# 每日安全资讯(2026-09-01) - Recent Commits to cve:main - [ ] [Update Mon Aug 31 12:03:38 UTC 2026](https://github.com/trickest/cve/commit/25fa75b24f581cdf2f72750fb1544224ce20466a) - Private Feed for M09Ic - [ ] [bolucat released 202609010042 at bolucat/Archive](https://github.com/bolucat/Archive/releases/tag/202609010042) - [ ] [anthropics released v2.1.252 at anthropics/claude-code](https://github.com/anthropics/claude-code/releases/tag/v2.1.252) - [ ] [strands-agents released typescript/v1.16.0 at strands-agents/harness-sdk](https://github.com/strands-agents/harness-sdk/releases/tag/typescript/v1.16.0) - [ ] [killeven starred google/gvisor](https://github.com/google/gvisor) - [ ] [esrrhs contributed to esrrhs/fakelua](https://github.com/esrrhs/fakelua/pull/389) - [ ] [OpenAEV-Platform released 3.260831.0 at OpenAEV-Platform/openaev](https://github.com/OpenAEV-Platform/openaev/releases/tag/3.260831.0) - [ ] [esrrhs contributed to esrrhs/fakecc](https://github.com/esrrhs/fakecc/pull/45) - [ ] [wh0amitz starred SnailSploit/Claude-Red](https://github.com/SnailSploit/Claude-Red) - [ ] [Rvn0xsy starred Comfy-Org/ComfyUI](https://github.com/Comfy-Org/ComfyUI) - [ ] [0xbug starred ganeshmshetty/openclip](https://github.com/ganeshmshetty/openclip) - [ ] [timwhitez starred DietrichGebert/ponytail](https://github.com/DietrichGebert/ponytail) - [ ] [timwhitez starred x6nux/macrdp](https://github.com/x6nux/macrdp) - [ ] [freqtrade released 2026.8 at freqtrade/freqtrade](https://github.com/freqtrade/freqtrade/releases/tag/2026.8) - [ ] [Mel0day starred MDX-Tom/gpt-5.6-instruct](https://github.com/MDX-Tom/gpt-5.6-instruct) - Doonsec's feed - [ ] [渗透测试是一场有向搜索:从Cairn到XuanMu的Agent架构启发](https://mp.weixin.qq.com/s/xKwWjPTIBO-HBWuGe6V68g) - [ ] [《网络数据安全风险评估办法》正式施行|中国评测助力医疗健康行业网络数据安全风险评估落地](https://mp.weixin.qq.com/s/Ss7e7OPJXiZhHRWnU9t4cw) - [ ] [《2026新加坡共识:全球人工智能安全研究优先事项》](https://mp.weixin.qq.com/s/5fU9kf4FCUcv1qLHPi7K0Q) - [ ] [AI创作“狂飙”,如何解决安全“后顾之忧”?这场沙龙为文化内容创作注入“合规动能”](https://mp.weixin.qq.com/s/4WPxDlDbqPKOgiKuUr-I7g) - [ ] [本篇内容10000余字|网络安全入门:工具、靶场和学习路线全整理](https://mp.weixin.qq.com/s/K53QFhg0enmenZwtyOwu_Q) - [ ] [别人收费我们免费!1000本电子书+实战指南,速来薅羊毛!从入门到精通|红客精选书单大公开,千本好书助你成大神](https://mp.weixin.qq.com/s/O6i26ATT0ti-l_luuQm7yw) - [ ] [美国医疗巨头McKesson遭网络攻击 2.84亿条患者记录被指泄露](https://mp.weixin.qq.com/s/waEnCgz3qiBaGNNFCzrAHQ) - [ ] [你好,网安100!网络空间安全学院首届新生入学报到](https://mp.weixin.qq.com/s/kYr-n8hAHF5NrWgfBmm-JA) - [ ] [【清朗荆楚】湖北公布一批未成年人网络保护典型案例](https://mp.weixin.qq.com/s/GO8rWmWfW-S3N_lBwtFEgA) - [ ] [工业和信息化部—国际电信联盟“空间促进发展”高级别研讨会在上海举行](https://mp.weixin.qq.com/s/aj7aqG2cix_flgGYmEYoCQ) - [ ] [95.02%漏洞成功率 | 绿盟科技NSFOCUS AI斩获CyberGym全球第一](https://mp.weixin.qq.com/s/KBwto0VeECB2FdgibnvRfg) - [ ] [漏洞速递 | CVE-2026-22679泛微RCE漏洞(附EXP)](https://mp.weixin.qq.com/s/btQjna0Ho_EOxjFjRwcRSw) - [ ] [鼎信安全xa0|xa0网络安全一周资讯](https://mp.weixin.qq.com/s/zqcwQQctWvZ3BFSR2Rmz4g) - [ ] [活动赠票|快手 QECon 2026 上海站议程抢先看](https://mp.weixin.qq.com/s/GvbJetn6VfAuQOqXdGmhYQ) - [ ] [湖北省网络和数据安全协会关于会员单位常规性工作意见建议征集结果及改进措施的公告](https://mp.weixin.qq.com/s/Fuhzm-cbXScnHK8_zQJjpw) - [ ] [关于举办人工智能安全工程师培训班的通知](https://mp.weixin.qq.com/s/FynEHs_3VAxQpjV7Z8AebQ) - [ ] [CISP-AISE 注册人工智能安全应用专业人员培训通知](https://mp.weixin.qq.com/s/2jOREB5st0VyBUQIBEjdIw) - [ ] [宁波市第九届网络安全大赛决赛成绩公示](https://mp.weixin.qq.com/s/xQRzcUYlY4m3_aicNNwjNA) - [ ] [比拼攻防技艺 共筑安全屏障|2026年宁波市第九届网络安全大赛圆满举办](https://mp.weixin.qq.com/s/VU0FxrJTpqalKXn4VYjZbQ) - [ ] [(CCISC-2026)全国大学生信息安全竞赛总决赛见闻录(含题目附件)](https://mp.weixin.qq.com/s/m6K-pcDQ_HxOHoAwYdgkog) - [ ] [2026年浙江省信息通信业职业技能竞赛(信息安全测试员竞赛) 初赛Wireup](https://mp.weixin.qq.com/s/X4-phEwNpQn6u3S89uXp-A) - [ ] [关注 | 东南亚电诈黑产手段升级向全球渗透](https://mp.weixin.qq.com/s/j280eV345vWy2H6wdh5aeg) - [ ] [评论 | OpenAI模型失控敲响网络安全警钟](https://mp.weixin.qq.com/s/kCk51fpM-WHEDvB8bEksgw) - [ ] [【免费领】超700页!CISSP官方权威学习指导手册(中文版)](https://mp.weixin.qq.com/s/GHRAm8vuURSqxEBcDVTTGA) - [ ] [记一次有趣的逻辑漏洞挖洞经历](https://mp.weixin.qq.com/s/2WTRR76u-OTCRCTQT5uI6g) - [ ] [2026年8月份网络安全态势感知月报](https://mp.weixin.qq.com/s/K5YPbtiZ8UrZC2eup0ERCA) - [ ] [《中国新电商发展报告(2026)》正式发布](https://mp.weixin.qq.com/s/FNAIGyfsBKxdw4s99P8s8Q) - [ ] [上半年数字产业收入超20万亿元](https://mp.weixin.qq.com/s/rX3yde1ksHYiwFMyiLWzXg) - [ ] [安全工程师拿下 OSCP!他的备考思路值得借鉴](https://mp.weixin.qq.com/s/x-h82hZQwM1LDiKuscdTtA) - [ ] [Nacos 管理接口权限绕过漏洞](https://mp.weixin.qq.com/s/Xddr4j9TxMnV2wVKsxCOeg) - [ ] [人工智能安全能力成熟度评估方法(ASMM)国标征求意见](https://mp.weixin.qq.com/s/LteJlGNNWLqq5xsXj_-rHw) - [ ] [9月开班计划|信息安全资质证书](https://mp.weixin.qq.com/s/-G0CXuK9R4G0pAUci1XfpQ) - [ ] [线下活动:CRA合规倒计时 从法规解读到实践落地的全链路实战分享](https://mp.weixin.qq.com/s/6LzDycpRBTAn4wbrBRNLfA) - [ ] [JeecgBoot 积木报表 | 最新漏洞已成功复现](https://mp.weixin.qq.com/s/qxYWo5NbOOiJHpPd99gARg) - [ ] [第十六届网络安全漏洞分析与风险评估大会--信息安全企业家论坛邀您参会](https://mp.weixin.qq.com/s/WEiDDAsjK2XViH_StBuzqA) - [ ] [网络安全日报 | 2026-08-31](https://mp.weixin.qq.com/s/WqyxD6ey5k7c_Sut7shhCA) - [ ] [告别告警疲劳,一站式开启智能化安全运营新高度](https://mp.weixin.qq.com/s/SO_N95koS9dnTnEkved6FQ) - [ ] [蜜罐 & 沙箱:一个盯“人”,一个盯“物”](https://mp.weixin.qq.com/s/8_4gG75mxPXulp3B5o0D-A) - [ ] [阿里云招人啦~](https://mp.weixin.qq.com/s/NNC94ZP29VhdZSrlQ3Tm7w) - [ ] [沈昌祥院士:构建安全可信数据空间](https://mp.weixin.qq.com/s/cd09KW4zHgMdAon0vkOT-w) - [ ] [聚焦 | “数智共振·安全筑基——数据要素赋能人工智能高质量发展交流活动”举行](https://mp.weixin.qq.com/s/0W5prKL9Wc8qwdSH5aIb9w) - [ ] [AI 简讯|AI智能体入侵Hugging Face事件复盘与启示](https://mp.weixin.qq.com/s/Efwp2aBU3TBU-YO9MRy36g) - [ ] [美中央情报局出现历史性人员外流,美情报体系人才流失、组织效能变化及其对战略竞争能力评估的影响](https://mp.weixin.qq.com/s/axb1WsZYHZmduqLWil3hvg) - [ ] [参会报名火爆进行中丨2026 CCS 成都网络安全技术交流活动「AI向善,安全有道」](https://mp.weixin.qq.com/s/d_HxQzuB1txgMMt9YbpBng) - [ ] [深耕数据安全赛道 北信源数据防泄露解决方案护航政企数字化发展](https://mp.weixin.qq.com/s/Ve025aAewUi0bbax77sGrw) - [ ] [密码学大模型:玄知大模型V4发布](https://mp.weixin.qq.com/s/2tBLIPBPYsxbTUdOVElNOg) - [ ] [【漏洞挖掘】新手入门SRC漏洞挖掘!