# 每日安全资讯(2026-09-14) - SecWiki News - [ ] [SecWiki News 2026-09-13 Review](http://www.sec-wiki.com/?2026-09-13) - Doonsec's feed - [ ] [FDE工程实战03-评估体系工程](https://mp.weixin.qq.com/s/eMKJVODoMqaehuca2WwC0Q) - [ ] [为什么简历改了很多遍,投出去还是没有回应?](https://mp.weixin.qq.com/s/-edRmvtflOYcFfujNW0l_w) - [ ] [从战国“听瓮”到座椅下的“火柴盒”:千年情报博弈史告诉我们,会议室里那双“耳朵”从没消失过](https://mp.weixin.qq.com/s/xGab19bpQu3RLDtYbH0HQw) - [ ] [真相来了|停止资助学生后遭威胁?警方:自编自导 虚构伪造](https://mp.weixin.qq.com/s/HtMOtIGuGNmMQxoPSMPHiw) - [ ] [大模型(LLM)安全测试工具汇总](https://mp.weixin.qq.com/s/FvoZImHGTIMrgDZZhEscow) - [ ] [活该你能挖到洞](https://mp.weixin.qq.com/s/M5DiL_JPnPgAI-M3IGWHhg) - [ ] [做等保十年,慧等保靠什么活下来](https://mp.weixin.qq.com/s/1N8kW9xkD3fDytLC7W3fPw) - [ ] [liyouAI](https://mp.weixin.qq.com/s/5aTysDDwU8aH276kS0R8Aw) - [ ] [网络攻防创新实验室组队参加长城杯网络安全大赛](https://mp.weixin.qq.com/s/uKORSAiiERE1BZ3AmDcv0g) - [ ] [先骗你开门,再等你自投:钓鱼+水坑的组合拳](https://mp.weixin.qq.com/s/wM_GmmRoZnKU_-oSo3u1dQ) - [ ] [我的第一步Docker书,存下吧,很难找的!](https://mp.weixin.qq.com/s/H-R1MTPygwF-Mpm17ySPoA) - [ ] [多维领跑AI安全 | 绿盟科技以多项成果开启2026国家网络安全宣传周序章](https://mp.weixin.qq.com/s/f78wLgqdvFW-G4CuUn6tFg) - [ ] [(9.9分) CVE-2026-84869:ScreenConnect 任意文件执行,野外已出现蠕虫式传播](https://mp.weixin.qq.com/s/ljrlhFcm7nKvKWTAf1SDKg) - [ ] [网安周 | 四十余家媒体团走进中孚信息,共话智能时代网络安全新图景](https://mp.weixin.qq.com/s/8BGRivz5-pK1hj47lpDoXQ) - [ ] [第六届“长城杯”网络安全大赛暨京津冀蒙网络安全技能竞赛(初赛)](https://mp.weixin.qq.com/s/y1PLqVKS9H3zPGKEpi2QHA) - [ ] [千队争锋,跻身前十|磐石安科技斩获第六届“长城杯”网络安全大赛社会组TOP10佳绩](https://mp.weixin.qq.com/s/hm45kohNh-yeto5RXSGFlw) - [ ] [AI 渗透实战之DSH的国产红队框架](https://mp.weixin.qq.com/s/PGYExE8wU_LbhQAd4En_lg) - [ ] [深科特LEAN MES系统 WarehouseCheck.ashx SQL注入漏洞](https://mp.weixin.qq.com/s/Kmd3VSRg5I0A-324hgWIsw) - [ ] [GitLab CVE-2026-85706 未授权任意文件读取分析:一个末尾斜杠打穿的满分漏洞](https://mp.weixin.qq.com/s/bxDoc8f55krA-cR3urfIIg) - [ ] [DesRedTeam Desktop 内测招募,免配置版本发布](https://mp.weixin.qq.com/s/_VgFKksZRzDR8soICkLgmQ) - [ ] [神州希望助力海南省第十三届国家网络安全宣传周活动](https://mp.weixin.qq.com/s/pEj5AkrVP8ckXMtF6Q95cw) - [ ] [被改写的系统服务:IDM 内核驱动 CVE-2026-90493 提权](https://mp.weixin.qq.com/s/HikwWitv49UYV9hO1h-4hw) - [ ] [行业会议 | 2026年网络空间安全学术会议](https://mp.weixin.qq.com/s/U6tjnOvqWTOApJvT7kMiGA) - [ ] [想哭](https://mp.weixin.qq.com/s/TFcx_TPXHGCUqHBpwc4_zg) - [ ] [「Inspect AI开源评测框架实测:LLM安全评估+CTF基准,英国AI安全研究所出品」](https://mp.weixin.qq.com/s/_z4IXIIsOjJyfKolF6SBWw) - [ ] [信通院人工智能所领导一行莅临亚信参观交流 深化AI产业协同](https://mp.weixin.qq.com/s/pUXPfSS7eKRApvUdF-cllQ) - [ ] [19.9 美元路由拆到 RCE:Dbit N300 UART + Boa 溢出(CVE-2026-20374)](https://mp.weixin.qq.com/s/B2edlxX9t3rWMb__CcLPVA) - [ ] [亚马逊欧洲站又开始查了:你的联网产品缺这份\"数据透明度声明\",直接停售](https://mp.weixin.qq.com/s/glSKQLqWVQUm_gZ8uLkQyw) - [ ] [千人大帮会|网盘资源终身领取|CISP/PTE考证底价|18年网安大佬带队](https://mp.weixin.qq.com/s/LUMjvsOGCmQWobwMRAz_6Q) - [ ] [Fortinet 特权访问代理漏洞:任意网站都能接管你的代理和屏幕](https://mp.weixin.qq.com/s/wyz2F_7Q8OrcUl_V8ObEsQ) - [ ] [银狐转向『点名式』精准诈骗:官方月报定调定向攻击升级,借壳目标蔓延至AnyDesk与Chrome](https://mp.weixin.qq.com/s/6Ya0ncU5QL8o6-Qa_Td1jw) - [ ] [重保期间防护场景盲区剖析技术培训](https://mp.weixin.qq.com/s/gZmZTDkhcmtDVQzFeZ6LIQ) - [ ] [乌克兰律师帮人写代码,在美被判4年监禁](https://mp.weixin.qq.com/s/S0hk8rpl3T2jH_-PDPIacQ) - [ ] [暗网惊现macOS 0day本地提权exp:兼容Big Sur到26.5](https://mp.weixin.qq.com/s/J7BBAqVBqEAcgKW0Rf5mUQ) - [ ] [DeepSeek V4.1 Flash 上线48小时被\"去安全化\",开源模型供应链再敲警钟](https://mp.weixin.qq.com/s/cmxYBTQtH7N7Et-vEFE7Fg) - [ ] [XSS绕过CloudFront WAF:跨站脚本攻击新思路](https://mp.weixin.qq.com/s/hITPQvHUXrqFs3sJZxZMzg) - [ ] [2026数据安全罚单地图:从快手1.191亿到汇丰179万](https://mp.weixin.qq.com/s/bj1ZnExIvJiM2tosYlwRTA) - [ ] [对某海鲜平台上卖6k的skill的一次测评](https://mp.weixin.qq.com/s/7ecflH4KNq-AsgPyCkzeYA) - [ ] [《网络空间安全态势分析报告(2026)》正式发布](https://mp.weixin.qq.com/s/fmBv-AkfZAZsO1uih9kSNA) - [ ] [开源TTS效率神器Coqui TTS](https://mp.weixin.qq.com/s/ab_a9T50Q-7BSKr6vrEdVQ) - [ ] [铜陵警方跨省捣毁特大网络赌场,流水5000万元,38人落网,查扣现金110万](https://mp.weixin.qq.com/s/EPhZ8eM7kGyTlGlKT-I64A) - [ ] [山西多地公安围剿黑灰产,运城破获快递洗钱案涉案1900余万元,16人落网](https://mp.weixin.qq.com/s/zQGAen5e4J0iHZb1P_fYWw) - [ ] [网安部门公布5起仿冒假冒网站案,抓获12人,查获伪造证书2406份](https://mp.weixin.qq.com/s/ydjK0YkuLkWe3k6k9p4wnQ) - [ ] [黑客可将存在漏洞的 LiteLLM AI 网关转化为获取 root 权限和窃取云凭证的途径](https://mp.weixin.qq.com/s/gBv4VTbLKQt-UFbv44Li1w) - [ ] [【资料】超高杀伤力战场环境下的战术通信生存能力](https://mp.weixin.qq.com/s/zuTfg7RXEDe8U6ITQzupsg) - [ ] [【报名倒计时】第四届全国大学生开源情报数据采集与分析挑战赛](https://mp.weixin.qq.com/s/25SAUTHf3_S7I8-xcWoLyw) - [ ] [破圈之作何以\"立\"得住---从《交锋》看国安题材宣传的叙事重构与价值突破](https://mp.weixin.qq.com/s/pJPth8eWTTm2GfJFQE2yaQ) - [ ] [HttpOnly 保护不了你,这点老猎人都懂](https://mp.weixin.qq.com/s/xtHnz0ohG0gZ5-vq8CxRmg) - [ ] [失控的大模型:AI 被武器化的真实网络行动案例合集](https://mp.weixin.qq.com/s/gnllLJ_iGGL9YIwoYrhRMA) - [ ] [Astra 自主攻击能力逼停OpenAI最新发布](https://mp.weixin.qq.com/s/WCK6UNfST3j3qWbFeDFdHA) - [ ] [国外:一周网络安全态势回顾之第166期](https://mp.weixin.qq.com/s/QuNqRPguD3gOEvjvxS9NuA) - [ ] [Ubuntu 24.04.5 LTS发布:Linux 