- CXSECURITY Database RSS Feed - CXSecurity.com
- NOSEC 安全讯息平台 - 漏洞预警
- HackerOne Hacker Activity
- Stored XSS for Grafana dashboard URL
- Undici does not use CONNECT or otherwise validate upstream HTTPS certificates when using a proxy
- Undici ProxyAgent vulnerable to MITM
- One Click XSS in [www.shopify.com]
- rubygems.org Batching attack to
confirmation_token
by bypass rate limit - CVE-2021-40438 on cp-eu2.acronis.com
- [CVE-2021-44228] nps.acronis.com is vulnerable to the recent log4shell 0-day
- Sploitus.com Exploits RSS Feed
- Twitter @Nicolas Krassas
- Uncovering a macOS App Sandbox escape vulnerability: A deep dive into CVE-2022-26706
- $8 million stolen in large-scale Uniswap airdrop phishing attack
- Bypass-Url-Parser - Tool That Tests Many URL Bypasses To Reach A 40X Protected Page
- Microsoft Teams — Cross Site Scripting (XSS) Bypass CSP ($6,000 Bug Bounty)
- New UEFI Firmware Vulnerabilities Impact Several Lenovo Notebook Models
- U.S. FTC Vows to Crack Down on illegal Use and Sharing of Citizens' Sensitive Data
- QuickBooks Vishing Scam Targets Small Businesses
- Researchers Uncover New Variants of the ChromeLoader Browser Hijacking Malware
- peetch: bypass TLS protocol protections
- Large-scale AiTM phishing campaign targeted +10,000 orgs since 2021
- Researchers Uncover New Attempts by Qakbot Malware to Evade Detection
- Hackers impersonate cybersecurity firms in callback phishing attacks
- CVE: Exploratory Analysis
- From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud
- Microsoft Azure Site Recovery DLL Hijacking ($10,000 Bug Bounty)
- How to secure Kubernetes deployment with signature verification – Cosign and Connaisseur
- Retbleed: Arbitrary Speculative Code Execution with Return Instructions
- CVE-2022-22047: Windows CSRSS Elevation of Privilege 0-day Vulnerability
- Recent Commits to cve:main
- Sec-News 安全文摘
- 安全客-有思想的安全新媒体
- unSafe.sh - 不安全
- paper - Last paper
- 先知安全技术社区
- SecWiki News
- 跳跳糖 - 安全与分享社区
- Trustwave Blog
- Microsoft Security Blog
- 先知安全技术社区
- Security Boulevard
- Join Lightspin at fwd:cloudsec and AWS re:Inforce
- Why Security Teams Need to Patch Faster to Stay Ahead of Exploitation
- New Research: SOC Modernization and the Role of XDR
- Offensive Security – Elite Bundle Datasheet
- BSidesSF 2022 – Ryan Robinson’s And Nicole Fishbein’s ‘Go With The (Work)flow’
- Enter Through the Gift Shop: Door Controls, Phones & Rootkits
- The Cost of Ownership Demands Attention: Choosing the Right Tool for IRM
- 10 Years Journey into API Security Vulnerabilities with Ivan, the CEO of Wallarm
- FAIR Fatigue: A Deeper Dive
- 安全脉搏
- Files ≈ Packet Storm
- NowSecure
- 嘶吼 RoarTalk – 回归最本质的信息安全,互联网安全新媒体,4hou.com
- 128 nops and counting
- Envato Tuts+ Code - Mobile Development
- Binary Ninja
- root@cyberworld:~# Noah Lab
- SentinelOne
- Forcepoint
- blog.avast.com EN
- SAP Blogs
- Enhancements in SAP S/4 HANA Project Manufacturing Management and Optimization (PMMO)
- What is Data Analyzer in SAP Analytics Cloud and how to add it as a hyperlink to a table in a Story?
- Leveraging BTP services in Microsoft Power Platform
- Get ready for the 2208 SAP Ariba Early Release Series
- SPRINT1 for Utilities Industry Cloud
- Customize default layout of Fiori App Balance Sheet/Income Statement – Multidimensional Report in S/4HANA
- Query on CMIS Repository #2
- Guided Sourcing: a simple solution for complex sourcing
- Thailand: Guidelines on Transferring SAP generated text file to RD Prep (VAT & Withholding Tax)
- Malwarebytes Labs
- Reverse Engineering
- Current Posts - Red Team Journal
- Application Security Blog
- Microsoft Security Response Center
- The Daily Swig | Cybersecurity news and views
- KitPloit - PenTest & Hacking Tools
- Wallarm
- 虎符智库
- 雷神众测
- Seebug漏洞平台
- Checkmarx.com
- 奇安信CERT
- 奇安信威胁情报中心
- 威努特工控安全
- 360Quake空间测绘
- 安全牛
- 极客公园
- 山石网科安全技术研究院
- SecIN技术平台
- Tide安全团队
- 青衣十三楼飞花堂
- 关键基础设施安全应急响应中心
- 网络安全应急技术国家工程实验室
- CNVD漏洞平台
- 安全威胁情报
- 盘古实验室
- PeiQi文库
- 美团安全应急响应中心
- 中国信息安全
- 天融信阿尔法实验室
- 补天平台
- 网安寻路人
- 酒仙桥六号部队
- vivo千镜安全实验室
- 永安在线情报平台
- 深信服千里目安全实验室
- 情报分析师
- 三六零CERT
- 嘶吼专业版
- KCon黑客大会