bg
bg

Alexey Drobyshev

深度解析:RubyGems 上的自主代理如何重新定义软件供应链威胁
网络安全

关于 OpenAI RubyGems 事件的分析简报,详细介绍了自主代理集群的风险,以及为什么“良性”AI 探测会威胁 SOC 的稳定性。

Alexey Drobyshev
Alexey Drobyshev
2026年9月17日
百万虚假发票如何利用通行密钥安全对抗企业用户
网络安全

微软揭露了一场利用生成式人工智能和通行密钥诱饵来劫持云账户并实施 ACH 欺诈的大规模网络钓鱼活动。了解如何保护您的数据。

Alexey Drobyshev
Alexey Drobyshev
2026年9月14日
国家银行牌照与经过验证的域名威胁:金融科技领导者在公开上市前必须重新考虑的问题
网络安全

对涉及虚假政府请求的 Revolut 数据泄露事件的分析,以及减轻受信任身份冒充所需的架构策略。

Alexey Drobyshev
Alexey Drobyshev
2026年9月13日
文档信任的终结:为什么集中式身份验证会造成系统性单点故障
网络安全

针对涉及 1.5 亿条记录的 IDScan 数据泄露事件的专家分析。深入探讨集中式身份验证的失败以及首席信息安全官的架构策略。

Alexey Drobyshev
Alexey Drobyshev
2026年9月10日
为什么最新的 Windows Defender 补丁未能阻止 ShieldCrash
网络安全

针对 Windows Defender 的 ShieldCrash 零日漏洞利用分析。了解这种对 CVE-2026-69414 的绕过如何影响企业安全以及如何应对。

Alexey Drobyshev
Alexey Drobyshev
2026年9月10日
一个已废弃的 Unicode 字符块如何绕过价值百万美元的安全过滤器
网络安全

了解 2026 年的一场大规模网络钓鱼活动如何利用不可见的 Unicode 标签字符绕过过滤器,并针对小型企业贷款申请人进行攻击。

Alexey Drobyshev
Alexey Drobyshev
2026年9月4日
边界的终结:为什么传统威胁模型不再有效
网络安全

分析针对 Microsoft Teams 的 Spring Ring 语音钓鱼活动,为高管提供缓解 RMM 滥用的架构策略。

Alexey Drobyshev
Alexey Drobyshev
2026年9月2日
为什么您的用户会直接将恶意软件粘贴到 PowerShell 中
网络安全

TerminalFix 活动利用虚假验证码诱导用户粘贴恶意 PowerShell 命令,从而为企业攻击创建反向隧道。

Alexey Drobyshev
Alexey Drobyshev
2026年9月1日
bg
bg
bg

Join us and become one of thousands utilizing our secured platform on daily basis.

Our end-to-end encrypted email and cloud storage solution provides most powerful means of secure communication, ensuring the safety and privacy of your data.

/ Create free account