# 每日安全资讯(2026-06-18) - SecWiki News - [ ] [SecWiki News 2026-06-17 Review](http://www.sec-wiki.com/?2026-06-17) - 先知安全技术社区 - [ ] [一款伪装成云盘的恶意APP逆向分析](https://xz.aliyun.com/news/92328) - Doonsec's feed - [ ] [2026年,传统安全产品创业,还有出路吗?](https://mp.weixin.qq.com/s/44UXTjlEcUmAPQNq-QOlhQ) - [ ] [【资料】反开源情报及其对印度安全战略的影响](https://mp.weixin.qq.com/s/vvqNJGbkKI0VVZr1jlogmA) - [ ] [Apache CXF XXE 外部实体解析漏洞 | CVE-2026-49875复现&研究](https://mp.weixin.qq.com/s/ijLCWBvroVkvtC_X0cdspg) - [ ] [钉钉前总裁无招宣布:宣布入职拼多多,我将把天赋带到拼多多!](https://mp.weixin.qq.com/s/1sJnk__cfPd5in-2Rrsa0g) - [ ] [别乱安装壁纸! Wallpaper Engine创意工坊恶意壁纸可用于攻击](https://mp.weixin.qq.com/s/mh66xLBgCENWCR3VVu7Lyg) - [ ] [【漏洞通告】Linux Kernel net_sched act_pedit本地提权漏洞(CVE-2026-46331)](https://mp.weixin.qq.com/s/RUMEdzHbmk5uAOIkBqQ0LQ) - [ ] [一个职业规划:程序员35岁被淘汰,花1年时间高考。读5年医学院,40多岁拿证当老中医。还有年龄优势,患者看外表就会很信任! 很完美吧?](https://mp.weixin.qq.com/s/yBRNsRPCK3j73cLCEVfDvg) - [ ] [2亿人在用,豆包每天收入不足百万!为何?](https://mp.weixin.qq.com/s/-yHTT4KYfaj2FpL7OVnABA) - [ ] [补充:Hermes的应用(十二):Hermes Desktop中SSH Tunnel配置过程](https://mp.weixin.qq.com/s/g_NwPjk3F6lKYsN3xSvCeA) - [ ] [深入拆解RedAmon:AI驱动自动化红队框架架构解析](https://mp.weixin.qq.com/s/3xss-pCYsXoJYUGRZWQ_hQ) - [ ] [熵密杯专题|公钥密码之椭圆曲线理论(完整版)](https://mp.weixin.qq.com/s/-Ugmxm3Pdkk0Ry4NVBPW4w) - [ ] [我用AI挖了隐藏N年的组合拳漏洞](https://mp.weixin.qq.com/s/PSwbuuwm-Z1HJ3DTVoqLPA) - [ ] [宣传一下](https://mp.weixin.qq.com/s/fTb5y0EpniX-XrL30mcNEg) - [ ] [【已复现】Linux Kernel net/sched act_pedit 本地权限提升漏洞(CVE-2026-46331)安全风险通告](https://mp.weixin.qq.com/s/sOwonojWvAkFVxdpa9UZsA) - [ ] [【AI安全】754 项开源安全skills!赋能 AI 安全智能体](https://mp.weixin.qq.com/s/Kd3jRnNcyeOCNBjc3bcU3g) - [ ] [小技巧 | 企业微信H5开启webview调试](https://mp.weixin.qq.com/s/4QIPYE193Bl0ZdZqpvcAIw) - [ ] [你配,但你最好先买点什么来证明](https://mp.weixin.qq.com/s/z8eIiB6BhjFlMpKEom6TJQ) - [ ] [大蚂蚁 (BigAnt) 即时通讯系统 admin/secret/edit SQL注入漏洞](https://mp.weixin.qq.com/s/r_n49od3-Ts09Fcn0m6Geg) - [ ] [腾讯云以 99.8% 防护率通过AV-C年度评测](https://mp.weixin.qq.com/s/WCXZ7kDXQ0svx4HZaZ_Mgw) - [ ] [腾讯云WAF连续三年入选Gartner®云WAAP代表厂商](https://mp.weixin.qq.com/s/BPkjN0PV8fKlREh_59nuZQ) - [ ] [Yakit与Claude全链路AI渗透](https://mp.weixin.qq.com/s/ey4Q7YhMNcPKKt3EEMYndw) - [ ] [百亿Token消耗|AI渗透的实践与思考](https://mp.weixin.qq.com/s/RwL7vmWhb8r090n0FV182g) - [ ] [新的Rokarolla Android恶意软件窃取pin,短信代码和加密钱包资金](https://mp.weixin.qq.com/s/GR-OeATK-wOUYZu1XMX3Hw) - [ ] [海叔|网安激荡三十年——尾声:AI时代网络安全](https://mp.weixin.qq.com/s/JVO_z4ex3kPA_8gBsMa0eA) - [ ] [以赛筑盾育英才——“复兴杯”第五届全国大学生网络安全精英赛圆满落幕](https://mp.weixin.qq.com/s/2PciBchO-LcRVrCFIavPjQ) - [ ] [与大咖共话数智未来 | 第五届数字信任大会火热报名中](https://mp.weixin.qq.com/s/SCMiF99JpLYSTEBadJd3wA) - [ ] [什么是东数西算?](https://mp.weixin.qq.com/s/3Ck5he3ucH7buol4iLbaLA) - [ ] [美国网络安全和基础设施安全局 (CISA) 发布警报,称 Oracle PeopleSoft 漏洞已被勒索软件组织利用](https://mp.weixin.qq.com/s/FWZmcFiKSRmFRrqNfWatlg) - [ ] [征求意见稿丨国家标准:网络安全技术 零信任能力成熟度模型及评价方法(附下载)](https://mp.weixin.qq.com/s/Y6qTUcXA9rL0t7sf97FmWQ) - [ ] [荐读丨工信部:关于防范VoidLink恶意软件的风险提示](https://mp.weixin.qq.com/s/5S-SYP_GPoBxKC4Ujbo60w) - [ ] [ClickFix 攻击活动利用 EtherHiding 和 GULoader 通过虚假验证码感染 Windows 用户](https://mp.weixin.qq.com/s/mDLjhKNvdf4ixwXMZBS1hw) - [ ] [新品发布 | 万径千卫-分布式智能探针防御平台正式推出](https://mp.weixin.qq.com/s/W2ck510qBW85SDRFTjy7Bw) - [ ] [黑客滥用Claude和Codex自动化攻击,窃取数据并伪装红队测试](https://mp.weixin.qq.com/s/JlpbmR2q6WxkliAAtPy0VA) - [ ] [攻击者正利用FortiSandbox三大漏洞发起攻击,未认证即可获取root权限](https://mp.weixin.qq.com/s/Y7x2um1kBIPiLAPD75Y_Cw) - [ ] [揭秘Agent Tesla的隐蔽感染链](https://mp.weixin.qq.com/s/RH5wtaXorP8XN_P-i1zAjg) - [ ] [新型Rokarolla安卓木马瞄准217款加密与银行应用](https://mp.weixin.qq.com/s/_urnb9p94Uz2UvIEVezJ4Q) - [ ] [Kernel 新漏洞曝光!多款主流 Linux 发行版存在 Root 本地提权风险](https://mp.weixin.qq.com/s/rd9AN4jERTTy7Gok01YGZQ) - [ ] [初探 AI-Infra 下的服务器固件安全实践](https://mp.weixin.qq.com/s/3G-InoSyBK4nZ8BLi0c8cQ) - [ ] [直播预约|2026 火山引擎 Force 数据智能论坛 全新升级+核心能力抢先看](https://mp.weixin.qq.com/s/zYfBVcxPBsiTW0kW3i1p-Q) - [ ] [ISC.AI 2026训练营开营在即,构建智能体时代人才供给新基座](https://mp.weixin.qq.com/s/kB7UOvn3DvYEmyQRxrHLJQ) - [ ] [NVIDIA NeMo曝安全漏洞,系统面临命令注入攻击风险](https://mp.weixin.qq.com/s/wgnYYjGmHUnkJcV7IEafvA) - [ ] [Google紧急发布Chrome安全更新,修复可致任意代码执行的关键漏洞](https://mp.weixin.qq.com/s/kxS_P0elGBsZtXYGnf4qKQ) - [ ] [2026攻防演练必修高危漏洞集合(1.0版)](https://mp.weixin.qq.com/s/dz8Flgs4YnTj78ZFC3PgWQ) - [ ] [骏马自知前程远 