从入门到高阶实战指南,从哪学?选什么平台?学习路线?](https://mp.weixin.qq.com/s/O8Yfomwf1HU1beM0-RIJ7Q) - [ ] [教育部教育管理信息中心举办2026教育数据安全专题研修班,苗春雨受邀授课](https://mp.weixin.qq.com/s/CRh-bCc1gNKZadPZe6Ly6g) - [ ] [【安全速报】8月31日高危漏洞紧急预警](https://mp.weixin.qq.com/s/K5l0GEK9z3BjdoN-ftGjWQ) - [ ] [【警钟长鸣】2026年8月网络安全典型案例汇总](https://mp.weixin.qq.com/s/-1h6BhPBkW8FjHkO4tuVzQ) - [ ] [授权培训机构2026年9月CISP培训开班计划公告](https://mp.weixin.qq.com/s/UVXbmoS2546LkpXw74hBoA) - [ ] [Redstone v1.2.0 正式发布|红宝石兑换开放,永久授权进入最后阶段](https://mp.weixin.qq.com/s/Pazj3FWaZYAkVEwYjiuNXQ) - [ ] [十月砺刃·蓉城研战|涉虚拟货币案件打击实战培训10月班(成都站第36期)启动报名!](https://mp.weixin.qq.com/s/sIGDGyPfsPkckfVjPxhOnw) - [ ] [网络安全:亏损 TOP 10(2026 年上半年)](https://mp.weixin.qq.com/s/VNWmvJsSRJ-bronNgIADzw) - [ ] [微信小程序AI全自动化渗透工具](https://mp.weixin.qq.com/s/CE6Bkg60qCObXz6mJpBpfQ) - [ ] [净网专项行动 | 网警公布10起涉吉隆泥石流网络谣言典型案例](https://mp.weixin.qq.com/s/wS2yqy9i0_PKnCmiuH7agQ) - [ ] [SRC漏洞怎么挖?App挖洞让你爽那赏金](https://mp.weixin.qq.com/s/TnmdeoFPqxp7HQIaMVtYLw) - [ ] [国自然中标真不难!10年真实评审1v1拔高本子质量,中标率提升78.6%!](https://mp.weixin.qq.com/s/tb-7QXqWWA3PvCYxIu3iQg) - [ ] [MongoDB 严重安全漏洞需立即修补](https://mp.weixin.qq.com/s/seFA7amuHcHy4nBU8BF-qg) - [ ] [【20260831】网安市场周度监测Vol.324](https://mp.weixin.qq.com/s/KncUdWSjQrfBFEeDCENz_Q) - [ ] [很严重了,劝全体网安极限搞钱吧。。](https://mp.weixin.qq.com/s/-xz1_Jead2CY4STRM8TVew) - [ ] [从AI诈骗到勒索攻击,企业安全建设这几点不能忽视](https://mp.weixin.qq.com/s/ktSyRoXcenBgcpo-ZwZ6NQ) - [ ] [一个人的AI Agent实践录](https://mp.weixin.qq.com/s/SOZ41hZH0ZJatDxK4qOm1w) - [ ] [每周网络安全简讯 ( 2026年 第35周 )](https://mp.weixin.qq.com/s/r0LagLE-xDxho_cfLoIOjw) - [ ] [多次获奖到商业化落地:「曜鉴」率先跨过安全智能体落地门槛](https://mp.weixin.qq.com/s/ZlodDCI5tEZpK-rx8cSGxg) - [ ] [绿盟科技:智能网联汽车信息安全挑战与思考](https://mp.weixin.qq.com/s/7VYM1U0JB4TH22TQwVIQCQ) - [ ] [121 个逆向Skills,覆盖恶意软件分析、软件逆向、固件/嵌入式、移动应用、脱壳/反混淆、软件破解、漏洞挖掘、托管代码、取证/情报、CTF等](https://mp.weixin.qq.com/s/JOROH30bMRhdNzPraHO_UA) - [ ] [AutoPT 2.0 - 具有普适性的AI自动化渗透测试工具](https://mp.weixin.qq.com/s/tcEdoxRumYNVNPana5ucSQ) - [ ] [浙江用 AI 揪出招投标\"影子围标\",数据碰撞破隐秘交易,冯疆案获刑二年六个月](https://mp.weixin.qq.com/s/XVw_4SxLPraMlYgYF36-Rw) - [ ] [成人内容盗版社区 simpcity 290 万账号外泄,TravelClub.es 与巴西户籍样本在野](https://mp.weixin.qq.com/s/sClJqAwmP8C4qwmBfUovcQ) - obaby 𝐢𝐧⃝ void - [ ] [买垃圾](https://zhongxiaojie.cn/2026/08/1798/) - SecWiki News - [ ] [SecWiki News 2026-08-31 Review](http://www.sec-wiki.com/?2026-08-31) - 安全客-有思想的安全新媒体 - [ ] [1000个Builder正在用96小时做产品,我们想聊聊Demo之后的事](https://www.anquanke.com/post/id/316045) - [ ] [OpenAI自曝家丑:1200个AI智能体"组团造反",自主挖零日攻破Hugging Face](https://www.anquanke.com/post/id/316042) - Darknet – Hacking Tools, Hacker News & Cyber Security - [ ] [Praetorian – Offensive Security Tools Built Around Portable Go Workflows](https://www.darknet.org.uk/2026/08/praetorian-offensive-security-go-tools/) - Planet Classpath - [ ] [Thomas Fitzsimmons: Glove82](https://www.fitzsim.org/blog/?p=840) - Horizon3 - [ ] [Frontier AI Changes Vulnerability Discovery. It Doesn’t Change How Breaches Happen.](https://horizon3.ai/intelligence/blogs/frontier-ai-vulnerability-discovery/) - Kitploit - [ ] [sublime-rules — Updated!](https://kitploit.com/en/posts/github-sublime-security-sublime-rules-31e913518c10284557c89a05378eff06d149ae39d00595b92bfd14aaa1bc2d05) - [ ] [proxy v0.7.0](https://kitploit.com/en/posts/github-git-pkgs-proxy-v070) - [ ] [aotopsy v1.1.0](https://kitploit.com/en/posts/github-bronils-aotopsy-v110) - [ ] [seccomp-tools v1.7.1](https://kitploit.com/en/posts/github-david942j-seccomp-tools-v171) - [ ] [cmcp v0.4.0](https://kitploit.com/en/posts/github-agentrust-io-cmcp-v040) - [ ] [invisible_playwright v0.7.2](https://kitploit.com/en/posts/github-feder-cr-invisible_playwright-v072) - [ ] [Misconfiguration-Manager — Updated!](https://kitploit.com/en/posts/github-subat0mik-misconfiguration-manager-1e6877a81517bfd64c85be72ddb4d6abac4ddb7d42aa8b0419fc5813c48e9ddb) - [ ] [zeek v9.0.0-rc2](https://kitploit.com/en/posts/github-zeek-zeek-v900-rc2) - [ ] [tfc — Updated!](https://kitploit.com/en/posts/github-maqp-tfc-85949083cbe1b704461575d678b71fc2673255120ca57e80315deb8637070c53) - [ ] [Ciphey v0.12.1](https://kitploit.com/en/posts/github-bee-san-ciphey-v0121) - [ ] [Awesome-LLMs-for-Vulnerability-Detection — Updated!](https://kitploit.com/en/posts/github-huhusmang-awesome-llms-for-vulnerability-detection-3920ebb3d3bdcd5b8bdb2b50543e1d23feb21ffa595679e5a69e4ea47b24999d) - [ ] [GhostESP v2.1.2-pre2](https://kitploit.com/en/posts/github-ghostesp-revival-ghostesp-v212-pre2) - [ ] [RustHound-CE v2.5.2](https://kitploit.com/en/posts/github-g0h4n-rusthound-ce-v252) - [ ] [awesome-soc — Updated!](https://kitploit.com/en/posts/github-cyb3rxp-awesome-soc-68578bf09f91ff49ff171033fb185676dcf207c2a92a63795cca22474433bc47) - [ ] [Sandb0x-Xtract0r v0.15.0](https://kitploit.com/en/posts/github-darnellwashingtonjr94-art-sandb0x-xtract0r-v0150) - [ ] [sogen — Updated!](https://kitploit.com/en/posts/github-momo5502-sogen-6072423368000a6f09717aab903aba8179d820a360809b652ea91f81d92bd78b) - [ ] [awesome-list — Updated!](https://kitploit.com/en/posts/github-0xor0ne-awesome-list-ad9f10ca9bfe8812f252f488c8b310974f7fea13fda6045d8d3708984770c42c) - [ ] [clawk v0.4.0](https://kitploit.com/en/posts/github-clawkwork-clawk-v040) - [ ] [USBvalve v1.0.1](https://kitploit.com/en/posts/github-cecio-usbvalve-v101) - [ ] [dnsx v1.3.1](https://kitploit.com/en/posts/github-projectdiscovery-dnsx-v131) - [ ] [PCLink v4.7.0](https://kitploit.com/en/posts/github-bytedz-pclink-v470) - [ ] [bounty-targets-data — Updated!](https://kitploit.com/en/posts/github-arkadiyt-bounty-targets-data-67a1b297893465d66b4dd407d32ebfee35967b00b367d351233ba51a71389040) - [ ] [vc5 v0.3.4](https://kitploit.com/en/posts/github-davidcoles-vc5-v034) - [ ] [NoiseHound v1.2.0](https://kitploit.com/en/posts/github-warpedatom-noisehound-v120) - [ ] [httpx v1.11.0](https://kitploit.com/en/posts/github-projectdiscovery-httpx-v1110) - [ ] [osmedeus v5.1.0](https://kitploit.com/en/posts/github-j3ssie-osmedeus-v510) - [ ] [wifit3 v0.0.5](https://kitploit.com/en/posts/github-derv82-wifit3-v005) - [ ] [GoogleRecaptchaBypass — Updated!](https://kitploit.com/en/posts/github-sarperavci-googlerecaptchabypass-e780b904e1f6a31c13db70a8d5a6fd106a3870d4d2e774d0f953dd5c3f407643) - [ ] [nightcrawler — Updated!](https://kitploit.com/en/posts/github-garagehq-nightcrawler-92f557e638b634a33630267578d646db6a46f529b6382ee89fb5cf0fd02b1423) - [ ] [skitter-creek-bath-salts — Updated!](https://kitploit.com/en/posts/github-xoreaxeaxeax-skitter-creek-bath-salts-52e73a9b33d0afe13821cf7d6ea93523bca85db135a1f1f682e0986e3a9a01bc) - [ ] [tcpreplay v4.6.1](https://kitploit.com/en/posts/github-appneta-tcpreplay-v461) - [ ] [ship-safe v9.7.5](https://kitploit.com/en/posts/github-asamassekou10-ship-safe-v975) - [ ] [awesome-connected-things-sec — Updated!](https://kitploit.com/en/posts/github-v33ru-awesome-connected-things-sec-ff4329506e2824e3a8d548a915502c7d841d9963f187e8366985aaafd54fa212) - [ ] [OnionBrowser v3.4.1](https://kitploit.com/en/posts/github-onionbrowser-onionbrowser-v341) - [ ] [cve — Updated!](https://kitploit.com/en/posts/github-0xmarcio-cve-40171cf6e265bd1fbd03c93820a717b5457d6bbeea112530b6637cb1b2f905e5) - [ ] [android-security-awesome — Updated!](https://kitploit.com/en/posts/github-ashishb-android-security-awesome-fa13957c344ea794d8b21cfd65f98114b634c6317b32fd2ac8129a08446ad359) - [ ] [violin v3.2.1](https://kitploit.com/en/posts/github-strategic-automation-violin-v321) - Reverse Engineering - [ ] [/r/ReverseEngineering's Weekly Questions Thread](https://www.reddit.com/r/ReverseEngineering/comments/1w3633m/rreverseengineerings_weekly_questions_thread/) - [ ] [Turned a $15 eBay "smart NIC" nobody could get working into a real 10GbE card (no vendor firmware, fully reversible)](https://www.reddit.com/r/ReverseEngineering/comments/1w3rads/turned_a_15_ebay_smart_nic_nobody_could_get/) - [ ] [(DEFCON) How much of our Bluetooth firmware reverse engineering work can now be automated with LLMs?](https://www.reddit.com/r/ReverseEngineering/comments/1w3bhk3/defcon_how_much_of_our_bluetooth_firmware_reverse/) - [ ] [Turning Practical Malware Analysis into short-form content — looking for advice from people who've done this kind of public learning](https://www.reddit.com/r/ReverseEngineering/comments/1w3qopn/turning_practical_malware_analysis_into_shortform/) - [ ] [Analysis of a Signed Silver Fox Group AV/EDR Killer Kernel Driver](https://www.reddit.com/r/ReverseEngineering/comments/1w3mreg/analysis_of_a_signed_silver_fox_group_avedr/) - [ ] [X-Men Destiny PC Port / Recompilation (v0.1.0-alpha.1)](https://www.reddit.com/r/ReverseEngineering/comments/1w3cajv/xmen_destiny_pc_port_recompilation_v010alpha1/) - [ ] [Undocumented Atari Slapstic 137412-103 driven by 68010 prefetch (Marble Madness)](https://www.reddit.com/r/ReverseEngineering/comments/1w3i01e/undocumented_atari_slapstic_137412103_driven_by/) - [ ] [No-open exploit for code execution on the Wyze WLPA19CV2 LED bulb](https://www.reddit.com/r/ReverseEngineering/comments/1w34j4y/noopen_exploit_for_code_execution_on_the_wyze/) - GuidePoint Security - [ ] [Navigating the New Frontier: Identity Security and the Governance of AI Agents](https://www.guidepointsecurity.com/blog/identity-security-governance-ai-agents/) - Exploit-DB.com RSS Feed - [ ] [[webapps] C-MOR 6.0104 - Directory Traversal](https://www.exploit-db.com/exploits/52666) - [ ] [[webapps] C-MOR 6.0104 - Cross-Site Scripting (XSS)](https://www.exploit-db.com/exploits/52665) - [ ] [[webapps] CubeCart 6.7.4 - SQL injection](https://www.exploit-db.com/exploits/52664) - [ ] [[webapps] CubeCart 6.7.4 - SQL](https://www.exploit-db.com/exploits/52663) - [ ] [[webapps] CubeCart 6.7.4 - Stored XSS](https://www.exploit-db.com/exploits/52662) - [ ] [[webapps] CubeCart 6.7.4 - Cross-Site Scripting](https://www.exploit-db.com/exploits/52661) - [ ] [[webapps] Linksys E1200_2.0.04 - Unauthenticated OS Command Injection](https://www.exploit-db.com/exploits/52660) - [ ] [[webapps] Langflow 1.8.4 - Path Traversal to Remote Code Execution](https://www.exploit-db.com/exploits/52659) - Malwarebytes - [ ] [McKesson confirms cyber incident after ShinyHunters claims patient-data theft](https://www.malwarebytes.com/blog/news/2026/08/mckesson-confirms-cyber-incident-after-shinyhunters-claims-patient-data-theft) - [ ] [A week in security (August 24 – August 