# 每日安全资讯(2026-09-15) - Private Feed for M09Ic - [ ] [bolucat released 202609142342 at bolucat/Archive](https://github.com/bolucat/Archive/releases/tag/202609142342) - [ ] [anthropics released v2.1.271 at anthropics/claude-code](https://github.com/anthropics/claude-code/releases/tag/v2.1.271) - [ ] [memN0ps starred Idov31/Silverseal](https://github.com/Idov31/Silverseal) - [ ] [mgeeky starred originsec/patchwatch](https://github.com/originsec/patchwatch) - [ ] [spf13 starred evanoberholster/imagemeta](https://github.com/evanoberholster/imagemeta) - [ ] [esrrhs contributed to esrrhs/fakelua](https://github.com/esrrhs/fakelua/pull/13) - [ ] [Mel0day starred karpathy/autoresearch](https://github.com/karpathy/autoresearch) - [ ] [esrrhs starred cnk3x/xunlei](https://github.com/cnk3x/xunlei) - [ ] [esrrhs contributed to esrrhs/pingtunnel](https://github.com/esrrhs/pingtunnel/pull/98) - [ ] [Chuyu-Team released v1.2.3-Beta.1 at Chuyu-Team/YY-Thunks](https://github.com/Chuyu-Team/YY-Thunks/releases/tag/v1.2.3-Beta.1) - [ ] [ZeddYu starred trufflesecurity/trufflehog](https://github.com/trufflesecurity/trufflehog) - [ ] [safedv starred g0h4n/PassTheCert-rs](https://github.com/g0h4n/PassTheCert-rs) - [ ] [Mel0day starred bojieli/ai-agent-book](https://github.com/bojieli/ai-agent-book) - [ ] [esrrhs starred impeeza/sys-patch](https://github.com/impeeza/sys-patch) - [ ] [gh0stkey starred actionbook/rust-skills](https://github.com/actionbook/rust-skills) - [ ] [timwhitez starred mattpocock/skills](https://github.com/mattpocock/skills) - [ ] [obfuscar released v3.0.0-beta.21 at obfuscar/obfuscar](https://github.com/obfuscar/obfuscar/releases/tag/v3.0.0-beta.21) - SecWiki News - [ ] [SecWiki News 2026-09-14 Review](http://www.sec-wiki.com/?2026-09-14) - Armin Ronacher's Thoughts and Writings - [ ] [Interpreting Pangram](https://lucumr.pocoo.org/2026/9/14/interpreting-pangram/) - 安全客-有思想的安全新媒体 - [ ] [红队两周的活,AI十小时干完:全球首例多智能体勒索攻击实录](https://www.anquanke.com/post/id/316103) - [ ] [AI已经开始自动打你了:Anthropic捅破窗户纸,黑客用Claude实现"检测即重生"](https://www.anquanke.com/post/id/316098) - Doonsec's feed - [ ] [(9.9分) CVE-2026-90605:Totolink路由器formFilter缓冲区溢出](https://mp.weixin.qq.com/s/RMXhuL_YettDO47vo6xhKg) - [ ] [关于CCSS组织召开网安期刊创新发展论坛暨CCSS会刊征集宣讲会的通知](https://mp.weixin.qq.com/s/evARvK1vbs4WjNbe-1DqRw) - [ ] [Github 35K+ Star reverse-skill:免手动选技能skill,一键调度逆向渗透全工具链](https://mp.weixin.qq.com/s/vDWZS52Qpt0_A1L9nScP8w) - [ ] [渗透测试框架之王:Metasploit模块化艺术与高阶Payload生成](https://mp.weixin.qq.com/s/z76DAj31lMaq-nuPEVk0kw) - [ ] [网安周开幕 | 绿盟科技话攻防,展实景,AI安全成果亮相主会场](https://mp.weixin.qq.com/s/GMcgMQuGwNG-9T4SjqroBQ) - [ ] [绿盟进行时 | 2026国家网络安全周](https://mp.weixin.qq.com/s/2C1CQlmw5yocfwBFNO5tgA) - [ ] [免费源码,Arduino编程乐鑫ESP32主控桌面信息显示屏,时间闹钟、天气动画、倒计时、B站互动数据](https://mp.weixin.qq.com/s/oiQ85L-WwswMFJXEhAf2-Q) - [ ] [国家网络安全宣传周 | 铸牢网络安全之盾,守护指尖数字世界](https://mp.weixin.qq.com/s/_BQnNw66wP0YMw92Hb9mhw) - [ ] [你更新了浏览器,但输入法里那个还是六年前的](https://mp.weixin.qq.com/s/kcwCzn5olRinpGhM8E3g7A) - [ ] [全球AI巨头:集体踩刹车,呼吁安全提速](https://mp.weixin.qq.com/s/caItsFC82jQbOINymiMnag) - [ ] [聚焦AI时代攻防对抗 奇安信携“AI+安全”系列方案亮相2026年网安周](https://mp.weixin.qq.com/s/VmhEZ5y7eq49eruTnPGN1g) - [ ] [AI+安全|奇安信与苏服云签署战略合作协议 让算力\"开箱即安全\"](https://mp.weixin.qq.com/s/WAcRddhmMlANFWrEtzF1Cg) - [ ] [关于LYSRC暂停接收漏洞公告](https://mp.weixin.qq.com/s/u2zemJyjxXBKOHwdcagcIA) - [ ] [VulnHunter 正式开源!AI 漏洞挖掘平台,重塑代码审计工作流](https://mp.weixin.qq.com/s/oDP5XJ4KXyqjiOMM12XV4w) - [ ] [2026网安周|中央网信办主任庄荣文、山东省委书记林武、中央网信办副主任王京涛一行莅临360展区](https://mp.weixin.qq.com/s/k3-QHKVcfGmVxxnjF54-4g) - [ ] [360智能体专家(ADEE)认证纳入北京市国际职业资格认可目录](https://mp.weixin.qq.com/s/UN0CGeS4C2pbWZRkv9WBgw) - [ ] [2026网安周 | 中孚信息董事长魏东晓在2026网安周网络安全技术高峰论坛发表主题演讲](https://mp.weixin.qq.com/s/EJ5jy7AL9TKbFjTFK3ZdQw) - [ ] [已复现 | 搜狗输入法 1-click RCE](https://mp.weixin.qq.com/s/m-alNYyQLozh3Nqc8uRrwA) - [ ] [由中国网络空间安全协会参与编制的《人工智能安全治理框架3.0》发布](https://mp.weixin.qq.com/s/78T1ViNa7gVjYVjMiOnB4A) - [ ] [中国电子信息产业发展研究院院长张立:以科技创新引领新质生产力发展 构建未来产业发展新格局](https://mp.weixin.qq.com/s/P3LMthtXBtWm-Jj7VjVF1Q) - [ ] [一键绕过CDN获取真实IP](https://mp.weixin.qq.com/s/YO8IEgpleGAbIw0rTX4kug) - [ ] [干货 | 网络安全入门知识汇总,建议收藏!](https://mp.weixin.qq.com/s/2Lp7zy9c2lEZG4KtZK0Osg) - [ ] [OpenAI 智能体被指策划 RubyGems 攻击,并在 RubyDoc 服务器上实现远程代码执行](https://mp.weixin.qq.com/s/EkS1EuHcwOU1piHT1IUnpg) - [ ] [2026年国家网络安全宣传周开幕](https://mp.weixin.qq.com/s/0Lsj9yE4P17N72fsEk1rww) - [ ] [谋篇“十五五”丨电子信息制造业“十四五”回顾与“十五五”发展展望](https://mp.weixin.qq.com/s/SbsViRSaYszdcjuSGUJqyA) - [ ] [谋篇“十五五”丨电子信息领域相关研究成果列表](https://mp.weixin.qq.com/s/NGdhgVVucDzxcaR4WeFJ9Q) - [ ] [谋篇“十五五”丨电子信息领域相关政策文件回顾](https://mp.weixin.qq.com/s/pm-Fm9nu-Rgn0fPexQPVSg) - [ ] [失控再现!Claude第四次破网而出,大厂AI黑盒生变](https://mp.weixin.qq.com/s/u2O9n1KgXjn9umJLg8bS0g) - [ ] [手机的主动权到底归谁管?老人心梗打120被广告告弹窗耽误10分钟,耽误了黄金救援,人没了](https://mp.weixin.qq.com/s/IV7lxKhJKCGybpGbpZhYpA) - [ ] [Codex,5 步装进你的电脑](https://mp.weixin.qq.com/s/l6lJChspUfQi0uT1mYnNRw) - [ ] [个人小程序现在能挣钱了?