-
Notifications
You must be signed in to change notification settings - Fork 41
[每日信息流] 2026-04-01 #1195
Copy link
Copy link
Open
Labels
Description
每日安全资讯(2026-04-01)
- SecWiki News
- Private Feed for M09Ic
- strands-agents released v1.34.0 at strands-agents/sdk-python
- 4ra1n starred Ta0ing/claude-code_evil
- CHYbeta starred claude-code-best/claude-code
- INotGreen starred AndreamBot/claude-code-minimax
- INotGreen forked INotGreen/claude-code from instructkr/claw-code
- zema1 starred coder/websocket
- Wh0ale starred 0x727/BypassPro
- WAY29 starred lupantech/AgentFlow
- IC3-CR3AM forked IC3-CR3AM/claude-code-source-code from sanbuphy/claude-code-source-code
- IC3-CR3AM starred TheTom/turboquant_plus
- Mel0day forked Mel0day/claude-mem from thedotmack/claude-mem
- Mel0day starred thedotmack/claude-mem
- ring04h starred instructkr/claw-code
- esrrhs starred instructkr/claw-code
- Ascotbe forked Ascotbe/claude-code-sourcemap from ChinaSiro/claude-code-sourcemap
- PrefectHQ released 3.6.25.dev4 at PrefectHQ/prefect
- Recent Commits to cve:main
- Doonsec's feed
- Linux SSH密码爆破脚本,从原理到实践
- 从模板到提交到管理POC:VSCode 插件简化 POC 全流程
- 从新闻巨头到数据经纪商:路透社母公司数据接入Palantir系统
- AI 直接调用 Kali 工具链:MCP实现60+ Kali 工具的调用
- ClaudeCode源码泄露,我解除了限制
- 从零开始学习 AI安全实战特训营(第一期)
- 以色列国防部长电话本
- Axios遭遇“指令闪击”——npm仓库OrDer木马投毒事件分析
- “冰城虾友 技术沙龙” 哈工大专场倒计时1天
- 黑龙江省委党校进修班学员再次走进安天 现场教学悟实干践担当
- 威胁通缉令 · 红桃4丨RDP Client RCE漏洞(新增)
- 喜报!警大 ISA 信息安全协会斩获第三届 “数信杯” 团队赛金奖!
- OpenViking:专为AI Agent打造的长期记忆数据库
- Patch白文件绕过360免杀fscan扫描工具
- 扒光Claude"衣服"
- 2026 DesCTF网络安全挑战赛 官方WP
- 看完claude code源码以后,我绕过了cc的道德限制
- 突发!Claude Code 51万行源码泄露,AI编程工具被扒光xa0
- 华为2025财报:营收8809亿,利润680亿
- Claude Code开源了!代码简化Agent官方开源
- OAuth详解
- Claude Code 51万行源码全网裸奔!Anthropic:我们终于成了“真·Open Claude”
- 云影安全实验室 | 深度复盘:Anthropic Claude Code 源码泄露事件
- 看不见的崩塌:前沿大模型的内部安全隐患
- TA446 在针对性鱼叉式网络钓鱼活动中部署 DarkSword iOS 漏洞套件
- 目前运行核电机组共62台
- 别让“机密”裸奔!手把手教你设计“大小模型协同”的 LLM 隐私防火墙
- Axios npm 供应链攻击深度分析报告
- 量子韧性金融:香港金融业的下一前沿阵地
- CertiK发布OpenClaw安全报告:复盘AI智能体快速增长下的安全逻辑缺陷(附安全指南)
- Claude Code 又翻车了:一场源码泄露,撕开了 AI Agent 最隐秘的底层逻辑
- 一句话让 AI 挖出两个编辑器零日漏洞
- Claude Code 源码泄露? Github瞬间20K STAR(附项目地址)
- 因酷教育软件 queryUserById 信息泄露漏洞
- 字节32岁员工:职级3-1,考公中央部委,工资打一折
- Claude code源码泄露的情况
- 这次泄露里暴露出来的Claude Code 架构(Agent + Tool + Prompt)到底是怎么设计的
- 自主研发即将迎来一波爆发期🤔
- 关于半决赛各赛区一二三等奖获奖队伍名单的公示
- 新思路!支付漏洞实战案例分享:低价薅高价商品
- 高薪安全实习机会
- G.O.S.S.I.P 特别推荐 2026-03-31 QCP 2.0来了!
