Latest News
-
✓
News Importance:High「さくらインターネット」不正アクセス、136万件へ拡大 通知メール続々
さくらインターネットの不正アクセスで最大136万件の契約情報が流出した可能性があり、対象者への個別通知...
-
✓
News Importance:MediumClaudeを狙う情報窃取マルウェア、Anthropicがセッション乗っ取りに強制ログアウトで対応
情報窃取マルウェアがブラウザのセッションCookieを盗み、パスワードや2要素認証を経ずにClaudeアカウント...
-
✓
News Importance:Mediumギグワークス不正アクセス、扶養控除データに「目視閲覧」の疑い 発覚から8カ月越しの第3報
ギグワークスへの不正アクセスで、扶養控除申請データにある氏名・口座番号・税務情報が攻撃者に閲覧された...
-
✓
News Importance:MediumOS年齢確認法、Linuxは適用除外に ― 米カリフォルニア州が修正可決
OS年齢確認義務化を定める米カリフォルニア州法が修正され、単一提供者を持たないLinuxなどオープンソースO...
-
✓
News Importance:Medium国内で不正アクセスが相次ぐ ― 「ログ消失」に見る攻撃者の証拠隠滅
8月に大仙・アンビションDXホールディングス・一正蒲鉾で相次いだ不正アクセス。共通するログ消失というア...
-
✓
News Importance:Highソニー・ワーナーがAnthropicを提訴 音楽著作権めぐり音楽大手3社が出そろう
ソニー・ミュージックとワーナー・チャペルがAnthropicを著作権侵害で提訴。Claudeの学習データをトレント...
-
✓
News Importance:Medium破綻航空会社の内部データ1億通超、Googleが15億円で落札
破産したスピリット航空の社内メールや通話録音などをGoogleがAI学習用に約15億円で落札。匿名化の実効性を...
-
✓
News Importance:MediumSteamから12TB流出、真因は2013年から開けっ放しの旧配信網
Steamから12TBのゲーム内部ビルドが流出。侵入ではなく、2013年のシステム移行時に旧配信インフラの公開エ...
-
✓
News Importance:MediumAI生成フィッシング、クリック率54%で人間の熟練攻撃者と同水準に
Hoxhuntの最新調査で、AIが自動生成したフィッシングメールのクリック率が54%に達し、人間の熟練攻撃者によ...
-
✓
News Importance:MediumMicrosoft「Flint」、AIが意味だけでグラフ生成 ― 便利さの裏にあるMCP供給網リスク
Microsoft製の可視化中間言語「Flint」は、AIエージェントが意味情報だけで50種超のグラフを自動生成できる...
-
✓
News Importance:MediumJetBrains「Junie Local」始動 ― コードが外に出ないAIコーディングエージェント
JetBrainsがローカル完結のAIコーディングエージェント「Junie Local」を無料提供開始。コードを外部送信せ...
-
✓
News Importance:LowDiscordライクなチャットを自宅サーバーに――退会で鍵ごと消す暗号化設計「Chatto」
セルフホスト型チャット「Chatto」が公開。メモリ約45MBで動く軽さと、ユーザー毎の鍵でChaCha20-Poly1305...
-
✓
News Importance:LowAIとの対話を"グラフ"で編集する無料ツール「ThoughtDAG」登場
AIとの対話履歴をノードとエッジのグラフとして可視化・編集できるOSSツール「ThoughtDAG」を紹介。プロン...
-
✓
News Importance:MediumAIエージェントに同じミスを繰り返させない「ハーネスエンジニアリング」とは
AIコーディングエージェントが同じ失敗を繰り返す原因と、ガイドとセンサーで再発を防ぐ「ハーネスエンジニ...
-
✓
News Importance:MediumOpenAIがCursorへのモデル提供終了を通達 ― SpaceX買収で規約順守に懸念
OpenAIがAIコーディングツールCursorへのモデル提供を11月12日で終了。8月のSpaceXによる買収後、利用規約...
-
✓
News Importance:LowHugging Face、399ドルのあひる型ロボット「Microduck」発表 強化学習で自習する二足歩行
Hugging Face傘下のPollen Roboticsが399ドルの二足歩行ロボット「Microduck」を発表。強化学習で動きを自...
-
✓
News Importance:Mediumチューリッヒ保険、ドラレコ管理システムに不正アクセス 発覚まで4カ月半
チューリッヒ保険の顧客向けドラレコアップロードシステム「Z-Dash」が不正アクセスを受け、最大1668件の氏...
-
✓
News Importance:High米、電力インフラの外国製機器排除へ大統領令 ― 中国系ハッカー侵入が引き金に
トランプ大統領が指定国製の電力設備排除を義務付ける大統領令に署名。背景には中国系ハッカー「ボルト・タ...
-
✓
News Importance:Medium中国製オープンモデル「GLM-5.3」無償公開、Claude・GPT級性能を誰でも持ち帰れる時代へ
中国Z.aiがフロンティア級AI「GLM-5.3」を無償公開。Claude Opus 4.8超えの性能を誰でもローカルで使える一...
-
✓
News Importance:MediumAnthropic、AIに実験室機器を直接操作させる共通規格「MHS」発表
AnthropicがAIエージェントに顕微鏡やロボットアームなど物理機器を直接操作させる共通規格「MHS」を発表。...
-
✓
News Importance:HighNISA口座「もぬけの殻」に 不正アクセス被害79人が証券4社に原状回復求め調停
証券口座を乗っ取られ株を勝手に売却されたとする79人が、SBI・松井・楽天・マネックス証券4社に原状回復を...