不待扬鞭自奋踢](https://mp.weixin.qq.com/s/Rnl4i42DftAAQwOgIoHM6Q) - [ ] [上海银行社会招聘](https://mp.weixin.qq.com/s/knbZLjci89Yg2nGTGC-rTw) - [ ] [合合信息旗下TextIn首批获亚马逊云科技AI能力双项认证](https://mp.weixin.qq.com/s/Vga44An5yiguT234e4ok9g) - [ ] [合合信息Claim Agent智能理赔平台荣获2026年度保险科技创新大赛卓越项目奖](https://mp.weixin.qq.com/s/3CFUCND4BWOKvXsPWBtwGg) - [ ] [情报机构正通过“买数据”监控全球目标](https://mp.weixin.qq.com/s/QsbRFWgnaoPLADajxov39g) - [ ] [威胁情报|Arch Linux AUR 供应链投毒关联恶意 npm 包分析](https://mp.weixin.qq.com/s/5PDUz76xWA-AWN9BSu28Dg) - [ ] [湘岚实验室ACM招新赛圆满落幕!](https://mp.weixin.qq.com/s/cEHF5JlRYRAACs29D5S4zQ) - [ ] [2026獬豸杯wp(计算机+内存取证)](https://mp.weixin.qq.com/s/bI53CgWqBqbOtY6qMxOs2Q) - [ ] [Hx0战队 618 狂欢节|无空奖、无套路|618 份福利 100% 中奖,最差周卡起步!](https://mp.weixin.qq.com/s/VKUQf1md8soOm29hsKi5Vw) - [ ] [EISS-AI安全之北京站(2026.06.26/周五/北京)](https://mp.weixin.qq.com/s/3YXmOfW65T9fJsFnlizZbQ) - [ ] [实战APP全流程分析(检测绕过/登录分析/视频解锁/native加密/广告绕过)](https://mp.weixin.qq.com/s/xHRastdqtUp3qmBlEPtk0w) - [ ] [总奖金50万!零跑汽车智能安全守护行动开启白帽招募](https://mp.weixin.qq.com/s/d2xSRhEprSruW397y0dNmw) - [ ] [这款恶意软件能偷PIN码、截银行短信,还能关掉Google保护](https://mp.weixin.qq.com/s/8dSmK05AbYxKVHBVMOyTew) - [ ] [【直播报名】有问必答,“挑战杯”深信服赛题线上答疑,邀您参会](https://mp.weixin.qq.com/s/1g9-ozU2yj-O3Is45zAo3A) - [ ] [祝贺!华中师范大学湖北省卓越工程师学院成立,深信服荣膺理事单位](https://mp.weixin.qq.com/s/kITVkSfmHiHlXUcwz9NmkA) - [ ] [跨目录上传+任意文件读取进行getshell](https://mp.weixin.qq.com/s/kukWovzEuitqxDiLTonf8g) - [ ] [Web 安全扫描中的站点重复识别与深扫收敛策略](https://mp.weixin.qq.com/s/-orqr_f1CHVk5wrn3bhPDA) - [ ] [总奖金 50 万!零跑汽车智能安全守护行动开启白帽招募](https://mp.weixin.qq.com/s/AbM5hRmXAAinX7ePKnmIXA) - [ ] [信息安全(Cyber Security)之TARA分析](https://mp.weixin.qq.com/s/ljW0j-vtc-9uq3k8V8KypA) - [ ] [2026全球数字经济大会密码“丰”会报名通道正式开启](https://mp.weixin.qq.com/s/NBKu8N5DsCoImeQqo9Xb_g) - [ ] [金监局弱口令整治要查什么?7道防线细则与落地方法一次性讲清](https://mp.weixin.qq.com/s/Y1wl2yB4NwkTSfZZDC1GhA) - [ ] [渗透 · 实战挑战赛|官方WP](https://mp.weixin.qq.com/s/tvfueMVwT8NZG9szcI2SgA) - [ ] [【实战派推荐】提升渗透效率的2款工具](https://mp.weixin.qq.com/s/H52VrT4dIzM7rU-SFE3qPA) - [ ] [专题·智能体安全 | 启明星辰集团副总裁周涛:从大模型到智能体——AI安全治理体系的范式升级](https://mp.weixin.qq.com/s/j-D5enEDcool6WBWvB5cCw) - [ ] [专家解读 | 王立梅:善治护权开新篇——《中国个人信息保护报告(2025年)》的实践图景与时代意涵](https://mp.weixin.qq.com/s/iVfCHQzvwKqmhLay5g_lOw) - [ ] [专家观点 | 强化系统思维加强个人信息保护](https://mp.weixin.qq.com/s/IsTt3Z6KFUUkHIWbTLtL8w) - [ ] [评论 | APP乱跳转,该治!](https://mp.weixin.qq.com/s/VBpqOFACQo266rExm33LsA) - [ ] [GEO生成式引擎优化黑产全拆解:花钱污染大模型知识库,篡改AI答案打压竞品](https://mp.weixin.qq.com/s/KxQi5AtND8BIDtNi44Q86w) - [ ] [海外研究|美智库“第X次抵消战略”构想及潜在影响分析](https://mp.weixin.qq.com/s/dEnmNpcgzocj4r_JvElJcQ) - [ ] [2025—2026年度商用密码行业评选活动通知](https://mp.weixin.qq.com/s/LKeRvXI-Ushz1Zi48-76hQ) - [ ] [官方表彰!蚁景网安学员出战某省民兵集训,斩获总评第一](https://mp.weixin.qq.com/s/gfsD7Mfq7o7PwfwFzczj0g) - [ ] [安徽营商环境 8.0 重磅落地!告别 “办事减负”,正式进入产业生态赋能时代](https://mp.weixin.qq.com/s/P3_FoXPmkFY7a4fSkZfP9g) - [ ] [一键即破防:M365 Copilot \"SearchLeak\" 漏洞链全解析(CVE-2026-42824)](https://mp.weixin.qq.com/s/lfF4dYWFoKIjl9ayOWBxVA) - [ ] [第三届|聚合獬豸杯|全国电子数据取证大赛获奖名单公布!](https://mp.weixin.qq.com/s/mnlcXmV30DLvN0mq25MoMQ) - [ ] [赛博无间道:AI时代的网络攻防战](https://mp.weixin.qq.com/s/1nhLJwNvZnAJ9sZhWouESA) - Hacking Articles - [ ] [A Detailed Guide on Villain C2 Framework](https://www.hackingarticles.in/a-detailed-guide-on-villain-c2-framework/) - Microsoft Security Blog - [ ] [Crypto Clipper uses Tor and worm-like propagation for persistence and control](https://www.microsoft.com/en-us/security/blog/2026/06/17/crypto-clipper-uses-tor-worm-like-propagation-for-persistence-control/) - [ ] [Beyond the benchmark: Advancing security at AI speed](https://www.microsoft.com/en-us/security/blog/2026/06/17/beyond-the-benchmark-advancing-security-at-ai-speed/) - [ ] [Forrester names Microsoft a Leader in the 2026 Extended Detection and Response Platforms Wave™ report](https://www.microsoft.com/en-us/security/blog/2026/06/17/forrester-names-microsoft-a-leader-in-the-2026-extended-detection-and-response-platforms-wave-report/) - [ ] [AI is accelerating cyberattacks—here’s how to stay ahead](https://techcommunity.microsoft.com/blog/microsoft-entra-blog/ai-is-accelerating-cyberattacks%E2%80%94here%E2%80%99s-how-to-stay-ahead/4528592) - Tenable Blog - [ ] [Operationalize CISA BOD 26-04 with Tenable