从注册到开发再到变现,一个Skill帮你把坑全排了](https://mp.weixin.qq.com/s/uvxlEHY9Jxh4HYEicdKI9Q) - [ ] [创新赋能隐私合规|汉华信安多模态智能体项目获 2026 网安创新创业大赛三等奖](https://mp.weixin.qq.com/s/GkhaA3SwafuQ-cn97MtHUQ) - [ ] [安全简讯(2026.09.14)](https://mp.weixin.qq.com/s/nmTZaQPE7kzd5_-F3b8cDA) - [ ] [关于开展“新形势下,资质单位如何做好人员管理”培训的通知](https://mp.weixin.qq.com/s/wclVNzp3xFBHAIyL_dRDrg) - [ ] [说说FMECA](https://mp.weixin.qq.com/s/ymHtdLp026L8AnzhVhaCsw) - [ ] [【每周一品】指纹锁 保密柜](https://mp.weixin.qq.com/s/Mp8Rger8LWiwoUiLLgTUfA) - [ ] [石梁:像谈恋爱一样去工作](https://mp.weixin.qq.com/s/Pq6TaXqogK5bxcVMOkOB3g) - [ ] [中泊研助力2026西安市网安周:智能时代,网安护航](https://mp.weixin.qq.com/s/UK4u3VAWwCf_gkvUnzDrEg) - [ ] [Android安全隐私合规智能检测工具V5.6](https://mp.weixin.qq.com/s/z9HcsQYF9n5Ak_MQGwh01Q) - [ ] [《人工智能安全治理框架3.0》发布](https://mp.weixin.qq.com/s/BOsQlidCGPN0_Q8fcDYuzg) - [ ] [Casbaneiro银行木马:利用分布式C2服务器规避检测,针对银行用户发起攻击](https://mp.weixin.qq.com/s/WoOT221l8fucpAXRImmdVQ) - [ ] [当AI红队\"假戏真做\":Claude模型4次越界攻击真实系统事件深度复盘](https://mp.weixin.qq.com/s/vkAWxOZdjMNfGvnC-4zbqA) - [ ] [AsyncRAT恶意软件滥用AutoIt与PowerShell,藏匿于合法Windows进程内](https://mp.weixin.qq.com/s/oTQW42yJ558vYr9KlfixmQ) - [ ] [以法护苗守晴空xa0安全用网伴成长——广州警方举办2026年网络安全宣传周法治宣传活动](https://mp.weixin.qq.com/s/MA1nFZTYiYsVT2R1_hnUag) - [ ] [法治热点|无底线博流量 谁在“导演”外卖恐慌?](https://mp.weixin.qq.com/s/Q8mlV91FuhNJgraWWyIJ1w) - [ ] [国舜ASPM应用安全治理平台入选《AI+网络安全全景图》](https://mp.weixin.qq.com/s/dcpioYDYKvzDh5IBxO3J-g) - [ ] [关于设置待审核漏洞队列的公告](https://mp.weixin.qq.com/s/n1sK_tZMZCWglWOHv0Qjqg) - [ ] [安博通亮相2026中国联通合作伙伴大会,共同发布卫星互联网安全“天枢”行动计划](https://mp.weixin.qq.com/s/miaGCkg06-mXJBHejM_5Tw) - [ ] [中国行为法学会法治营商课题组莅临安恒信息考察交流](https://mp.weixin.qq.com/s/laEMgrLgtjNPMGfLjkhYrA) - [ ] [解析埃及航展上的俄罗斯新型空射隐身巡航导弹](https://mp.weixin.qq.com/s/XZcsSnQiaE49YW9HNLiVhw) - [ ] [浙江余杭德商村镇银行因“违反数据安全、网络安全管理”等被罚109万 3名责任人被罚款](https://mp.weixin.qq.com/s/_vpHl7pNO2a9lE_oKR0FMw) - [ ] [国家安全部党委书记、部长陈一新在《中国网信》杂志发表署名文章](https://mp.weixin.qq.com/s/ktd4EGMUkj5m4zAgZtPIig) - [ ] [250元的AI工具积分只卖8.8元?小心你的代码被截留倒卖!](https://mp.weixin.qq.com/s/9TdYTVrOmcWPagDvkS-x5Q) - [ ] [两家企业两款APP违规收集、超范围收集个人信息xa0被依法约谈](https://mp.weixin.qq.com/s/WRaLapb88U9fgGYULaKQew) - [ ] [山东某企业非法获取公民个人信息被依法查处](https://mp.weixin.qq.com/s/SeJYbkuzFpO168DA9Lbckg) - [ ] [美国国安局五分天下](https://mp.weixin.qq.com/s/o9bI6J6alPTW1RhRg1aT0A) - [ ] [搞网络安全连IP都搞不懂?IP、子网掩码、网关、DNS,一篇全搞定](https://mp.weixin.qq.com/s/0PNOtYUtEI0G-o8-Zs8cTw) - [ ] [行业信息化属性探讨:交通、能源](https://mp.weixin.qq.com/s/gVxQTvLRv_uRiYu1IS1sfg) - [ ] [有奖问答丨网络安全“答”人请就位,答题赢好礼!](https://mp.weixin.qq.com/s/9jRhAiMUyJvGlRZoA4_0Hg) - [ ] [TLS证书自动化管理,迪普科技SSL安全网关化解高频续期难题](https://mp.weixin.qq.com/s/qdhFrScZTD4KPU783HT1nQ) - [ ] [黑客利用Claude扫描180万安卓应用密钥](https://mp.weixin.qq.com/s/UQW32lM5U6LcfhtGZSW-Mg) - [ ] [预告|2026年国家网络安全宣传周·政务信息系统安全管理与实践等分论坛明日开启](https://mp.weixin.qq.com/s/FblV7hg66Dzngipz0ftaSA) - [ ] [中国信通院【首批】互联网智能体治理 智能体安全防护产品能力评估正式启动!](https://mp.weixin.qq.com/s/tont36wqs-DAjxz_3QU1Aw) - [ ] [2026 国产操作系统怎么选](https://mp.weixin.qq.com/s/7lhfuJ55Aig-QGRmZhAZdw) - [ ] [动态|两项智能体安全团体标准启动,共筑智能体规模化应用安全基线](https://mp.weixin.qq.com/s/uY0QiuMZctM1PR0JWkoFiw) - [ ] [两项智能体安全团体标准启动,共筑智能体规模化应用安全基线](https://mp.weixin.qq.com/s/gRsYyPqMAI5C2zwkMrKm1g) - [ ] [以赛强技,共护网安|长三角网安大赛捷报,助力网安宣传周](https://mp.weixin.qq.com/s/06Vf4s3QwYfyAfXM8ke9AQ) - [ ] [篇 01:52G佛罗里达驾照记录被发布,执法部门介入调查](https://mp.weixin.qq.com/s/VUjBKv540027LVFxelGcng) - [ ] [廿载归母校,共话同窗情丨2006届网络工程专业校友毕业20周年返校相聚](https://mp.weixin.qq.com/s/49Y3rej7LCG13n3CXA_n9Q) - [ ] [对于游戏而言wifi和网线哪个更好?](https://mp.weixin.qq.com/s/p4BYhTrH6lkFOixdZaiDhw) - [ ] [智启新潮护安澜——我国网络安全工作建设发展述评](https://mp.weixin.qq.com/s/yluFa2s987Qh24hbPE1uuA) - [ ] [一图解读《公安机关网络空间安全监督检查办法》](https://mp.weixin.qq.com/s/RyVJd5mlnXFfn7IvZRYshg) - [ ] [文件加密守住了出口,屏幕偷拍却漏了底](https://mp.weixin.qq.com/s/zZoWAvZQ8X1gAQRA9LKY7Q) - [ ] [装了Foxit(福昕阅读器)的机器要看一眼: CVE-2026-57239 提权链解析](https://mp.weixin.qq.com/s/nwlpIXUto_amyDeI1AF1QA) - [ ] [AI编程号池流行,企业数据为何“裸奔”?](https://mp.weixin.qq.com/s/8shXghQVwRSI3RgfNCDBQQ) - [ ] [2026年国家网络安全宣传周丨网络安全为人民 网络安全靠人民](https://mp.weixin.qq.com/s/Q-EyvXWoJWPa7YywlAUwOQ) - [ ] [秦安:警惕“梅毒军团”,日本梅毒严重到什么程度?这个信息要高度重视!](https://mp.weixin.qq.com/s/4BE_Pf0Q_5VPCEos_SL-6A) - [ ] [秦安:大快人心!今天开始,中国大幅调高日本人赴华签证费用。](https://mp.weixin.qq.com/s/AwyMEhR1KRnPL4f5HJCdng) - [ ] [备战高端冲突:美海军以编制重组推进分布式海上作战](https://mp.weixin.qq.com/s/eJC1RPdc1Xu27TzYSMh3jA) - [ ] [中美俄装备发展战略及其评估的理论范式深度比较与启示思考](https://mp.weixin.qq.com/s/tus5qxivcY9O4OHnrdTRiw) - [ ] [知远防务论坛 |“日本防空反导作战”桌面推演邀请](https://mp.weixin.qq.com/s/dnSKJ4tBEHWVwcjfLVki8A) - [ ] [【推荐】知远蓝军战术态势数据系统系列产品](https://mp.weixin.qq.com/s/7touo8SRRDZ2ffloNf1j_Q) - [ ] [【一周知新】外军防务开源情报数据库更新(2026.09.07-2026.09.13)](https://mp.weixin.qq.com/s/1KYOt3DsItTLDpjCa6IK6Q) - [ ] [先把全球认可定义清楚|HGCP 开放全球伙伴征集](https://mp.weixin.qq.com/s/x-VCNx0o6Se0xt9XSOrbKg) - [ ] [交易系统的关键组件开发](https://mp.weixin.qq.com/s/TsDc8DNJbzEQsq_enmr44w) - [ ] [AI 化身钓鱼者:提示词注入如何让可信助手变成定向恶意工具(上篇)](https://mp.weixin.qq.com/s/yqMWF0zjWHw8vDa0hUZSSg) - [ ] [智能时代 网安护航|2026 网络安全宣传周开幕,AI 时代的 5 大风险每个人都该知道](https://mp.weixin.qq.com/s/4ae1VlOMqKlQLabHJ_ziZA) - [ ] [美国国家安全局将进行彻底重组,设立五个“任务中心”,包括网络安全和人工智能中心](https://mp.weixin.qq.com/s/MuaWh62pXqcMGgKMbAOJLw) - [ ] [伊朗关联组织借虚假招聘和编程测试投放跨平台远控木马,我科技企业海外招聘及开发者终端面临渗透风险](https://mp.weixin.qq.com/s/nNcE3ecLK_r8Z-tKk7ULZg) - [ ] [Skill 只是 AI 发展的过渡产物,真正的终局是自主智能](https://mp.weixin.qq.com/s/365YIBqkRnBqruZtJVFr4Q) - [ ] [所以就记下来](https://mp.weixin.qq.com/s/zev_ykp5beAzFeVi5NL88w) - [ ] [「AI安全红队技能库Claude-Red实测:78个SKILL.md覆盖提示词注入+越狱+RAG投毒,GitHub 4146星」](https://mp.weixin.qq.com/s/tY2BA7FO_V4HavWo10M-pg) - [ ] [从零搭一套 AI安全工作流:Trae + Yakit联动渗透测试保姆级教学(附带实战护网案例截图)](https://mp.weixin.qq.com/s/2J5zfnQ65YWI6JDdnwYJYw) - [ ] [9月社区投稿活动 | 漏洞挖掘/AI渗透/面试经验/简历编写](https://mp.weixin.qq.com/s/_ZCbCPY8iHMJWn8-ddgcog) - [ ] [久安世纪与蚌埠学院携手共建网络空间安全产学研合作基地](https://mp.weixin.qq.com/s/1u6tfFbJCwd4A1kbuXGQVg) - [ ] [9月12日 威胁情报IOC分享](https://mp.weixin.qq.com/s/MeeX0sfmmW-ePA5yv7KSCQ) - [ ] [重磅APT预警|不再只用云端大模型!Kimsuky部署离线本地LLM,全链路AI赋能间谍窃密](https://mp.weixin.qq.com/s/7xYDnAMQlckPHTXVGDoqaw) - [ ] [2026年国家网络安全宣传周 | 网络安全为人民,网络安全靠人民](https://mp.weixin.qq.com/s/WFW9kkKlUFmB3SWgoAIyqA) - [ ] [蓝队溯源组注意:从一条告警还原攻击链,容器逃逸这样防](https://mp.weixin.qq.com/s/3MA5NJDJcG_BxCwdo0hPhg) - [ ] [渗透测试从业者的 CTF 大模型CypherMind:6.4GB 离线跑通夺旗赛](https://mp.weixin.qq.com/s/Dm_bvyKxeemIBUvo_mS_QQ) - [ ] [Plesk 备份管理器两项漏洞直指 root:低权限账号也可能掀开整台服务器](https://mp.weixin.qq.com/s/6RARlyW91vhFUTioivxaTQ) - [ ] [美国国家安全局启动历史性重组](https://mp.weixin.qq.com/s/HZap0rGvs4OPPdJDUub1Tg) - [ ] [直击2026网安周|中国电信天翼安全创新成果实力登场](https://mp.weixin.qq.com/s/j1Y3SzIqN15Uq32bW6ievQ) - [ ] [字节跳动云工作负载安全防护平台:一套方案覆盖主机、容器、K8s、Serverless 全场景](https://mp.weixin.qq.com/s/Lj0q81sbRJdESRh63MNURQ) - [ ] [美国国家安全局将重组为五大任务中心以加速战场情报服务](https://mp.weixin.qq.com/s/2k-1oAXae00-KabipMtg3w) - [ ] [学习语 | 习近平总书记谈网络安全和信息化](https://mp.weixin.qq.com/s/mFDGdfXV_2Mt8jNWknq8bQ) - [ ] [“网络安全云竞答”全新上线,等你来战!](https://mp.weixin.qq.com/s/ttoVevh8q-WB3EmBjf6IjQ) - [ ] [零基础学网络安全|保姆级进阶路线图,告别盲目自学!](https://mp.weixin.qq.com/s/GqAZUzwq3AnkuBmXSWrQiA) - [ ] [未接电话也可能接管微信账号?研究演示把VoIP边界摆到台前](https://mp.weixin.qq.com/s/6gzNcwgLLb9SADaHqCoOLg) - [ ] [搜索“官网下载”却装回远控木马:游蛇仿站钓鱼正在盯住中文用户](https://mp.weixin.qq.com/s/95CiiCElqJ6cmdAQqYgKHw) - [ ] [制品库管理员失守后,代码没改也可能不可信](https://mp.weixin.qq.com/s/iRkYB_YmBvVu0iDdzMHhMA) - [ ] [御话资讯 | 安全动态,一文速览](https://mp.weixin.qq.com/s/V3iP2BPtyDztWG0nxICR4g) - [ ] [SRC漏洞挖掘器 -- SRCTOOLS](https://mp.weixin.qq.com/s/p9As2jhdwPhJYhvxsDsidw) - 先知安全技术社区 - [ ] [GEO与AI投毒样本(“豆包”)分析](https://xz.aliyun.com/news/92829) - [ ] [GitLab CE/EE 存在未授权任意文件读取漏洞](https://xz.aliyun.com/news/92828) - [ ] [ComfyUI 9.3 分反序列化 RCE 实测:官方没当漏洞修的"唯一漏网之鱼"](https://xz.aliyun.com/news/92827) - Recent Commits to cve:main - [ ] [Update Mon Sep 14 12:18:06 UTC 2026](https://github.com/trickest/cve/commit/57f71850850d483ff54bd9eca6a624d163457553) - obaby 𝐢𝐧⃝ void - [ ] [奇异莓](https://zhongxiaojie.cn/2026/09/1908/) - Der Flounder - [ ] [Suppressing the Liquid Glass screen with a configuration profile on macOS Golden Gate](https://derflounder.wordpress.com/2026/09/14/suppressing-the-liquid-glass-screen-with-a-configuration-profile-on-macos-golden-gate/) - Darknet – Hacking Tools, Hacker News & Cyber Security - [ ] [whitelist-bypass – WebRTC Tunnels Through Video-Calling Platforms](https://www.darknet.org.uk/2026/09/whitelist-bypass-webrtc-tunnels-through-video-calling-platforms/) - Hexacorn - [ ] [Win11_26H2 build xta phantom libraries](https://www.hexacorn.com/blog/2026/09/14/win11_26h2-build-xta-phantom-libraries/) - Thoughts on Security - [ ] [RSI vs The Real World](https://scriptjunkie.us/2026/09/rsi-vs-the-real-world/) - Reverse Engineering - [ ] [/r/ReverseEngineering's Weekly Questions Thread](https://www.reddit.com/r/ReverseEngineering/comments/1wfw6t3/rreverseengineerings_weekly_questions_thread/) - [ ] [CoD:MW2 (2009) runtime reimplemented in Rust is open source](https://www.reddit.com/r/ReverseEngineering/comments/1wghurx/codmw2_2009_runtime_reimplemented_in_rust_is_open/) - [ ] [Technical Analysis of Suno internals post-September 26 and a working tool to assist with curation](https://www.reddit.com/r/ReverseEngineering/comments/1wg66rt/technical_analysis_of_suno_internals/) - [ ] [Traced SetWindowDisplayAffinity from win32k to dwm.exe — detecting anti-capture windows via CWindowContext::HasProtectedContent (Win10/11)](https://www.reddit.com/r/ReverseEngineering/comments/1wfwhu2/traced_setwindowdisplayaffinity_from_win32k_to/) - [ ] [StealC Stealer – RuntimeBroker Hollowing, C2 Extraction & Payload Extraction](https://www.reddit.com/r/ReverseEngineering/comments/1wfwpk9/stealc_stealer_runtimebroker_hollowing_c2/) - [ ] [The Harness Matters: Cutting AI Reverse-Engineering Tokens by 33%](https://www.reddit.com/r/ReverseEngineering/comments/1wg0fvk/the_harness_matters_cutting_ai_reverseengineering/) - Malwarebytes - [ ] [Google’s new search redirects make links harder to check before you click](https://www.malwarebytes.com/blog/news/2026/09/googles-new-search-redirects-make-links-harder-to-check-before-you-click) - [ ] [Revolut gave customer IDs and financial data to a government impostor](https://www.malwarebytes.com/blog/news/2026/09/revolut-gave-customer-ids-and-financial-data-to-a-government-impostor) - [ ] [A week in security (September 7 – September 13)](https://www.malwarebytes.com/blog/news/2026/09/a-week-in-security-september-7-september-13) - Kitploit — Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal! - [ ] [hoverfly v1.12.14](https://kitploit.com/en/posts/github-spectolabs-hoverfly-v11214) - [ ] [simvyn v2.7.1](https://kitploit.com/en/posts/github-pranshuchittora-simvyn-v271) - [ ] [ipatool v2.6.0](https://kitploit.com/en/posts/github-majd-ipatool-v260) - [ ] [Gixy-Next v0.7.1](https://kitploit.com/en/posts/github-megamansec-gixy-next-v071) - [ ] [Grid-Mobile v2.1.0+849](https://kitploit.com/en/posts/github-rezivure-grid-mobile-v210849) - [ ] [spectre-meltdown-checker v26.36.0913490](https://kitploit.com/en/posts/github-speed47-spectre-meltdown-checker-v26360913490) - [ ] [porterminal v1.2.0](https://kitploit.com/en/posts/github-lyehe-porterminal-v120) - [ ] [ReArk](https://kitploit.com/en/tools/github/lkimuk/reark) - [ ] [LolModapi](https://kitploit.com/en/tools/github/mein-0/lolmodapi) - [ ] [Exploits + Shellcode + GHDB v2026-09-12](https://kitploit.com/en/posts/gitlab-exploit-database-exploitdb-2026-09-12) - [ ] [gonc](https://kitploit.com/en/tools/github/threatexpert/gonc) - [ ] [sshamble](https://kitploit.com/en/tools/github/runzeroinc/sshamble) - [ ] [FalconDash](https://kitploit.com/en/tools/github/falconforceteam/falcondash) - [ ] [HashSiphon](https://kitploit.com/en/tools/github/ivancabrera02/hashsiphon) - [ ] [sklad v0.2.3](https://kitploit.com/en/posts/github-rench321-sklad-v023) - [ ] [npcap v1.89](https://kitploit.com/en/posts/github-nmap-npcap-v189) - [ ] [WebGoat v2026.3](https://kitploit.com/en/posts/github-webgoat-webgoat-v20263) - [ ] [build.prop build-20260913](https://kitploit.com/en/posts/github-pixel-props-buildprop-build-20260913) - [ ] [hayabusa v4.1.0](https://kitploit.com/en/posts/github-yamato-security-hayabusa-v410) - [ ] [conftest v0.70.0](https://kitploit.com/en/posts/github-open-policy-agent-conftest-v0700) - [ ] [unleashed-firmware unlshd-093](https://kitploit.com/en/posts/github-darkflippers-unleashed-firmware-unlshd-093) - [ ] [wappalyzergo v0.3.1](https://kitploit.com/en/posts/github-projectdiscovery-wappalyzergo-v031) - [ ] [frigate v0.18.0](https://kitploit.com/en/posts/github-blakeblackshear-frigate-v0180) - [ ] [TriSuElla-AIDLCA-Framework](https://kitploit.com/en/tools/github/owasp/trisuella-aidlca-framework) - [ ] [bluehood v0.8.0](https://kitploit.com/en/posts/github-dannymcc-bluehood-v080) - rtl-sdr.com - [ ] [Using a Fruit Fly Brain to Tune an RTL-SDR FM Radio](https://www.rtl-sdr.com/using-a-fruit-fly-brain-to-tune-an-rtl-sdr-fm-radio/) - Wallarm - [ ] [AI Agent Security Readiness: The Federal Standard You Should Get Ahead Of](https://lab.wallarm.com/ai-agent-security-readiness/) - 奇客Solidot–传递最新科技情报 - [ ] [非洲野犬完成了横跨大陆的 4000 公里之旅](https://www.solidot.org/story?sid=85376) - [ ] [越南关联服务器泄漏了 2.2 亿条旅客信息](https://www.solidot.org/story?sid=85375) - [ ] [中国地震局与苹果公司沟通推进地震预警信息接入 iOS](https://www.solidot.org/story?sid=85374) - [ ] [养狗有助于降低老人患认知症风险](https://www.solidot.org/story?sid=85373) - [ ] [律师在谋杀案中捏造了证词,他将此归咎于 ChatGPT](https://www.solidot.org/story?sid=85372) - [ ] [日本无意结婚的男女比例都超两成](https://www.solidot.org/story?sid=85371) - [ ] [AI 时代隐晦式安全已死](https://www.solidot.org/story?sid=85370) - [ ] [微信蠕虫事件敲响 AI 安全警钟](https://www.solidot.org/story?sid=85369) - [ ] [中国要求电动汽车显示屏配备物理按键](https://www.solidot.org/story?sid=85368) - [ ] [青藏高原升温与加州的洪水相关](https://www.solidot.org/story?sid=85367) - HackerNews - [ ] [一封通过安全校验的伪造政府电子邮件导致 Revolut 泄露 KYC 数据](http://0.0.0.0:8080/post/64679) - [ ] [开发恶意软件并攻击受害者的 Conti 黑客获刑四年](http://0.0.0.0:8080/post/64678) - [ ] [荷兰 NCSC:Check Point VPN 关键漏洞被利用已迫在眉睫](http://0.0.0.0:8080/post/64677) - [ ] [OpenAI 智能体被指与 RubyGems 攻击活动有关,该活动在 RubyDoc 服务器上获取了 RCE](http://0.0.0.0:8080/post/64676) - [ ] [CISA 将 5 个正被积极利用的 Artifactory、ScreenConnect 和 RouterOS 漏洞加入 KEV](http://0.0.0.0:8080/post/64675) - [ ] [攻击者利用 Passkey 钓鱼劫持 Microsoft 云账户并窃取数据](http://0.0.0.0:8080/post/64674) - 腾讯玄武实验室 - [ ] [每日安全动态推送(26/9/14)](https://mp.weixin.qq.com/s?__biz=MzA5NDYyNDI0MA==&mid=2651960550&idx=1&sn=24b18559aa46671161c4ccf6bf607c47) - 微步在线研究响应中心 - [ ] [已复现 | 搜狗输入法 1-click RCE](https://mp.weixin.qq.com/s?__biz=Mzg5MTc3ODY4Mw==&mid=2247508935&idx=1&sn=6da728bb79fea0b00db8b7293ab54b85) - 360 Netlab Blog - Network Security Research Lab at 360 - [ ] [银狐云端“生死簿”:从“无条件返回”到“黑名单”机制](https://blog.netlab.360.com/yin-hu-yun-duan-sheng-si-bo-cong-wu-tiao-jian-fan-hui-dao-hei-ming-dan-ji-zhi/) - 威努特安全网络 - [ ] [工信部划定智能体安全红线,WinClaw交出企业级落地答案](https://mp.weixin.qq.com/s?__biz=MzAwNTgyODU3NQ==&mid=2651144080&idx=1&sn=535f4b5c707bcb011d5e0b0d5dd51a19) - 同程旅行安全应急响应中心 - [ ] [关于LYSRC暂停接收漏洞公告](https://mp.weixin.qq.com/s?