# 每日安全资讯(2026-08-27) - SecWiki News - [ ] [SecWiki News 2026-08-26 Review](http://www.sec-wiki.com/?2026-08-26) - Private Feed for M09Ic - [ ] [anthropics released v2.1.247 at anthropics/claude-code](https://github.com/anthropics/claude-code/releases/tag/v2.1.247) - [ ] [mgeeky starred HackingLZ/sleepwalker](https://github.com/HackingLZ/sleepwalker) - Doonsec's feed - [ ] [吃瓜丨RT没吃饭是吧](https://mp.weixin.qq.com/s/nSnewS-AwFwIofp-6A1h-A) - [ ] [第十九届全国大学生信息安全竞赛(作品赛)暨第三届“长城杯”网数智安全大赛(作品赛)决赛获奖队伍名单公示](https://mp.weixin.qq.com/s/1o4DMpkj51MNjOo9H_NJcw) - [ ] [第十九届全国大学生信息安全竞赛(作品赛)暨第三届“长城杯”网数智安全大赛(作品赛)决赛获奖队伍名单公示](https://mp.weixin.qq.com/s/q-HdfARuT6VuHY-Y7LosBA) - [ ] [“豺狼行动”58人被捕,揭开全球诈骗背后的洗钱机器](https://mp.weixin.qq.com/s/Qsrghdev3zaBVehi_WWslQ) - [ ] [Anthropic论文:AI智能体开始“互相感染”](https://mp.weixin.qq.com/s/hzGpS6Zide_gpgvxjQEuvA) - [ ] [前沿AI正在重塑漏洞管理,传统修复体系面临系统性变革](https://mp.weixin.qq.com/s/yYeXBAqNB1nPAGC705esQg) - [ ] [CISA红队攻破关键基础设施,SOC与云安全盲区全面暴露](https://mp.weixin.qq.com/s/9tprh4L1lkBUjNmCpw5KLQ) - [ ] [通知 | 网安标委就《网络安全技术 移动通信信号屏蔽器技术规范(征求意见稿)》等7项国家标准公开征求意见(附下载)](https://mp.weixin.qq.com/s/YU-TxHdz7rUsiRILal9Rpw) - [ ] [评论 | 在法治轨道上协同共治网络暴力](https://mp.weixin.qq.com/s/fYOJVZGfWeNy2CFih7Sutw) - [ ] [bfs-clicker 获取动态加载的js-Ai渗透测试前置](https://mp.weixin.qq.com/s/P6c3h12gRKqNXal5Ry1U8Q) - [ ] [# 影子经纪人:当美国国家安全局的黑客工具箱被搬空](https://mp.weixin.qq.com/s/8AqE9uAMUTYAJzie9vYc1A) - [ ] [本篇内容万余字 | 网络安全入门:工具、靶场和学习路线全整理](https://mp.weixin.qq.com/s/QY5a8pGSuaZmQfddEEdVJw) - [ ] [《上海市“数字上海”建设“十五五”规划》解读](https://mp.weixin.qq.com/s/JqGy2jX49ynoeGro1CraPA) - [ ] [23:59想逃跑,07:00喊收工——是谁拯救了他?](https://mp.weixin.qq.com/s/4WVeww0R-y6tK_ERgAMlLg) - [ ] [你有没有怀疑过,孟婆汤会不会就是羊水?](https://mp.weixin.qq.com/s/w04IfLx30HnM_UVgmyQomQ) - [ ] [月神SRC培训课程停招了?](https://mp.weixin.qq.com/s/CUMFSiSjbpcQ51Fi2mgwAg) - [ ] [守护账号第一道防线:打造安全可靠的强密码](https://mp.weixin.qq.com/s/dLTfXTHhtEywyHCJcWSgNw) - [ ] [360 AI安全专家独立发现全新僵尸网络,攻击目标遍及全球近20国](https://mp.weixin.qq.com/s/E8IyOyoAqdcLhfCuG5gWmQ) - [ ] [多校联合研修!360 ADE师资能力提升培训班落地洛阳](https://mp.weixin.qq.com/s/fqeP3TuXB6fk0qdAbUY7hQ) - [ ] [Bootloader从入门到实战—OTA升级的基础](https://mp.weixin.qq.com/s/ZXgb2_NQO_9jB0YjUdo6GQ) - [ ] [RoboSec演讲嘉宾 | 吉林大学副教授,卓驭科技首席安全专家:《从自动驾驶SOTIF到Robot SOTIF:移动物理AI的场景、类人测评与安全证据链》](https://mp.weixin.qq.com/s/_Cw1PV4yB12bxIEorEbrNQ) - [ ] [奖项评选 | 天溯计量基于智能网联一站式安全检测与合规认证服务参评“第七届AutoSec & RoboSec Awards 安全之星”](https://mp.weixin.qq.com/s/ExN4FoNl4pA0UFZ8JXG_Yw) - [ ] [一个晚上,AI 挖出 Call of Duty 1 埋了 20 年的 RCE](https://mp.weixin.qq.com/s/i4F3CGbVqusRNefTk7XYaQ) - [ ] [《网络数据安全风险评估办法》七问七答!理清合规要点与标准体系!](https://mp.weixin.qq.com/s/tc-KVVH8ftQ-l1eqVAql2A) - [ ] [知名药企遭遇黑客攻击!企业面临的新型网络安全风险](https://mp.weixin.qq.com/s/Hs64N-ydEfRScPknizvuQw) - [ ] [中国信通院【首批】互联网智能体治理 运维智能体能力系列评估正式启动!](https://mp.weixin.qq.com/s/VCFrkQXw9wE55d9L8nDMgA) - [ ] [继 AI 漏洞库之后,长亭再度入选 NVDB 两大安全漏洞专业库](https://mp.weixin.qq.com/s/Xo1--CZnpj6QK41d4-9-2w) - [ ] [天融信:从大模型到智能体,AI 安全评估需要跳出单点思维](https://mp.weixin.qq.com/s/cZuT5s4WSrWL9xyWTMG1UQ) - [ ] [四叶草安全再次获评NVDB通用网络产品安全漏洞专业库技术支撑单位](https://mp.weixin.qq.com/s/gwFtIAfo2rPbE8QYs2EffA) - [ ] [逐级攀升!四叶草安全荣升国家信息安全漏洞库(CNNVD)一级技术支撑单位](https://mp.weixin.qq.com/s/V9asCdjXqOx1tX8u2AyHjw) - [ ] [从物业服务到日化制造,诚信签如何服务各行业头部企业](https://mp.weixin.qq.com/s/w6iFwfvcquC3t8p-tCUg-A) - [ ] [企业不容忽视的5种人工智能攻击模式](https://mp.weixin.qq.com/s/S2oEmooFhCCmjt_V3BDe8g) - [ ] [【漏洞预警】Redis 又双叒爆高危 TLS Pending-List UAF 漏洞,已公开完整EXP,速修!(已复现)](https://mp.weixin.qq.com/s/HrOvkBMJHANWmIjqyegTwQ) - [ ] [白帽子的新战友:一个会自己找漏洞的 AI 智能体](https://mp.weixin.qq.com/s/GfuUqAgDt3H8fa7f8v6_Xg) - [ ] [10 项关键信息基础设施安全保护系列团体标准将于8月27日正式发布](https://mp.weixin.qq.com/s/Im19CNrC0-MXKbcAPjxIiQ) - [ ] [央广网|咬定青山不放松 山石网科贾宇:做芯片是长期主义](https://mp.weixin.qq.com/s/CZ7RXXH5zR0I5E-tnw0-GQ) - [ ] [全球安全动态日报|20260826|早](https://mp.weixin.qq.com/s/W876vycUVpHOCTMC8JbJWQ) - [ ] [8月22日 威胁情报IOC分享](https://mp.weixin.qq.com/s/TlVBAhykHU6mSqOcAkcrFw) - [ ] [2026年信服研修班—网络安全技术·人社专场,开启报名!](https://mp.weixin.qq.com/s/H78PFFCBpqWvSxSdMOD9Sg) - [ ] [深信服桌面云:AI新体验&大规模能力新突破!](https://mp.weixin.qq.com/s/3EOgYlRSeragi5on9HMirQ) - [ ] [2026补天校园GROW计划报名启动|赛道全新升级,打造AI时代网络安全守护者](https://mp.weixin.qq.com/s/NlLWHd118PN_dmJmaBcHRA) - [ ] [王建华院士:信息技术变革对密码技术发展的思考](https://mp.weixin.qq.com/s/5Xgc48ISX7z_0MHgZ4j8nw) - [ ] [中国信通院副院长魏亮:为携手构建公正合理的全球人工智能治理体系贡献中国方案](https://mp.weixin.qq.com/s/q63HIbbtXCCtPsa4imjBhA) - [ ] [【深度研判】新西兰因乌克兰战争制裁俄黑客与宣传团体,五眼联盟对俄网络行动协调对我相关网络行为规范与制裁先例的风险](https://mp.weixin.qq.com/s/27vaENWmxPt7pqrD4P0zVw) - [ ] [喜报!