Patch for Windows Defender 0-day could allow attackers to fill hard disk
微软修复Windows Defender零日漏洞的补丁可能被攻击者利用,导致硬盘空间被耗尽。
入选理由:补丁导致mpengine.dll内存泄漏,可能被用于耗尽硬盘空间
公司
别名:Ars、技术媒体
科技新闻网站,发布隐私政策及 Cookie 管理说明。
已跟踪 10 条高相关材料
最近变化
2026-07-13 · 文章内容为隐私政策说明,非技术性内容。
为什么值得关注
Ars Technica 被反复提及时,通常意味着它正在影响产品路线、开发者工作流或 AI 产业判断。这个页面把分散材料合并成一个可持续更新的观察入口。
Patch for Windows Defender 0-day could allow attackers to fill hard disk
Ars Technica · 8.5 分
微软修复Windows Defender零日漏洞的补丁可能被攻击者利用,导致硬盘空间被耗尽。
黑客可利用9款最流行的AI工具组装大规模僵尸网络
AI HOT 精选 · 8.5 分
新型HalluSquatting攻击利用AI工具幻觉组装僵尸网络,可感染主流编程助手并执行DDoS攻击。
Following user outcry, AMD reinstates memory encryption in consumer CPUs
Ars Technica · 8.5 分
AMD 在用户强烈反对后,重新在消费级 CPU 中启用内存加密功能 TSME。
已收录 10 条与 Ars Technica 相关的内容,按评分排序。
微软修复Windows Defender零日漏洞的补丁可能被攻击者利用,导致硬盘空间被耗尽。
入选理由:补丁导致mpengine.dll内存泄漏,可能被用于耗尽硬盘空间
新型HalluSquatting攻击利用AI工具幻觉组装僵尸网络,可感染主流编程助手并执行DDoS攻击。
入选理由:HalluSquatting攻击可利用GitHub Copilot等9款AI工具实现规模化botnet部署
AMD 在用户强烈反对后,重新在消费级 CPU 中启用内存加密功能 TSME。
入选理由:AMD 因用户反对,重新在消费级 Ryzen 处理器中启用 TSME 内存加密。
Attackers exploited Dashlane's device enrollment API via 2FA spraying to download fewer than 20 encrypted vaults before automated lockouts. By distributing requests across thousands of accounts, they increased 6-digit OTP guess probability from 1/1M to 1/1K while evading rate limits, though Argon2 hashing still protects vault contents.
入选理由:攻击者滥用设备注册API进行2FA喷射,成功生成有效令牌并下载了少于20个用户的加密密码库。
Researchers discovered a zero-day vulnerability that can completely bypass the default BitLocker encryption protection on Windows 11.
入选理由:零日漏洞可绕过Windows 11 BitLocker
Reddit's mobile site temporarily banned the author's IP due to excessive daily visits, revealing how anti-bot systems can mistakenly flag legitimate users.
入选理由:Reddit 移动网站对每日访问超过 10 次的 IP 实施临时封禁
本文是 Ars Technica 的隐私政策页面,主要说明网站使用的 Cookie 类型及用户管理选项,不涉及技术深度或工程实践。
入选理由:文章内容为隐私政策说明,非技术性内容。
A critical vulnerability in an open-source package could affect millions of AI agents, posing a significant threat to the global AI ecosystem.
入选理由:一个开源软件包存在严重漏洞,可能影响数百万 AI 代理。
The article reports that dozens of Red Hat's NPM packages were backdoored via its official channel, with attackers injecting malicious code into npm repositories using supply chain vulnerabilities, but lacks technical details or remediation steps.
入选理由:Red Hat的官方NPM仓库中发现数十个包被植入后门
This article primarily discusses website privacy settings and cookie management mechanisms rather than technical vulnerability analysis, focusing on user data permissions and ad tracking controls.
入选理由:用户可通过隐私设置控制Targeted Advertising并限制个人敏感信息使用