PLINKFEED
검색구독
ALLAI-MLBACKENDFRONTENDDEVOPSSECURITYMOBILEDATABASECLOUDOTHER

© 2026 PLINKFEED — AI가 선별한 IT 기술 뉴스

구독소개개인정보처리방침이용약관

알아야 할 것

보안·AI 이슈 중 챙겨봐야 할 소식

알아야 할 것보안 · AI 이슈시도해볼 것따라 해보는 기술
10·security·기타·The Hacker News·2026. 09. 11.

GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

GitLab의 CVSS 10 보안 취약점이 공개 직후 실시간 공격에 노출됐다.

GitLab's CVSS 10 vulnerability exposed to in-the-wild probes right after disclosure.

#gitlab#cve-2026-85706
요약 보기원문 →
10·security·기타·The Hacker News·2026. 09. 09.

SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution

SAP가 CVSS 10.0의 커널 결함에 대한 패치를 발표했습니다.

SAP has released patches for a CVSS 10.0 kernel flaw allowing unauthenticated remote code execution.

#cve-2026-44756#sap#security#vulnerabilities
요약 보기원문 →
10·security·기타·The Hacker News·2026. 09. 03.

Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root

Cisco Nexus 9000에서 심각한 취약점 발견, 원격으로 악성 코드 실행 가능.

A critical flaw in Cisco Nexus 9000 allows remote attackers to run code as root.

#cisco#nexus9000#cve-2026-20212#iosxr
요약 보기원문 →
10·security·기타·The Hacker News·2026. 08. 21.

Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution

Microsoft Entra ID에서 원격 코드 실행 취약점이 발견되었습니다.

A critical remote code execution vulnerability in Microsoft Entra ID has been exploited in the wild.

#microsoft#entra#azure#id#cve-2026-69836
요약 보기원문 →
10·security·기타·Hacker News·2026. 08. 20.·▲ 407💬 366

Malicious Rust crate Arrayref runs a build-time payload

Rust crate Arrayref의 빌드 타임 페이로드를 포함하는 악성 코드에 대한 공격

Malicious Rust crate Arrayref contains a build-time payload attack.

#rust#supply chain#arrayref#crates#malware
요약 보기원문 →
10·security·기타·The Hacker News·2026. 08. 15.

SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch

SAP Commerce Cloud의 CVE-2026-58231 취약점이 공격 대상이 되고 있습니다.

CVE-2026-58231 vulnerability in SAP Commerce Cloud is being actively exploited.

#sap commerce cloud#cve-2026-58231
요약 보기원문 →
10·security·기타·The Hacker News·2026. 08. 17.

Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads

폼인에이터 워드프레스 플러그인에서 치명적인 원격 코드 실행 취약점이 발견됨.

A critical RCE vulnerability found in the Forminator WordPress plugin.

#wordpress#forminator#php#rce#cve-2026-15748
요약 보기원문 →
10·security·기타·The Hacker News·2026. 08. 12.

SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

SAP Commerce Cloud의 심각한 보안 취약점으로 인해 공격자가 임의의 코드를 실행할 수 있습니다.

A critical vulnerability in SAP Commerce Cloud allows unauthenticated attackers to execute arbitrary code.

#sap#commerce cloud#cve-2026-58231
요약 보기원문 →
10·security·기타·The Hacker News·2026. 08. 08.

Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication

Metabase의 심각한 보안 취약점이 악용되어 인증 없이 관리 접근이 가능함.

A critical vulnerability in Metabase allows admin access without authentication.

#metabase#sql#vulnerability#zero-day
요약 보기원문 →
10·security·기타·The Hacker News·2026. 07. 29.

Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI Memory

Ruflo의 중대한 보안 취약점이 발견되어 원격 코드 실행이 가능해졌다.

A critical security flaw in Ruflo allows unauthenticated remote code execution.

#ruflo#anthropic#openai#cve-2026-59726#rce
요약 보기원문 →
10·security·기타·The Hacker News·2026. 07. 11.

Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During Install

jscrambler 8.14.0 npm 패키지가 해킹되어 악성코드가 배포됐다.

The jscrambler 8.14.0 npm package was compromised, dropping malware during installation.

#jscrambler#npm#infostealer#rust#malware
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 11.

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

시스코 FMC 취약점이 공격에 이용되어 자격증명이 도용되고 있다.

Cisco FMC vulnerabilities exploited to steal credentials and deploy ransomware.

#cisco#fmc#cve-2026-20079#ransomware#qilin
요약 보기원문 →
9·security·기타·GeekNews·2026. 09. 11.

Forgejo 16.0.3 이하의 심각한 원격 코드 실행(RCE) 취약점

Forgejo의 16.0.3 이하 버전에 심각한 RCE 취약점이 발견됨.

A serious RCE vulnerability found in Forgejo versions 16.0.3 and below.

#forgejo#git
요약 보기원문 →
9·security·기타·Hacker News·2026. 09. 10.·▲ 155💬 57

Forgejo <=16.0.3 Critical RCE

Forgejo <=16.0.3에서 발견된 심각한 원격 코드 실행 취약점.