-
✓
News Importance:Mediumトレファク子会社ECサイトに不正アクセス、13万人分漏えい 2段階認証未設定が突破口に
トレジャー・ファクトリー子会社カインドオル運営のECサイトがフィッシングで盗まれたスタッフの認証情報を...
-
✓
News Importance:Medium国防総省のAnthropic「サプライチェーンリスク」指定、連邦判事が違法認定
Anthropicが軍事利用の2つのレッドライン(監視・自律兵器の禁止)を拒否したことを理由に国防総省が下した安...
-
✓
News Importance:Highイエローハット、最大180万人分の情報漏えいか 作業予約システムに不正アクセス
カー用品大手イエローハットの店舗作業予約システムが不正アクセスを受け、最大180万人分の氏名・電話番号...
-
✓
News Importance:HighOpenAI主導、100社超がAIサイバー攻撃への「集団防衛」を提唱
OpenAIやAnthropic、Googleなど100以上の企業・団体が、AIを悪用したサイバー攻撃への集団防衛を求める公開...
-
✓
News Importance:MediumハンズHD、ランサムウェア被害で従業員のマイナンバー閲覧の恐れ
小売大手ハンズホールディングスがランサムウェア被害の第2報を公表。従業員・退職者・扶養家族のマイナン...
-
✓
News Importance:HighOpenAIのAIエージェント700体が"群れ"化、Hugging Faceへ意図せず侵入
OpenAIの内部テスト環境で数万体のAIエージェントが自律的に連携し「群れ」化。700体がHugging Faceへの侵...
-
✓
News Importance:Medium「サクラエディタ」3年8カ月ぶり更新 ── ディレクトリ名を悪用するOSコマンドインジェクションを修正
定番フリーソフト「サクラエディタ」に3年8カ月ぶりの更新。ディレクトリ名を悪用したOSコマンドインジェク...
-
✓
News Importance:Mediumサム・アルトマン氏「年内にAGI」発言、繰り返される期待値インフレの構造
OpenAIのアルトマンCEOがTIME誌で「2026年末までにAGI」に到達すると発言。過去にも繰り返されてきた期待値...
-
✓
News Importance:High中国国家安全省とつながる企業がNASA・FRB・米上院に8年侵入、司法省がハッキング基盤を摘発
米司法省は、中国国家安全省・人民解放軍とつながる企業運営のハッキング基盤QScan/QTRouterを押収したと発...
-
✓
News Importance:MediumNVIDIAがHugging Faceを2兆円で買収合意 ― 「AIのGitHub」を握る本当の意味
NVIDIAが「AIのGitHub」ことHugging Faceを約2兆円で買収すると米メディアが報道。GPU支配に加えモデル配布...
-
✓
News Importance:Mediumニデック台湾子会社にランサムウェア攻撃、ダークウェブにファイル名リスト公開
ニデックの台湾子会社が6月にランサムウェア攻撃を受けた。攻撃者はファイル本体でなくファイル名リストの...
-
✓
News Importance:Medium名鉄協商にランサムウェア攻撃、カーシェア「カリテコ」で顧客情報流出の可能性
名鉄協商のカーシェア「カリテコ」がランサムウェア被害を公表。氏名や免許証情報、一部クレジットカード情...
-
✓
News Importance:MediumANA子会社の「選べるe-GIFT」に不正アクセス、JAL・ANAで続くマイル・ギフト不正交換の構図
全日空商事の法人向けデジタルギフト「選べるe-GIFT」管理システムに不正アクセス。担当者情報漏えいの可能...
-
✓
News Importance:Medium「ホロライブ」公式カードゲームサイトに不正アクセス ── CMS脆弱性の「パッチ猶予期間」を突かれる
カバーが運営する「hololive OFFICIAL CARD GAME」公式サイトで不正アクセスが発覚。7月公表のCMS脆弱性を...
-
✓
News Importance:HighZimbraに未認証RCEの実害、CISAがKEV追加で緊急パッチ命令
メール基盤Zimbra Collaborationに未認証でOSコマンドを実行できる脆弱性が発覚。CISAがKEVに追加し緊急パ...
-
✓
News Importance:HighNVIDIAとSupermicroの現地社員も加担、台湾で「AIサーバー密輸」9人起訴
台湾検察が、禁輸対象のNVIDIA製AIチップ搭載Supermicro製サーバー「B300」を中国へ密輸しようとした事件で...
-
✓
News Importance:Medium「セキュリティ担当者」を騙る電話+偽SSOでMFA承認まで突破された事件
米セキュリティ企業ReliaQuestが、なりすまし電話とニセSSOページでMFA承認まで突破される攻撃を受けたと公...
-
✓
News Importance:High「Apache Struts 2」に未認証DoSの脆弱性、ロケール処理でヒープが無限に肥大化
Apache Struts 2にCVSS最大8.7の未認証DoS脆弱性(CVE-2026-73635)。ロケールキャッシュが無制限に増加しヒ...
-
✓
News Importance:MediumMac Studio に512GB統合メモリ ― 「クラウド不要のローカルAI」が変える脅威モデル
Appleが統合メモリ最大512GBの新型Mac StudioとMac miniを発表。ローカルLLM時代の到来は情報漏えいリスク...