__biz=MzI4MzI4MDg1NA==&mid=2247485449&idx=1&sn=4e7c27be9c1927d38c415ef698cf0fff) - 代码卫士 - [ ] [GitLab:速修复这个满分路径遍历漏洞](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527116&idx=1&sn=a5bb9e6f5885a23ace296375f350354b) - [ ] [Okta 修复三个影响 Auth0 和访问网关的高危漏洞](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247527116&idx=2&sn=a993e3dbf2a2bdf917c51afa34037ecf) - 安全客 - [ ] [红队两周的活,AI十小时干完:全球首例多智能体勒索攻击实录](https://mp.weixin.qq.com/s?__biz=MzA5ODA0NDE2MA==&mid=2649790471&idx=1&sn=51ded8e96316ccb2cc01a411bbfa2544) - 黑鸟 - [ ] [针对思科的沙虫组织专用木马卷土重来,模块化恶意软件开启泛化攻击](https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451188758&idx=1&sn=925fa614b706046fb8a5fb51f635ba9d) - 安全内参 - [ ] [首个AI智能体驱动的大规模漏洞利用:数天攻陷近400家企业](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516580&idx=1&sn=bd9b75622a8f018f62dec496c54cd44b) - [ ] [聚焦网络安全和AI等领域:美国国家安全局启动历史性机构重组](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516580&idx=2&sn=e8935158b8f2938cdbbd7c961dcd9e44) - 58安全应急响应中心 - [ ] [关于设置待审核漏洞队列的公告](https://mp.weixin.qq.com/s?__biz=MzU4NTMzNjU4Mw==&mid=2247490220&idx=1&sn=134f462e7fd5061db69579973f451579) - 安全分析与研究 - [ ] [FDE工程实战04-企业集成与安全合规](https://mp.weixin.qq.com/s?__biz=MzA4ODEyODA3MQ==&mid=2247497150&idx=1&sn=cc60d411fd7fc7217878b774d67e63e9) - 信安之路 - [ ] [攻击方 Agent 化之后,红队的出路在哪里](https://mp.weixin.qq.com/s?__biz=MzI5MDQ2NjExOQ==&mid=2247500649&idx=1&sn=62baf4cf05db2db04c09ab65fd25bc82) - 天御攻防实验室 - [ ] [美国国家安全局启动历史性重组](https://mp.weixin.qq.com/s?__biz=MzU0MzgyMzM2Nw==&mid=2247487168&idx=1&sn=6dd4f9e8d396b03ae13c0cd93042b88e) - 安全圈 - [ ] [【安全圈】CISA紧急通报:GitLab满分漏洞遭在野狂扫,限期3天整改](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078901&idx=1&sn=7757b77baf60096325b70cc9e320d520) - [ ] [【安全圈】3万用户中招!恶意插件偷跑Twitch凭据直连俄罗斯代理](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078901&idx=2&sn=b5df4bd55b008ba8e5c47ed8dbfb3f53) - [ ] [【安全圈】假借通行密钥升级!黑客利用微软设备码绕过MFA洗劫云盘](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652078901&idx=3&sn=8ae0f342197f340003abb1f2ef4d01a8) - 看雪学苑 - [ ] [人机共智·重构攻防|武汉科锐,助力第十届安全开发者峰会(SDC2026)](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458619945&idx=1&sn=992737d211beffffbfe6c7d50624d2d6) - [ ] [一场 VM 题目的逆向与利用分析:CISCN 决赛 Pwn01 复盘](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458619945&idx=2&sn=668c5a7c1d1589699676a02d69c89415) - [ ] [CVSS 10分!戴尔对象存储严重漏洞,攻击者可接管系统](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458619945&idx=3&sn=3286bebc47e66fd2eb9d1c3563e5b404) - 信息安全国家工程研究中心 - [ ] [《人工智能安全治理框架3.0》发布](https://mp.weixin.qq.com/s?__biz=MzU5OTQ0NzY3Ng==&mid=2247505077&idx=1&sn=2ca4a7ac41aac488d386b3fccde3b707) - 奇安信威胁情报中心 - [ ] [当AI红队"假戏真做":Claude模型4次越界攻击真实系统事件深度复盘](https://mp.weixin.qq.com/s?__biz=MzI2MDc2MDA4OA==&mid=2247520390&idx=1&sn=a0113619e777e4039906db21a3ff6778) - 微步在线 - [ ] [没有一个SOC,能同时回答这9个问题](https://mp.weixin.qq.com/s?__biz=MzI5NjA0NjI5MQ==&mid=2650188048&idx=1&sn=9a95f3adc5735eed4ba51bfc85e5849a) - 长亭科技 - [ ] [【长亭AI安全·网安周进行时】朱文雷主论坛演讲:AI攻击走向工业化,防御体系需合力升级](https://mp.weixin.qq.com/s?__biz=MzIwNDA2NDk5OQ==&mid=2651390682&idx=1&sn=afd1e25c97fb595500da3b4d1c6e2d5b) - 电子物证 - [ ] [【涉深度合成电子数据刑事案件的证据审查规则】](https://mp.weixin.qq.com/s?__biz=MzAwNDcwMDgzMA==&mid=2651049158&idx=1&sn=85e65bda11bee97f7190b293fd5ceb3d) - [ ] [【破除电子数据审查的神秘感】](https://mp.weixin.qq.com/s?__biz=MzAwNDcwMDgzMA==&mid=2651049158&idx=2&sn=07bbdf3cabd97840e99dcea5066bd598) - 安全牛 - [ ] [405个“AI恶意软件”,97%没进过真实战场——那12个进了的,全被逮住了!](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142698&idx=1&sn=ec60c9d87e333c9865900dde6944ee70) - [ ] [2026年国家网络安全宣传周9月14日启幕,主题聚焦“智能时代 网安护航”;工信部发布“人工智能+软件”专项行动方案| 牛览](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651142698&idx=2&sn=4eaca465a0dcb8075db82758a398db24) - 极客公园 - [ ] [专访爆火「机器鸭」背后的硬件推手:这是个信号,未来推动新故事的并非硬件](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113551&idx=1&sn=be3c994364b659680689a0757d180dad) - [ ] [追觅四大赛道 IFA 首秀:一套技术,四个出口](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653113549&idx=1&sn=c7dc5bcae49b4ba2c862ede36b258539) - 复旦白泽战队 - [ ] [讲座预告 | 复旦白泽青年学者论坛系列活动第三期预告](https://mp.weixin.qq.com/s?__biz=MzU4NzUxOTI0OQ==&mid=2247499875&idx=1&sn=5ca5e03f1bec3ad4af06516d4229a4bd) - 小米安全中心 - [ ] [惊喜奖励揭晓|MiSRC邀您加入双11安全保卫战](https://mp.weixin.qq.com/s?__biz=MzI2NzI2OTExNA==&mid=2247521084&idx=1&sn=9fd75d8c78f06484d9ed04d72748cf87) - 君哥的体历 - [ ] [AI安全网关是否有必要自研?员工用AI,企业应该如何管控?|总第322周](https://mp.weixin.qq.com/s?__biz=MzI2MjQ1NTA4MA==&mid=2247492570&idx=1&sn=eda0a6aa5a53292b44ad91de86743fe6) - 网络空间安全科学学报 - [ ] [关于CCSS组织召开网安期刊创新发展论坛暨CCSS会刊征集宣讲会的通知](https://mp.weixin.qq.com/s?__biz=MzI0NjU2NDMwNQ==&mid=2247508683&idx=1&sn=071d270cbcfc27c5c47a9a8a164bd7a9) - 火绒安全 - [ ] [抽奖啦 | 网络安全靠人民 答题抽奖赢好礼](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247537394&idx=1&sn=2d0754617655b15335cfe47275e63408) - [ ] [诚邀渠道合作伙伴共启新征程](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247537394&idx=2&sn=1247237b05f87d3494c26a92d5a1e21f) - 吴鲁加 - [ ] [Dario Amodei 与 Sam Altman 的 AI 风险观点](https://mp.weixin.qq.com/s?__biz=Mzg5NDY4ODM1MA==&mid=2247486210&idx=1&sn=797bdd9065d04e9fe6f0a17b8ec913e5) - 情报分析师 - [ ] [美国国家安全局将进行彻底重组,设立五个“任务中心”,包括网络安全和人工智能中心](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569648&idx=1&sn=7042aaf9e253b5afb835ca2e902ba956) - [ ] [伊朗关联组织借虚假招聘和编程测试投放跨平台远控木马,我科技企业海外招聘及开发者终端面临渗透风险](https://mp.weixin.qq.com/s?