7.0内核与安全更新进一步强化长期支持体系](https://mp.weixin.qq.com/s/KOm8g4VI30xll2KcYjDFxg) - [ ] [【安全漏洞分析】网站或系统存在SQL注入漏洞怎么办?](https://mp.weixin.qq.com/s/MZzh6rGWDM44CkXpXIMR3g) - [ ] [TSRC某大佬总结的价值1800元的10万条POC](https://mp.weixin.qq.com/s/5gnc5bqKDOwPKEyiv6jdlA) - [ ] [OpenSSL 4.1.0 Alpha1发布:DTLS 1.3与后量子密码性能进一步增强](https://mp.weixin.qq.com/s/ngD9gOo6ogIiKYvF5NlXDw) - Private Feed for M09Ic - [ ] [joaoviictorti starred Idov31/Silverseal](https://github.com/Idov31/Silverseal) - [ ] [Fplyth0ner-Combie starred doki-byte/EasyShell](https://github.com/doki-byte/EasyShell) - [ ] [mgeeky starred malmoeb/presentations](https://github.com/malmoeb/presentations) - [ ] [esrrhs contributed to esrrhs/pingtunnel](https://github.com/esrrhs/pingtunnel/pull/94) - [ ] [esrrhs contributed to esrrhs/fakecc](https://github.com/esrrhs/fakecc/pull/77) - [ ] [esrrhs contributed to esrrhs/fakelua](https://github.com/esrrhs/fakelua/pull/12) - [ ] [ourren starred mizzlelover/gongwen-gbt9704-skill](https://github.com/mizzlelover/gongwen-gbt9704-skill) - [ ] [safedv starred Idov31/Silverseal](https://github.com/Idov31/Silverseal) - [ ] [WAY29 starred Novals83/5min-btc-polymarket](https://github.com/Novals83/5min-btc-polymarket) - [ ] [shmilylty starred Southseast/Zend_Decode](https://github.com/Southseast/Zend_Decode) - 先知安全技术社区 - [ ] [Android App WebView JSBridge任意页面凭证窃取漏洞挖掘案例分析](https://xz.aliyun.com/news/92826) - [ ] [多成员 gzip 请求体的解压范围错位](https://xz.aliyun.com/news/92825) - [ ] [先声明者胜:glibc 同名符号裁决顺序下的实现替换与依赖降级](https://xz.aliyun.com/news/92824) - [ ] [有意思的ssrf绕过](https://xz.aliyun.com/news/92821) - Recent Commits to cve:main - [ ] [Update Sun Sep 13 12:09:33 UTC 2026](https://github.com/trickest/cve/commit/f9372750dbaf1331551a12ecd109eff26d402c33) - 离别歌 - [ ] [AI记账的最佳实践](https://www.leavesongs.com/THINK/ai-bookkeeping-best-practices.html) - Reverse Engineering - [ ] [Super Trouper: A new MCP server in Golang to give coding agents a Frida interface](https://www.reddit.com/r/ReverseEngineering/comments/1wf8wpo/super_trouper_a_new_mcp_server_in_golang_to_give/) - [ ] [Locating Flutter's TLS certificate verifier in a stripped libflutter.so, tested across 13 apps and 9 engine versions](https://www.reddit.com/r/ReverseEngineering/comments/1wexq29/locating_flutters_tls_certificate_verifier_in_a/) - [ ] [From the Shandalar community on Reddit: Shandalar: 30th Anniversay Edition - August