رفتن به محتوای اصلی
به‌روزرسانی روزانه

اخبار امنیت سایبری

آخرین رویدادهای حوزه فناوری اطلاعات و امنیت سایبری — از منابع معتبر بین‌المللی و داخلی

382+
خبر RSS
6
خبر داخلی
۲۴
پایش مستمر
LATEST UPDATES

جدیدترین اخبار

هکر نیوز

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do

AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we've collectively …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers

A crafted SVG submitted to Bing's image search ran commands as NT AUTHORITY\SYSTEM on Microsoft's production image-processing workers, and as …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link

Cybersecurity researchers have disclosed a critical vulnerability in OpenAI's ChatGPT Workspace Agents that could have allowed a single phishing link …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller

Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a low-privileged Active Directory user obtain …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery

The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts

The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE

Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest) ransomware campaign are exploiting flaws …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking

For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attackers …

۱۴۰۵/۰۵/۰۴ منبع
هکر نیوز

Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, …

۱۴۰۵/۰۵/۰۴ منبع

صفحه 38 از 39 — نمایش 371–380 از 388 خبر

خبرنامه هفتگی

از تهدیدات سایبری
عقب نمانید

هر هفته خلاصه مهم‌ترین اخبار امنیتی مستقیم در ایمیل شما.

حریم خصوصی شما محفوظ است.