30)](https://www.malwarebytes.com/blog/news/2026/08/a-week-in-security-august-24-august-30) - rtl-sdr.com - [ ] [Overhead 1090: New iOS/tvOS ADS-B Mapping App for Local PiAware/dump1090 Receivers](https://www.rtl-sdr.com/overhead-1090-new-ios-tvos-ads-b-mapping-app-for-local-piaware-dump1090-receivers/) - HackerNews - [ ] [McKesson 在 ShinyHunters 宣称窃取患者数据后披露泄露事件](http://0.0.0.0:8080/post/64619) - [ ] [Brave 浏览器新增电子邮件别名功能,帮助用户规避追踪](http://0.0.0.0:8080/post/64618) - [ ] [FulcrumSec 宣称对曼彻斯特机场黑客攻击负责,窃取 86 GB 数据](http://0.0.0.0:8080/post/64617) - [ ] [五个 WordPress 插件和主题的严重漏洞可导致网站接管或 RCE](http://0.0.0.0:8080/post/64616) - [ ] [TerminalFix 利用虚假 Cloudflare CAPTCHA 部署反向隧道后门](http://0.0.0.0:8080/post/64615) - [ ] [柏林拒绝向窃取该市州网络数据的黑客支付赎金](http://0.0.0.0:8080/post/64614) - text/plain - [ ] [The Windows Security App](https://textslashplain.com/2026/08/31/the-windows-security-app/) - 奇客Solidot–传递最新科技情报 - [ ] [OpenShot 4.0 释出](https://www.solidot.org/story?sid=85246) - [ ] [加州议会通过年龄验证法案,Linux BSD 豁免](https://www.solidot.org/story?sid=85245) - [ ] [Linux 7.3-rc1 释出](https://www.solidot.org/story?sid=85244) - [ ] [Steam 平台 2003-2013 年的几乎所有游戏泄露](https://www.solidot.org/story?sid=85243) - [ ] [Google 改变了其搜索结果的展示方式](https://www.solidot.org/story?sid=85242) - [ ] [植物如何应对高温](https://www.solidot.org/story?sid=85241) - [ ] [人类何时开始不爱吃昆虫?](https://www.solidot.org/story?sid=85240) - [ ] [天文学家可能发现首个没有恒星的星系](https://www.solidot.org/story?sid=85239) - [ ] [韩国准备向所有民众提供免费 AI 服务](https://www.solidot.org/story?sid=85238) - [ ] [柏林市遭到黑客攻击和勒索](https://www.solidot.org/story?sid=85237) - [ ] [Google Maps 在美国将安大略湖更名为美国湖](https://www.solidot.org/story?sid=85236) - [ ] [NASA 成功发射罗曼太空望远镜](https://www.solidot.org/story?sid=85235) - 黑海洋Wiki | AI机器人硬件开发 | 网络安全攻防实战 | 区块链技术文档教程 - 免费资源平台 - [ ] [苹果公司正测试折叠屏iPhone专用手写笔](https://blog.upx8.com/%E8%8B%B9%E6%9E%9C%E5%85%AC%E5%8F%B8%E6%AD%A3%E6%B5%8B%E8%AF%95%E6%8A%98%E5%8F%A0%E5%B1%8FiPhone%E4%B8%93%E7%94%A8%E6%89%8B%E5%86%99%E7%AC%94) - 腾讯玄武实验室 - [ ] [每日安全动态推送(26/8/31)](https://mp.weixin.qq.com/s?__biz=MzA5NDYyNDI0MA==&mid=2651960538&idx=1&sn=38adda9f832148a74497c8d99bdf4977) - 腾讯安全应急响应中心 - [ ] [更优质的发现,更丰厚的回报|严重漏洞额外奖励全面升级](https://mp.weixin.qq.com/s?__biz=MjM5NzE1NjA0MQ==&mid=2651208677&idx=1&sn=c8b8447236999622d5ebec232e1a7425) - 黑鸟 - [ ] [一条隐蔽的IP转移通道,德国政客名下塞尔维亚公司助力俄服务商绕开管控](https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451188368&idx=1&sn=dc52f7695377e51a491a0ee97db34256) - 微步在线研究响应中心 - [ ] [原创漏洞 | JeecgBoot 积木报表远程代码执行漏洞](https://mp.weixin.qq.com/s?__biz=Mzg5MTc3ODY4Mw==&mid=2247508861&idx=1&sn=2cf7864837777962955ea59ce173a1ce) - 代码卫士 - [ ] [ServiceNow 三个满分漏洞可使未认证攻击者执行代码和 SQL](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247526993&idx=1&sn=31a1edf6c798f7b40a0cf0daf31816b7) - 威努特安全网络 - [ ] [IDC:威努特连续四年稳居中国工控安全审计市场份额前三](https://mp.weixin.qq.com/s?__biz=MzAwNTgyODU3NQ==&mid=2651143732&idx=1&sn=0d2b988b16a75a67fc4b1b6754f6db2c) - 安全内参 - [ ] [医疗巨头遭勒索攻击,2.84亿条患者隐私数据疑泄露](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516499&idx=1&sn=110f85e410f7ed9ef824c28c591c2aec) - [ ] [从加固到反击:美国空军第16航空队推出AI时代网络防御新计划](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516499&idx=2&sn=deb34ff9c1118994f6a3d761af07855b) - 奇安信 CERT - [ ] [【已复现】JeecgBoot 积木报表 autoexport 远程代码执行漏洞(QVD-2026-56805)安全风险通告](https://mp.weixin.qq.com/s?__biz=MzU5NDgxODU1MQ==&mid=2247507288&idx=1&sn=f926aec873d115cc70e7b2c61cb8fd50) - 看雪学苑 - [ ] [仅剩10天!SDC2026『议题征集』9月10日正式截止,欢迎提交议题](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458619143&idx=1&sn=e439f1791d5352b3ab2ee823dd02fb1c) - [ ] [商业级加固 Native Loader 与 VMP 解释器逆向分析实战](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458619143&idx=2&sn=377acdc201dac0f7cf8fdfdbe377dc96) - [ ] [微软UFO高危漏洞:无需认证即可远程接管安卓设备](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458619143&idx=3&sn=37bbafc471b9233f1d5d0f24a2d66313) - 奇安信威胁情报中心 - [ ] [一句「npm publish」评论,撬开一条可信发布流水线:openapi-react-query-codegen 供应链投毒事件深度复盘](https://mp.weixin.qq.com/s?__biz=MzI2MDc2MDA4OA==&mid=2247520121&idx=1&sn=4e6bf34e5da77781c4ca95360c1a5842) - 安全分析与研究 - [ ] [内核级攻击](https://mp.weixin.qq.com/s?__biz=MzA4ODEyODA3MQ==&mid=2247497084&idx=1&sn=fe4615f65c610c093e69d8777145a02e) - 丁爸 情报分析师的工具箱 - [ ] [【资料】生成式人工智能的静默认知颠覆——改写规则](https://mp.weixin.qq.com/s?__biz=MzI2MTE0NTE3Mw==&mid=2651157224&idx=1&sn=f3624366574ba0f7f712175ec8253743) - [ ] [【资料】我们以前来过这里](https://mp.weixin.qq.com/s?__biz=MzI2MTE0NTE3Mw==&mid=2651157224&idx=2&sn=17e204bbfb27f03acedf64e8f8b667d0) - 君哥的体历 - [ ] [多次获奖到商业化落地:「曜鉴」率先跨过安全智能体落地门槛](https://mp.weixin.qq.com/s?__biz=MzI2MjQ1NTA4MA==&mid=2247492553&idx=1&sn=9408b4a4fe755e38849787ab85427895) - [ ] [代码“不落云”就安全吗?企业AI评审、SRC运营与邮件TLS的现实选择|总第321周](https://mp.weixin.qq.com/s?__biz=MzI2MjQ1NTA4MA==&mid=2247492553&idx=2&sn=363c4b0a62bced7b7dfc0d4c7d51ae9b) - 安全圈 - [ ] [【安全圈】交管12123突发系统故障崩上热搜官方回应与应急指南](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078558&idx=1&sn=1f4bb09660d89dfc5109163e3064a6bd) - [ ] [【安全圈】假冒CF验证码投毒终端反向隧道黑客打穿内网](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078558&idx=2&sn=9454912da70ce78d2b7c59008c65bf9d) - [ ] [【安全圈】美国司法部更正指控澄清联邦机构未被攻破](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078558&idx=3&sn=a3a50a8cd3f9d2e2a9113f5e239f0316) - 字节跳动安全中心 - [ ] [ByteSRC中秋福利|0 积分兑换「花渐满,好时长」限定礼盒](https://mp.weixin.qq.com/s?