Update](https://www.reddit.com/r/ReverseEngineering/comments/1wf4igs/from_the_shandalar_community_on_reddit_shandalar/) - [ ] [GitHub - grm2ngo/turnstile: Cloudflare Turnstile — measured research notes: the 2-POST chain, the per-fetch build pool, the capture protocol, and the FO1 bag-binding mechanism (per-draw execution/nonce binding)](https://www.reddit.com/r/ReverseEngineering/comments/1wf0ddl/github_grm2ngoturnstile_cloudflare_turnstile/) - 奇客Solidot–传递最新科技情报 - [ ] [宇树如何将机器狗的价格降至 2000 美元](https://www.solidot.org/story?sid=85366) - [ ] [Matt Mullenweg 据报道恢复了对 Automattic 的控制](https://www.solidot.org/story?sid=85365) - [ ] [北京全面限制无人机](https://www.solidot.org/story?sid=85364) - [ ] [暴雪宣布 FPS 版《星际争霸》](https://www.solidot.org/story?sid=85362) - 黑海洋Wiki | AI机器人硬件开发 | 网络安全攻防实战 | 区块链技术文档教程 - 免费资源平台 - [ ] [报告:中国AI发展重心从大模型转向智能体](https://blog.upx8.com/%E6%8A%A5%E5%91%8A-%E4%B8%AD%E5%9B%BDAI%E5%8F%91%E5%B1%95%E9%87%8D%E5%BF%83%E4%BB%8E%E5%A4%A7%E6%A8%A1%E5%9E%8B%E8%BD%AC%E5%90%91%E6%99%BA%E8%83%BD%E4%BD%93) - [ ] [三星请来名叫蒂姆·库克的新西兰房产经纪人“评测”自家折叠机](https://blog.upx8.com/%E4%B8%89%E6%98%9F%E8%AF%B7%E6%9D%A5%E5%90%8D%E5%8F%AB%E8%92%82%E5%A7%86-%E5%BA%93%E5%85%8B%E7%9A%84%E6%96%B0%E8%A5%BF%E5%85%B0%E6%88%BF%E4%BA%A7%E7%BB%8F%E7%BA%AA%E4%BA%BA-%E8%AF%84%E6%B5%8B-%E8%87%AA%E5%AE%B6%E6%8A%98%E5%8F%A0%E6%9C%BA) - [ ] [淘宝闪购:苹果 iPhone 18 Pro 系列手机预售火爆,首小时销售额较上代 17 Pro 系列翻倍](https://blog.upx8.com/%E6%B7%98%E5%AE%9D%E9%97%AA%E8%B4%AD-%E8%8B%B9%E6%9E%9C-iPhone-18-Pro-%E7%B3%BB%E5%88%97%E6%89%8B%E6%9C%BA%E9%A2%84%E5%94%AE%E7%81%AB%E7%88%86-%E9%A6%96%E5%B0%8F%E6%97%B6%E9%94%80%E5%94%AE%E9%A2%9D%E8%BE%83%E4%B8%8A%E4%BB%A3-17-Pro-%E7%B3%BB%E5%88%97%E7%BF%BB%E5%80%8D) - [ ] [新修订的《北京市无人驾驶航空器管理规定》将于11月15日实施!开放三种处置渠道](https://blog.upx8.com/%E6%96%B0%E4%BF%AE%E8%AE%A2%E7%9A%84-%E5%8C%97%E4%BA%AC%E5%B8%82%E6%97%A0%E4%BA%BA%E9%A9%BE%E9%A9%B6%E8%88%AA%E7%A9%BA%E5%99%A8%E7%AE%A1%E7%90%86%E8%A7%84%E5%AE%9A-%E5%B0%86%E4%BA%8E11%E6%9C%8815%E6%97%A5%E5%AE%9E%E6%96%BD-%E5%BC%80%E6%94%BE%E4%B8%89%E7%A7%8D%E5%A4%84%E7%BD%AE%E6%B8%A0%E9%81%93) - 青衣十三楼飞花堂 - [ ] [跑得跟兔子一样快的小小四](https://mp.weixin.qq.com/s?__biz=MzUzMjQyMDE3Ng==&mid=2247489931&idx=1&sn=82ec6e95ea18c5a9727c8decace7e0c5) - 安全分析与研究 - [ ] [FDE工程实战03-评估体系工程](https://mp.weixin.qq.com/s?