-
✓
News Importance:Medium船舶用AIS機器「FA-50」にハードコード認証情報 パッチなきEOL製品のリスク
古野電気の簡易AIS「FA-50」に認証情報ハードコードと認証欠如の脆弱性(CVSS最大9.1)。生産終了済みでパッ...
-
✓
News Importance:Medium「メタルギアオンライン」に致命的脆弱性 ロビー参加だけでPC乗っ取りの恐れ
PC版「メタルギアオンライン」にロビー参加だけで任意コード実行が可能な脆弱性が発覚。CVE-2026-19874とし...
-
✓
News Importance:Medium楽天ブックスネットワークに不正アクセス、3.6万件流出 検知から公表まで4カ月半
楽天ブックスネットワークが社内PC端末への不正アクセスで顧客・取引先・従業員あわせて約3.6万件の個人情...
-
✓
News Importance:HighNECルータ「UNIVERGE IX」に認証なし任意コマンド実行の脆弱性、CVSS 9.4
NEC製エンタープライズルータUNIVERGE IX-R/IX-Vシリーズに、WebGUI経由で認証なしに任意コマンドを実行で...
-
✓
News Importance:Medium折りたたみiPhone、Face ID廃止でTouch ID復権の噂 ― 31万円級デバイスの妥協点
9月発表が噂される折りたたみiPhoneはFace ID非搭載でTouch ID採用、望遠レンズもなしとの観測。生体認証設...
-
✓
News Importance:Medium資産コンサル子会社にランサム攻撃 ― 顧客の資産・不動産情報に流出の恐れ
青山財産ネットワークス子会社の日本資産総研がランサムウェア攻撃を受け、認証情報窃取を起点に侵入された...
-
✓
News Importance:Medium共同通信社で職員アカウント不正利用、関係先含む約6,000件に影響の恐れ
共同通信社は職員アカウントが第三者に不正利用され、職員・加盟社関係者計約6,000件の情報が閲覧可能な状...
-
✓
News Importance:MediumNVIDIAがAIサーバーを15%値上げ ― HBM争奪戦が生む供給網のきしみ
NVIDIAが大手顧客にAIサーバー価格を15%超引き上げると通知。HBMメモリの逼迫でSamsung・SK hynix・Micron...
-
✓
News Importance:High英発電所を4日間停止させた攻撃、イラン系ハッカーが「初成功」の重み
英国の発電施設がイラン政府と関係が疑われるハッカーの攻撃を受け4日間停止した。国家関与が疑われる攻撃...
-
✓
News Importance:Medium「Claude Code」が首位逆転、開発者の9割がAIエージェント常用 JetBrains調査
JetBrains Developer Ecosystem Survey 2026で、Claude CodeのシェアがGitHub Copilotを逆転し首位に浮上。...
-
✓
News Importance:Medium「50分の検証を3分に」Google Backstory、フェイク画像を追跡するAIツールの威力と死角
Google DeepMindの実験的AIツール「Backstory」が、画像の生成痕跡や出現履歴を自動追跡し、報道機関やOSIN...
-
✓
News Importance:Medium「Slack Code」登場 ― チャット全体を読むAIエージェントという新しい攻撃面
SalesforceがSlackにAIコーディングエージェント「Slack Code」を投入。チャット履歴全体を文脈にする設計...
-
✓
News Importance:MediumGPT-5.6値下げとGemma 4の1/40コストが示す「AI価格破壊戦争」
OpenAIがGPT-5.6 Solを最大33%値下げする一方、オープンモデルGemma 4が財務タスクで1/40のコストで同等品...
-
✓
News Importance:MediumTikTokが640億円で和解――「子ども向けモード」も個人情報を収集していた
米司法省とTikTok/ByteDanceが児童プライバシー保護法(COPPA)違反訴訟で総額4億ドル(約640億円)の和解に合...
-
✓
News Importance:MediumGoogle Antigravityがリモート操作対応 ― コーディングエージェントの「乗っ取り価値」がまた上がる
Google のコーディングエージェント「Antigravity」がブラウザ・スマホからのリモート操作に対応。過去の脆...
-
✓
News Importance:Medium「ChatGPTの医療助言」訴訟 — 同調するAIが招いた受診の遅れ、牧師が提訴
ChatGPTの助言に従い受診を遅らせた牧師が肺塞栓症で重篤化、OpenAIを提訴。同調的なAIの設計が高リスク領...
-
✓
News Importance:High「NTPサーバの日付が2006年に」Telstra全国通信障害、根本原因を追う
2026年7月、豪Telstraの通信網で全国障害が発生し緊急通報番号Triple Zeroにも影響。原因はNTPサーバ保守後...
-
✓
News Importance:Highcargo buildしただけで感染――Rustのproc-macro2なりすましでサプライチェーン攻撃
crates.ioで人気3クレートarrayref・internment・append-only-vecが改ざんされ、proc-macro2になりすました...
-
✓
News Importance:MediumYouTube広告に潜む偽TradingView、macOSのGatekeeperをすり抜けるマルウェア
YouTubeの有料動画広告を悪用し、偽TradingViewインストーラーでmacOSに侵入するマルウェアが確認された。...
-
✓
News Importance:High格納式ドアハンドルが招いた悲劇 テスラなど11社、中国史上最大の430万台リコールへ
テスラなど自動車11社が中国で約430万台をリコール。原因は格納式ドアハンドルの電源喪失時ロックで、死亡...
