- Full technical details of both attacks are provided in our new papers: On HAWK: On AES: And the associated model chain-o... x
- TONTOU 攻击披露:绕过部分处理器 Spectre v2 缓解措施,可泄露 Linux 敏感数据 ithome
- Now you can securely link multiple phones to one Signal account theverge
- LLMs won't break symmetric crypto hackernews
- Smaller, faster, safer: running Kimi and GLM at scale hackernews
- uber/ADR github_trending
- IP and DNS Leaks in WebKit Affecting Proxy Browsers and iCloud Private Relay hackernews
- Android app developers may be unwittingly sharing their users’ location data with advertisers techcrunch
- Hackers steal over $130M by exploiting bug in offline hardware wallets techcrunch
- Atlassian Rovo Exfiltrates Data, Bypassing Controls hackernews
- Thousands of servers can be backdoored by exploiting buggy motherboard controllers ars_technica
- PSA: Apple’s Private Relay can leak your real IP address techcrunch
- Rogue AI agents created fake online identities in another hacking attempt theverge
- Can you reverse engineer an ASIC? hackernews
- Agent Sandboxes: Giving AI Agents Their Own Little Linux Box (And Why You Should Care) devto
- Linux KVM 曝出虚拟机逃逸漏洞,嵌套虚拟化功能成攻击突破口 ithome
- After evaluating one of our upcoming models, Astra, we're treating it as our first "critical" model for cybersecurity... x
- FIPS 140-3 is not a security guarantee, and auditors know it hackernews
- Telegram CEO says an extortionist planted CSAM in a chat to get it pulled from the App Store theverge
- 国际 AI 安全榜单 CyberGym 今日放榜:中国方案 DoGNAVY 全球第三、开源第一 ithome
- The UK’s @AISecurityInst (AISI) has published a report on their recent cybersecurity evaluation of Anthropic’s Claude My... x
- I stopped trusting USB-C cable labels and started testing them hackernews
- Who Is the Author? AI-Generated Code and PCI DSS Code Review devto
- Google says hackers are calling financial firm employees to hack and extort victims techcrunch
- Hacker pleads guilty to stealing data from more than 165 Snowflake customers techcrunch
- OpenAI says it slowed Astra model development over security concerns techcrunch
- They Forgot What Happened Last Time: Hacking the Windows 365 Link [video] hackernews
- Keyv and friends compromised in active Shai-Hulud supply chain attack hackernews
- Bugtraq Is Back hackernews
- Nvidia doesn’t mess around: A week after open AI industry group formed, it’s already showing progress techcrunch
- We're detailing two new incidents that occurred during external cyber evaluations conducted by independent evaluation pa... x
- In a review of our cybersecurity evaluations, we found three incidents in which a Claude model reached the internet from... x
- 🛡️Introducing Shieldstral, Mistral’s 3B open-weights model for content safety that can be deployed on-device 🧵 x
- OpenAI 披露攻击 Hugging Face 前,AI 智能体秘密建立内部留言板 ithome
- Hackers Stalked Me by Hijacking a Smartwatch for Kids hackernews
- sponsors/goauthentik github_trending
- China-linked LightSpy spyware caught targeting victims in 13 countries, including the US techcrunch
- Chinese AI model Kimi escaped its cybersecurity testing environment, researchers say techcrunch
- Meta 旗下 AI 模型测试时意外入侵第三方企业系统 ithome
- Psychological Warfare in Reverse Engineering (2015) hackernews
- Security researchers scanned the Polish web and found courts, hospitals, and airports at risk of hacks techcrunch
- Critical CVE issued for hallucinated SQLite vulnerability hackernews
- libexpat now funded by the City of Munich for up to 6 months hackernews
- AI fuels more than half of cybercrime in Africa as scams surge – Interpol hackernews
- How I Smashed a Bug in a Shared Authentication Library devto
- I built a free fitness tracker with no backend and no account — here's what I learned devto
- The Valley of Webhooks hackernews
- Reddit aims to make ‘karma’ less important for first-time posters with shift to AI moderation tools techcrunch
- The model takes moderation policy as a plain-language question and returns a calibrated score. Text and images — one int... x
- AI isn’t enough to protect social media communities from AI ars_technica
- OpenAI says Apple’s own security practices undermine its trade secrets case techcrunch
- Suno 平台将为 AI 生成音乐添加隐水印,防止滥用现象发生 ithome
- Water system controllers don't belong on the internet, says ex-NSA chief hackernews