__biz=MzA4ODEyODA3MQ==&mid=2247497139&idx=1&sn=19a0b8210e299d7e8bb3b332884880b4) - 白帽Wiki - 一个简单的wiki - [ ] [[2026]虫群Agent代码审计](https://key08.com/index.php/2026/09/13/3321.html) - 中国信息安全 - [ ] [国家安全部党委书记、部长陈一新:全面筑牢人工智能安全屏障 推动人工智能健康有序发展](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664266571&idx=1&sn=a7b2fca40cf53ca3957d2e717e5eaeb2) - 安全学术圈 - [ ] [行业会议 | 2026年网络空间安全学术会议](https://mp.weixin.qq.com/s?__biz=MzU5MTM5MTQ2MA==&mid=2247495911&idx=1&sn=c4c76784980c65eaee8379baeec1b861) - 君哥的体历 - [ ] [亚投行五楼的国图书店,上午和妙妙去看了会书](https://mp.weixin.qq.com/s?__biz=MzI2MjQ1NTA4MA==&mid=2247492565&idx=1&sn=8a74a6873aae5500ae53c64ca7a9370b) - 网络空间安全科学学报 - [ ] [【报名开启】首都工程师胜任力研修营(人工智能方向)9月22日开班!](https://mp.weixin.qq.com/s?__biz=MzI0NjU2NDMwNQ==&mid=2247508672&idx=1&sn=a1507fa5887d8581f38d002682c4131f) - 极客公园 - [ ] [移动支持折叠屏 iPhone esim 业务;特斯拉将曝光 Roadster 跑车;智谱融 50 亿美元加码基础模型 | 极客早知道](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113546&idx=1&sn=28b67eeb83b98518855e05809bce4815) - [ ] [苹果的折叠屏等了十五年,体验还差临门一脚](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113527&idx=1&sn=0002cf5a91bfa191da1d5c3ec3230fb7) - [ ] [造物 100 #06|自动驾驶「上」轮椅了,口袋相机学会飞行,AI 教练上了雪场](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113524&idx=1&sn=d6c58a1c726f1d4780f166c6ea2dde92) - [ ] [OpenAI、Anthropic 再次发出「AI 末日」警告;小米澎程今日全国交付;Deepseek 灰度测试 AI 语音对话 | 极客早知道](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113508&idx=1&sn=de3431aa0248e1833ba2af2104632cbf) - 安全圈 - [ ] [【安全圈】GitHub又崩了!PR重大中断全球研发停摆](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078887&idx=1&sn=827bd308e3107145cc3946977e22cc37) - [ ] [【安全圈】洗衣机19小时传400MB流量!](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078887&idx=2&sn=5cfaa97c4a7dd9162e99d90a914de125) - [ ] [【安全圈】微软9月补丁日!973个漏洞3个已在野利用](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078887&idx=3&sn=215aae05d6856f35530102d5d20892aa) - [ ] [【安全圈】游戏资源站暗藏投毒!黑产盗号卖进暗网](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078887&idx=4&sn=6ebb239da4887467b6f9f6ca7a1ccf39) - OnionSec - [ ] [想哭](https://mp.weixin.qq.com/s?__biz=MzUyMTUwMzI3Ng==&mid=2247486001&idx=1&sn=bfdcfc72152a95e97118e86e929c900c) - Over Security - [ ] [Thorough reorganization at NSA will create five 'mission centers,' including cyber and AI](https://therecord.media/nsa-reorganization-five-mission-centers) - [ ] [BSides Munich: Fantastic clear-text passwords and where to collect them](http://localhost:1313/talks/bsides_munich_2025/) - [ ] [BSides Frankfurt: Deconstructing Modern macOS Initial Access Vectors](http://localhost:1313/talks/bsides_frankfurt_2026/) - [ ] [Field Notes: From AV Alert to Impacket](http://localhost:1313/posts/field_notes_av_impacket/) - [ ] [Fantastic clear-text passwords and where to collect them (Part 2 - Windows)](http://localhost:1313/posts/fantastic_passwords_windows/) - [ ] [Field Notes: NSSM - the Non-Sucking Service Manager](http://localhost:1313/posts/field_notes_nssm/) - [ ] [Hackers exploit Tencent app flaw to deploy GrayRabbit malware](https://www.bleepingcomputer.com/news/security/hackers-exploit-tencent-app-flaw-to-deploy-grayrabbit-malware/) - [ ] [Chess.com (2026) - 4,653,212 breached accounts](https://haveibeenpwned.com/Breach/Chess2026) - [ ] [Il fragile patto di fiducia della cybersecurity](https://guerredirete.substack.com/p/il-fragile-patto-di-fiducia-della) - Have I Been Pwned latest breaches - [ ] [Chess.com (2026) - 4,653,212 breached accounts](https://haveibeenpwned.com/Breach/Chess2026) - 熵减矩阵 - [ ] [150亿token:我给小米平板6 Pro移植了原生Linux](https://mp.weixin.qq.com/s?__biz=Mzg2MTc1NDAxMA==&mid=2247485416&idx=1&sn=2634bd517520bc9b1d27f3067025266e) - The Hacker News - [ ] [Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data](https://thehackernews.com/2026/09/attackers-use-passkey-phishing-to.html) - KitPloit - PenTest Tools! - [ ] [espectre snapshot](https://kitploit.com/en/posts/github-francescopace-espectre-snapshot) - [ ] [wifit3 v0.3.1](https://kitploit.com/en/posts/github-derv82-wifit3-v031) - [ ] [KernelPatch](https://kitploit.com/en/tools/github/lyravoid/kernelpatch) - [ ] [FolkPatch](https://kitploit.com/en/tools/github/lyravoid/folkpatch) - [ ] [APatch](https://kitploit.com/en/tools/github/bmax121/apatch) - [ ] [blitzstrike](https://kitploit.com/en/tools/github/shinthink/blitzstrike) - [ ] [kunglao-agent](https://kitploit.com/en/tools/github/amd2g2zz/kunglao-agent) - [ ] [askWAM](https://kitploit.com/en/tools/github/dirkjanm/askwam) - [ ] [dig](https://kitploit.com/en/tools/github/xsser/dig) - [ ] [ARES](https://kitploit.com/en/tools/github/mafifrizi/ares) - [ ] [chainsaw](https://kitploit.com/en/tools/github/withsecureopensource/chainsaw) - [ ] [pingap v0.14.2](https://kitploit.com/en/posts/github-vicanso-pingap-v0142) - [ ] [rustsec platforms/v4.2.0](https://kitploit.com/en/posts/github-rustsec-rustsec-platformsv420) - [ ] [sj v2.8.2](https://kitploit.com/en/posts/github-bishopfox-sj-282) - [ ] [Exegol