- 龙信天眼介质取证系统LX-A300 V6.5双版同步升级,国产持平Windows!
- 重要提醒!9月PMP现行考纲最后一次考试!
- 安全养虾日记:完全离线部署OpenClaw(内附详细搭建步骤)
- 滴滴多篇成果入选CVPR 2026,产学研协同创新结硕果
- 【全球狂欢】ClaudeCode泄露51.2万行源码
- AI时代,安全人员的核心是什么?该如何平衡 AI 的分析能力与人自身的决策价值?
- 从员工到智能体,RedKernel 构建企业 AI 风险全景防线
- 免费赠送 | 防范网络电信诈骗宣传素材(第二十一期)
- 第159篇:原创工具-WiFi弱口令审计与暴力猜解工具 v0.25
- 你的备份安全吗?
- Axios npm供应链攻击威胁分析报告
- 169元,手搓跑在 ESP32 上的嵌入式 AI 机器人套件,真正实现边缘人工智能Edge AI
- CareCloud 数据泄露事件——黑客入侵 IT 基础设施并窃取患者数据
- ChatGPT漏洞允许攻击者静默窃取用户提示和其他敏感数据
- 国资使命,青春启航——中资网安2026春季校招等你加入!
- 【公开招募】信创数智评估价值升级 赛迪认证公开招募合作伙伴
- WordPress插件漏洞导致超过80万个网站的敏感数据泄露
- 【安全圈】小米新推出的输入法工具直接暴露AI模型密钥
- 【安全圈】360漏洞挖掘智能体发现OpenClaw高危漏洞,或波及全球17万实例
- 【安全圈】上海电信大规模断网,官方:宽带正常升级导致
- 【安全事件】axios前端库npm供应链投毒预警通告
- 嘶吼 RoarTalk – 网络安全行业综合服务平台,4hou.com
- Zgao's blog
- CXSECURITY Database RSS Feed - CXSecurity.com
- bunnie's blog
- Chromium Blog
- Microsoft Security Blog
- Tenable Blog
- ElcomSoft blog
- Google Online Security Blog
- Cerbero Blog
- Horizon3.ai
- CCC Event Blog
- Binary Ninja
- Bug Bounty in InfoSec Write-ups on Medium
- ️ SQL Injection for Beginners: The Complete Guide
- Understanding OT Cybersecurity: A Practical Guide to Asset Inventory for Industrial Control…
- “Not Applicable” to Victory: How I Escalated a P2 DoS Vulnerability on Bugcrowd
- Critical ATO to P5 ‘Informational’: A Lesson in Threat Models & Bug Bounty Reality
- Malwarebytes
- Sucuri Blog
- SentinelOne
- The Trail of Bits Blog
- Hackerman's Hacking Tutorials
- rtl-sdr.com
- 奇客Solidot–传递最新科技情报
- 绿盟科技技术博客
- HackerNews
- 红日安全
- 奇安信 CERT
- 安全分析与研究
- 黑鸟
- 雷神众测
- 代码卫士
- 安全内参
- 二道情报贩子
- 虎符智库
- 先进攻防
- 看雪学苑
- 微步在线研究响应中心
- 腾讯安全应急响应中心
- 绿盟科技CERT
- 信息安全国家工程研究中心
- 长亭安全应急响应中心
- 奇安信威胁情报中心
- 安全研究GoSSIP
- 绿盟科技研究通讯
- 天御攻防实验室
- 中国信息安全
- 安全圈
- 安全牛
- 猎户攻防实验室
- 微步在线
- M01N Team
- 补天平台
- 数世咨询
- 极客公园
- 嘶吼专业版
- 火绒安全
- 情报分析师
- Beacon Tower Lab
- 迪哥讲事
- 墨菲安全
- 360数字安全
- 国家互联网应急中心CNCERT
- 渊龙Sec安全团队
- Securityinfo.it
- 大兵说安全
- ICT Security Magazine
- Over Security - Cybersecurity news aggregator
- Vibecoding: l’AI accelera lo sviluppo ma moltiplica i rischi
- Google now allows you to change your @gmail.com address
- Proton launches new "Meet" privacy-focused conferencing platform
- GIGABYTE Control Center vulnerable to arbitrary file write flaw
- Claude AI finds Vim, Emacs RCE bugs that trigger on file open
- Google links axios supply chain attack to North Korean group
- US indicts Maryland man for 2021 theft of $54 million from Uranium Finance
- Cisco source code stolen in Trivy-linked dev environment breach
- How to Fix “Not Secure” Warnings and SSL Issues in WordPress (8 Steps)
- Hacker hijacks Axios open-source project, used by millions, to push malware
- Reati informatici e punibilità: quando la “condotta” diventa reato prima del danno
- New criminal service plans to monetize data stolen by ransomware gangs
- Pro-Russian hackers pose as Ukraine's cyber agency to target government, businesses
- How to Categorize AI Agents and Prioritize Risk
- Sicurezza informatica, differenza tra progetto e processo: come cambia la cyber in azienda
- Hackers compromise Axios npm package to drop cross-platform malware
- CISA tells federal agencies to patch Citrix NetScaler bug by Thursday
- Esposizione remota non sicura dell’app-server Codex con capacità di esecuzione comandi