思维数据安全合规检查工具箱入选中国《“AI+网信安全”典型案例集》](https://mp.weixin.qq.com/s/KEg3ej0dzGGKVc_OCSr4Vw) - [ ] [Web挖洞白帽人,该去APP挖金矿了](https://mp.weixin.qq.com/s/rUl4cUyYzMPCBX0-CWVahw) - [ ] [找工作的师傅可以看这里!](https://mp.weixin.qq.com/s/ZyYUsNOkVd5N2jxxF-lD0A) - [ ] [万字长文|Codex 从入门到精通](https://mp.weixin.qq.com/s/QBY69K75X73OVDKzN7T6Xw) - [ ] [一文读懂!行政事业单位全过程预算绩效评价与管理全流程](https://mp.weixin.qq.com/s/PPwbfIzRrgZaHcdjq6cu9A) - [ ] [Meta安全更新|WhatsApp支持多通行密钥,超10亿用户已启用,两步验证升级完整密码](https://mp.weixin.qq.com/s/HDVMTsHkJCI80v3qIExzOg) - [ ] [告别无效加班!MonkeyCode Work,帮我干掉 90% 的重复活](https://mp.weixin.qq.com/s/d-CMT5BtE6QiLXCK-_YXCA) - [ ] [8月26日15时,“新征程上的奋斗者”公安先进典型代表中外记者见面会即将播出!](https://mp.weixin.qq.com/s/HYK9Qm_3Nlrv6xqdR31cmw) - Tenable Blog - [ ] [Edge infrastructure under siege: what two independent datasets reveal about who's exploiting your perimeter](https://www.tenable.com/blog/edge-infrastructure-under-siege) - Recent Commits to cve:main - [ ] [Update Wed Aug 26 12:14:27 UTC 2026](https://github.com/trickest/cve/commit/ca8ee0bb082b68407f87b660528f99e51d207a6b) - 安全客-有思想的安全新媒体 - [ ] [一张网页就能投毒你的AI大模型:NVIDIA NemoClaw缺陷曝光,沙箱挡得住黑客,挡不住"夺舍"](https://www.anquanke.com/post/id/316021) - Bug Bounty in InfoSec Write-ups on Medium - [ ] [Got My First $$ Bug Bounty](https://infosecwriteups.com/got-my-first-bug-bounty-9d3d017b4342?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [The WAF Blocked My XSS — So I Rotated What It Was Reading](https://infosecwriteups.com/the-waf-blocked-my-xss-so-i-rotated-what-it-was-reading-47bc630c17ae?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [Bypassing AI Scanner Defenses to Exfiltrate Sensitive Information — PortSwigger Web Security…](https://infosecwriteups.com/bypassing-ai-scanner-defenses-to-exfiltrate-sensitive-information-portswigger-web-security-346b99f322ef?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [How a Single HTTP Redirect Bypassed SSRF Filters on 4 Programs Over 8 Years](https://infosecwriteups.com/how-a-single-http-redirect-bypassed-ssrf-filters-on-4-programs-over-8-years-4f67437ba6c7?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [How I Found a GraphQL Endpoint Leaking Millions](https://infosecwriteups.com/how-i-found-a-graphql-endpoint-leaking-millions-5cbfd55d994e?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [How I Chained Three Bugs to XSS an Intigriti CTF — IDOR + DOM Clobbering + DOMPurify 3.0.9 Bypass](https://infosecwriteups.com/how-i-chained-three-bugs-to-xss-an-intigriti-ctf-idor-dom-clobbering-dompurify-3-0-9-bypass-25b74fc7afc7?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [How I Made Over $10,000 Just by Chaining Multiple IDORs in a Single Web App (All from the Share…](https://infosecwriteups.com/how-i-made-over-10-000-just-by-chaining-multiple-idors-in-a-single-web-app-all-from-the-share-4d425a15aa37?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [../../ to Admin for a $,$$$ Bounty](https://infosecwriteups.com/to-admin-for-a-bounty-b946f781607f?source=rss----7b722bfd1b8d--bug_bounty) - [ ] [NASA — Hidden Login Page Bypass via auth_redirect + 403 Bypass (CVE-2023–5089)](https://infosecwriteups.com/nasa-hidden-login-page-bypass-via-auth-redirect-403-bypass-cve-2023-5089-2999fa3ca4d4?source=rss----7b722bfd1b8d--bug_bounty) - Kitploit - [ ] [gosentry v0.4.1](https://kitploit.com/en/posts/github-trailofbits-gosentry-041) - [ ] [git-alerts v1.8.0](https://kitploit.com/en/posts/github-boringtools-git-alerts-v180) - [ ] [Exploits + Shellcode + GHDB v2026-08-26](https://kitploit.com/en/posts/gitlab-exploit-database-exploitdb-2026-08-26) - [ ] [SSTImap v1.4](https://kitploit.com/en/posts/github-vladko312-sstimap-v14) - [ ] [adPEAS v2.3.2](https://kitploit.com/en/posts/github-61106960-adpeas-v232) - [ ] [joern v4.0.612](https://kitploit.com/en/posts/github-joernio-joern-v40612) - [ ] [Malcolm v26.08.0](https://kitploit.com/en/posts/github-idaholab-malcolm-v26080) - [ ] [flowsint v1.2.12](https://kitploit.com/en/posts/github-reconurge-flowsint-v1212) - [ ] [fscan