__biz=MzUzMzcyMDYzMw==&mid=2247496335&idx=1&sn=cbbfb4a7bfa345e9b5c5a5cd43d9680b) - 安全牛 - [ ] [绿盟NSFOCUS AI登顶CyberGym全球榜单刷新AI智能攻防纪录](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142528&idx=1&sn=943b8cbed56fb0b1b50bebb4ed9c824d) - [ ] [9 月 1 日正式实施:两项数据资产国标落地,规范分类编码与登记全流程;中证协、中基协联合发布交易信息系统接入新规 | 牛览](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142528&idx=2&sn=c6befc40fe86925553e5dabcb6d07cc2) - 电子物证 - [ ] [【软件相似性检验中归一化处理的技术规范与操作实践】](https://mp.weixin.qq.com/s?__biz=MzAwNDcwMDgzMA==&mid=2651049128&idx=1&sn=62861d73a95758680d07b19ff1d16311) - [ ] [【Android ID 溯源锁定涉案设备实战研究】](https://mp.weixin.qq.com/s?__biz=MzAwNDcwMDgzMA==&mid=2651049128&idx=2&sn=af3d9e0282c4385f6829bc0e29c12255) - 中国信息安全 - [ ] [前沿 | 智能眼镜安全风险分析及对策建议——以Meta智能眼镜跨境数据泄露事件为例](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664266056&idx=1&sn=2d0e1315079f9444e6297001f9b4fe85) - [ ] [专家解读 | 时建中:携程实施垄断被处罚案深度解读](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664266056&idx=2&sn=607db820949fedd1717c1e4a48ab43a2) - [ ] [关注 | 网警公布10起涉吉隆泥石流网络谣言典型案例](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664266056&idx=3&sn=1d61bed495894224fe26d7a158c2c8b6) - [ ] [关注 | 东南亚电诈黑产手段升级向全球渗透](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664266056&idx=4&sn=9f278c45e2c70dac7961f68b3121db18) - [ ] [评论 | OpenAI模型失控敲响网络安全警钟](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664266056&idx=5&sn=0128c447a7f61c51572902e5f82b5f29) - M01N Team - [ ] [95.02%漏洞成功率 | 绿盟科技NSFOCUS AI斩获CyberGym全球第一](https://mp.weixin.qq.com/s?__biz=MzkyMTI0NjA3OA==&mid=2247495478&idx=1&sn=0df36824e37db8e9e59ee27d743e5a91) - 补天平台 - [ ] [补天中秋礼盒开箱 | 通宵挖洞的夜晚,该轮到月亮哄你睡觉](https://mp.weixin.qq.com/s?__biz=MzI2NzY5MDI3NQ==&mid=2247511017&idx=1&sn=91edbe44966480d613d1c5e21ed1739d) - 慢雾科技 - [ ] [活动回顾|慢雾参与香港多场 Web3 活动,分享安全与合规实践](https://mp.weixin.qq.com/s?__biz=MzU4ODQ3NTM2OA==&mid=2247505898&idx=1&sn=3ca1ba4a2cdb362d34055a6c4cfe45cb) - 字节跳动技术团队 - [ ] [CloudLens for TOS:打通日志分析与数据透视,让对象存储可见、可查、可治理](https://mp.weixin.qq.com/s?__biz=MzI1MzYzMjE0MQ==&mid=2247521877&idx=1&sn=0a0633b5daac6e93db59009212cb3e93) - 极客公园 - [ ] [对话 Sharpa 李一帆:通用机器人要么全能,要么无能](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653112985&idx=1&sn=f59e19ac98471ab3d74ac497ab76cecb) - [ ] [流量红利退潮,快手想用 AI 和老友们破局](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653112985&idx=2&sn=8aebeab73f8317138503496ae3420610) - [ ] [AirPods 5 或将于 9 月发布;17.6 万,特斯拉港澳车型降价;「网抑云」登陆鸿蒙系统|极客早知道](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653112967&idx=1&sn=a933da637aec9afd42034467fec69f7f) - 数世咨询 - [ ] [智能网联汽车安全选型指南](https://mp.weixin.qq.com/s?__biz=MzkxNzA3MTgyNg==&mid=2247543828&idx=1&sn=733bf378d0acdb7f70f641cc47e461d5) - 情报分析师 - [ ] [你在对话中,其实已经被"掌控"了——识别隐性操控的七把解剖刀,以及让对方暴露意图的反制手册](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569363&idx=1&sn=87de280808fdf2cf05a99cca6232f913) - [ ] [美中央情报局出现历史性人员外流,美情报体系人才流失、组织效能变化及其对战略竞争能力评估的影响](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569363&idx=2&sn=dbf9fb5f627c45c74dd6b4e94e5db620) - NISL实验室 - [ ] [浏览器跳转背后:跨境BGP与DNS劫持事件追踪与复盘](https://mp.weixin.qq.com/s?__biz=MzUxMTEwOTA3OA==&mid=2247485807&idx=1&sn=ecf8f32789c3a0f2920bb9115bbc8e56) - 360数字安全 - [ ] [能源行业标杆落地|360企业安全浏览器中标某头部能源央企客户](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586806&idx=1&sn=dd74fadd8e9c6cac6f0794e24bc6728e) - CNVD漏洞平台 - [ ] [CNVD漏洞周报2026年第34期](https://mp.weixin.qq.com/s?__biz=MzU3ODM2NTg2Mg==&mid=2247497251&idx=1&sn=9c68fb3e9c339921b35e16779ac3a787) - [ ] [上周关注度较高的产品安全漏洞(20260824-20260830)](https://mp.weixin.qq.com/s?__biz=MzU3ODM2NTg2Mg==&mid=2247497251&idx=2&sn=ac5ec45ceaf6e2c54443a1bc1eba1039) - Over Security - [ ] [Cronos blockchain restarts after $74 million Tectonic exploit](https://www.bleepingcomputer.com/news/security/cronos-blockchain-restarts-after-74-million-tectonic-exploit/) - [ ] [Five plead guilty in latest federal ATM jackpotting case](https://therecord.media/kansas-atm-jackpotting-guilty-pleas) - [ ] [Fraudsters steal $6 million from Tectonic crypto platform after inflating token price](https://therecord.media/crypto-tectonic-hack-cronos) - [ ] [Microsoft warns of TerminalFix attacks deploying reverse tunnels](https://www.bleepingcomputer.com/news/security/microsoft-warns-of-terminalfix-attacks-deploying-reverse-tunnels/) - [ ] [OpenAI confirms ChatGPT outage as users report errors](https://www.bleepingcomputer.com/news/artificial-intelligence/openai-confirms-chatgpt-outage-as-users-report-errors/) - [ ] [Microsoft Exchange Online outage causes email failures, auth issues](https://www.bleepingcomputer.com/news/microsoft/microsoft-exchange-online-outage-causes-email-failures-auth-issues/) - [ ] [How AI could make it harder for governments to use hacking tools](https://techcrunch.com/2026/08/31/how-ai-could-make-it-harder-for-governments-to-use-hacking-tools/) - [ ] [Cyber attacco agli aeroporti britannici: a rischio i dati dei passeggeri in transito](https://www.cybersecurity360.it/news/cyber-attacco-agli-aeroporti-britannici-a-rischio-i-dati-dei-passeggeri-in-transito/) - [ ] [Chinese Fire Ant hackers turn Cisco routers into spying platforms](https://www.bleepingcomputer.com/news/security/chinese-fire-ant-hackers-turn-cisco-routers-into-spying-platforms/) - [ ] [Berlin says it won’t pay ransom after hackers steal government data](https://therecord.media/berlin-says-it-wont-pay-ransom-after-hackers-steal-gov-data) - [ ] [File servers are here to stay. Here’s how to manage them securely](https://www.bleepingcomputer.com/news/security/file-servers-are-here-to-stay-heres-how-to-manage-them-securely/) - [ ] [Berlin confirms data theft after Rhysida ransomware attack claims](https://www.bleepingcomputer.com/news/security/berlin-confirms-data-theft-after-rhysida-ransomware-attack-claims/) - [ ] [Pharmaceutical giant McKesson warns of 'service degradation' following cyberattack](https://therecord.media/mckesson-cyberattack-ransomware-pharma) - [ ] [Slovenian casinos reopen after cyberattack knocked gaming systems offline](https://therecord.media/slovenia-cyberattack-casinos-reopen) - [ ] [PaperCut Issues Second Emergency Patch as Researchers Break Fix for Exploited Zero-Days](https://thecyberexpress.com/papercut-issues-second-emergency-patch/) - [ ] [Boston Scientific Cyberattack Limited to Unauthorized Access on Certain On-Premises Systems](https://thecyberexpress.com/boston-scientific-cyberattack/) - [ ] [Reward hacking: i confini incerti degli agenti AI autonomi nella sicurezza](https://www.cybersecurity360.it/nuove-minacce/reward-hacking-i-confini-incerti-degli-agenti-ai-autonomi-nella-sicurezza/) - [ ] [Ecco il Polo Italiano per il Cyber e lo Spazio. Ma ora si deve fare sistema](https://www.cybersecurity360.it/outlook/ecco-il-polo-italiano-per-il-cyber-e-lo-spazio-ma-ora-si-deve-fare-sistema/) - [ ] [Microsoft says Windows 11 KB5120998 update resets mouse settings](https://www.bleepingcomputer.com/news/security/microsoft-says-windows-11-kb5120998-update-resets-mouse-settings/) - [ ] [Anthropic Warns Commodity Infostealers Are Hijacking Claude Sessions to Drain Paid Usage](https://thecyberexpress.com/infostealers-hijacking-claude-sessions/) - [ ] [Shadow IT e organizzazione reale: cosa succede quando la procedura non governa più](https://www.cybersecurity360.it/legal/privacy-dati-personali/shadow-it-e-organizzazione-reale-cosa-succede-quando-la-procedura-non-governa-piu/) - [ ] [ValleyRAT masquerading as adware](https://securelist.com/valleyrat-backdoor-adware/121175/) - [ ] [Backup continui, CDN integrata e strumenti AI: la soluzione per blindare e scalare i progetti sul web](https://www.cybersecurity360.it/cultura-cyber/hosting-web-nvme-cdn-backup-sconto/) - [ ] [Nigerians extradited to US for sextortion, deaths of two teens](https://www.bleepingcomputer.com/news/security/nigerians-charged-US-over-sextortion-deaths-of-us-teens/) - [ ] [AshSqlite Vulnerability (CVE-2026-77846) Exposes Hidden JSON Fields](https://thecyberexpress.com/cve-2026-77846-ashsqlite-vulnerability/) - [ ] [AI Shared Responsibility Model: chi risponde della sicurezza nell’era della Generative AI](https://www.cybersecurity360.it/legal/ai-shared-responsibility-model-chi-risponde-della-sicurezza-nellera-della-generative-ai/) - [ ] [Anatomy of BraZetsu: How Cybercriminals Fuel the Underground Ecosystem](https://www.group-ib.com/blog/brazetsu-ai-enhanced-iab-marketplace/) - [ ] [Microsoft asks users to ignore 'Antivirus is turned off' errors](https://www.bleepingcomputer.com/news/microsoft/microsoft-asks-users-to-ignore-antivirus-is-turned-off-errors/) - [ ] [Praetorian – Offensive Security Tools Built Around Portable Go Workflows](https://www.darknet.org.uk/2026/08/praetorian-offensive-security-go-tools/) - [ ] [How to Install Proxmark3 on the ClockworkPi uConsole](https://www.mobile-hacker.com/2026/08/31/how-to-install-proxmark3-on-the-clockworkpi-uconsole/) - NETRESEC Network Security Blog - [ ] [OT Networks Still Need Monitoring](https://www.netresec.com/?page=Blog&month=2026-08&post=OT-Networks-Still-Need-Monitoring) - 长亭安全应急响应中心 - [ ] [【已复现】JimuReport 远程代码执行漏洞](https://mp.weixin.qq.com/s?__biz=MzIwMDk1MjMyMg==&mid=2247493359&idx=1&sn=35f7bcc61291616d4cc0201707eba82a) - Krypt3ia - [ ] [Special intelligence brief: Ratcliffe Moscow visit and Russian escalation risk against NATO](https://krypt3ia.wordpress.com/2026/08/31/special-intelligence-brief-ratcliffe-moscow-visit-and-russian-escalation-risk-against-nato/) - [ ] [Weekly all-source espionage intelligence brief](https://krypt3ia.wordpress.com/2026/08/31/weekly-all-source-espionage-intelligence-brief/) - bellingcat - [ ] [Investigating a Murder: Public Records Uncover New Clues in Chinatown Cold Case](https://www.bellingcat.com/news/us-canada/2026/08/31/investigating-a-murder-public-records-uncover-new-clues-in-chinatown-cold-case/) - 火绒安全 - [ ] [盗签伪装 内存匿踪│Go语言双层窃密木马攻击分析](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247536905&idx=1&sn=dd605be4c5aed7cbedf2e952be1e975f) - [ ] [诚邀渠道合作伙伴共启新征程](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247536905&idx=2&sn=b379340955c5c2399c50cbb56584795a) - SANS Internet Storm Center, InfoCON: green - [ ] [The Coding-Agent Trap: When a "Free" LLM Endpoint Is the Adversary, (Mon, Aug 31st)](https://isc.sans.edu/diary/rss/33298) - [ ] [ISC Stormcast For Monday, August 31st, 2026 https://isc.sans.edu/podcastdetail/10074, (Mon, Aug 31st)](https://isc.sans.edu/diary/rss/33296) - Coding Horror - [ ] [You Can't "Vibe Code" Love](https://blog.codinghorror.com/you-cant-vibe-code-love/) - Deeplinks - [ ] [EFF to Governor Newsom: Veto California’s AB 1709](https://www.eff.org/deeplinks/2026/08/eff-gov-newsom-veto-californias-ab-1709) - [ ] [EFF to Courts: Don’t Rewrite Copyright Over AI Hype](https://www.eff.org/deeplinks/2026/08/eff-courts-dont-rewrite-copyright-over-ai-hype) - [ ] [Doxxing Safety Part II: Incident