One](https://www.tenable.com/blog/cisa-bod-26-04-tenable-helps-federal-agencies-comply) - Private Feed for M09Ic - [ ] [kpcyrd forked kpcyrd/jobserver-rs from rust-lang/jobserver-rs](https://github.com/kpcyrd/jobserver-rs) - [ ] [anthropics released v2.1.181 at anthropics/claude-code](https://github.com/anthropics/claude-code/releases/tag/v2.1.181) - [ ] [bolucat released 202606172221 at bolucat/Archive](https://github.com/bolucat/Archive/releases/tag/202606172221) - [ ] [ring04h starred joeseesun/qiaomu-goal-meta-skill](https://github.com/joeseesun/qiaomu-goal-meta-skill) - [ ] [github released v0.11.1 at github/spec-kit](https://github.com/github/spec-kit/releases/tag/v0.11.1) - [ ] [liamg contributed to infracost/lsp](https://github.com/infracost/lsp/pull/51) - [ ] [liamg contributed to infracost/cli](https://github.com/infracost/cli/pull/166) - [ ] [RWXstoned starred RWXstoned/Slack-links-preview-C2](https://github.com/RWXstoned/Slack-links-preview-C2) - [ ] [Mr-xn starred madeye/shadowvpn](https://github.com/madeye/shadowvpn) - [ ] [PrefectHQ released 3.7.5.dev5 at PrefectHQ/prefect](https://github.com/PrefectHQ/prefect/releases/tag/3.7.5.dev5) - [ ] [gh0stkey starred omnigent-ai/omnigent](https://github.com/omnigent-ai/omnigent) - [ ] [LoRexxar contributed to LoRexxar/Kunlun-M](https://github.com/LoRexxar/Kunlun-M/pull/351) - [ ] [safedv starred MickeyDB/Lost-in-Thoughts-A-Reflection-About-Reflection](https://github.com/MickeyDB/Lost-in-Thoughts-A-Reflection-About-Reflection) - [ ] [CHYbeta starred ai-dynamo/dynamo](https://github.com/ai-dynamo/dynamo) - [ ] [INotGreen starred DietrichGebert/ponytail](https://github.com/DietrichGebert/ponytail) - [ ] [esrrhs contributed to esrrhs/fakelua](https://github.com/esrrhs/fakelua/pull/206) - Recent Commits to cve:main - [ ] [Update Wed Jun 17 11:49:26 UTC 2026](https://github.com/trickest/cve/commit/719ce25f23d847edb4ea32c6c8d641572fe9bc2a) - Horizon3.ai - [ ] [Autonomy Is Earned, Not Claimed](https://horizon3.ai/intelligence/blogs/autonomy-is-earned-not-claimed/) - Malwarebytes - [ ] [Roblox developers are losing entire games to malware attacks](https://www.malwarebytes.com/blog/scams/2026/06/roblox-developers-are-losing-entire-games-to-malware-attacks) - [ ] [Rokarolla Android malware can take over your phone and steal banking logins](https://www.malwarebytes.com/blog/mobile/2026/06/rokarolla-android-malware-can-take-over-your-phone-and-steal-banking-logins) - [ ] [24 billion stolen records exposed online. Here’s what to do](https://www.malwarebytes.com/blog/news/2026/06/24-billion-stolen-records-found-in-giant-data-dump-check-if-youre-affected) - [ ] [Malwarebytes earns AV-TEST Top Product award, aces other third-party tests](https://www.malwarebytes.com/blog/product/2026/06/malwarebytes-earns-av-test-top-product-award-aces-other-third-party-tests) - NVISO Labs - [ ] [Reducing Microsoft Sentinel Costs Without Compromising Detection – Part 1: The Summary Rules Quest](https://blog.nviso.eu/2026/06/17/reducing-microsoft-sentinel-costs-without-compromising-detection-part-1-the-summary-rules-quest/) - Intigriti - [ ] [Using AI the smart way. Interview with Cristian Zot (CristiVlad25)](https://www.intigriti.com/researchers/blog/hacker-spotlight/using-ai-the-smart-way-interview-with-hacker-cristian-zot-cristivlad25) - SentinelOne - [ ] [The Agentic SOC: Solving Security’s Investigation Capacity Crisis in the Frontier AI Era](https://www.sentinelone.com/blog/frontier-ai-and-agentic-soc/) - Dancho Danchev's Blog - Mind Streams of Information Security Knowledge - [ ] [From the Trenches - A Video and Screenshots Compilation](https://ddanchev.blogspot.com/2026/06/from-trenches-video-and-screenshots.html) - Sandfly Security Blog RSS Feed - [ ] [How Linux Malware Works, From Simple to Sophisticated](https://sandflysecurity.com/blog/how-linux-malware-works-from-simple-to-sophisticated) - HackerNews - [ ] [Steam Workshop 被滥用来通过 Wallpaper Engine 应用传播恶意软件](http://0.0.0.0:8080/post/64355) - [ ] [iRhythm 确认数据在黑客攻击中被盗](http://0.0.0.0:8080/post/64354) - [ ] [恶意 JetBrains Marketplace 插件窃取开发者的 AI API 密钥](http://0.0.0.0:8080/post/64353) - [ ] [ClickFix 活动通过新加载器和虚假更新诱饵扩大恶意软件投递](http://0.0.0.0:8080/post/64352) - [ ] [Google Vertex AI SDK 漏洞允许攻击者通过存储桶抢占劫持模型上传](http://0.0.0.0:8080/post/64351) - [ ] [新型 Rokarolla Android 恶意软件窃取 PIN 码、短信验证码和加密钱包资金](http://0.0.0.0:8080/post/64350) - 奇客Solidot–传递最新科技情报 - [ ] [Epic Games 推出开源版本控制系统 Lore](https://www.solidot.org/story?sid=84612) - [ ] [六成美国消费者对品牌中的 AI 表示反感](https://www.solidot.org/story?sid=84611) - [ ] [GLP-1 减肥药有助于抑制暴力冲动](https://www.solidot.org/story?sid=84610) - [ ] [恶意墙纸瞄准中俄 Steam 用户窃取其账号](https://www.solidot.org/story?sid=84609) - [ ] [Firefox 用 Zlib 的 Rust 语言版本替代了 C 语言版本](https://www.solidot.org/story?sid=84608) - [ ] [泄漏财务数据显示 2025 年 OpenAI 净亏损约 80 亿美元](https://www.solidot.org/story?sid=84607) - [ ] [GLP-1 减肥药有助于提高男性睾酮水平和精子质量](https://www.solidot.org/story?sid=84606) - [ ] [地下真菌网络长度超过 10 万万亿公里](https://www.solidot.org/story?sid=84605) - [ ] [Mozilla 公布 Firefox 路线图](https://www.solidot.org/story?sid=84604) - [ ] [ChatGPT 市场份额首次跌破 50%](https://www.solidot.org/story?sid=84603) - [ ] [微软考虑使用 DeepSeek 的开源模型降低成本](https://www.solidot.org/story?sid=84602) - [ ] [Peter Thiel 的秘密社交网络曝光](https://www.solidot.org/story?sid=84601) - Hackerman's Hacking Tutorials - [ ] [Brain the Size of a Planet: Are LLMs Thonking too Hard?](https://parsiya.net/blog/llm-thonking/) - Offensive Security Blog: Latest Trends in Hacking | Praetorian - [ ] [FreeBSoD: Leveraging Language Models to Find and Exploit Kernel Bugs (Part 1 of 2)](https://www.praetorian.com/blog/ai-vulnerability-research-freebsd-kernel/) - 黑鸟 - [ ] [别乱安装壁纸! Wallpaper Engine创意工坊恶意壁纸可用于攻击](https://mp.weixin.qq.com/s?__biz=MzAxOTM1MDQ1NA==&mid=2451187069&idx=1&sn=ff71a010e47fcc2a1bf5c3987779a766) - 雷神众测 - [ ] [雷神众测漏洞周报2026.6.08-2026.6.14](https://mp.weixin.qq.com/s?__biz=MzI0NzEwOTM0MA==&mid=2652503842&idx=1&sn=dafc4e8c43a6f3bdfac78e41531a6a39) - 威努特安全网络 - [ ] [WinClaw工作流:让医生精力从“写病历”回归到“看病人”](https://mp.weixin.qq.com/s?__biz=MzAwNTgyODU3NQ==&mid=2651142366&idx=1&sn=ca6bb60addc76a13a969b31f31c2210a) - [ ] [WinClaw限时全免!注册即享AI大模型免费额度](https://mp.weixin.qq.com/s?__biz=MzAwNTgyODU3NQ==&mid=2651142366&idx=2&sn=eadf234a1e82860c74aab64cb8400231) - Black Hills Information Security, Inc. - [ ] [Everyone’s Selling AI That Kills Pentesting. We Built One That Doesn’t.](https://www.blackhillsinfosec.com/introducing-fusion-ai/) - 安全内参 - [ ] [为国护网!这家公司要用超级AI保护3000家主要关基设施企业](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516111&idx=1&sn=4e3bcd78485a50420fe47a969da301e1) - [ ] [世界杯官方赛事系统曝漏洞:电视直播流未设置权限,可被任意查看篡改](https://mp.weixin.qq.com/s?__biz=MzI4NDY2MDMwMw==&mid=2247516111&idx=2&sn=84279cb2acb155ff13913e2e95b07dd3) - 代码卫士 - [ ] [奇安信十大领域入选2026 Gartner®中国安全技术成熟度曲线报告](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247526319&idx=1&sn=e7e41b477d8329529d8a5794be19f73b) - [ ] [OpenBSD 修复已存在27年的 PPP 协议栈认证绕过漏洞](https://mp.weixin.qq.com/s?__biz=MzI2NTg4OTc5Nw==&mid=2247526319&idx=2&sn=dd48e102a2751f99b4ea33b644ef79a5) - 安全客 - [ ] [Weaxor勒索软件又添Linux平台变种](https://mp.weixin.qq.com/s?__biz=MzA5ODA0NDE2MA==&mid=2649790094&idx=1&sn=e06d67c3804a4211060e273061b1f30e) - 青衣十三楼飞花堂 - [ ] [Ubuntu 26禁用自动升级](https://mp.weixin.qq.com/s?__biz=MzUzMjQyMDE3Ng==&mid=2247489642&idx=1&sn=ac5d1e313e5c560436bfafed2674f7be) - [ ] [19.12 用旧版SecureCRT登录Ubuntu遭遇OSC控制序列](https://mp.weixin.qq.com/s?__biz=MzUzMjQyMDE3Ng==&mid=2247489641&idx=1&sn=2ea505eba525d19c6f67f81c15b09bc7) - 安全学术圈 - [ ] [香港科技大学(广州)& 香港理工大学 | 注入与泄露:基于电磁注入和硬件非线性的主动侧信道泄露诱导方法](https://mp.weixin.qq.com/s?__biz=MzU5MTM5MTQ2MA==&mid=2247495518&idx=1&sn=691c0dbe768d9b3cb66b734eadbbd4af) - 天黑说嘿话 - [ ] [记一次攻防从外网到打穿内网](https://mp.weixin.qq.com/s?__biz=MzI5NTQ5MTAzMA==&mid=2247486098&idx=1&sn=c2f4c1d14d7db9e6ad4d5de3d0bb9ad1) - 奇安信 CERT - [ ] [2026上半年你需要关注的高危漏洞合集!](https://mp.weixin.qq.com/s?__biz=MzU5NDgxODU1MQ==&mid=2247506323&idx=1&sn=0b3116c8fb5209e97f3a493c18175675) - 天御攻防实验室 - [ ] [Bruce Schneier:我们已打开AI潘多拉魔盒](https://mp.weixin.qq.com/s?__biz=MzU0MzgyMzM2Nw==&mid=2247487015&idx=1&sn=376d9cd7bf8f82e3b79f6455ea28db0d) - 看雪学苑 - [ ] [实战APP全流程分析(检测绕过/登录分析/视频解锁/native加密/广告绕过)](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458616656&idx=1&sn=f9a9b53085541a0e47c3d9e43e08d2f5) - [ ] [总奖金50万!零跑汽车智能安全守护行动开启白帽招募](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458616656&idx=2&sn=4c12d28384831075bbaa1505038969f5) - [ ] [这款恶意软件能偷PIN码、截银行短信,还能关掉Google保护](https://mp.weixin.qq.com/s?