v2.2.1](https://kitploit.com/en/posts/github-shadow1ng-fscan-v221) - [ ] [MISP v2.5.45](https://kitploit.com/en/posts/github-misp-misp-v2545) - [ ] [FreeRDP v3.31.0](https://kitploit.com/en/posts/github-freerdp-freerdp-3310) - [ ] [crowdsec v1.8.0-rc2](https://kitploit.com/en/posts/github-crowdsecurity-crowdsec-v180-rc2) - [ ] [ish builds/813](https://kitploit.com/en/posts/github-ish-app-ish-builds813) - [ ] [qemu v11.1.1](https://kitploit.com/en/posts/github-qemu-qemu-1111) - [ ] [Signal-Desktop v8.25.0-beta.2](https://kitploit.com/en/posts/github-signalapp-signal-desktop-v8250-beta2) - [ ] [infisical v0.162.24](https://kitploit.com/en/posts/github-infisical-infisical-v016224) - [ ] [jsch jsch-2.28.7](https://kitploit.com/en/posts/github-mwiede-jsch-jsch-2287) - [ ] [cynative v1.10.0](https://kitploit.com/en/posts/github-cynative-cynative-v1100) - [ ] [mini-diarium v0.7.0](https://kitploit.com/en/posts/github-fjrevoredo-mini-diarium-v070) - [ ] [isms-builder v1.37.5.3](https://kitploit.com/en/posts/github-coolstartnow-isms-builder-v13753) - [ ] [COPG v6.6.0](https://kitploit.com/en/posts/github-alirezaparsi-copg-v660) - [ ] [nerva v1.69.2](https://kitploit.com/en/posts/github-praetorian-inc-nerva-v1692) - [ ] [irflow-timeline v1.0.12](https://kitploit.com/en/posts/github-r3nzsec-irflow-timeline-v1012) - [ ] [netbox v4.6.9](https://kitploit.com/en/posts/github-netbox-community-netbox-v469) - [ ] [EntraFalcon V20260824](https://kitploit.com/en/posts/github-compasssecurity-entrafalcon-v20260824) - [ ] [sj v2.8.1](https://kitploit.com/en/posts/github-bishopfox-sj-281) - The Trail of Bits Blog - [ ] [VMs won't contain cyber-capable agents](https://blog.trailofbits.com/2026/08/26/vms-wont-contain-cyber-capable-agents/) - Malwarebytes - [ ] [Update Chrome before you browse again](https://www.malwarebytes.com/blog/bugs/2026/08/update-chrome-before-you-browse-again) - [ ] [Popular school apps may be sharing student data with advertisers](https://www.malwarebytes.com/blog/privacy/2026/08/popular-school-apps-may-be-sharing-student-data-with-advertisers) - [ ] [Beware of fake Indeed interview apps used to install spyware](https://www.malwarebytes.com/blog/scams/2026/08/beware-of-fake-indeed-interview-apps-used-to-install-spyware) - SentinelOne - [ ] [Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter](https://www.sentinelone.com/blog/what-two-independent-datasets-reveal-about-whos-exploiting-your-perimeter/) - HAHWUL - [ ] [I've joined the Kemal Core Team!](https://www.hahwul.com/posts/2026/i-ve-joined-the-kemal-core-team/) - Toooold - [ ] [Deriving LLM Post-Training from First Principles](https://toooold.com/2026/08/26/posttraining.html) - Think Love Share - [ ] [Frappe 16.18.3 / ERPNext 16.19.1 SSTI to OS RCE](/offenskill/frappe-ssti-to-rce/) - GuidePoint Security - [ ] [Making AI/ML-driven Active Cyber Defense Work in OT Environments](https://www.guidepointsecurity.com/blog/active-cyber-defense-in-ot-environments/) - HackerNews - [ ] [黑客滥用 npm 镜像托管钓鱼重定向页面](http://0.0.0.0:8080/post/64601) - [ ] [LACMA 去年数据泄露事件暴露社保和医疗数据](http://0.0.0.0:8080/post/64600) - [ ] [Marimo Notebook 漏洞可在编辑模式下、单元格执行前运行 MCP 命令](http://0.0.0.0:8080/post/64599) - [ ] [WhatsApp 在 iOS 和 Android 上增加多密钥支持,实现防钓鱼登录](http://0.0.0.0:8080/post/64598) - [ ] [恶意网页可在 NVIDIA NemoClaw 背后污染你的本地 AI 模型](http://0.0.0.0:8080/post/64597) - [ ] [美国制裁与伊朗有关、涉嫌入侵关键基础设施的黑客](http://0.0.0.0:8080/post/64596) - 奇客Solidot–传递最新科技情报 - [ ] [育碧在 Steam 上架《魔法门之英雄无敌3》时忘记将游戏文件放进去](https://www.solidot.org/story?sid=85205) - [ ] [澳大利亚是地球最安全的地方](https://www.solidot.org/story?sid=85204) - [ ] [美国报告今年的首例麻疹死亡病例](https://www.solidot.org/story?sid=85203) - [ ] [中尼吉隆口岸泥石流灾害数百人失踪](https://www.solidot.org/story?sid=85202) - [ ] [月之暗面与微软、亚马逊和 Google 协商收益分成协议](https://www.solidot.org/story?sid=85201) - [ ] [OpenAI 首款自研推理芯片 Jalapeño 强于英伟达 Blackwell](https://www.solidot.org/story?sid=85200) - [ ] [芬兰准备启用全球首座核废料最终处置场](https://www.solidot.org/story?sid=85199) - [ ] [全球海洋表面温度创历史最高水平](https://www.solidot.org/story?sid=85198) - [ ] [新西兰提出法案禁止 16 岁以下儿童使用社媒和 AI 陪伴服务](https://www.solidot.org/story?sid=85197) - [ ] [亚马逊以内存短缺为由大幅上涨自有品硬件产品价格](https://www.solidot.org/story?sid=85196) - [ ] [XCancel /Nitter 收到 X 寄出的终止服务通知](https://www.solidot.org/story?sid=85195) - 小迪随笔 - [ ] [树犹如此,人何以堪](https://mp.weixin.qq.com/s?