- Computer maker Framework notifies ‘all customers’ of a data breach techcrunch
- Microsoft Edge is about to lock out older ad blockers, just like Chrome did theverge
- 发布 326 天,苹果 iOS 26 在 iPhone 11/iPad 9 等机型上迎来首次越狱 ithome
- astra is a powerful model and we are working to make it generally available x
- Show HN: Nightcrawler – A local AI pentesting agent running on a smartphone hackernews
- What DMARC Protects You From, and What It Does Not hackernews
- Senators demand crackdown on wildfire "prediction markets" ars_technica
- Damn Popovers devto
- 迅雷被广电总局纳入侵权重点监测平台 ithome
- 曝中创新航在 AION S“电池鼓包”风波后,内部紧急开展技术改革 ithome
- Welcoming the Nepalese Government to Have I Been Pwned hackernews
- Amid legal battles, Suno says it will start watermarking songs techcrunch
- Suno shares plans to combat spammy AI music theverge
- Why does Apple keep banning Telegram, but never X? theverge
- Responding to the next frontier of critical cyber capabilities hackernews
- Full technical details of both attacks are provided in our new papers: On HAWK: On AES: And the associated model chain-o... x
- TONTOU 攻击披露:绕过部分处理器 Spectre v2 缓解措施,可泄露 Linux 敏感数据 ithome
- Now you can securely link multiple phones to one Signal account theverge
- LLMs won't break symmetric crypto hackernews
- Cloudflare 规模化部署 Kimi 与 GLM:更小、更快、更安全 hackernews
- uber/ADR github_trending
- IP and DNS Leaks in WebKit Affecting Proxy Browsers and iCloud Private Relay hackernews
- Android app developers may be unwittingly sharing their users’ location data with advertisers techcrunch
- Hackers steal over $130M by exploiting bug in offline hardware wallets techcrunch
- Atlassian Rovo Exfiltrates Data, Bypassing Controls hackernews
- Thousands of servers can be backdoored by exploiting buggy motherboard controllers ars_technica
- PSA: Apple’s Private Relay can leak your real IP address techcrunch
- Rogue AI agents created fake online identities in another hacking attempt theverge
- Can you reverse engineer an ASIC? hackernews
- Agent Sandboxes: Giving AI Agents Their Own Little Linux Box (And Why You Should Care) devto
- Linux KVM 曝出虚拟机逃逸漏洞,嵌套虚拟化功能成攻击突破口 ithome
- FIPS 140-3 is not a security guarantee, and auditors know it hackernews
- Telegram CEO says an extortionist planted CSAM in a chat to get it pulled from the App Store theverge
- 国际 AI 安全榜单 CyberGym 今日放榜:中国方案 DoGNAVY 全球第三、开源第一 ithome
- The UK’s @AISecurityInst (AISI) has published a report on their recent cybersecurity evaluation of Anthropic’s Claude My... x
- I stopped trusting USB-C cable labels and started testing them hackernews
- Who Is the Author? AI-Generated Code and PCI DSS Code Review devto
- Google says hackers are calling financial firm employees to hack and extort victims techcrunch
- Hacker pleads guilty to stealing data from more than 165 Snowflake customers techcrunch
- They Forgot What Happened Last Time: Hacking the Windows 365 Link [video] hackernews
- Keyv and friends compromised in active Shai-Hulud supply chain attack hackernews
- Bugtraq Is Back hackernews
- Nvidia doesn’t mess around: A week after open AI industry group formed, it’s already showing progress techcrunch
- We're detailing two new incidents that occurred during external cyber evaluations conducted by independent evaluation pa... x
- In a review of our cybersecurity evaluations, we found three incidents in which a Claude model reached the internet from... x
- 🛡️Introducing Shieldstral, Mistral’s 3B open-weights model for content safety that can be deployed on-device 🧵 x
- OpenAI 披露攻击 Hugging Face 前,AI 智能体秘密建立内部留言板 ithome
- Hackers Stalked Me by Hijacking a Smartwatch for Kids hackernews
- sponsors/goauthentik github_trending
- China-linked LightSpy spyware caught targeting victims in 13 countries, including the US techcrunch
- Chinese AI model Kimi escaped its cybersecurity testing environment, researchers say techcrunch
- Meta 旗下 AI 模型测试时意外入侵第三方企业系统 ithome
- Critical CVE issued for hallucinated SQLite vulnerability hackernews
- libexpat now funded by the City of Munich for up to 6 months hackernews
- AI fuels more than half of cybercrime in Africa as scams surge – Interpol hackernews
- How I Smashed a Bug in a Shared Authentication Library devto
- I built a free fitness tracker with no backend and no account — here's what I learned devto