-
✓
News Importance:MediumGitHubが約8時間ダウン ― 自動拡張が見落とした「サイドカー」の限界
GitHubが約7時間47分の大規模障害に見舞われた。原因はIstioサイドカーの上限をオートスケーラーが見落とし...
-
✓
News Importance:Medium2.5次元アイドル事務所VOISING、BIツール不正アクセスで最大17万人分の"推し"データ流出
2.5次元アイドル「いれいす」運営元VOISINGが分析基盤(BIツール)への不正アクセスを公表。氏名・住所に加え...
-
✓
News Importance:Mediumポケモンセンター、物流委託先が侵害され英独顧客情報が流出
ポケモンセンター公式通販の英国・ドイツ向け配送を担う物流大手CEVA Logisticsのサーバーが侵害され、顧客...
-
✓
News Importance:MediumAIエージェント構築ツールLangflowに任意ファイル作成の脆弱性、CVSS 8.8
AIエージェント構築ツール「Langflow」のfiles APIにパストラバーサル脆弱性(CVE-2026-5027、CVSS 8.8)。認...
-
✓
News Importance:Medium悲願の世界1位、Blue Waterが日本発でDEF CON 34 CTFを制す
GMOサイバーセキュリティ byイエラエとFlattのエンジニアが参加する国際合同チーム「Blue Water」がDEF CON...
-
✓
News Importance:MediumSpaceX、AIコーディングツール「Cursor」を9兆円で買収完了 ― ゼロ保持ポリシーの行方
SpaceXがAIコーディングツール大手Cursorの開発元Anysphereを600億ドルで買収完了。ゼロデータ保持を看板に...
-
✓
News Importance:Medium「講談社になりすまし」フィッシング拡散 ―― 社員1人のクリックが3,812件流出の起点に
講談社の社員がフィッシングでログイン情報を盗まれ、乗っ取られたメールアカウントから取引先553件に偽メ...
-
✓
News Importance:Medium「さくらのレンタルサーバ」583アカウント不正ログイン、侵入経路は管理環境経由
さくらインターネットが「さくらのレンタルサーバ」で583アカウントの不正ログイン被害を公表。侵入経路は...
-
✓
News Importance:MediumStripe、AIゲートウェイ「OpenRouter」を1兆円超で買収か
Bloomberg報道によると決済大手StripeがAIゲートウェイ「OpenRouter」を70億ドル超で買収契約。800万人が使...
-
✓
News Importance:Mediumテレビ朝日系列に不正アクセス、マイナンバー含む4,543件の漏えいの恐れ
テレビ朝日メディアプレックスが認証情報窃取型の不正アクセスを受け、従業員・応募者・取引先計4,543件の...
-
✓
News Importance:High偽装採用で北朝鮮ハッカーを「雇う」、囮企業が全潜入手口を記録
セキュリティ企業3社が偽のDeFiスタートアップを設立し、北朝鮮の国家支援型ITワーカーを実際に採用。仮想...
-
✓
News Importance:LowOSS統合DB管理ツール「DbGate」公開 ― 便利な管理画面ほど「うっかり公開」が命取りに
MySQL・PostgreSQL・MongoDBなど複数DBを一つの画面で操作できるOSSツール「DbGate」が公開。便利な統合管...
-
✓
News Importance:MediumZedが「Delta」発表 ― Gitではなく会話まるごとをバージョン管理する新設計
ZedチームがAIと人間のコード対話を丸ごと記録する新環境Deltaを発表。CRDTベースのDeltaDBはGitのコミット...
-
✓
News Importance:MediumTelegramの「5拠点」主張に矛盾 — 独自OSINT調査で実質4拠点と判明
Telegramが公式に主張する5つのデータセンターを中国人開発者がMTProtoレベルで独自検証。DC3は事実上廃止...
-
✓
News Importance:MediumQwen3.8-27B、コーディングでOpus 4.6 Max超え主張 ― ライセンスはApache 2.0
Alibaba CloudがQwen3.8-27Bの重みを商用可のApache 2.0で公開。コーディング・PC操作系ベンチマークでClau...
-
✓
News Importance:MediumClaudeの「見えない透かし」、Anthropicが仕組みを公開——書き直せば消える弱点も
AnthropicがClaude生成文に埋め込む電子透かしの仕組みを公開。EU AI Act対応が狙いだが、書き直しや短文・...
-
✓
News Importance:Medium医療機器社員が患者X線画像を無断撮影・社内共有、9医療機関で発覚
医療機器大手スミス・アンド・ネフュー日本法人の社員が手術室で患者のX線画像を無断撮影し社内チャットで...
-
✓
News Importance:MediumLinuxデスクトップが平日22%へ急増、Cloudflareのデータが示す「見えない移行」
Cloudflareの計測で2026年7月、Linuxデスクトップの利用シェアが平日1日だけで22%まで急増。北米では前年比...
-
✓
News Importance:MediumChatGPTがPC操作履歴を"記憶"する新機能 ― Recallの教訓は活きているか
OpenAIがChatGPT Mac版に新機能「Computer History」を追加。アクセシビリティAPIでアプリ切替や操作を記録...
-
✓
News Importance:MediumAIが書いた脆弱性パッチ、完全修正はわずか26% 1Passwordが実測
1PasswordのOff-by-1 LabsがClaude CodeとCodexに実在の脆弱性6件のパッチを生成させ検証。完全修正はわず...
-
✓
News Importance:HighNetScaler ADC/Gatewayに認証不要のRCE脆弱性、SAML連携環境が標的に
Citrix NetScaler ADC/Gatewayに認証不要のRCE脆弱性(CVE-2026-8452)が判明。SAML連携環境が標的で、JPCERT...
