Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
새롭게 공개된 SharePoint 취약점을 공격자들이 이용하고 있다는 보고서입니다.
Attackers are exploiting a newly disclosed SharePoint vulnerability after the PoC release.
AI가 선별한 아티클
새롭게 공개된 SharePoint 취약점을 공격자들이 이용하고 있다는 보고서입니다.
Attackers are exploiting a newly disclosed SharePoint vulnerability after the PoC release.
마이크로소프트가 398개의 보안 취약점을 수정한 업데이트를 발표했습니다.
Microsoft has released updates to fix 398 security vulnerabilities.
이번 주 보안 문제와 관련된 최신 소식과 경향을 다룹니다.
This week covers key topics related to security issues and trends.
중국 위협 세력이 유출된 DarkSword 킷을 이용해 iOS를 공격하고 있다.
A Chinese threat actor is targeting iOS devices using the leaked DarkSword exploit kit.
AI로 취약점 관리 방법의 변화 필요성에 대한 논의.
AI prompts re-evaluation of vulnerability management strategies in security.
GitLab RCE 취약점에 대한 PoC가 공개되어 인증된 사용자가 명령을 실행할 수 있습니다.
A PoC for a GitLab RCE vulnerability lets authenticated users execute commands.
Certighost 취약점을 통해 저권한 AD 사용자가 도메인 컨트롤러를 가장할 수 있다.
The Certighost exploit allows low-privileged AD users to impersonate a Domain Controller.
NodeBB에서 발견된 8개의 보안 취약점이 패치되었다.
Eight security vulnerabilities in NodeBB have been patched.
N-day 취약점, 패치 이후에도 위험해지는 보안 문제를 설명합니다.
N-day vulnerabilities expose systems even after patches, highlighting ongoing security risks.
워드프레스 원격 코드 실행 취약점을 발견하고 이를 통해 보안 시장 동향을 분석한다.
The article discusses a discovered WordPress RCE vulnerability using GPT5.6 and market trends of exploit brokers.
워드프레스의 코어 결함으로 인증되지 않은 공격자가 코드 실행 가능.
A core flaw in WordPress allows unauthenticated attackers to run code.
새로운 Windows 제로데이 PoC인 LegacyHive가 공개되었다.
A new Windows zero-day PoC named LegacyHive has been released.
이번 주 사이버 보안 리캡에서는 여러 가지 취약점과 공격 방법이 다뤄졌다.
This week's cybersecurity recap covers various vulnerabilities and attack methods.
새로운 GreatXML 취약점이 Windows BitLocker의 차단을 우회할 수 있음을 밝혀냈다.
A new vulnerability called GreatXML can bypass Windows BitLocker.
Microsoft Defender의 RoguePlanet 제로데이 취약점이 시스템 접근을 허용한다는 소식을 전한다.
A new zero-day exploit named RoguePlanet in Microsoft Defender grants system access.
마이크로소프트가 200개 보안 결함을 수정하며 기록적인 패치 화요일을 발표했다.
Microsoft announces record-breaking Patch Tuesday with updates for nearly 200 security flaws.
Linux 커널의 취약점으로 로컬 루트 접근이 가능해진다.
A Linux kernel flaw allows local users to escalate privileges to root.
네트워크 보안을 재정의하는 웹 세미나 및 공격자 시각에서의 접근법 소개.
A webinar exploring new approaches to network security from an attacker's perspective.
마이크로소프트가 제로데이 취약점 공개에 대해 법적 조치를 위협하고 있다는 내용입니다.
Microsoft threatens legal action over disclosure of zero-day exploits amid public criticism.
Decepticon은 자율형 레드팀 에이전트로, 전문적인 해킹을 지원한다.
Decepticon is an autonomous red team agent that supports professional hacking.
AI의 발전으로 소프트웨어 보안이 위협받고 있다.
The advancement of AI poses a significant threat to software security.
하드웨어 없이도 취약한 드라이버를 악용할 수 있는 방법에 대한 분석 기사입니다.
An article analyzing how vulnerable drivers can be exploited without hardware.
구글이 크로미움 사용자 수백만 명을 위협하는 익스플로잇 코드를 공개했습니다.
Google reveals exploit code threatening millions of Chromium users.
Linux 커널의 CVE-2026-31635 LPE 취약점에 대한 PoC가 공개되었습니다.
PoC exploit for Linux kernel's CVE-2026-31635 LPE vulnerability released.
Mythos Preview는 Cloudflare의 저장소에서 버그 탐지 및 익스플로잇 체인을 구성함.
Mythos Preview constructs exploit chains by detecting bugs across Cloudflare's repositories.
Apple Silicon M5에서 첫 번째 공개된 커널 메모리 손상 익스플로잇.
First public kernel memory corruption exploit on Apple Silicon M5.
구글 프로젝트 제로, 픽셀 10을 위한 0-click 익스플로이트 체인 공개.
Google Project Zero reveals a 0-click exploit chain for the Pixel 10.
Apple M5에서 macOS 커널 메모리 손상 익스플로잇이 공개되었다.
An exploit for macOS kernel memory corruption on Apple M5 has been revealed.
XZ Utils 백도어에 대한 심층 강의 소개.
Introduction to an in-depth lecture on the XZ Utils backdoor.
해커들이 AI를 이용해 최초의 제로데이 2FA 우회 기법을 개발했다.
Hackers used AI to develop the first known zero-day 2FA bypass technique.