__biz=MzA3Mjc1MTkwOA==&mid=2650569648&idx=2&sn=cd174d345371e73e174be0131e486acc) - 嘶吼专业版 - [ ] [两项智能体安全团体标准启动,共筑智能体规模化应用安全基线](https://mp.weixin.qq.com/s?__biz=MzI0MDY1MDU4MQ==&mid=2247587826&idx=1&sn=875d346781456fcc8410b0348a4d10cd) - 360数字安全 - [ ] [2026网安周|中央网信办主任庄荣文、山东省委书记林武、中央网信办副主任王京涛一行莅临360展区](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586869&idx=1&sn=7f62ae2066ab4f7062f611e0817ed51d) - [ ] [360智能体专家(ADEE)认证纳入北京市国际职业资格认可目录](https://mp.weixin.qq.com/s?__biz=MzA4MTg0MDQ4Nw==&mid=2247586869&idx=2&sn=1b3b2f0754bbdb0106fbffdb092d2719) - OnionSec - [ ] [所以就记下来](https://mp.weixin.qq.com/s?__biz=MzUyMTUwMzI3Ng==&mid=2247486004&idx=1&sn=379283cc253be9067f3cc0bd0b1d325b) - 纽创信安 - [ ] [MICRO论文录用!北京大学、清华大学与纽创信安在隐私推理协议与硬件协同优化领域取得重要突破](https://mp.weixin.qq.com/s?__biz=MzAwNTczMjAzMg==&mid=2650241997&idx=1&sn=a5158e1d74e6e7b64806c75a679ccef5) - 洞源实验室 - [ ] [AI 开发普遍应用后,工程师更需要有主见](https://mp.weixin.qq.com/s?__biz=Mzg4Nzk3MTg3MA==&mid=2247488767&idx=1&sn=2a0256494540de1ba33b51b774aa5e13) - Over Security - [ ] [Microsoft releases emergency Windows updates to fix RDS failures](https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-emergency-windows-updates-to-fix-rds-failures/) - [ ] [Japan's Digital Agency says VPN flaw exposed 246,000 personnel records](https://www.bleepingcomputer.com/news/security/japans-digital-agency-says-vpn-flaw-exposed-246-000-personnel-records/) - [ ] [Homebrew 7.0.0 gets built-in GUI, better security controls](https://www.bleepingcomputer.com/news/security/homebrew-700-gets-built-in-gui-better-security-controls/) - [ ] [whitelist-bypass – WebRTC Tunnels Through Video-Calling Platforms](https://www.darknet.org.uk/2026/09/whitelist-bypass-webrtc-tunnels-through-video-calling-platforms/) - [ ] [Members of ‘Black Axe’ cybercriminal group extradited from South Africa](https://therecord.media/members-of-black-axe-cybercrime-group-extradited-south-africa) - [ ] [Twitch extension with 30K installs exposes users’ OAuth tokens](https://www.bleepingcomputer.com/news/security/twitch-extension-with-30k-installs-exposes-users-oauth-tokens/) - [ ] [Hackers hijack HBO Max Reddit account to push malware in ClickFix ads](https://www.bleepingcomputer.com/news/security/hackers-hijack-hbo-max-reddit-account-to-push-malware-in-clickfix-ads/) - [ ] [Hundreds of fake government websites target users in Central Asia](https://therecord.media/hundreds-of-fake-gov-websites-central-asia-scam) - [ ] [Pro-Ukraine Hacking Cat group deploying new malware against Russian targets](https://therecord.media/ukraine-malware-russia-ransomware) - [ ] [Hackers target exposed Vite dev servers to steal AWS, Azure secrets](https://www.bleepingcomputer.com/news/security/hackers-target-exposed-vite-dev-servers-to-steal-aws-azure-secrets/) - [ ] [Il phishing italiano è noioso. Ed è esattamente per questo che funziona](https://www.certego.net/blog/il-phishing-italiano-noioso-e-per-questo-funziona/) - [ ] [Dossier sanitario e rapporto di lavoro: ecco il confine tra cura, organizzazione e controllo](https://www.cybersecurity360.it/legal/dossier-sanitario-e-rapporto-di-lavoro-ecco-il-confine-tra-cura-organizzazione-e-controllo/) - [ ] [Graduatorie online: i perché della sanzione privacy a Regione Emilia-Romagna](https://www.cybersecurity360.it/news/graduatorie-online-i-perche-della-sanzione-privacy-a-regione-emilia-romagna/) - [ ] [Revolut, dati esposti dopo una falsa richiesta governativa: il limite della fiducia digitale](https://www.cybersecurity360.it/news/revolut-dati-esposti-dopo-una-falsa-richiesta-governativa-il-limite-della-fiducia-digitale/) - [ ] [Videosorveglianza negli spogliatoi: per il Garante privacy la finalità legittima non basta](https://www.cybersecurity360.it/legal/privacy-dati-personali/videosorveglianza-negli-spogliatoi-per-il-garante-privacy-la-finalita-legittima-non-basta/) - [ ] [PreCrime Credentials](https://bfore.ai/uncategorized/precrime-credentials/) - [ ] [Fraudulent Shopify stores running ‘Outsider’-linked phishing kits](https://bfore.ai/report/pre-release-domain-abuse-campaign-gta-6-grand-theft-auto-2-2/) - [ ] [Why Patch Automation Needs Brakes, Not Just an Accelerator](https://www.bleepingcomputer.com/news/security/why-patch-automation-needs-brakes-not-just-an-accelerator/) - [ ] [Cosa è ChatGPT Lockdown Mode e quanto è utile](https://www.cybersecurity360.it/outlook/chatgpt-lockdown-mode/) - [ ] [Webinar: How malicious OAuth apps can lead to Google Workspace breaches](https://www.bleepingcomputer.com/news/security/webinar-how-malicious-oauth-apps-can-lead-to-google-workspace-breaches/) - [ ] [Revolut handed customer data to fraudsters using government email account](https://therecord.media/revolut-scam-crypto-impersonation) - [ ] [Rapporto Anthropic: l’AI non inventa il cybercrime, lo rende industriale](https://www.cybersecurity360.it/nuove-minacce/rapporto-anthropic-lai-non-inventa-il-cybercrime-lo-rende-industriale/) - [ ] [AI Act, il controllo umano può diventare un’illusione: cosa insegna HAL 9000](https://www.cybersecurity360.it/cultura-cyber/ai-act-il-controllo-umano-puo-diventare-unillusione-cosa-insegna-hal-9000/) - [ ] [Microsoft: September updates cause RDS failures on Windows Server](https://www.bleepingcomputer.com/news/microsoft/microsoft-september-updates-cause-rds-failures-on-windows-server/) - [ ] [Hosting illimitato e strumenti AI: come valutare sicurezza, backup e continuità operativa nei piani cloud](https://www.cybersecurity360.it/cultura-cyber/hosting-illimitato-ai-sicurezza-backup-resilienza-cloud/) - [ ] [Revolut discloses data breach exposing financial info, passports](https://www.bleepingcomputer.com/news/security/revolut-discloses-data-breach-exposing-financial-info-passports/) - [ ] [Cloud native, modernizzare al tempo dell’AI: verso una governance incorporata nelle piattaforme](https://www.cybersecurity360.it/cybersecurity-nazionale/cloud-native-modernizzare-al-tempo-dellai-verso-una-governance-incorporata-nelle-piattaforme/) - [ ] [530 GB, 335,093 Files and Encrypted Backups: Anubis Details Attack on Interim HealthCare](https://www.suspectfile.com/530-gb-335093-files-and-encrypted-backups-anubis-details-attack-on-interim-healthcare/) - [ ] [Smish. Click. Drained: Inside the Smishing Triad’s Phishing Cockpit](https://www.group-ib.com/blog/smishing-triad-outsider-jwr/) - [ ] [Microsoft: September updates break audio on some Windows PCs](https://www.bleepingcomputer.com/news/microsoft/microsoft-september-updates-break-audio-on-some-windows-pcs/) - [ ] [Agenti AI fuori controllo: la corsa dei big verso standard di sicurezza](https://www.cybersecurity360.it/nuove-minacce/agenti-ai-fuori-controllo-la-corsa-dei-big-verso-standard-di-sicurezza/) - [ ] [CISA: Hackers now exploit max severity GitLab flaw in attacks](https://www.bleepingcomputer.com/news/security/cisa-hackers-now-exploit-max-severity-gitlab-flaw-in-attacks/) - IT Service Management News - [ ] [Gli uomini possono fare tutto (settembre 2026)](http://blog.cesaregallotti.it/2026/09/gli-uomini-possono-fare-tutto-settembre.html) - 安全419 - [ ] [《网安行业深度观察系列》 | 商誉认知偏差与行业并购能力的重构](https://mp.weixin.qq.com/s?__biz=MzUyMDQ4OTkyMg==&mid=2247554953&idx=1&sn=848cc16e292065cc74dd1f18a45a2cf2) - SANS Internet Storm Center, InfoCON: green - [ ] [Apple Updates Everything, (Mon, Sep 14th)](https://isc.sans.edu/diary/rss/33336) - [ ] [ISC Stormcast For Monday, September 14th, 2026 https://isc.sans.edu/podcastdetail/10092, (Mon, Sep 14th)](https://isc.sans.edu/diary/rss/33334) - CNVD漏洞平台 - [ ] [CNVD漏洞周报2026年第36期](https://mp.weixin.qq.com/s?__biz=MzU3ODM2NTg2Mg==&mid=2247497332&idx=1&sn=9897e3d0177cf755581807707d5ce3b3) - [ ] [上周关注度较高的产品安全漏洞(20260907-20260913)](https://mp.weixin.qq.com/s?__biz=MzU3ODM2NTg2Mg==&mid=2247497332&idx=2&sn=aa502ae57a5adebe56511b3d5527a453) - bellingcat - [ ] [Bellingcat Official Merch Design Contest](https://www.bellingcat.com/uncategorized/2026/09/14/bellingcat-official-merch-design-contest/) - Schneier on Security - [ ] [Upcoming Speaking Engagements](https://www.schneier.com/blog/archives/2026/09/upcoming-speaking-engagements-60.html) - [ ] [Using AI for Weapons Development](https://www.schneier.com/blog/archives/2026/09/using-ai-for-weapons-development.html) - [ ] [Microsoft’s Patching](https://www.schneier.com/blog/archives/2026/09/microsofts-patching.html) - Instapaper: Unread - [ ] [Perchè gli LLM vanno “fuori controllo” (vedi caso Hugging face) ma Waymo non investe pedoni](https://blog.quintarelli.it/2026/09/perche-gli-llm-vanno-fuori-controllo-vedi-caso-hugigng-face-ma-waymo-non-investe-pedoni/) - [ ] [Riconoscimento facciale, il caso dello Stadio Olimpico ecco il decreto che riscrive le regole](https://www.cybersecurity360.it/legal/privacy-dati-personali/riconoscimento-facciale-il-caso-dello-stadio-olimpico-ecco-il-decreto-che-riscrive-le-regole/) - 大兵说安全 - [ ] [网络安全周许昌市活动](https://mp.weixin.qq.com/s?__biz=MzI2MzM0NjcxNw==&mid=2247485870&idx=1&sn=f7430665d7a78d2b98af0e1ba75c9971) - Krypt3ia - [ ] [Weekly ALL-SOURCE Cyber Warfare Intelligence Brief 9.14.26](https://krypt3ia.wordpress.com/2026/09/14/weekly-all-source-cyber-warfare-intelligence-brief-9-14-26/) - [ ] [Weekly All-Source Espionage Intelligence Brief 9.14.26](https://krypt3ia.wordpress.com/2026/09/14/weekly-all-source-espionage-intelligence-brief-9-14-26/) - Security Affairs - [ ] [ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up](https://securityaffairs.com/199063/ai/enisa-frontier-ai-is-changing-the-speed-of-cyberattacks-europe-needs-to-catch-up.html) - [ ] [China Calls Amodei’s AI Proposal a New Cold War Playbook](https://securityaffairs.com/199048/uncategorized/china-calls-amodeis-ai-proposal-a-new-cold-war-playbook.html) - [ ] [U.S. CISA adds GitLab, JFrog Artifactory, and ConnectWise ScreenConnect flaws to its Known Exploited Vulnerabilities