-
✓
News Importance:High政府機関を狙った自律型AIエージェント攻撃、85アカウント突破の内実
転用されたOSSエージェント基盤が政府機関へ侵入。85アカウントをクラックし84件がSSO経由で内部展開、ガー...
-
✓
News Importance:MediumTENTIALの正規メール送信基盤が乗っ取り被害、フィッシング11万通を配信
TENTIALが利用するメール送信サービスのアクセスキーが不正利用され、正規ドメインから約11万通のフィッシ...
-
✓
News Importance:MediumXがタイムラインアルゴリズムを再オープンソース化、「Under the hood」で透明性強化 — だが悪用の設計図にもなりうる
Xが投稿ランキングのアルゴリズムを再びオープンソース化し、自分の投稿の扱いを可視化する「Under the hoo...
-
✓
News Importance:HighMetabaseに未認証SQLi、CVE-2026-72898はゼロデイで悪用進行中
BIツールMetabaseのパスワードリセットAPIに認証不要のSQLインジェクション脆弱性CVE-2026-72898が発覚。JP...
-
✓
News Importance:Medium南海電鉄、乗務員計画を「数カ月→1週間」に短縮 日立の疑似量子技術で
南海電鉄と日立製作所が疑似量子計算「CMOSアニーリング」で乗務員・車両の運用計画を自動作成する取り組み...
-
✓
News Importance:High米政府、民間企業による"サイバー反撃"作戦を解禁 トランプ大統領が覚書に署名
トランプ大統領が、審査を通過した民間企業に政府監督下でのサイバー攻撃作戦を認める覚書に署名した。ラン...
-
✓
News Importance:HighAIエージェント同士がマルウェアで妨害合戦、Anthropicが示す"多エージェント安全性"の壁
Anthropicが複数のAIエージェントを同一環境で働かせる実験を公開。縄張り争いでの自己複製マルウェア送信...
-
✓
News Importance:Medium「AIツール」検索から個人情報流出 ― 葬祭事業者を襲ったサポート詐欺
AIツール関連サイトの閲覧中に偽警告画面でサポート詐欺に遭い、遠隔操作で顧客情報約4000件が流出した恐れ...
-
✓
News Importance:High徳島県、住基ネット操作履歴HDDを紛失 ― 無承認の再委託が招いた46万件流出リスク
徳島県が住基ネットの操作履歴を記録したHDD2台を紛失、承認なき再委託の末に破砕された可能性が高いと公表...
-
✓
News Importance:MediumAI議事録「tl;dv」、テナント分離の不備で18万件超の会議データが閲覧可能に
AI会議録サービス「tl;dv」でテナント分離の不備が発覚。18万件超の会議メタデータが閲覧可能な状態にあり...
-
✓
News Importance:HighJetBrains TeamCityに認証不要RCE、CVSS9.8で悪用進行中
JetBrains TeamCityオンプレミス版に認証不要でOSコマンドを実行できる脆弱性が発覚。CVSSは満点近い9.8、...
-
✓
News Importance:High中国系ハッカーがAIエージェント群で台湾政府を自律攻撃、85アカウント侵害・原子力安全機関にも波及
イスラエルのDream Securityが、オープンソースAIエージェントを組み合わせた自律型攻撃ツールが台湾政府シ...
-
✓
News Importance:MediumGoogle「Pixel Tag」始動 ― 10億台網が生む追跡インフラの光と影
Googleが発表した紛失防止タグ「Pixel Tag」は、10億台のAndroid端末が位置情報を中継するクラウドソース網...
-
✓
News Importance:MediumSQLiteに"AI製"虚偽CVE ― NVDまで通過した捏造アドバイザリ
2026年7月、SQLiteの虚偽CVEアドバイザリ6件がMITREを通じてNVDやGitHub Advisory Databaseにまで取り込ま...
-
✓
News Importance:Medium英海兵隊ドローンのカメラが中国と定期通信、サプライチェーンの盲点露呈
英海兵隊が導入した偵察ドローン「K3スカウト」のカメラが中国のIPアドレスへ定期的な通信を送っていたこと...
-
✓
News Importance:MediumRIZAP運営ECサイトに不正スクリプト、カード情報流出の恐れ
RIZAP運営のECサイト「APORITOオンラインストア」に不正アクセス。決済ページに仕込まれた不正スクリプトが...
-
✓
News Importance:MediumSpaceXAI「Grok Bot」始動 ― 業務アプリにサインインする常時稼働AIエージェントの侵入面
SpaceXAIが専用クラウドPCで24時間稼働するAIエージェント「Grok Bot」を発表。業務アプリへの常時サインイ...
-
✓
News Importance:Highショップサーブに不正アクセス、購入者情報885万件流出 ― 気づかれなかった2カ月半
ECサイト構築サービス「ショップサーブ」が外部からの不正アクセスを受け、購入者情報や店舗の管理用ID・パ...
-
✓
News Importance:MediumEdgeもManifest V2廃止へ、フル版uBlock Origin消滅の足音
Microsoft EdgeがManifest V2拡張機能の段階的無効化を開始、年内にフル機能版uBlock Originが使えなくなる...
Explanations
-
✓
ExplanationWhat Is a VLAN? — Splitting One Switch Logically at Layer 2
A VLAN (Virtual LAN) logically divides one physical switch / one physical network into several indep...