__biz=MzAxMjIyNDE4Mg==&mid=2651759355&idx=1&sn=f8743a8a4287a2f70db02bdb84d7c8ef) - 黑鸟 - [ ] [内置自定义字节码的顶级被动式后门SLEEPWALKER](https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451188293&idx=1&sn=da56a7b3e7abecf469f0b69f44213d25) - 代码卫士 - [ ] [奇安信获评NVDB多个安全漏洞专业库年度技术支撑单位](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247526966&idx=1&sn=e8f3f0306e7baab6940a04ee921e4636) - [ ] [91个Spring漏洞影响开源生态系统中超20.9万个软件组件](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247526966&idx=2&sn=688ddee627883a67ce0e617a2e134a7b) - 风雪之隅 - [ ] [Yac 2.4.0发布 - 小值读取性能提升64%](https://www.laruence.com/2026/08/26/6566.html) - 安全客 - [ ] [一张网页就能投毒你的AI大模型:NVIDIA NemoClaw缺陷曝光,沙箱挡得住黑客,挡不住"夺舍"](https://mp.weixin.qq.com/s?__biz=MzA5ODA0NDE2MA==&mid=2649790413&idx=1&sn=90417d7293b02753215573e8115015ea) - 奇安信威胁情报中心 - [ ] [34分钟失陷:Langflow CVE-2026-9198 野外利用实录](https://mp.weixin.qq.com/s?__biz=MzI2MDc2MDA4OA==&mid=2247520008&idx=1&sn=0d6eb1521de256b16f73fcbc62d833e4) - 长亭安全应急响应中心 - [ ] [【已复现】JDBC URL 可控导致RCE——IBM Db2 JDBC/SQLJ 代码执行漏洞(CVE-2026-9762)](https://mp.weixin.qq.com/s?__biz=MzIwMDk1MjMyMg==&mid=2247493328&idx=1&sn=abff7a2585997a7bb92ac435c2dffc2f) - 安全研究GoSSIP - [ ] [G.O.S.S.I.P 阅读推荐 2026-08-25 AppStore之外](https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&mid=2247502032&idx=1&sn=ab13272cbd751102b343ff1dc3a5fad8) - 奇安信 CERT - [ ] [【已复现】Redis TLS 待处理链表远程代码执行漏洞(QVD-2026-58458)安全风险通告](https://mp.weixin.qq.com/s?__biz=MzU5NDgxODU1MQ==&mid=2247507214&idx=1&sn=b7e486a2572673582ca80909624b5183) - [ ] [【已复现】Microsoft SharePoint BDC 子系统远程代码执行漏洞(CVE-2026-63520)安全风险通告](https://mp.weixin.qq.com/s?__biz=MzU5NDgxODU1MQ==&mid=2247507214&idx=2&sn=2db29a284a8291cf3c577bea6719a1d4) - 信息安全国家工程研究中心 - [ ] [近期网络安全处罚案例](https://mp.weixin.qq.com/s?__biz=MzU5OTQ0NzY3Ng==&mid=2247504810&idx=1&sn=8df989e11bab02df7449aa4f3c3d7edf) - 安全圈 - [ ] [【安全圈】黑客利用 AI 语音冒充苹果客服:精准套取被盗 iPhone 锁屏密码与双重验证码](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078451&idx=1&sn=ed847a40dcaff125fbad613d71abd580) - [ ] [【安全圈】CISA紧急预警:Gitea高危RCE在野遭挖矿木马利用](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078451&idx=2&sn=5752ef241e59c0340bade7fb184523c2) - [ ] [【安全圈】新型 SLEEPWALKER 后门曝光:无活动线程静默潜伏,仅需“单数据包”即可唤醒执行](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078451&idx=3&sn=3fdc398f8ae9cf094ffc1965afe5410f) - 安全分析与研究 - [ ] [UEFI-BootKit技术细节与实现原理](https://mp.weixin.qq.com/s?__biz=MzA4ODEyODA3MQ==&mid=2247497061&idx=1&sn=d97593b416dee87a963045a073ba767a) - 安全内参 - [ ] [菲律宾一政务系统遭勒索攻击:全国服务中断逾10天 民众生计受影响](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516480&idx=1&sn=a069f4fe177d261eb664338ce7bf8351) - [ ] [美国陆军首次跨战区完成网络和指挥控制服务转移](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516480&idx=2&sn=43069eeaad56f4e56147f1d2a9ad4c35) - 数世咨询 - [ ] [企业不容忽视的5种人工智能攻击模式](https://mp.weixin.qq.com/s?__biz=MzkxNzA3MTgyNg==&mid=2247543790&idx=1&sn=861cc506a66f7a2bcd43fc9ecc09ac66) - 威努特安全网络 - [ ] [合规≠安全:从波兰热电厂停摆,看清电力OT的信任盲区](https://mp.weixin.qq.com/s?__biz=MzAwNTgyODU3NQ==&mid=2651143683&idx=1&sn=9008d9a5c4c10b4995f96e8ffe3120bc) - 微步在线 - [ ] [邪修!如何在几千万条流量里抓webshell](https://mp.weixin.qq.com/s?__biz=MzI5NjA0NjI5MQ==&mid=2650187770&idx=1&sn=8d44b0b30647cc378bd5670ba57c4f08) - vivo千镜 - [ ] [回顾|ISC2华南分会Sec-Talk安全系列讲座 vivo 专场暨 AI 安全双防线:智能体防御与反窃密实践分享圆满落幕](https://mp.weixin.qq.com/s?__biz=MzI0Njg4NzE3MQ==&mid=2247492340&idx=1&sn=d2d02f71c04e757fd5d7c89bc74a00fe) - 看雪学苑 - [ ] [可验证·可复现·可规模化:AI驱动的Windows内核漏洞挖掘与Fuzzing实战](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458618948&idx=1&sn=548b24b927eb278a51ff44ea8c176b54) - [ ] [一串反引号,十层突破:n1ctf‑2018‑easy_harder_php 完整利用链](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458618948&idx=2&sn=fe39b3c0600fbd53ced86ae6e2ed499e) - [ ] [周下载4500万!Next.js曝出双高危RCE漏洞,Windows环境风险极高](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458618948&idx=3&sn=d3f507f258cc563b6f696f850a7d8640) - M01N Team - [ ] [AISS社区积分计划正式启动:共创、分享、成长](https://mp.weixin.qq.com/s?