Response](https://www.eff.org/deeplinks/2026/08/doxxing-safety-part-ii-incident-response) - [ ] [Doxxing Safety Pt I: Prevention and Footprint Management](https://www.eff.org/deeplinks/2026/08/doxxing-safety-pt-i-prevention-and-footprint-management) - [ ] [Privacy on the Map (Part 2): Progress, Pitfalls, and the Fight for Enforceable Location Data Protections](https://www.eff.org/deeplinks/2026/08/privacy-map-part-2-progress-pitfalls-and-fight-enforceable-location-data) - [ ] [LGBT Q&A: What’s One Thing I Can Do Today to Improve My Safety and Security Online as an LGBTQ+ Person?](https://www.eff.org/deeplinks/2026/08/lgbt-qa-whats-one-thing-i-can-do-today-improve-my-safety-and-security-online-lgbtq) - Instapaper: Unread - [ ] [Chi decide chi è terrorista Il caso AutisticiInventati e le differenze tra Usa, Regno Unito e Italia](https://formiche.net/2026/08/chi-decide-terrorista-caso-autistici-inventati/) - [ ] [Intro to Android Mobile Reverse Engineering](https://cellebrite.com/en/blog/intro-to-android-app-reverse-engineering/) - [ ] [Your Typing Pattern Could Be a Digital Fingerprint — But Can Forensics Really Identify You](https://www.buddingforensicexpert.in/2026/08/your-typing-pattern-could-be-digital-fingerprint.html) - [ ] [Top Free Data Recovery Software for Computers and Mobile Devices](https://www.buddingforensicexpert.in/2026/08/top-free-data-recovery-software.html) - The Hacker News - [ ] [North Korean Job Fraud Expands Beyond IT Into Healthcare and Sales](https://thehackernews.com/2026/08/north-korean-job-fraud-expands-beyond.html) - [ ] [⚡ Weekly Recap: Chinese Spy Proxy, AI Agents Go Off-Task, Router Backdoors and More](https://thehackernews.com/2026/08/weekly-recap-chinese-spy-proxy-ai.html) - [ ] [ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions](https://thehackernews.com/2026/08/valleyrat-backdoor-hides-in-signed.html) - [ ] [Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets](https://thehackernews.com/2026/08/aurora-ransomware-operators-use-cursor.html) - [ ] [Securing Claude Code: The New Compliance API, Local Visibility, and Identity Governance](https://thehackernews.com/2026/08/securing-claude-code-new-compliance-api.html) - [ ] [China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs](https://thehackernews.com/2026/08/china-linked-fire-ant-hijacks-cisco.html) - [ ] [DoJ Corrects China Hacking Claim, Says U.S. Agencies Were Targets, Not Victims](https://thehackernews.com/2026/08/doj-corrects-china-hacking-claim-says.html) - TG Soft Software House - News - [ ] [<strong>Vir.IT eXplorer PRO</strong><strong> </strong>supera con il massimo risultato, l'ultimo <strong>test</strong> effettuato a<strong> giugno 2026</strong> da <strong>AppEsteem </strong>per i <strong>prodotti AV DeceptorFighters</strong>](http://www.tgsoft.it/italy/news_archivio.asp?id=1765) - Securelist - [ ] [ValleyRAT masquerading as adware](https://securelist.com/valleyrat-backdoor-adware/121175/) - Blackhat Library: Hacking techniques and research - [ ] [ATM Flaws Reveal Key Weaknesses in the Software Supply Chain](https://www.reddit.com/r/blackhat/comments/1w3isrv/atm_flaws_reveal_key_weaknesses_in_the_software/) - [ ] [🙋♂️ What if you could write an encrypted (military-grade) love letter or diary notes that nobody can ever leak?](https://www.reddit.com/r/blackhat/comments/1w3ics9/what_if_you_could_write_an_encrypted/) - 安全419 - [ ] [《网安行业深度观察系列》 | 美国网络安全行业二十年整合史的经验与启示](https://mp.weixin.qq.com/s?__biz=MzUyMDQ4OTkyMg==&mid=2247554706&idx=1&sn=ae54fa813283ed4f5f8ee27649ff3b2b) - KitPloit - PenTest Tools! - [ ] [sublime-rules — Updated!](https://kitploit.com/en/posts/github-sublime-security-sublime-rules-31e913518c10284557c89a05378eff06d149ae39d00595b92bfd14aaa1bc2d05) - [ ] [proxy v0.7.0](https://kitploit.com/en/posts/github-git-pkgs-proxy-v070) - [ ] [aotopsy v1.1.0](https://kitploit.com/en/posts/github-bronils-aotopsy-v110) - [ ] [seccomp-tools v1.7.1](https://kitploit.com/en/posts/github-david942j-seccomp-tools-v171) - [ ] [cmcp v0.4.0](https://kitploit.com/en/posts/github-agentrust-io-cmcp-v040) - [ ] [invisible_playwright v0.7.2](https://kitploit.com/en/posts/github-feder-cr-invisible_playwright-v072) - [ ] [Misconfiguration-Manager — Updated!](https://kitploit.com/en/posts/github-subat0mik-misconfiguration-manager-1e6877a81517bfd64c85be72ddb4d6abac4ddb7d42aa8b0419fc5813c48e9ddb) - [ ] [zeek v9.0.0-rc2](https://kitploit.com/en/posts/github-zeek-zeek-v900-rc2) - [ ] [tfc — Updated!](https://kitploit.com/en/posts/github-maqp-tfc-85949083cbe1b704461575d678b71fc2673255120ca57e80315deb8637070c53) - [ ] [Ciphey v0.12.1](https://kitploit.com/en/posts/github-bee-san-ciphey-v0121) - [ ] [Awesome-LLMs-for-Vulnerability-Detection — Updated!](https://kitploit.com/en/posts/github-huhusmang-awesome-llms-for-vulnerability-detection-3920ebb3d3bdcd5b8bdb2b50543e1d23feb21ffa595679e5a69e4ea47b24999d) - [ ] [GhostESP v2.1.2-pre2](https://kitploit.com/en/posts/github-ghostesp-revival-ghostesp-v212-pre2) - [ ] [RustHound-CE v2.5.2](https://kitploit.com/en/posts/github-g0h4n-rusthound-ce-v252) - [ ] [awesome-soc — Updated!](https://kitploit.com/en/posts/github-cyb3rxp-awesome-soc-68578bf09f91ff49ff171033fb185676dcf207c2a92a63795cca22474433bc47) - [ ] [Sandb0x-Xtract0r v0.15.0](https://kitploit.com/en/posts/github-darnellwashingtonjr94-art-sandb0x-xtract0r-v0150) - [ ] [sogen — Updated!](https://kitploit.com/en/posts/github-momo5502-sogen-6072423368000a6f09717aab903aba8179d820a360809b652ea91f81d92bd78b) - [ ] [awesome-list — Updated!](https://kitploit.com/en/posts/github-0xor0ne-awesome-list-ad9f10ca9bfe8812f252f488c8b310974f7fea13fda6045d8d3708984770c42c) - [ ] [clawk v0.4.0](https://kitploit.com/en/posts/github-clawkwork-clawk-v040) - [ ] [USBvalve v1.0.1](https://kitploit.com/en/posts/github-cecio-usbvalve-v101) - [ ] [dnsx v1.3.1](https://kitploit.com/en/posts/github-projectdiscovery-dnsx-v131) - [ ] [PCLink v4.7.0](https://kitploit.com/en/posts/github-bytedz-pclink-v470) - [ ] [bounty-targets-data — Updated!](https://kitploit.com/en/posts/github-arkadiyt-bounty-targets-data-67a1b297893465d66b4dd407d32ebfee35967b00b367d351233ba51a71389040) - [ ] [vc5 v0.3.4](https://kitploit.com/en/posts/github-davidcoles-vc5-v034) - [ ] [NoiseHound v1.2.0](https://kitploit.com/en/posts/github-warpedatom-noisehound-v120) - [ ] [httpx v1.11.0](https://kitploit.com/en/posts/github-projectdiscovery-httpx-v1110) - [ ] [osmedeus v5.1.0](https://kitploit.com/en/posts/github-j3ssie-osmedeus-v510) - [ ] [wifit3 v0.0.5](https://kitploit.com/en/posts/github-derv82-wifit3-v005) - [ ] [GoogleRecaptchaBypass — Updated!](https://kitploit.com/en/posts/github-sarperavci-googlerecaptchabypass-e780b904e1f6a31c13db70a8d5a6fd106a3870d4d2e774d0f953dd5c3f407643) - [ ] [nightcrawler — Updated!](https://kitploit.com/en/posts/github-garagehq-nightcrawler-92f557e638b634a33630267578d646db6a46f529b6382ee89fb5cf0fd02b1423) - [ ] [skitter-creek-bath-salts — Updated!](https://kitploit.com/en/posts/github-xoreaxeaxeax-skitter-creek-bath-salts-52e73a9b33d0afe13821cf7d6ea93523bca85db135a1f1f682e0986e3a9a01bc) - [ ] [tcpreplay v4.6.1](https://kitploit.com/en/posts/github-appneta-tcpreplay-v461) - [ ] [ship-safe v9.7.5](https://kitploit.com/en/posts/github-asamassekou10-ship-safe-v975) - [ ] [awesome-connected-things-sec — Updated!](https://kitploit.com/en/posts/github-v33ru-awesome-connected-things-sec-ff4329506e2824e3a8d548a915502c7d841d9963f187e8366985aaafd54fa212) - [ ] [OnionBrowser v3.4.1](https://kitploit.com/en/posts/github-onionbrowser-onionbrowser-v341) - [ ] [cve — Updated!](https://kitploit.com/en/posts/github-0xmarcio-cve-40171cf6e265bd1fbd03c93820a717b5457d6bbeea112530b6637cb1b2f905e5) - [ ] [android-security-awesome — Updated!](https://kitploit.com/en/posts/github-ashishb-android-security-awesome-fa13957c344ea794d8b21cfd65f98114b634c6317b32fd2ac8129a08446ad359) - [ ] [violin v3.2.1](https://kitploit.com/en/posts/github-strategic-automation-violin-v321) - [ ] [cowrie v3.0.12](https://kitploit.com/en/posts/github-cowrie-cowrie-v3012) - [ ] [hostapd-mana v2.12](https://kitploit.com/en/posts/github-sensepost-hostapd-mana-212) - Security Affairs - [ ] [ValleyRAT: When Legitimate Software Becomes a Malware Delivery Tool](https://securityaffairs.com/198191/security/valleyrat-when-legitimate-software-becomes-a-malware-delivery-tool.html) - [ ] [China-linked Fire Ant Hides Inside Trusted Infrastructure](https://securityaffairs.com/198183/apt/china-linked-fire-ant-hides-inside-trusted-infrastructure.html) - [ ] [Infostealers Are Hijacking Claude Sessions and Draining Subscriptions](https://securityaffairs.com/198166/ai/infostealers-are-hijacking-claude-sessions-and-draining-subscriptions.html) - [ ] [Critical GiveWP Flaw Lets Attackers Run Commands on WordPress Servers](https://securityaffairs.com/198156/security/critical-givewp-flaw-lets-attackers-run-commands-on-wordpress-servers.html) - TorrentFreak - [ ] [Take-Two Says GTA 6 Leak Probe Is “Rapidly Evolving,” Wants New Discord Demands Under Seal](https://torrentfreak.com/take-two-says-gta-6-leak-probe-is-rapidly-evolving-wants-new-discord-demands-under-seal/) - Schneier on Security - [ ] [Is Someone Hacking DoD Refrigerators?](https://www.schneier.com/blog/archives/2026/08/is-someone-hacking-dod-refrigerators.html) - [ ] [Hiding Prompt Injection in Legal Filing](https://www.schneier.com/blog/archives/2026/08/hiding-prompt-injection-in-legal-filing.html) - www.theregister.com - Articles - [ ] [Healthcare cyberattacks hit pacemakers and millions of patient records](https://www.theregister.com/cyber-crime/2026/08/31/healthcare-cyberattacks-hit-pacemakers-and-millions-of-patient-records/5293537) - [ ] [OpenClaw 2.0 pours glitter on slow-burning security dumpster fire](https://www.theregister.com/ai-and-ml/2026/08/31/openclaw-20-pours-glitter-on-slow-burning-security-dumpster-fire/5293492) - [ ] [Attack hides malware in PNGs and drops custom reverse tunnel on victims' machines](https://www.theregister.com/security/2026/08/31/attack-hides-malware-in-pngs-and-drops-custom-reverse-tunnel-on-victims-machines/5293480) - [ ] [Anthropic cracks down on hijacked user accounts mining AI tokens](https://www.theregister.com/security/2026/08/31/anthropic-cracks-down-on-hijacked-user-accounts-mining-ai-tokens/5293461) - Security Weekly Podcast Network (Audio) - [ ] [Life as a CISO in Hollywood: Keeping New Films Leak-Free & 4 Black Hat Interviews - Dan Meacham, Ellen Boehm, Ronan Murphy, Frank Vukovits, John Hultquist - ESW #474](http://sites.libsyn.com/18678/life-as-a-ciso-in-hollywood-keeping-new-films-leak-free-4-black-hat-interviews-dan-meacham-ellen-boehm-ronan-murphy-frank-vukovits-john-hultquist-esw-474)
每日安全资讯(2026-09-01)