-
✓
ExplanationWhat Is NAT? — Translating Private IPs to a Public IP, and Port Forwarding
NAT (Network Address Translation) rewrites IP addresses as packets cross a border router. The reason...
-
✓
ExplanationSPF Explained — Stopping Email Spoofing by Sender IP
SPF (Sender Policy Framework) lets a domain owner declare, in a DNS TXT record, which server IPs are...
-
✓
ExplanationWhat Is DHCP? — The DORA Flow That Hands Out IP Addresses Automatically
DHCP (Dynamic Host Configuration Protocol) automatically assigns an IP address, subnet mask, default...
-
✓
ExplanationWhat Is ARP? — Resolving a MAC Address from an IP Address
ARP (Address Resolution Protocol) is the foundational IPv4 protocol that asks, on a local network, '...
-
✓
ExplanationWiFiPumpkin3 Explained — A Rogue AP (Evil Twin) Attack Framework
WiFiPumpkin3 is a Python 3 rogue access point / Wi-Fi MITM framework developed by the P0cL4bs team (...
-
✓
ExplanationRustScan Explained — A Blazing-Fast Port Scanner in Rust with nmap Hand-off
RustScan is a blazing-fast port scanner written in Rust by Autumn "bee-san" Skerritt and the RustSca...
-
✓
ExplanationThe Michael Shutdown Attack — A Wi-Fi DoS That Weaponizes TKIP's Own Defense
The Michael shutdown attack (the TKIP MIC countermeasure attack) is a DoS that weaponizes the very d...
-
✓
ExplanationLinPEAS Explained — A Script That Auto-Enumerates Linux Privilege-Escalation Vectors
LinPEAS (Linux Privilege Escalation Awesome Script) is a shell script from Carlos Polop's PEASS-ng p...
-
✓
ExplanationEyeWitness Explained — Automating Mass Web-Host Screenshots for Recon Triage
EyeWitness is a recon / triage tool by Christopher Truncer (FortyNorth Security). When nmap or rusts...
-
✓
Explanation 🔥 PopularEvil Twin Attack Explained — How a Rogue AP Impersonates a Network with the Same SSID, and How to Defend
An Evil Twin attack stands up a rogue access point that impersonates a legitimate AP by broadcasting...
-
✓
Explanation 🔥 Popularaireplay-ng Explained — The Packet-Injection Tool of the aircrack-ng Suite
aireplay-ng is the packet-injection tool at the core of the aircrack-ng suite. It has two jobs: gene...
-
✓
Explanationwfuzz Explained — A Flexible Web Fuzzer Written in Python
wfuzz is a Python-based web fuzzer developed primarily by Xavier Mendez (@xmendez) — the ancestor of...
-
✓
ExplanationSQLMap Explained — The Go-To Tool for Automating SQL Injection Detection and Exploitation
SQLMap is an open-source Python tool by Bernardo Damele A.G. and Miroslav Stampar that automates det...
-
✓
Explanationwifite Explained — Automating Wireless Attacks End to End
wifite (wifite2) is a Python-based Wi-Fi auditing tool that orchestrates the aircrack-ng suite, reav...
-
✓
Explanationffuf Explained — A Fast Web Fuzzer Written in Go
ffuf (Fuzz Faster U Fool) is a fast Go-based web fuzzer released by Joona Hoikkala in 2018. It subst...
-
✓
ExplanationSQL Injection Explained — How It Works, Common Attack Techniques, and Defenses
SQL injection (SQLi) is a long-standing vulnerability where user input is concatenated directly into...
-
✓
ExplanationCSRF Explained — How Cross-Site Request Forgery Works and How to Defend Against It
CSRF (Cross-Site Request Forgery) is a vulnerability where the victim, while logged in to a target s...
-
✓
ExplanationWireshark Explained — The Standard Tool for Packet Capture and Analysis
Wireshark is the world's most widely used network analyzer — it captures packets straight off the wi...
-
✓
ExplanationLFI/RFI Explained — How Local/Remote File Inclusion Works, Attack Techniques, and Defenses
LFI (Local File Inclusion) and RFI (Remote File Inclusion) occur when a web application takes a file...
-
✓
ExplanationHTTP Security Headers — A Second Line of Defense That Tells the Browser How to Defend Itself
HTTP security headers are response headers the server uses to control browser behavior, blocking bro...
-
✓
ExplanationSSRF Explained — How Server-Side Request Forgery Works, Attack Techniques, and Defenses
SSRF (Server-Side Request Forgery) is a vulnerability where the web application's server fetches an...
-
✓
Explanation ▶_ ExerciseNmap Explained — Port Scanning, Service Detection, and OS Fingerprinting
Nmap (Network Mapper) is an open-source scanner for discovering hosts and services on a network. Rel...
-
✓
Explanation ✎ QuizXSS Explained — How Cross-Site Scripting Works and How to Defend Against It
Cross-site scripting (XSS) injects malicious script into a web application so that it runs inside an...
-
✓
ExplanationDeauthentication Attack — How Wi-Fi Disconnect Attacks Work and How PMF Stops Them
A Deauthentication Attack spoofs the IEEE 802.11 Deauthentication management frame (Subtype 0x0C) to...
-
✓
Explanation 🔥 PopularGhidra — How NSA's Open-Source Reverse Engineering Suite Works
Ghidra is the reverse-engineering suite the NSA used internally and then released as OSS under Apach...