__biz=MzkyMTI0NjA3OA==&mid=2247495448&idx=1&sn=54c53db456c1fab84147cb9e7d516b2d) - 中国信息安全 - [ ] [前沿 | 依托多级防御战略构建企业网络安全防护体系的理论探索](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664265933&idx=1&sn=f7f25e77b4cffa31c560bdfae70ea4cf) - [ ] [通知 | 网安标委就《网络安全技术 移动通信信号屏蔽器技术规范(征求意见稿)》等7项国家标准公开征求意见(附下载)](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664265933&idx=2&sn=001d5a4c6e35b4e54a858a2565b19712) - [ ] [关注 | 国防动员法修订草案二审稿提请审议 明确国防动员数据收集使用及安全管理规定](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664265933&idx=3&sn=631033b662e50b7020beb595e5f7a99c) - [ ] [重点防范!新一批境外恶意网址和恶意IP发布](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664265933&idx=4&sn=028ab7578a61e777f5cbf4eb0eb14dc6) - [ ] [专家观点 | 中国引领人工智能全球治理的三重路径](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664265933&idx=5&sn=bd9d5986c63f28f93a5a418905c3a27f) - [ ] [评论 | 在法治轨道上协同共治网络暴力](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664265933&idx=6&sn=06af569f6fd9fe72df0d8fc53b8b80e7) - 青藤云安全 - [ ] [青藤无相 AI 正式通过国家网信办生成式人工智能服务备案](https://mp.weixin.qq.com/s?__biz=MzAwNDE4Mzc1NA==&mid=2650851713&idx=1&sn=4dd1e1f72f94b2cb0acbdf2b9748792d) - 腾讯安全应急响应中心 - [ ] [大模型也有指纹,牛来大模型背后竟然是它](https://mp.weixin.qq.com/s?__biz=MjM5NzE1NjA0MQ==&mid=2651208662&idx=1&sn=5c3034beb4197804880ce40e18efc046) - 百度安全应急响应中心 - [ ] [2026百度安全月|开放日·诚邀莅临!](https://mp.weixin.qq.com/s?__biz=MzA4ODc0MTIwMw==&mid=2652544321&idx=1&sn=fb2ef9595b7921fba5131cce598bf791) - 丁爸 情报分析师的工具箱 - [ ] [【开源报告】美国无人机发展战略与未来发展路线图](https://mp.weixin.qq.com/s?__biz=MzI2MTE0NTE3Mw==&mid=2651157168&idx=1&sn=4fa2d35820d4142c5f65f7db9c48b877) - [ ] [【通知】第六届开源情报技术大会与第四届全国大学生开源情报数据采集与分析挑战赛](https://mp.weixin.qq.com/s?__biz=MzI2MTE0NTE3Mw==&mid=2651157168&idx=2&sn=1a97c23ea465555704ee9e658976b910) - [ ] [【开源报告】俄乌战争无人机攻防对抗演进研究](https://mp.weixin.qq.com/s?__biz=MzI2MTE0NTE3Mw==&mid=2651157144&idx=1&sn=27a3efa03d5c32dcefc42bf1b2f34442) - [ ] [【资料】将人工智能与机器学习技术融入通用作战态势图及行动方案制定](https://mp.weixin.qq.com/s?__biz=MzI2MTE0NTE3Mw==&mid=2651157144&idx=2&sn=a5bbf20819ecbc7f1bb18856a9e38b4d) - 枇杷熟了 - [ ] [【已复现】JDBC URL 可控导致RCE——IBM Db2 JDBC/SQLJ 代码执行漏洞(CVE-2026-9762)](https://mp.weixin.qq.com/s?__biz=MzU0MzkzOTYzOQ==&mid=2247490110&idx=1&sn=59dde9cce58f5a962b6a57678853607d) - [ ] [分享一次利用大模型对SM2加密的APP绕过的案例](https://mp.weixin.qq.com/s?__biz=MzU0MzkzOTYzOQ==&mid=2247490110&idx=2&sn=2001d649251b0cf5b2b44c79667b64b4) - 安全牛 - [ ] [它只是想做完这道题,却黑进了Hugging Face:Agent时代最危险的,不是"觉醒"](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142461&idx=1&sn=8b70e9373a8c43eba86f9b2570c223dd) - [ ] [工信部通报 26 款 APP 及 SDK,存在违规收集个人信息问题;CNVD周报:单周收录693个漏洞,0day占比高达92%| 牛览](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142461&idx=2&sn=ce7a9d73f4f94d9fdbf35a7199cd8def) - 情报分析师 - [ ] [全世界最便宜的顶级情报源——特朗普2026年8月Truth Social发帖情报分析](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569259&idx=1&sn=c4b59c170a405aafdc6ef65a5f92c9fe) - [ ] [【深度研判】新西兰因乌克兰战争制裁俄黑客与宣传团体,五眼联盟对俄网络行动协调对我相关网络行为规范与制裁先例的风险](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569259&idx=2&sn=d20540ef2d9a24dca895e8e9786d939c) - 极客公园 - [ ] [AI 硬件创业者,开始研究黄金和宝石了](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653112708&idx=1&sn=882ac8efd563effc7a5d9a714a968cca) - [ ] [离开剪映后创业,她想把一支设计团队装进 AI 工作台](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653112706&idx=1&sn=6d1ed815f93c59edc3f0c2dd555968ef) - [ ] [苹果发布 M6 与 M5 Ultra 与新款 Mac Mini;字节发布 AI 办公产品「豆包工作」;SpaceX 拟千亿美元建设第二座「星际基地」|极客早知道](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653112679&idx=1&sn=3ac9b356709f03ef3ef1ed32f9e185d0) - 字节跳动技术团队 - [ ] [字节实践 | Agent 提示词注入攻击:一场需要长期应对的安全挑战](https://mp.weixin.qq.com/s?__biz=MzI1MzYzMjE0MQ==&mid=2247521453&idx=1&sn=a43b95ca00458d532f29d70e80f0d118) - 补天平台 - [ ] [8月京东卡上线通知来啦!明日准时开抢~](https://mp.weixin.qq.com/s?__biz=MzI2NzY5MDI3NQ==&mid=2247510966&idx=1&sn=b283f73334e395109d621fe8bc26ddd5) - [ ] [2026补天校园GROW计划报名启动|赛道全新升级,打造AI 时代网络安全守护者](https://mp.weixin.qq.com/s?__biz=MzI2NzY5MDI3NQ==&mid=2247510966&idx=2&sn=f6fd871e8a725f4082f6365c1eb024ed) - Yak Project - [ ] [Memfit AI架构升级,限时免费用不限量!](https://mp.weixin.qq.com/s?__biz=Mzk0MTM4NzIxMQ==&mid=2247530109&idx=1&sn=51b205a00f381df64bbc82eace37b4ef) - 国家互联网应急中心CNCERT - [ ] [网络安全信息与动态周报2026年第34期(8月17日-8月23日)](https://mp.weixin.qq.com/s?