T
traeai
Sign in

公司

Ars Technica

别名:Ars、技术媒体

科技新闻网站,发布隐私政策及 Cookie 管理说明。

已跟踪 10 条高相关材料

TraeAI 观察

相关材料

已收录 10 条与 Ars Technica 相关的内容,按评分排序。

Patch for Windows Defender 0-day could allow attackers to fill hard disk

Patch for Windows Defender 0-day could allow attackers to fill hard disk

Ars Technica840 字 (约 4 分钟)
85

微软修复Windows Defender零日漏洞的补丁可能被攻击者利用,导致硬盘空间被耗尽。

入选理由:补丁导致mpengine.dll内存泄漏,可能被用于耗尽硬盘空间

FeaturedArticle#Windows Defender#安全漏洞#补丁管理#零日漏洞#微软英文
AI HOT 精选 图标

黑客可利用9款最流行的AI工具组装大规模僵尸网络

AI HOT 精选1423 字 (约 6 分钟)
85

新型HalluSquatting攻击利用AI工具幻觉组装僵尸网络,可感染主流编程助手并执行DDoS攻击。

入选理由:HalluSquatting攻击可利用GitHub Copilot等9款AI工具实现规模化botnet部署

FeaturedArticle#AI安全#网络安全#LLM攻击#僵尸网络中英混合
Following user outcry, AMD reinstates memory encryption in consumer CPUs

Following user outcry, AMD reinstates memory encryption in consumer CPUs

Ars Technica963 字 (约 4 分钟)
85

AMD 在用户强烈反对后,重新在消费级 CPU 中启用内存加密功能 TSME。

入选理由:AMD 因用户反对,重新在消费级 Ryzen 处理器中启用 TSME 内存加密。

FeaturedArticle#AMD#TSME#内存加密#固件更新英文
Dashlane explains how attackers managed to download encrypted password vaults

Attackers exploited Dashlane's device enrollment API via 2FA spraying to download fewer than 20 encrypted vaults before automated lockouts. By distributing requests across thousands of accounts, they increased 6-digit OTP guess probability from 1/1M to 1/1K while evading rate limits, though Argon2 hashing still protects vault contents.

入选理由:攻击者滥用设备注册API进行2FA喷射,成功生成有效令牌并下载了少于20个用户的加密密码库。

FeaturedArticle#Dashlane#2FA Spraying#Argon2#Password Manager Security#API Abuse英文
Why Reddit blocked my daily visit to its mobile website

Why Reddit blocked my daily visit to its mobile website

Ars Technica1791 字 (约 8 分钟)
52

Reddit's mobile site temporarily banned the author's IP due to excessive daily visits, revealing how anti-bot systems can mistakenly flag legitimate users.

入选理由:Reddit 移动网站对每日访问超过 10 次的 IP 实施临时封禁

FeaturedArticle#anti-bot#Reddit#mobile英文
Now, defenders are embracing the prompt injection, too

Now, defenders are embracing the prompt injection, too

Ars Technica1801 字 (约 8 分钟)
50

本文是 Ars Technica 的隐私政策页面,主要说明网站使用的 Cookie 类型及用户管理选项,不涉及技术深度或工程实践。

入选理由:文章内容为隐私政策说明,非技术性内容。

FeaturedArticle#隐私政策#Cookie管理英文
Millions of AI agents imperiled by critical vulnerability in open source package

A critical vulnerability in an open-source package could affect millions of AI agents, posing a significant threat to the global AI ecosystem.

入选理由:一个开源软件包存在严重漏洞,可能影响数百万 AI 代理。

FeaturedArticle#open-source software#security vulnerability#AI agents中文
Dozens of Red Hat packages backdoored through its official NPM channel

Dozens of Red Hat packages backdoored through its official NPM channel

Ars Technica1988 字 (约 8 分钟)
25

The article reports that dozens of Red Hat's NPM packages were backdoored via its official channel, with attackers injecting malicious code into npm repositories using supply chain vulnerabilities, but lacks technical details or remediation steps.

入选理由:Red Hat的官方NPM仓库中发现数十个包被植入后门

FeaturedArticle#Red Hat#NPM#Supply Chain Attack#Security Vulnerability英文
Google publishes exploit code threatening millions of Chromium users

Google publishes exploit code threatening millions of Chromium users

Ars Technica1946 字 (约 8 分钟)
20

This article primarily discusses website privacy settings and cookie management mechanisms rather than technical vulnerability analysis, focusing on user data permissions and ad tracking controls.

入选理由:用户可通过隐私设置控制Targeted Advertising并限制个人敏感信息使用

FeaturedArticle#Privacy Policy#Cookie#Ars Technica#User Permissions英文

跨材料问答 · Ars Technica

回答基于:Ars Technica 相关 10 条材料
    0 / 500

    AI may generate inaccurate information. Please verify important content.