__biz=MjM5NTc2MDYxMw==&mid=2458616656&idx=3&sn=99a5b4aee852a89a7ebecc22739c0060) - 中国信息安全 - [ ] [以赛筑盾育英才——“复兴杯”第五届全国大学生网络安全精英赛圆满落幕](https://mp.weixin.qq.com/s?__biz=MzA5MzE5MDAzOA==&mid=2664263727&idx=1&sn=9b96370eb9870e8b99194e8a2fb4ed83) - M01N Team - [ ] [AI安全案例分析 | 从Claude Code沙箱绕过看智能体时代的边界失效](https://mp.weixin.qq.com/s?__biz=MzkyMTI0NjA3OA==&mid=2247495222&idx=1&sn=9cb103ff517a6ad9a4b7dda7642edd4f) - 安全圈 - [ ] [【安全圈】紧急预警!哪吒监控面板曝 9.1 分高危漏洞,仅需 2 次请求即可免密接管!](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652077453&idx=1&sn=dcf088b926d0cc3dd13df3ed9b648787) - [ ] [【安全圈】ClickFix 活动通过新加载器和虚假更新诱饵扩大恶意软件投递](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652077453&idx=2&sn=1799420aeb8144065e9317cfef8dca8e) - [ ] [【安全圈】Google Vertex AI SDK 漏洞允许攻击者通过存储桶抢占劫持模型上传](https://mp.weixin.qq.com/s?__biz=MzIzMzE4NDU1OQ==&mid=2652077453&idx=3&sn=8609933c2ae9419836b855460349c8ce) - 网安杂谈 - [ ] [杂谈](https://mp.weixin.qq.com/s?__biz=MzAwMTMzMDUwNg==&mid=2650890331&idx=1&sn=876c6c1de53d3b5e882caa1c045d4698) - 安全牛 - [ ] [重磅发布 | 安全牛《AI大模型安全评估与防护技术应用指南》](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651141711&idx=1&sn=e53d95282d58896df86bbd040666258a) - [ ] [国家网络安全通报中心:发现一批境外恶意网址和恶意IP;美国智库发布AI物料清单路线图:推动AIBOM标准化,提升AI供应链透明度 | 牛览](https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651141711&idx=2&sn=9dd6fce6a63765599eac329ddd8ec434) - 斗象智能安全 - [ ] [2026攻防演练必修高危漏洞集合(1.0版)](https://mp.weixin.qq.com/s?__biz=MzIwMjcyNzA5Mw==&mid=2247495460&idx=1&sn=046839cdcab38da2de665b0a4e4cd972) - 火绒安全 - [ ] [“银狐”潜伏 勒索肆虐:火绒全方位守护您的终端安全](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247534603&idx=1&sn=59bb6215deb9309d9b0a19b74e065972) - [ ] [火绒小问答--「个人版」近期top问题解答](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247534603&idx=2&sn=2e660b353401db23109076869996523e) - [ ] [诚邀渠道合作伙伴共启新征程](https://mp.weixin.qq.com/s?__biz=MzI3NjYzMDM1Mg==&mid=2247534603&idx=3&sn=395899130ac7eb82fb827c8598abc82e) - 补天平台 - [ ] [618 剁手预算告急!京东卡明日准时补货开抢!](https://mp.weixin.qq.com/s?__biz=MzI2NzY5MDI3NQ==&mid=2247510817&idx=1&sn=5552c8604dcf3c4cce7bf1335a8404e5) - 微步在线 - [ ] [从“快速验证”进化为“端到端工具链”:蔚来让AI成为安全团队新“伙伴”](https://mp.weixin.qq.com/s?__biz=MzI5NjA0NjI5MQ==&mid=2650186784&idx=1&sn=d47a3b70686084d254c00360d770d582) - 极客公园 - [ ] [原力灵机发布 Ferrata 系统,物理 AI 迎来自己的 Harness](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653109028&idx=1&sn=b5e7833ccef54ea305e99d59d5f8b607) - [ ] [单月 10 倍增长背后,商汤小浣熊的反精英叙事](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653109029&idx=1&sn=3667aab0fad7537d4acdabe7860c1810) - [ ] [小米「龙虾」上线,每天免费 4 小时;DeepSeek 完成首轮融资,梁文锋个人出资 200 亿;英伟达员工「考公上岸」引热议 | 极客早知道](https://mp.weixin.qq.com/s?__biz=MTMwNDMwODQ0MQ==&mid=2653108942&idx=1&sn=83a51f46185dde0ead80d3e74b4f938e) - 字节跳动技术团队 - [ ] [初探 AI-Infra 下的服务器固件安全实践](https://mp.weixin.qq.com/s?__biz=MzI1MzYzMjE0MQ==&mid=2247520428&idx=1&sn=94c00417b46f9fca4576d625863bcaea) - [ ] [直播预约|2026 火山引擎 Force 数据智能论坛 全新升级+核心能力抢先看](https://mp.weixin.qq.com/s?__biz=MzI1MzYzMjE0MQ==&mid=2247520428&idx=2&sn=ba831c615e816966bbfde36d7fe936a2) - 墨菲安全 - [ ] [墨菲安全研究院联合涂鸦等企业发布《出海智能制造开源安全治理最佳实践》](https://mp.weixin.qq.com/s?__biz=MzkwOTM0MjI5NQ==&mid=2247488465&idx=1&sn=627413f7315b3fc9e639f0ebbd6005e7) - 慢雾科技 - [ ] [威胁情报|Arch Linux AUR 供应链投毒关联恶意 npm 包分析](https://mp.weixin.qq.com/s?__biz=MzU4ODQ3NTM2OA==&mid=2247505220&idx=1&sn=1774b88eb9daff2dad7fb7f498b14ce7) - 威胁猎人Threat Hunter - [ ] [威胁猎人入选《新质·数字安全专精百强(2026)》,获评反欺诈情报单项冠军](https://mp.weixin.qq.com/s?__biz=MzI3NDY3NDUxNg==&mid=2247504133&idx=1&sn=30e24f3d731152f2e334d5b6d4da4f13) - 专注安管平台 - [ ] [从RSAC2026看安全运营技术发展趋势(3):Agnetic SOC实战经验分享](https://mp.weixin.qq.com/s?__biz=MzUyNzMxOTAwMw==&mid=2247485252&idx=1&sn=6b115c838243a9310b3e0c18bb8ed68b) - 迪哥讲事 - [ ] [折扣逻辑漏洞](https://mp.weixin.qq.com/s?