__biz=MzIwNDk0MDgxMw==&mid=2247502070&idx=1&sn=f8fdb7e74b9e806543a6205d34906549) - 火绒安全 - [ ] [火绒小问答--「个人版」近期top问题解答](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247536803&idx=1&sn=6113a77cf9442a95f5d14c802cedeb51) - [ ] [诚邀渠道合作伙伴共启新征程](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247536803&idx=2&sn=51a3fe17c16cff73a0ab15875f64676b) - 安全419 - [ ] [安全419|一周国际网安资讯:漏洞密集爆发 AI攻击态势升级](https://mp.weixin.qq.com/s?__biz=MzUyMDQ4OTkyMg==&mid=2247554631&idx=1&sn=da6b965df5411040307c4381ea93446b) - 悬镜安全 - [ ] [国家级认可!悬镜安全入选2026年度CITIVD最高级技术支撑单位](https://mp.weixin.qq.com/s?__biz=MzA3NzE2ODk1Mg==&mid=2647800196&idx=1&sn=486d3020c63b4a3a7f0b955288d5fc8d) - 360威胁情报中心 - [ ] [UAC-0099利用新型多阶段恶意软件链开展攻击活动](https://mp.weixin.qq.com/s?__biz=MzUyMjk4NzExMA==&mid=2247508827&idx=1&sn=0c211ab15c96ae62693c76c455d31f4e) - Qualys Security Blog - [ ] [Beyond Patching: What IT Teams Need to Know About Unfixable Exposures](https://blog.qualys.com/category/qualys-insights) - [ ] [When an AI Agent Turned Attacker: What Qualys Sees Across Every Phase of the Hugging Face Kubernetes Intrusion](https://blog.qualys.com/category/product-tech) - SANS Internet Storm Center, InfoCON: green - [ ] [Who Has Admin Rights in your Entra ID Directory?, (Wed, Aug 26th)](https://isc.sans.edu/diary/rss/33284) - [ ] [ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, (Wed, Aug 26th)](https://isc.sans.edu/diary/rss/33282) - Dark Space Blogspot - [ ] [Migliori Perps Exchange Per Tradare No KYC (Con Airdrop)](http://darkwhite666.blogspot.com/2026/08/migliori-perps-exchange-per-tradare-no.html) - Securelist - [ ] [Exploits and vulnerabilities in Q2 2026](https://securelist.com/vulnerabilities-and-exploits-in-q2-2026/121091/) - Microsoft Security Blog - [ ] [When AI infrastructure becomes the target: Securing gateways and control points](https://www.microsoft.com/en-us/security/blog/2026/08/26/when-ai-infrastructure-becomes-target-securing-gateways-control-points/) - Deeplinks - [ ] [EFF's Policy Position on ALPR Surveillance: Eliminate It and Reduce Its Harms](https://www.eff.org/deeplinks/2026/08/effs-policy-position-alpr-surveillance-eliminate-it-and-reduce-its-harms) - [ ] [EFF Statement on Meta Settlement](https://www.eff.org/deeplinks/2026/08/eff-statement-meta-settlement) - [ ] [French Top Court Gets It Right, Strikes Down Social Media Ban For Youths](https://www.eff.org/deeplinks/2026/08/french-top-court-gets-it-right-strikes-down-social-media-ban-youths) - cavallette - [ ] [DICHIARAZIONE DEL COLLETTIVO A/I SULLE SANZIONI DISPOSTE DAL GOVERNO USA NEI SUOI CONFRONTI – A STATEMENT BY A/I COLLECTIVE ABOUT US SANCTIONS](https://cavallette.noblogs.org/2026/08/10076) - Full Disclosure - [ ] [FD - Half-click unauthenticated remote code execution on Horde Groupware IMP (from a stored XSS)](https://seclists.org/fulldisclosure/2026/Aug/115) - [ ] [[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File](https://seclists.org/fulldisclosure/2026/Aug/114) - [ ] [[NotCVE-2026-0012] EmpManageX Hardcoded Administrative Credentials in Login API Allow Full Access to Employee Records](https://seclists.org/fulldisclosure/2026/Aug/113) - [ ] [[NotCVE-2026-0011] Nmap 7.99 and Earlier nselib/packet.lua Zero-Length TCP Option Infinite Loop Allows Remote Denial of Service](https://seclists.org/fulldisclosure/2026/Aug/112) - [ ] [[NotCVE-2026-0010] Barrier 2.4.0 for Windows Unauthenticated IPC Command Execution Allows Local Privilege Escalation to SYSTEM](https://seclists.org/fulldisclosure/2026/Aug/111) - [ ] [[NotCVE-2026-0009] NitroShare Desktop 0.3.4 Path Traversal Allows LAN-Adjacent Arbitrary File Write](https://seclists.org/fulldisclosure/2026/Aug/110) - [ ] [Escargot v4.3.0-214-gfaee4437 Unauthenticated Remote Debugger Allows Arbitrary JavaScript Evaluation and Local File Disclosure](https://seclists.org/fulldisclosure/2026/Aug/109) - [ ] [Escargot v4.3.0-214-gfaee4437 OS Command Injection in Crash Handler via Unsanitized Executable Path](https://seclists.org/fulldisclosure/2026/Aug/108) - [ ] [Escargot v4.3.0-214-gfaee4437 Debugger WebSocket Off-by-One Stack Buffer Overflow](https://seclists.org/fulldisclosure/2026/Aug/107) - [ ] [UltraJSON v5.13.0-6-g733f9e1 Length-Boundary Violation Causes Out-of-Bounds Read During Incomplete JSON Parsing](https://seclists.org/fulldisclosure/2026/Aug/106) - [ ] [Realtek edimax 52fc10d19 In-Band Ioctl Response Length Confusion Causes Heap