- Microsoft fixes Outlook Classic crashes caused by Teams Meeting add-in
- Cyber Threat Trends During the Winter Olympics 2026
- Release Notes: Cross-Platform Threat Analysis with macOS, SSL Decryption, and 1,300+ New Detections
- Meet Sekoia Reveal: Turn fragmented asset data into unified SOC context
- Per Google il Q-Day arriverà nel 2029
- Ransomware in 2025: Blending in is the strategy
- Common Entra ID Security Assessment Findings – Part 2: Privileged Unprotected Groups
- Jennifer Cox on Why Most Security Teams Never See the Real Benefits of Automation
- Hacker charged with stealing $53 million from Uranium crypto exchange
- Axios Supply Chain Attack Exposes Developers to Hidden Malware
- Guerre di Rete - Sovranità stellare
- Dutch Finance Ministry takes treasury banking portal offline after breach
- Intesa Sanpaolo, mega sanzione privacy per accessi abusivi: una lezione per CISO e DPO
- Analysis of FvncBot campaign
- Cuties AI - 144,250 breached accounts
- CISA orders feds to patch actively exploited Citrix flaw by Thursday
- Phantom Stealer: Credential Theft as a Service
- US Man Admits Guilt in Child Exploitation, Cyberstalking Linked to ‘764’ Network
- CareCloud Hit by Cyberattack, Probe Into Possible Data Exposure
- World Backup Day 2026, il dato fa parte della nostra identità digitale: le best pratice per proteggerlo
- Intesa Sanpaolo Data Breach Exposes 3,500+ Customers, Draws €31.8M Penalty
- The Security Risks of Using Nulled WordPress Plugins
- Have I Been Pwned latest breaches
- Javvad Malik
- SANS Internet Storm Center, InfoCON: green
- Application Control Bypass for Data Exfiltration, (Tue, Mar 31st)
- ISC Stormcast For Tuesday, March 31st, 2026 https://isc.sans.edu/podcastdetail/9872, (Tue, Mar 31st)
- TeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Compromise, TeamPCP Runs Dual Ransomware Operations, and AstraZeneca Data Released, (Mon, Mar 30th)
- bellingcat
- Troy Hunt's Blog
- Schneier on Security
- 360威胁情报中心
- 希潭实验室
- 安全产品人的赛博空间
- 熵减矩阵
- Desync InfoSec
- IT Service Management News
- Trend Micro Research, News and Perspectives
- The Hacker News
- Android Developer Verification Rollout Begins Ahead of September Enforcement
- TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government Networks
- Vertex AI Vulnerability Exposes Google Cloud Data and Private Artifacts
- The AI Arms Race – Why Unified Exposure Management Is Becoming a Boardroom Priority
- Silver Fox Expands Asia Cyber Campaign with AtlasCross RAT and Fake Domains
- Axios Supply Chain Attack Pushes Cross-Platform RAT via Compromised npm Account
- The Register - Security
- GRAHAM CLULEY
- TorrentFreak
- Security Affairs
- Anthropic accidentally leaks Claude Code
- Attackers hijack Axios npm account to spread RAT malware
- Nearly half a Million mobile customers of Lloyds Banking Group affected by security incident
- Dutch Ministry of Finance takes treasury systems offline amid cyber incident investigation
- U.S. CISA adds a flaw in Citrix NetScaler to its Known Exploited Vulnerabilities catalog
- Qilin Ransomware allegedly breached chemical manufacturer giant Dow Inc
- Tor Project blog
- Deeplinks
- 安全行者老霍
Reactions are currently unavailable