/tools/github/pentoo/pentoo-overlay) - TorrentFreak - [ ] [Pirate Site Must Face Chinese Streaming Giant Tencent in U.S. Court, Judge Rules](https://torrentfreak.com/pirate-site-must-face-chinese-streaming-giant-tencent-in-u-s-court-judge-rules/) - www.theregister.com - Articles - [ ] [Someone's attacking a critical 0-day RCE in F5 BIG-IP APM](https://www.theregister.com/security/2026/09/23/someones-attacking-a-critical-0-day-rce-in-f5-big-ip-apm/5298659) - [ ] [Academic publisher Elsevier hit by LAPSUS$ redirect attack](https://www.theregister.com/security/2026/09/23/academic-publisher-elsevier-hit-by-lapsus-redirect-attack/5298592) - [ ] [Closing the observability gap for the AI-ready enterprise](https://www.theregister.com/security/2026/09/23/sponsored-closing-the-observability-gap-for-the-ai-ready-enterprise/5298070) - [ ] [British regulator takes a hard look at Pornhub's Apple-powered age checks](https://www.theregister.com/security/2026/09/23/british-regulator-takes-a-hard-look-at-pornhubs-apple-powered-age-checks/5298558) - [ ] [Why security belongs in the network](https://www.theregister.com/security/2026/09/23/sponsored-why-security-belongs-in-the-network/5296790) - Instapaper: Unread - [ ] [Tech CEO, Russian National Arrested on Complaint Alleging They Hid Russian Ownership and Development of Software Sold to U.S. Government](https://www.justice.gov/usao-cdca/pr/tech-ceo-russian-national-arrested-complaint-alleging-they-hid-russian-ownership-and) - [ ] [L’azienda italiana di cyber armi che ha conquistato l’elite dell’intelligence israeliana](https://irpimedia.irpi.eu/dataflow-cyber-armi-intelligence-israeliana/) - Troy Hunt's Blog - [ ] [Weekly Update 522: Live From Oslo with Scott Helme](https://www.troyhunt.com/weekly-update-522/) - Security Affairs - [ ] [U.S. CISA adds Check Point, Arista VeloCloud Orchestrator, and F5 BIG-IP APM flaws to its Known Exploited Vulnerabilities catalog](https://securityaffairs.com/199631/hacking/u-s-cisa-adds-check-point-arista-velocloud-orchestrator-and-f5-big-ip-apm-flaws-to-its-known-exploited-vulnerabilities-catalog.html) - [ ] [F5 BIG-IP APM Zero-Day Exploited in Zero-Day RCE Attacks](https://securityaffairs.com/199619/security/f5-big-ip-apm-zero-day-exploited-in-zero-day-rce-attacks.html) - [ ] [ShinyHunters claims FBI breach after alleged PeopleSoft zero-day attack](https://securityaffairs.com/199612/cyber-crime/shinyhunters-claims-fbi-breach-after-alleged-peoplesoft-zero-day-attack.html) - [ ] [EvilTokens made phishing-as-a-service look easy. Then it got taken down](https://securityaffairs.com/199593/cyber-crime/eviltokens-made-phishing-as-a-service-look-easy-then-it-got-taken-down.html) - [ ] [Fake LastPass on GitHub Led to an Infostealer That Killed 145 Security Tools](https://securityaffairs.com/199577/malware/fake-lastpass-on-github-led-to-an-infostealer-that-killed-145-security-tools.html) - [ ] [CVE-2026-87902: how close is your WordPress to remote code execution?](https://securityaffairs.com/199564/hacking/cve-2026-87902-how-close-is-your-wordpress-to-remote-code-execution.html) - Microsoft Browser Vulnerability Research - [ ] [Beyond Images: Bringing Rust Brotli to Edge Network Stack](https://microsoftedge.github.io/edgevr/posts/Beyond-Images-Bringing-Rust-Brotli-to-Edge-Network-Stack/) - The Hacker News - [ ] [Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry](https://thehackernews.com/2026/09/attackers-use-malicious-terraform.html) - [ ] [A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You](https://thehackernews.com/2026/09/a-leaked-gitlab-issue-email-address.html) - [ ] [MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key](https://thehackernews.com/2026/09/mikrotrick-chain-let-attackers-take.html) - [ ] [This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move](https://thehackernews.com/2026/09/windows-malware-is-built-to-let-up-to.html) - [ ] [Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI](https://thehackernews.com/2026/09/compromised-memtensor-packages-deliver.html) - [ ] [New cPanel Flaw Lets a Hosting Account Run Code as Root, Take Full Server Control](https://thehackernews.com/2026/09/new-cpanel-flaw-lets-hosting-account_0272795595.html) - [ ] [545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent](https://thehackernews.com/2026/09/545-hackers-tested-it-first-now-xranges.html) - [ ] [Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests](https://thehackernews.com/2026/09/anthropic-and-openai-models-still.html) - [ ] [Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape](https://thehackernews.com/2026/09/exploit-released-for-unpatched-ubuntu.html) - [ ] [F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers](https://thehackernews.com/2026/09/f5-patches-critical-big-ip-apm-zero-day.html) - [ ] [Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware](https://thehackernews.com/2026/09/chinese-hackers-exploit-chrome-windows.html) - [ ] [Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input](https://thehackernews.com/2026/09/critical-nextjs-imageresponse-flaw-can.html) - [ ] [ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants](https://thehackernews.com/2026/09/shinyhunters-claims-fbi-breach-says-it.html) - GRAHAM CLULEY - [ ] [Smashing Security podcast #486: Vibe-coded shops, and hackable Flock cameras](https://grahamcluley.com/smashing-security-podcast-486/) - Security Weekly Podcast Network (Audio) - [ ] [Balancing AI Benefits and Risks as Your Next CISO Could be Artificial Intelligence - Evan McHenry - BSW #466](http://sites.libsyn.com/18678/balancing-ai-benefits-and-risks-as-your-next-ciso-could-be-artificial-intelligence-evan-mchenry-bsw-466)
每日安全资讯(2026-09-24)