Buffer Overflow](https://seclists.org/fulldisclosure/2026/Aug/105) - [ ] [WatsonWebserver v7.1.0 HTTP/1 Chunked Request Processing Bypasses MaxRequestBodySize](https://seclists.org/fulldisclosure/2026/Aug/104) - [ ] [Chronicle Wire v2026.8 Arbitrary Class Instantiation During YAML Deserialization via Externally Controlled YAML Type Tags](https://seclists.org/fulldisclosure/2026/Aug/103) - [ ] [Chronicle Wire v2026.8 Insecure Reflection Allows Unvalidated Method Invocation](https://seclists.org/fulldisclosure/2026/Aug/102) - [ ] [Chronicle Wire v2026.8 FileMarshallableOut Append Operations Follow Symbolic Links and Allow File Write Redirection](https://seclists.org/fulldisclosure/2026/Aug/83) - www.theregister.com - Articles - [ ] [OpenAI explains how its naughty AI agents attacked Hugging Face](https://www.theregister.com/security/2026/08/27/openai-explains-how-its-naughty-ai-agents-attacked-hugging-face/5292780) - [ ] [More than 100 water systems were hit in July cyberattacks](https://www.theregister.com/cyber-crime/2026/08/26/more-than-100-water-systems-were-hit-in-july-cyberattacks/5292685) - [ ] [Boston Scientific discloses 'global disruption' in ongoing cyberattack](https://www.theregister.com/security/2026/08/26/boston-scientific-discloses-global-disruption-in-ongoing-cyberattack/5292641) - [ ] [Carhartt data breach affects 12.9M, half of what ShinyHunters claimed](https://www.theregister.com/security/2026/08/26/carhartt-data-breach-affects-129m-half-of-what-shinyhunters-claimed/5292626) - Security Weekly Podcast Network (Audio) - [ ] [Connecting Cyber Risks to Board Outcomes & BHUSA interviews from Mimecast & Zscaler - Leslie Nielsen, Brett Stone-Gross, Dan Bowden - BSW #462](http://sites.libsyn.com/18678/connecting-cyber-risks-to-board-outcomes-bhusa-interviews-from-mimecast-zscaler-leslie-nielsen-brett-stone-gross-dan-bowden-bsw-462) - The Hacker News - [ ] [FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations](https://thehackernews.com/2026/08/fbi-disrupts-china-linked-qtfy.html) - [ ] [Nimbus Manticore Expands Toolset With TWOSTROKE-Like Backdoor and SSH Tunneler](https://thehackernews.com/2026/08/nimbus-manticore-expands-toolset-with.html) - [ ] [NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions](https://thehackernews.com/2026/08/novacookies-campaigns-abuse-genuine.html) - [ ] [CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing](https://thehackernews.com/2026/08/cisa-red-team-compromised-two-critical.html) - [ ] [Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code](https://thehackernews.com/2026/08/unpatched-kaltura-mwembed-flaws-could.html) - [ ] [Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine](https://thehackernews.com/2026/08/imagine-soc-without-queue-from-alert.html) - [ ] [Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users' Reservations in Tests](https://thehackernews.com/2026/08/claude-opus-46-bypasses-gym-booking.html) - [ ] [OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation](https://thehackernews.com/2026/08/openai-bans-russian-chatgpt-accounts.html) - [ ] [INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown](https://thehackernews.com/2026/08/interpol-operation-jackal-iv-arrests-58.html) - [ ] [New SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode](https://thehackernews.com/2026/08/newly-sleepwalker-backdoor-waits-for.html) - [ ] [Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload](https://thehackernews.com/2026/08/critical-gitea-rce-actively-exploited.html) - [ ] [Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes](https://thehackernews.com/2026/08/fake-apple-support-ai-calls-target.html) - GRAHAM CLULEY - [ ] [Smashing Security podcast #482: This hacker leaked GTA 6 – and launched their own cryptocurrency](https://grahamcluley.com/smashing-security-podcast-482/) - Security Affairs - [ ] [CISA Red Team Fully Compromised Two Critical Infrastructure Orgs](https://securityaffairs.com/197901/hacking/cisa-red-team-fully-compromised-two-critical-infrastructure-orgs.html) - [ ] [FBI Seizes China-Linked Hacking Platforms QScan and QTRouter Used Against Critical