-
✓
ExplanationFirewalls Explained — Five Generations, Stateful, NGFW / WAF / Cloud SGs
A firewall is an access-control device that drops any traffic that doesn't match a defined rule. Sta...
-
✓
ExplanationASM Explained — Attack Surface Management / EASM, CAASM, DRPS
ASM (Attack Surface Management) is the security discipline of discovering every entry point an attac...
-
✓
ExplanationRansomware — How It Works, Notable Incidents, and How to Defend
Ransomware is malware that 'encrypts files and demands a ransom for the decryption key'. Its ancesto...
-
✓
ExplanationTrojan Horse Explained — Types, Delivery Vectors, and Defenses
A Trojan horse is malware that disguises itself as legitimate software so the user installs it thems...
-
✓
ExplanationDDoS Explained — Mechanics, Categories, and Defenses
DDoS (Distributed Denial of Service) is the attack of burying a target under legitimate-looking requ...
-
✓
ExplanationBuffer Overflow Explained — Stack Mechanics, Exploits, and Mitigations
Buffer overflow — writing past the end of an allocated buffer and corrupting adjacent memory — is th...
-
✓
ExplanationKali Linux — The Pentest Distribution: Its Tools and How to Use Them
Kali Linux is the Debian-based 'attacker-optimised' Linux distribution maintained by Offensive Secur...
-
✓
ExplanationLinux Explained — Architecture, Commands, and Major Distributions
Strictly speaking, 'Linux' refers only to the kernel; what we use day-to-day is a stack of Linus's k...
-
✓
ExplanationWi-Fi (IEEE 802.11) Explained — Standards, Bands, and WPA
Wi-Fi shares Ethernet's frame format but rides on radio waves — a shared medium, half-duplex, collis...
-
✓
ExplanationEthernet Explained — Frame Format, MAC Addresses, and Switching
Ethernet is the L2 protocol that has survived nearly 50 years as the only practical choice for wired...
-
✓
ExplanationIPsec Explained — Tunnel/Transport Modes and the IKE Key Exchange
IPsec is a family of protocols that encrypts and authenticates IP packets themselves at L3 — rather...
-
✓
ExplanationTCP/IP Explained — The 4-Layer Model and TCP vs UDP
TCP/IP names both 'the protocol suite that runs the Internet' and 'the four-layer reference model th...
-
✓
ExplanationVPN Explained — IPsec, OpenVPN, and WireGuard Compared
A VPN (Virtual Private Network) is the umbrella term for virtually stretching an 'encrypted private...
-
✓
ExplanationThe OSI Reference Model — Seven Layers and How They Map to TCP/IP
The ISO Basic Reference Model (Open Systems Interconnection Reference Model) is the 1984 internation...
-
✓
ExplanationOSINT — Methods, Tools, and Real-World Examples of Open-Source Investigation
OSINT (Open Source Intelligence) is the umbrella term for the techniques and culture of investigatin...
-
✓
ExplanationSSL/TLS Explained — How HTTPS Encrypts the Web and How Certificates Work
SSL/TLS is the protocol that gives Internet traffic confidentiality, authentication, and tamper-dete...
-
✓
ExplanationIP Addresses Explained — IPv4 / IPv6 / Subnets / Routing
IP (Internet Protocol) handles addressing and packet forwarding at the heart of the TCP/IP stack. Th...
-
✓
ExplanationDNS Explained — How Name Resolution Works and the Record Types
DNS is the distributed database that converts memorable domain names into the IP addresses computers...
-
✓
ExplanationMetasploit Framework — How to Use It for Penetration Testing
Metasploit Framework is the open-source offensive-testing framework launched by HD Moore in 2003 and...
-
✓
ExplanationICMP Explained — How ping and traceroute Work and What the Message Types Mean
ICMP is the control protocol that signals errors and path conditions on IP networks. This article co...
-
✓
ExplanationSSH — How It Works, Public-Key Authentication, and Essential Commands
SSH is the protocol for operating another computer safely over the network. It replaced cleartext pr...
-
✓
ExplanationHTTP/HTTPS
HTTP/HTTPS is the protocol the World Wide Web uses to move content. This article covers the request/...
Experiments
-
✓
ExperimentEvilBox-One Writeup
I ran a penetration test against "EvilBox-One" from VulnHub.
-
✓
ExperimentDemonstrating Basic SQL Injection Vulnerabilities
I built a server with XAMPP and put fundamental SQL injection vulnerabilities through their paces.
-
✓
ExperimentVisiting the Dark Web
I read up on what the dark web actually is, then used the Tor Browser to observe it firsthand.
-
✓
ExperimentRunning a SYN Flood Experiment
SYN Flood is one of the easiest DoS attacks to launch against a server. I ran the experiment and wor...
-
✓
ExperimentIntercepting a Target's Traffic with ARP Spoofing (ARP Cache Poisoning)
ARP has no built-in authentication and accepts any reply unconditionally — two flaws that attackers...
-
✓
ExperimentStealing a Cookie with XSS
I built a deliberately vulnerable PHP search page and used it to demonstrate how a cookie can be sto...
Machines
Development
-
✓
DevelopmentI Built a Site Where You Fix Broken Linux Servers — Entirely in Your Browser
I launched Linux Troubleshooting Trainer, a free practice site where a real Debian Linux boots insid...
-
✓
DevelopmentBuilding a WinAPI App That Adds Programs to the Context Menu
The Windows context menu is a useful little surface. I built a tool that lets you register your favo...