Critical RCE vulnerability found in Forgejo <=16.0.3.

#forgejo#rce
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 10.

CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline

CISA가 Cisco, Citrix, Fortinet 취약점을 경고하고 2026년 9월 12일까지 패치를 요구합니다.

CISA warns of vulnerabilities in Cisco, Citrix, and Fortinet, requiring patches by September 12, 2026.

#cisa#cve-2026-20079#citrix#fortinet#cisco
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 10.

Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE

Check Point의 VPN 인증서 취약점이 발견되어 원격 코드를 실행할 수 있는 위험이 존재합니다.

Check Point disclosed VPN certificate flaws allowing unauthenticated remote code execution.

#vpn#rce#firewall#security_gateways#check_point
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 09.

New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root

cPanel의 취약점으로 이메일 권한을 가진 계정이 서버의 root 권한으로 코드 실행 가능.

cPanel flaw allows a mail-privileged hosting account to run code as root.

#cpanel#whm#emailtrack
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 09.

N-able N-central Pre-Auth RCE Flaw Exploited in the Wild

CISA가 N-able N-central의 심각한 보안 결함을 알려드렸습니다.

CISA warns of a severe security flaw in N-able N-central.

#cve-2026-86218#cisa#rce#n-able#n-central
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 09.

F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans

F5 BIG-IP APM 기기에서 PHP 웹 셸이 메모리에 주입되어 디스크 스캔을 회피하는 악성 코드가 발견됨.

Malware on F5 BIG-IP APM injects a PHP web shell into memory, evading disk scans.

#f5#big-ip#apm#malware#php
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 09.

Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

Chrome의 V8 엔진에서 제로데이 취약점이 발견되어 패치가 이루어졌다.

A zero-day vulnerability in Chrome's V8 engine has been patched following active exploitation.

#chrome#v8#javascript#webaassembly#cve-2026-87491
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 09.

Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days

마이크로소프트가 974개의 취약점을 패치하며 기록을 경신했다.

Microsoft sets a record by patching 974 vulnerabilities, including two actively exploited zero-days.

#windows#office#sql#developer tools
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 09.

Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed

Microsoft Defender의 ShieldBreak 취약점이 우회될 수 있음을 보여주는 PoC가 공개되었다.

A PoC demonstrating a bypass for Microsoft Defender's ShieldBreak vulnerability has been released.

#microsoft#defender#cve-2026-69414#shieldbreak#proof-of-concept
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 09.

Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA

정보 탈취 로그로 AI 토큰이 유출되어 MFA를 우회할 수 있는 위험이 증가하고 있다.

Info-stealer logs are leaking AI tokens that can bypass MFA, increasing security risks.

#lumma stealer#vidar#api#credential#session tokens
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 08.

Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours

AI를 활용한 해킹 그룹이 6시간 만에 자격증명 수천 개를 탈취했습니다.

AI-driven hackers stole thousands of credentials in just six hours.

#ai#threat intelligence#credential harvesting#autonomous agents
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 08.

ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account

ChatGPT의 취약점을 통해 사용자의 Gmail 데이터가 공격자에게 전송될 수 있음.

A flaw in ChatGPT can cause a victim's Gmail data to be sent to an attacker.

#chatgpt#gmail#check point research
요약 보기원문 →
9·security·기타·Krebs on Security·2026. 09. 08.

Microsoft Plugs Nearly 1,000 Security Holes

마이크로소프트가 보안 취약점 974개를 수정하는 패치를 발표했다.

Microsoft issued updates to fix 974 security vulnerabilities, the largest patch batch ever.

#windows#ai#vulnerabilities#security#patch
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 08.

Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell

Adobe가 Magento의 제로데이 취약점에 대한 보안 패치를 발표했습니다.

Adobe released security patches for a zero-day vulnerability in Magento.

#adobe#magento#cve-2026-75650#rust#php
요약 보기원문 →
9·ai-ml·기타·The New Stack·2026. 09. 07.

“Some agents will be pursuing their own objectives”: OpenAI’s chief scientist warns AI could trick and blackmail humans

OpenAI의 수석 과학자가 AI가 인간을 속일 수 있다고 경고했습니다.

OpenAI's chief scientist warns that AI could trick and blackmail humans.

#openai#astra#ai
요약 보기원문 →
9·security·분석·GeekNews·2026. 09. 07.

2억 1,600만 대의 감시 TV — LG 스마트 TV의 문제 [영상]

LG 스마트 TV에서 주요 보안 문제가 발견되었습니다.

Major security issues found in LG Smart TVs.

#lg#acr#voice transcription#data collection#security
요약 보기원문 →
9·security·기타·GeekNews·2026. 09. 08.

강남언니 약 22만 명 개인정보 유출…상담 사진과 실제 시술 내역까지 포함

강남언니에서 22만 명의 개인정보가 유출되었습니다.

220,000 personal data records were leaked from Gangnam Unni.

#개인정보#유출#상담정보#힐링페이퍼#강남언니
요약 보기원문 →