Infrastructure](https://securityaffairs.com/197873/apt/fbi-seizes-china-linked-hacking-platforms-qscan-and-qtrouter-used-against-critical-infrastructure.html) - [ ] [U.S. CISA adds Gitea flaw to its Known Exploited Vulnerabilities catalog](https://securityaffairs.com/197854/security/u-s-cisa-adds-gitea-flaw-to-its-known-exploited-vulnerabilities-catalog.html) - [ ] [88 ID Verification Breaches Show the Cost of Collecting Identity Data](https://securityaffairs.com/197855/reports/88-id-verification-breaches-show-the-cost-of-collecting-identity-data.html) - [ ] [WhatsApp Adds Stronger Security as Passkeys Hit 1 Billion](https://securityaffairs.com/197837/security/whatsapp-adds-stronger-security-as-passkeys-hit-1-billion.html) - [ ] [Operation Jackal: 58 Arrests Expose the Money Laundering Machine Behind Global Scams](https://securityaffairs.com/197843/cyber-crime/operation-jackal-58-arrests-expose-the-money-laundering-machine-behind-global-scams.html) - KitPloit - PenTest Tools! - [ ] [gosentry v0.4.1](https://kitploit.com/en/posts/github-trailofbits-gosentry-041) - [ ] [git-alerts v1.8.0](https://kitploit.com/en/posts/github-boringtools-git-alerts-v180) - [ ] [Exploits + Shellcode + GHDB v2026-08-26](https://kitploit.com/en/posts/gitlab-exploit-database-exploitdb-2026-08-26) - [ ] [SSTImap v1.4](https://kitploit.com/en/posts/github-vladko312-sstimap-v14) - [ ] [adPEAS v2.3.2](https://kitploit.com/en/posts/github-61106960-adpeas-v232) - [ ] [joern v4.0.612](https://kitploit.com/en/posts/github-joernio-joern-v40612) - [ ] [Malcolm v26.08.0](https://kitploit.com/en/posts/github-idaholab-malcolm-v26080) - [ ] [flowsint v1.2.12](https://kitploit.com/en/posts/github-reconurge-flowsint-v1212) - [ ] [fscan v2.2.1](https://kitploit.com/en/posts/github-shadow1ng-fscan-v221) - [ ] [MISP v2.5.45](https://kitploit.com/en/posts/github-misp-misp-v2545) - [ ] [FreeRDP v3.31.0](https://kitploit.com/en/posts/github-freerdp-freerdp-3310) - [ ] [crowdsec v1.8.0-rc2](https://kitploit.com/en/posts/github-crowdsecurity-crowdsec-v180-rc2) - [ ] [ish builds/813](https://kitploit.com/en/posts/github-ish-app-ish-builds813) - [ ] [qemu v11.1.1](https://kitploit.com/en/posts/github-qemu-qemu-1111) - [ ] [Signal-Desktop v8.25.0-beta.2](https://kitploit.com/en/posts/github-signalapp-signal-desktop-v8250-beta2) - [ ] [infisical v0.162.24](https://kitploit.com/en/posts/github-infisical-infisical-v016224) - [ ] [jsch jsch-2.28.7](https://kitploit.com/en/posts/github-mwiede-jsch-jsch-2287) - [ ] [cynative v1.10.0](https://kitploit.com/en/posts/github-cynative-cynative-v1100) - [ ] [mini-diarium v0.7.0](https://kitploit.com/en/posts/github-fjrevoredo-mini-diarium-v070) - [ ] [isms-builder v1.37.5.3](https://kitploit.com/en/posts/github-coolstartnow-isms-builder-v13753) - [ ] [COPG v6.6.0](https://kitploit.com/en/posts/github-alirezaparsi-copg-v660) - [ ] [nerva v1.69.2](https://kitploit.com/en/posts/github-praetorian-inc-nerva-v1692) - [ ] [irflow-timeline v1.0.12](https://kitploit.com/en/posts/github-r3nzsec-irflow-timeline-v1012) - [ ] [netbox v4.6.9](https://kitploit.com/en/posts/github-netbox-community-netbox-v469) - [ ] [EntraFalcon V20260824](https://kitploit.com/en/posts/github-compasssecurity-entrafalcon-v20260824) - [ ] [sj v2.8.1](https://kitploit.com/en/posts/github-bishopfox-sj-281) - [ ] [titus v1.2.8](https://kitploit.com/en/posts/github-praetorian-inc-titus-v128) - Schneier on Security - [ ] [Spyware for Babies](https://www.schneier.com/blog/archives/2026/08/spyware-for-babies.html) - 360数字安全 - [ ] [360 AI安全专家独立发现全新僵尸网络,攻击目标遍及全球近20国](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586790&idx=1&sn=91a100edaf11a34a57d85f3a42982621) - [ ] [多校联合研修!360 ADE师资能力提升培训班落地洛阳](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586790&idx=2&sn=9df24148d8041cbd2079975a1e0c16a7) - Instapaper: Unread - [ ] [Your SIM card can give orders to your phone, and you can’t turn it off](https://andreafortuna.org/2026/08/26/hostile-sim-at-commands-catana/) - [ ] [Spyware for Babies](https://www.schneier.com/blog/archives/2026/08/spyware-for-babies.html) - TorrentFreak - [ ] [Cineby Starts Staged Shutdown of Its Piracy Empire](https://torrentfreak.com/cineby-starts-staged-shutdown-of-its-piracy-empire/)
每日安全资讯(2026-08-27)
Love
Share