- The Valley of Webhooks hackernews
- Reddit aims to make ‘karma’ less important for first-time posters with shift to AI moderation tools techcrunch
- The model takes moderation policy as a plain-language question and returns a calibrated score. Text and images — one int... x
- AI isn’t enough to protect social media communities from AI ars_technica
- OpenAI says Apple’s own security practices undermine its trade secrets case techcrunch
- Suno 平台将为 AI 生成音乐添加隐水印,防止滥用现象发生 ithome
- Show HN: Nightcrawler – A local AI pentesting agent running on a smartphone hackernews
- What DMARC Protects You From, and What It Does Not hackernews
- Senators demand crackdown on wildfire "prediction markets" ars_technica
- Damn Popovers devto
- 迅雷被广电总局纳入侵权重点监测平台 ithome
- 曝中创新航在 AION S“电池鼓包”风波后,内部紧急开展技术改革 ithome
- Welcoming the Nepalese Government to Have I Been Pwned hackernews
- Amid legal battles, Suno says it will start watermarking songs techcrunch
- Suno shares plans to combat spammy AI music theverge
- Why does Apple keep banning Telegram, but never X? theverge
- Critical CVE issued for hallucinated SQLite vulnerability hackernews
- Show HN: Nightcrawler – A local AI pentesting agent running on a smartphone hackernews
- What DMARC Protects You From, and What It Does Not hackernews
- Smaller, faster, safer: running Kimi and GLM at scale hackernews
- They Forgot What Happened Last Time: Hacking the Windows 365 Link [video] hackernews
- Keyv and friends compromised in active Shai-Hulud supply chain attack hackernews
- uber/ADR github_trending
- libexpat now funded by the City of Munich for up to 6 months hackernews
- IP and DNS Leaks in WebKit Affecting Proxy Browsers and iCloud Private Relay hackernews
- Bugtraq Is Back hackernews
- AI fuels more than half of cybercrime in Africa as scams surge – Interpol hackernews
- FIPS 140-3 is not a security guarantee, and auditors know it hackernews
- Senators demand crackdown on wildfire "prediction markets" ars_technica
- Damn Popovers devto
- How I Smashed a Bug in a Shared Authentication Library devto
- I built a free fitness tracker with no backend and no account — here's what I learned devto
- Android app developers may be unwittingly sharing their users’ location data with advertisers techcrunch
- Nvidia doesn’t mess around: A week after open AI industry group formed, it’s already showing progress techcrunch
- Hackers steal over $130M by exploiting bug in offline hardware wallets techcrunch
- Now you can securely link multiple phones to one Signal account theverge
- Telegram CEO says an extortionist planted CSAM in a chat to get it pulled from the App Store theverge
- 国际 AI 安全榜单 CyberGym 今日放榜:中国方案 DoGNAVY 全球第三、开源第一 ithome
- 迅雷被广电总局纳入侵权重点监测平台 ithome
- Atlassian Rovo Exfiltrates Data, Bypassing Controls hackernews
- The Valley of Webhooks hackernews
- Thousands of servers can be backdoored by exploiting buggy motherboard controllers ars_technica
- Reddit aims to make ‘karma’ less important for first-time posters with shift to AI moderation tools techcrunch
- PSA: Apple’s Private Relay can leak your real IP address techcrunch
- Rogue AI agents created fake online identities in another hacking attempt theverge
- We're detailing two new incidents that occurred during external cyber evaluations conducted by independent evaluation pa... x
- The UK’s @AISecurityInst (AISI) has published a report on their recent cybersecurity evaluation of Anthropic’s Claude My... x
- In a review of our cybersecurity evaluations, we found three incidents in which a Claude model reached the internet from... x
- Full technical details of both attacks are provided in our new papers: On HAWK: On AES: And the associated model chain-o... x
- 🛡️Introducing Shieldstral, Mistral’s 3B open-weights model for content safety that can be deployed on-device 🧵 x
- The model takes moderation policy as a plain-language question and returns a calibrated score. Text and images — one int... x
- LLMs won't break symmetric crypto hackernews
- 曝中创新航在 AION S“电池鼓包”风波后,内部紧急开展技术改革 ithome
- OpenAI 披露攻击 Hugging Face 前,AI 智能体秘密建立内部留言板 ithome
- Critical CVE issued for hallucinated SQLite vulnerability hackernews
- Show HN: Nightcrawler – A local AI pentesting agent running on a smartphone hackernews
- What DMARC Protects You From, and What It Does Not hackernews