__biz=MzIzMTIzNTM0MA==&mid=2247499570&idx=1&sn=845974de723dbcd86e8358ada0bbc851) - Over Security - [ ] [Google to use UK and EU user IP addresses for ad personalization](https://www.bleepingcomputer.com/news/security/google-to-use-uk-and-eu-user-ip-addresses-for-ad-personalization/) - [ ] [Cybercriminals allegedly hacked tens of thousands of Fortinet firewalls used by major companies all over the world](https://techcrunch.com/2026/06/17/cybercriminals-allegedly-hacked-tens-of-thousands-of-fortinet-firewalls-used-by-major-companies-all-over-the-world/) - [ ] [Hostile states behind three-quarters of attacks on Britain's critical infrastructure, cyber chief warns](https://therecord.media/britain-nation-state-cyberattacks-richard-horne-rusi) - [ ] [EU grants Ukraine access to cybersecurity reserve for major attacks](https://therecord.media/ukraine-access-eu-cybersecurity-reserve) - [ ] [FortiBleed: 75,000 Fortinet Firewalls Compromised: Global Enterprises Exposed – Claim Your Ethical Disclosure | Hudson Rock](https://www.hudsonrock.com/blog/fortibleed-75000-fortinet-firewalls-compromised-global-enterprises-exposed-claim-your-ethical-disclosure) - [ ] [SCRM e vulnerabilità: come gestire il rischio software nella supply chain](https://www.cybersecurity360.it/soluzioni-aziendali/scrm-e-vulnerabilita-come-gestire-il-rischio-software-nella-supply-chain/) - [ ] [FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices.](https://www.bleepingcomputer.com/news/security/fortibleed-leak-exposes-fortinet-vpn-credentials-for-73-000-devices/) - [ ] [L’Fbi crea una città finta per imparare a difenderne una vera: è la misura della cyber fragilità](https://www.cybersecurity360.it/nuove-minacce/lfbi-crea-una-citta-finta-per-imparare-a-difenderne-una-vera-e-la-misura-della-cyber-fragilita/) - [ ] [Why Account Takeovers Are Rising and How to Stop Them](https://www.bleepingcomputer.com/news/security/why-account-takeovers-are-rising-and-how-to-stop-them/) - [ ] [India's Telegram ban hit the UAE too. Here's how to get around it](https://www.bleepingcomputer.com/news/security/indias-telegram-ban-hit-the-uae-too-heres-how-to-get-around-it/) - [ ] [Microsoft 365 Copilot sotto attacco: la vulnerabilità SearchLeak apre la strada al furto dati](https://www.cybersecurity360.it/nuove-minacce/microsoft-365-copilot-sotto-attacco-la-vulnerabilita-searchleak-apre-la-strada-al-furto-dati/) - [ ] [Aruba Hosting, promo flash con il 60% di sconto: hosting e domini ai minimi](https://www.cybersecurity360.it/cultura-cyber/hosting-aruba-sconto-60-per-cento/) - [ ] [I Could've Rickrolled the Entire FIFA World Cup. All I Needed Was My ID.](https://bobdahacker.com/blog/fifa-hack) - [ ] [Crittografia e transizione post-quantum: cosa cambia con le nuove linee guida ACN](https://www.cybersecurity360.it/soluzioni-aziendali/crittografia-e-transizione-post-quantum-cosa-cambia-con-le-nuove-linee-guida-acn/) - [ ] [Italian Invoice-Themed Phishing Campaign Delivers UpCrypter and NeptuneRAT](https://www.d3lab.net/italian-invoice-themed-phishing-campaign-delivers-upcrypter-and-neptunerat/) - [ ] [Microsoft confirms Office apps launch issues after June updates](https://www.bleepingcomputer.com/news/microsoft/microsoft-confirms-office-apps-launch-issues-after-june-updates/) - [ ] [Pokémon Brand Spoofing in 2026: Pre-Crime Analysis of 1,352 Lookalike Domains](https://bfore.ai/report/pokemon-brand-spoofing-2026-lookalike-domains/) - [ ] [Warner warns of CISA cuts, staffing gaps in letter to acting chief](https://therecord.media/warner-warns-of-cisa-cuts-staffing-shortages) - [ ] [CISA orders feds to patch max severity Joomla plugin flaw by Friday](https://www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-max-severity-joomla-plugin-flaw-by-friday/) - [ ] [Novo Nordisk IT Security Incident Exposes Limited Patient and HCP Data](https://thecyberexpress.com/novo-nordisk-it-security-incident/) - [ ] [India's Telegram ban draws criticism from Durov as company challenges order in court](https://therecord.media/india-telegram-ban-challenged-in-court) - [ ] [La sfida industriale dei computer quantistici](https://www.guerredirete.it/la-sfida-industriale-dei-computer-quantistici/) - [ ] [Introducing Session Switcher. Swap Burp Sessions with One Click!](https://blog.doyensec.com/2026/06/17/session-switcher.html) - [ ] [Why India Temporarily Blocked Telegram Ahead of NEET UG 2026](https://thecyberexpress.com/telegram-ban-in-india-ahead-of-neet-re-exam/) - [ ] [GitHub dismissed security reports on flaws now exploited by supply-chain worm, researchers