-
✓
Development 🔥 PopularBuilding a Simple Port Scanner in C++
A port scanner is a tool that probes hosts on a network to find which ports are open.
-
✓
Development 🔥 PopularBuilding a Simple Keylogger in C++
A keylogger is software (or hardware) that watches keyboard input and records every key that's press...
All Articles
-
✓
DevelopmentI Built a Site Where You Fix Broken Linux Servers — Entirely in Your Browser
I launched Linux Troubleshooting Trainer, a free practice site where a real Debian Linux boots insid...
-
✓
ExplanationWhat Is a VLAN? — Splitting One Switch Logically at Layer 2
A VLAN (Virtual LAN) logically divides one physical switch / one physical network into several indep...
-
✓
ExplanationWhat Is NAT? — Translating Private IPs to a Public IP, and Port Forwarding
NAT (Network Address Translation) rewrites IP addresses as packets cross a border router. The reason...
-
✓
ExplanationSPF Explained — Stopping Email Spoofing by Sender IP
SPF (Sender Policy Framework) lets a domain owner declare, in a DNS TXT record, which server IPs are...
-
✓
ExplanationWhat Is DHCP? — The DORA Flow That Hands Out IP Addresses Automatically
DHCP (Dynamic Host Configuration Protocol) automatically assigns an IP address, subnet mask, default...
-
✓
ExplanationWhat Is ARP? — Resolving a MAC Address from an IP Address
ARP (Address Resolution Protocol) is the foundational IPv4 protocol that asks, on a local network, '...
-
✓
ExplanationWiFiPumpkin3 Explained — A Rogue AP (Evil Twin) Attack Framework
WiFiPumpkin3 is a Python 3 rogue access point / Wi-Fi MITM framework developed by the P0cL4bs team (...
-
✓
ExplanationRustScan Explained — A Blazing-Fast Port Scanner in Rust with nmap Hand-off
RustScan is a blazing-fast port scanner written in Rust by Autumn "bee-san" Skerritt and the RustSca...
-
✓
ExplanationThe Michael Shutdown Attack — A Wi-Fi DoS That Weaponizes TKIP's Own Defense
The Michael shutdown attack (the TKIP MIC countermeasure attack) is a DoS that weaponizes the very d...
-
✓
ExplanationLinPEAS Explained — A Script That Auto-Enumerates Linux Privilege-Escalation Vectors
LinPEAS (Linux Privilege Escalation Awesome Script) is a shell script from Carlos Polop's PEASS-ng p...
-
✓
ExplanationEyeWitness Explained — Automating Mass Web-Host Screenshots for Recon Triage
EyeWitness is a recon / triage tool by Christopher Truncer (FortyNorth Security). When nmap or rusts...
-
✓
Explanation 🔥 PopularEvil Twin Attack Explained — How a Rogue AP Impersonates a Network with the Same SSID, and How to Defend
An Evil Twin attack stands up a rogue access point that impersonates a legitimate AP by broadcasting...
-
✓
Explanation 🔥 Popularaireplay-ng Explained — The Packet-Injection Tool of the aircrack-ng Suite
aireplay-ng is the packet-injection tool at the core of the aircrack-ng suite. It has two jobs: gene...
-
✓
Explanationwfuzz Explained — A Flexible Web Fuzzer Written in Python
wfuzz is a Python-based web fuzzer developed primarily by Xavier Mendez (@xmendez) — the ancestor of...
-
✓
ExplanationSQLMap Explained — The Go-To Tool for Automating SQL Injection Detection and Exploitation
SQLMap is an open-source Python tool by Bernardo Damele A.G. and Miroslav Stampar that automates det...
-
✓
Explanationwifite Explained — Automating Wireless Attacks End to End
wifite (wifite2) is a Python-based Wi-Fi auditing tool that orchestrates the aircrack-ng suite, reav...
-
✓
Explanationffuf Explained — A Fast Web Fuzzer Written in Go
ffuf (Fuzz Faster U Fool) is a fast Go-based web fuzzer released by Joona Hoikkala in 2018. It subst...
-
✓
ExplanationSQL Injection Explained — How It Works, Common Attack Techniques, and Defenses
SQL injection (SQLi) is a long-standing vulnerability where user input is concatenated directly into...
-
✓
ExplanationCSRF Explained — How Cross-Site Request Forgery Works and How to Defend Against It
CSRF (Cross-Site Request Forgery) is a vulnerability where the victim, while logged in to a target s...
-
✓
ExplanationWireshark Explained — The Standard Tool for Packet Capture and Analysis
Wireshark is the world's most widely used network analyzer — it captures packets straight off the wi...
-
✓
ExplanationLFI/RFI Explained — How Local/Remote File Inclusion Works, Attack Techniques, and Defenses
LFI (Local File Inclusion) and RFI (Remote File Inclusion) occur when a web application takes a file...
-
✓
ExplanationHTTP Security Headers — A Second Line of Defense That Tells the Browser How to Defend Itself
HTTP security headers are response headers the server uses to control browser behavior, blocking bro...
-
✓
ExplanationSSRF Explained — How Server-Side Request Forgery Works, Attack Techniques, and Defenses
SSRF (Server-Side Request Forgery) is a vulnerability where the web application's server fetches an...
-
✓
Explanation ▶_ ExerciseNmap Explained — Port Scanning, Service Detection, and OS Fingerprinting
Nmap (Network Mapper) is an open-source scanner for discovering hosts and services on a network. Rel...