- Smaller, faster, safer: running Kimi and GLM at scale hackernews
- They Forgot What Happened Last Time: Hacking the Windows 365 Link [video] hackernews
- Keyv and friends compromised in active Shai-Hulud supply chain attack hackernews
- uber/ADR github_trending
- libexpat now funded by the City of Munich for up to 6 months hackernews
- IP and DNS Leaks in WebKit Affecting Proxy Browsers and iCloud Private Relay hackernews
- Bugtraq Is Back hackernews
- AI fuels more than half of cybercrime in Africa as scams surge – Interpol hackernews
- FIPS 140-3 is not a security guarantee, and auditors know it hackernews
- Senators demand crackdown on wildfire "prediction markets" ars_technica
- Damn Popovers devto
- How I Smashed a Bug in a Shared Authentication Library devto
- I built a free fitness tracker with no backend and no account — here's what I learned devto
- Android app developers may be unwittingly sharing their users’ location data with advertisers techcrunch
- Nvidia doesn’t mess around: A week after open AI industry group formed, it’s already showing progress techcrunch
- Hackers steal over $130M by exploiting bug in offline hardware wallets techcrunch
- Now you can securely link multiple phones to one Signal account theverge
- Telegram CEO says an extortionist planted CSAM in a chat to get it pulled from the App Store theverge
- 国际 AI 安全榜单 CyberGym 今日放榜:中国方案 DoGNAVY 全球第三、开源第一 ithome
- 迅雷被广电总局纳入侵权重点监测平台 ithome
- 为幻觉产生的 SQLite 漏洞发布严重 CVE hackernews
- Show HN:Nightcrawler——运行在智能手机上的本地 AI 渗透测试代理 hackernews
- DMARC 能防御什么,不能防御什么 hackernews
- Cloudflare 分享 Kimi 与 GLM 规模化部署实践:更小、更快、更安全 hackernews
- 他们忘记了上次发生了什么:破解 Windows 365 Link [视频] hackernews
- Keyv 及其关联包在正在进行的 Shai-Hulud 供应链攻击中遭到攻陷 hackernews
- uber/ADR github_trending
- 安全研究者发现 AI 蠕虫:可借道 Copilot for Word 自我传播 hackernews
- OpenAI 公开 Codex 安全漏洞,AI 代码生成风险再成焦点 hackernews
- National Security Determination Threat Posed by Foreign-Produced Robotic Devices [pdf] hackernews
- DigitalPlatDev/FreeDomain github_trending
- eBay pays $46M to journalists it targeted in bizarre harassment campaign ars_technica
- New airliner sets record flying 24 hrs nonstop from Australia to France ars_technica
- Microsoft unveils AI security tools it says outperform competing platforms ars_technica
- A missing underscore sent innocent man to prison for 18 months ars_technica
- Disrupting supply chain attacks on NPM and GitHub Actions hackernews
- LLM Honeypot hackernews
- Anatomy of a Frontier Lab Agent Intrusion: A Timeline of the July 2026 Incident hackernews
- Some thoughts about Anthropic's new cryptanalysis results hackernews
- Flume Water Monitor 915 MHz Security Is Pretty Good hackernews
- Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission ars_technica
- Google's "privacy-preserving" age verification system is coming to the Play Store ars_technica
- Anthropic is finding bugs faster than Microsoft can fix them ars_technica
- Google will expand age checks on Android worldwide till the end of the year hackernews
- ChatGPT, Roblox to Fall Under Strictest EU Rules for Platforms hackernews
- Investigating three real-world incidents in our cybersecurity evaluations hackernews
- The Session You Cannot take with you hackernews
- Show HN: Gander, an Android file viewer that asks for no permissions at all hackernews
- Tailscale didn't stop the Hugging Face intrusion hackernews
- Demystifying DRAM Read Disturbance: RowHammer and RowPress Phenomena hackernews
- Authorize, don't authenticate hackernews
- Google plans to exempt sanctioned nations from Android developer verification ars_technica
- AI scammers outperform humans when it comes to building trust ars_technica
- Max-severity Exchange server flaw under active exploitation by Kremlin hackers ars_technica
- Anti-fraud tools can't keep pace with robocall scammers hackernews
- Postmortem for Kernel Soundness Bug #14576 hackernews
- CISA Alert: Water Sector PLC Targeting hackernews
- RFC 10015: Deprecating Obsolete Key Exchange Methods in TLS 1.2 and DTLS 1.2 hackernews
- A Surveillance Treaty in Disguise: Canada Signs UN Cybercrime Convention hackernews
- Defcon's new badge is a security key you can see inside ars_technica
- When random.bytes() runs but doesn't work hackernews
- zhaoxuya520/reverse-skill github_trending