say](https://therecord.media/github-dismissed-reports-shai-hulud-deep-specter) - [ ] [Microsoft working on Defender patch for RoguePlanet zero-day](https://www.bleepingcomputer.com/news/microsoft/microsoft-working-on-defender-patch-for-rogueplanet-zero-day/) - [ ] [UK Cybercrime Journal: Sustained DragonForce Campaign](https://blog.bushidotoken.net/2026/06/uk-cybercrime-journal-sustained.html) - [ ] [Kodak confirms data breach claimed by ShinyHunters extortion gang](https://www.bleepingcomputer.com/news/security/kodak-confirms-data-breach-claimed-by-shinyhunters-extortion-gang/) - [ ] [GitBait: Phishing the Mexican Financial Sector](https://www.group-ib.com/blog/gitbait-phishing-mexico-banking-finance/) - 深信服千里目安全技术中心 - [ ] [【漏洞通告】Splunk Enterprise 预认证远程代码执行漏洞(CVE-2026-20253)](https://mp.weixin.qq.com/s?__biz=Mzg2NjgzNjA5NQ==&mid=2247525926&idx=1&sn=e45c9ee8a56851cca66b2a7e8cb55a92) - 安全419 - [ ] [安全419|一周国际网安资讯:AI漏洞频发 供应链攻击持续升级](https://mp.weixin.qq.com/s?__biz=MzUyMDQ4OTkyMg==&mid=2247553764&idx=1&sn=6632b1156a621c397aab9c96c75328f1) - [ ] [以赛筑盾育英才 ——“复兴杯”第五届全国大学生网络安全精英赛圆满落幕](https://mp.weixin.qq.com/s?__biz=MzUyMDQ4OTkyMg==&mid=2247553764&idx=2&sn=bf4e1e6967b2b3b1ae368fa517d44bcb) - D3Lab - [ ] [Italian Invoice-Themed Phishing Campaign Delivers UpCrypter and NeptuneRAT](https://www.d3lab.net/italian-invoice-themed-phishing-campaign-delivers-upcrypter-and-neptunerat/) - SANS Internet Storm Center, InfoCON: green - [ ] [The browser blind spot: Why your security tool may not be blocking what you think it is [Guest Diary], (Wed, Jun 17th)](https://isc.sans.edu/diary/rss/33084) - [ ] [ISC Stormcast For Wednesday, June 17th, 2026 https://isc.sans.edu/podcastdetail/9976, (Wed, Jun 17th)](https://isc.sans.edu/diary/rss/33082) - 悬镜安全 - [ ] [紧急AI安全情报 | 热门AI智能体开发框架Mastra近140个NPM组件遭受供应链投毒](https://mp.weixin.qq.com/s?__biz=MzA3NzE2ODk1Mg==&mid=2647799818&idx=1&sn=da90283ca847f298a8cfd3774122d0ab) - ICT Security Magazine - [ ] [Prompt injection: dove dire una cosa significa farla](https://www.ictsecuritymagazine.com/notizie/prompt-injection-dire-significa-fare/) - [ ] [Cyber Resilience Act: il rischio di sicurezza nascosto nell’obbligo di segnalazione che scatta a settembre](https://www.ictsecuritymagazine.com/articoli/cyber-resilience-act-obbligo-segnalazione-rischio/) - [ ] [FortiSandbox sotto attacco: tre falle critiche sfruttate e un exploit che sembra generato dall’AI](https://www.ictsecuritymagazine.com/notizie/fortisandbox-tre-falle-critiche-exploit-ai/) - [ ] [Honeytoken: l’allarme che non mente quasi mai](https://www.ictsecuritymagazine.com/cyber-security/honeytoken-cyber-deception/) - 国家互联网应急中心CNCERT - [ ] [网络安全信息与动态周报2026年第24期(6月8日-6月14日)](https://mp.weixin.qq.com/s?__biz=MzIwNDk0MDgxMw==&mid=2247501799&idx=1&sn=58b8329e297501a7fbf969630523b4fa) - 360威胁情报中心 - [ ] [APT-C-48(CNC)组织近期钓鱼攻击活动分析报告](https://mp.weixin.qq.com/s?__biz=MzUyMjk4NzExMA==&mid=2247508669&idx=1&sn=045cca89facb1bc6be4e565bc6fa09d8) - Tor Project blog - [ ] [New Release: Tor Browser 15.0.16](https://blog.torproject.org/new-release-tor-browser-15016/) - 娜璋AI安全之家 - [ ] [[智能体攻防实战] 二.CodeBuddy赋能恶意代码分析与家族分类实践](https://mp.weixin.qq.com/s?__biz=Mzg5MTM5ODU2Mg==&mid=2247502946&idx=1&sn=38d1088b04e7a97a9c3dd99134d1bcc5) - Schneier on Security - [ ] [AI Use by the US Government](https://www.schneier.com/blog/archives/2026/06/ai-use-by-the-us-government.html) - The Hacker News - [ ] [Crypto Clipper Campaign Abuses Fake Reviews, AI Narrators, and VirusTotal Comments](https://thehackernews.com/2026/06/crypto-clipper-campaign-abuses-fake.html) - [ ] [Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development](https://thehackernews.com/2026/06/microsoft-confirms-rogueplanet-defender_02022423645.html) - [ ] [Junior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went Offline](https://thehackernews.com/2026/06/junior-hacker-used-tailscale-and.html) - [ ] [Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization](https://thehackernews.com/2026/06/adversarial-exposure-validation-turns.html) - [ ] [Malicious JetBrains Plugins Steal AI API Keys as Chrome Extensions Capture Chatbot Chats](https://thehackernews.com/2026/06/malicious-jetbrains-plugins-steal-ai.html) - [ ] [The Top 10 Attack Surface Exposures in 2026](https://thehackernews.com/2026/06/the-top-10-attack-surface-exposures-in.html) - [ ] [144 Mastra npm Packages Compromised via Hijacked Contributor Account](https://thehackernews.com/2026/06/144-mastra-npm-packages-compromised-via.html) - [ ] [CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution](https://thehackernews.com/2026/06/cisa-warns-of-actively-exploited-joomla.html) - Deeplinks - [ ] [The Free and Open Web Is Under Attack at the IETF](https://www.eff.org/deeplinks/2026/06/free-and-open-web-under-attack-ietf) - [ ] [The NO FAKES Act Could Silence Satire, Commentary, And News](https://www.eff.org/deeplinks/2026/06/no-fakes-act-could-silence-satire-commentary-and-news) - GRAHAM CLULEY - [ ] [Smashing Security podcast #472: AI gets hacked, and BitLocker gets bypassed](https://grahamcluley.com/smashing-security-podcast-472/) - www.theregister.com - Articles - [ ] [Massive password-stealing attack hits 75k Fortinet firewalls](https://www.theregister.com/cyber-crime/2026/06/17/massive-password-stealing-attack-hits-75k-fortinet-firewalls/5257877) - [ ] [Digital sovereignty needs an operating model](https://www.theregister.com/security/2026/06/17/digital-sovereignty-needs-an-operating-model/5254631) - [ ] [Cisco adds another SD-WAN box to max-severity bug advisory](https://www.theregister.com/security/2026/06/17/cisco-adds-another-sd-wan-box-to-max-severity-bug-advisory/5257621) - [ ] [Homebrew 6.0 released with new security mechanism, Linux sandbox and more](https://www.theregister.com/devops/2026/06/17/homebrew-60-released-with-new-security-mechanism-linux-sandbox-and-more/5257570) - [ ] [Helpdesk scammers are making house calls to make their lies feel more real](https://www.theregister.com/cyber-crime/2026/06/17/helpdesk-scammers-are-making-house-calls-to-make-their-lies-feel-more-real/5257454) - [ ] [Cyberattack sees crops kept in the ground](https://www.theregister.com/cyber-crime/2026/06/17/cyberattack-sees-crops-kept-in-the-ground/5256321) - Trend Micro Research, News and Perspectives - [ ] [Threat Actors Abuse claude.ai Shared Chat for ClickFix Malvertising Campaign](https://www.trendmicro.com/en_us/research/26/f/claudeai-shared-chat-abused-in-malvertising.html) - NetSPI - [ ] [I’m Just Asking Questions: Social Engineering as a Reporter](https://www.netspi.com/blog/technical-blog/social-engineering/im-just-asking-questions-social-engineering-as-a-reporter/) - Security Affairs - [ ] [DragonForce Hid Inside Microsoft Teams and Nobody Noticed for Two Months](https://securityaffairs.com/193801/security/dragonforce-hid-inside-microsoft-teams-and-nobody-noticed-for-two-months.html) - [ ] [U.S. CISA adds Widget Factory Joomla Content Editor flaw to its Known Exploited Vulnerabilities catalog](https://securityaffairs.com/193775/hacking/u-s-cisa-adds-widget-factory-joomla-content-editor-jce-flaw-to-its-known-exploited-vulnerabilities-catalog.html) - [ ] [New Rokarolla Android Trojan Targets 217 Banking and Crypto Apps](https://securityaffairs.com/193745/cyber-crime/new-rokarolla-android-trojan-targets-217-banking-and-crypto-apps.html) - [ ] [EdTech Faces a Cybersecurity Crisis: Data Breaches Surge](https://securityaffairs.com/193777/data-breach/edtech-faces-a-cybersecurity-crisis-data-breaches-surge.html) - [ ] [FulcrumSec Targets Novo Nordisk, Leaks Clinical and Research Data](https://securityaffairs.com/193763/security/fulcrumsec-targets-novo-nordisk-leaks-clinical-and-research-data.html) - [ ] [China-Linked FishMonger Ports SprySOCKS to Windows With Kernel-Level Stealth and UEFI Bootkit Hints](https://securityaffairs.com/193728/apt/china-linked-fishmonger-ports-sprysocks-to-windows-with-kernel-level-stealth-and-uefi-bootkit-hints.html) - TorrentFreak - [ ] [Music Publishers Truncated Musk’s ‘DMCA Plague’ Tweet to Back Piracy Case, X Tells Court](https://torrentfreak.com/music-publishers-truncated-musks-dmca-plague-tweet-to-back-piracy-case-x-tells-court/) - Daniel Miessler - [ ] [A Unified Theory For How AI Will Affect Jobs](https://danielmiessler.com/blog/unified-theory-ai-jobs?utm_source=rss&utm_medium=feed&utm_campaign=website)
每日安全资讯(2026-06-18)