v5.1.12](https://kitploit.com/en/posts/github-theporgs-exegol-5112) - [ ] [osmedeus v5.1.1](https://kitploit.com/en/posts/github-j3ssie-osmedeus-v511) - [ ] [fyp](https://kitploit.com/en/tools/github/talha1112/fyp) - [ ] [atomicvulns](https://kitploit.com/en/tools/github/doretox/atomicvulns) - [ ] [azurelinux v3.0.20260909-3.0](https://kitploit.com/en/posts/github-microsoft-azurelinux-3020260909-30) - [ ] [smolvm v1.15.0](https://kitploit.com/en/posts/github-smol-machines-smolvm-v1150) - [ ] [hermes-agent v2026.9.11](https://kitploit.com/en/posts/github-nousresearch-hermes-agent-v2026911) - [ ] [Bastillion v5.2.1](https://kitploit.com/en/posts/github-bastillion-io-bastillion-v521) - [ ] [pentest-copilot](https://kitploit.com/en/tools/github/bugbasesecurity/pentest-copilot) - [ ] [darknet-mcp-server](https://kitploit.com/en/tools/github/badchars/darknet-mcp-server) - [ ] [CAPE-parsers v0.1.69](https://kitploit.com/en/posts/github-capesandbox-cape-parsers-v0169) - [ ] [waf-checker v1.2.0](https://kitploit.com/en/posts/github-sech0us3-waf-checker-v120) - [ ] [clawpatrol v0.5.10](https://kitploit.com/en/posts/github-denoland-clawpatrol-v0510) - [ ] [GhostESP v2.2-pre1](https://kitploit.com/en/posts/github-ghostesp-revival-ghostesp-v22-pre1) - Security Affairs - [ ] [SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 114](https://securityaffairs.com/198980/breaking-news/security-affairs-malware-newsletter-round-114.html) - [ ] [Security Affairs newsletter Round 594 by Pierluigi Paganini – INTERNATIONAL EDITION](https://securityaffairs.com/198957/security/security-affairs-newsletter-round-594-by-pierluigi-paganini-international-edition.html) - [ ] [GitLab CVE-2026-85706: One HTTP Request, No Authentication, Full File Read – Exploited Within 24 Hours](https://securityaffairs.com/198945/hacking/gitlab-cve-2026-85706-one-http-request-no-authentication-full-file-read-exploited-within-24-hours.html) - [ ] [Conti Hacker Who Built Malware and Attacked Victims Gets Four-Year Sentence](https://securityaffairs.com/198931/cyber-crime/conti-hacker-who-built-malware-and-attacked-victims-gets-four-year-sentence.html) - www.theregister.com - Articles - [ ] [Security through obscurity is dead, and AI delivered the fatal blow](https://www.theregister.com/security/2026/09/13/security-through-obscurity-is-dead-and-ai-delivered-the-fatal-blow/5296000)
每日安全资讯(2026-09-14)