catalog](https://securityaffairs.com/199032/security/u-s-cisa-adds-gitlab-jfrog-artifactory-and-connectwise-screenconnect-flaws-to-its-known-exploited-vulnerabilities-catalog.html) - [ ] [Dutch NCSC Warns: Critical Check Point VPN Flaws Put Networks at Risk](https://securityaffairs.com/199015/security/dutch-ncsc-warns-critical-check-point-vpn-flaws-put-networks-at-risk.html) - [ ] [Anthropic CEO Calls for an AI Slowdown. Is It Possible?](https://securityaffairs.com/198994/ai/anthropic-ceo-calls-for-an-ai-slowdown-is-it-possible.html) - Computer Forensics - [ ] [Open source e01s / CTF exercises?](https://www.reddit.com/r/computerforensics/comments/1wfr6qa/open_source_e01s_ctf_exercises/) - Daniel Miessler - [ ] [Anthropic's Misuse Report, Condensed to 117 Findings](https://danielmiessler.com/blog/anthropic-misuse-report-september-2026?utm_source=rss&utm_medium=feed&utm_campaign=website) - TorrentFreak - [ ] [Rightsholders Can’t Use OpenAI and Anthropic to Dismantle Meta’s Seeding Defense](https://torrentfreak.com/rightsholders-cant-use-openai-and-anthropic-to-dismantle-metas-seeding-defense/) - Deeplinks - [ ] [The High Crime of “LMAO”: How Cops Are Treating Mass Surveillance As a Joke](https://www.eff.org/deeplinks/2026/09/high-crime-lmao-how-cops-are-treating-mass-surveillance-joke) - The Hacker News - [ ] [New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing](https://thehackernews.com/2026/09/new-ddrop-attack-breaks-intel-tdx-and.html) - [ ] [3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials](https://thehackernews.com/2026/09/3bb-attacker-used-meshcentral-backdoor.html) - [ ] [Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports](https://thehackernews.com/2026/09/telegram-desktop-flaw-lets-hidden.html) - [ ] [Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries](https://thehackernews.com/2026/09/red-heron-exploits-gitea-rce-to.html) - [ ] [WordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before Distribution](https://thehackernews.com/2026/09/wordpress-adds-automated-plugin-reviews.html) - [ ] [⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkits](https://thehackernews.com/2026/09/weekly-recap-rogue-ai-agents-wechat.html) - [ ] [AI Changed the Exposure Problem. Validation Needs to Change With It.](https://thehackernews.com/2026/09/ai-changed-exposure-problem-validation.html) - [ ] [Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users](https://thehackernews.com/2026/09/malicious-twitch-browser-extension.html) - KitPloit - PenTest Tools! - [ ] [hoverfly v1.12.14](https://kitploit.com/en/posts/github-spectolabs-hoverfly-v11214) - [ ] [simvyn v2.7.1](https://kitploit.com/en/posts/github-pranshuchittora-simvyn-v271) - [ ] [ipatool v2.6.0](https://kitploit.com/en/posts/github-majd-ipatool-v260) - [ ] [Gixy-Next v0.7.1](https://kitploit.com/en/posts/github-megamansec-gixy-next-v071) - [ ] [Grid-Mobile v2.1.0+849](https://kitploit.com/en/posts/github-rezivure-grid-mobile-v210849) - [ ] [spectre-meltdown-checker v26.36.0913490](https://kitploit.com/en/posts/github-speed47-spectre-meltdown-checker-v26360913490) - [ ] [porterminal v1.2.0](https://kitploit.com/en/posts/github-lyehe-porterminal-v120) - [ ] [ReArk](https://kitploit.com/en/tools/github/lkimuk/reark) - [ ] [LolModapi](https://kitploit.com/en/tools/github/mein-0/lolmodapi) - [ ] [Exploits + Shellcode + GHDB v2026-09-12](https://kitploit.com/en/posts/gitlab-exploit-database-exploitdb-2026-09-12) - [ ] [gonc](https://kitploit.com/en/tools/github/threatexpert/gonc) - [ ] [sshamble](https://kitploit.com/en/tools/github/runzeroinc/sshamble) - [ ] [FalconDash](https://kitploit.com/en/tools/github/falconforceteam/falcondash) - [ ] [HashSiphon](https://kitploit.com/en/tools/github/ivancabrera02/hashsiphon) - [ ] [sklad v0.2.3](https://kitploit.com/en/posts/github-rench321-sklad-v023) - [ ] [npcap v1.89](https://kitploit.com/en/posts/github-nmap-npcap-v189) - [ ] [WebGoat v2026.3](https://kitploit.com/en/posts/github-webgoat-webgoat-v20263) - [ ] [build.prop build-20260913](https://kitploit.com/en/posts/github-pixel-props-buildprop-build-20260913) - [ ] [hayabusa v4.1.0](https://kitploit.com/en/posts/github-yamato-security-hayabusa-v410) - [ ] [conftest v0.70.0](https://kitploit.com/en/posts/github-open-policy-agent-conftest-v0700) - [ ] [unleashed-firmware unlshd-093](https://kitploit.com/en/posts/github-darkflippers-unleashed-firmware-unlshd-093) - [ ] [wappalyzergo v0.3.1](https://kitploit.com/en/posts/github-projectdiscovery-wappalyzergo-v031) - [ ] [frigate v0.18.0](https://kitploit.com/en/posts/github-blakeblackshear-frigate-v0180) - [ ] [TriSuElla-AIDLCA-Framework](https://kitploit.com/en/tools/github/owasp/trisuella-aidlca-framework) - [ ] [bluehood v0.8.0](https://kitploit.com/en/posts/github-dannymcc-bluehood-v080) - Silent Signal Techblog - [ ] [IBM Db2 Mirror for i: pre-auth RCE and the road to QSECOFR](https://blog.silentsignal.eu/2026/09/14/IBM-Db2-Mirror-for-i-pre-auth-RCE-and-the-road-to-QSECOFR/)
每日安全资讯(2026-09-15)