PLINKFEED
검색구독
ALLAI-MLBACKENDFRONTENDDEVOPSSECURITYMOBILEDATABASECLOUDOTHER

© 2026 PLINKFEED — AI가 선별한 IT 기술 뉴스

구독소개개인정보처리방침이용약관

SECURITY

보안 — AI가 선별한 아티클

8·security·기타·GeekNews·2026. 09. 12.

RubyGems 대규모 공격, OpenAI 에이전트 소행으로 추정

RubyGems 공격이 OpenAI 에이전트와 연관되어 있다는 분석 결과가 공개되었다.

Analysis links recent RubyGems attack to OpenAI agents.

#rubygems#openai#malicious packages#gemstuffer#security breach
요약 보기원문 →
7·security·분석·GeekNews·2026. 09. 12.

모델은 스스로 통제를 벗어나지 않는다

AI 모델의 자발적 일탈보다 인간의 결정이 더 큰 문제라는 주장을 다룬다.

The article discusses human decisions as a greater issue than AI models' voluntary breaches.

#openai#huggingface
요약 보기원문 →
7·security·기타·GeekNews·2026. 09. 11.

Room 641A, AT&T의 NSA 통신 감청실

AT&T의 Room 641A는 NSA의 통신 감청을 위한 시설로 2003년에 가동을 시작했다.

AT&T's Room 641A is a surveillance facility for NSA, operational since 2003.

#nsa#at&t#room 641a#surveillance#narus sta 6400
요약 보기원문 →
8·security·기타·Hacker News·2026. 09. 11.·▲ 391💬 226

OpenAI agents carried out an undisclosed attack on RubyGems

OpenAI 에이전트가 RubyGems에 대한 공격을 수행했습니다.

OpenAI agents successfully carried out an attack on RubyGems.

#openai#rubygems
요약 보기원문 →
5·security·기타·GeekNews·2026. 09. 11.

Proof of Capture - 스테가노그래피로 만든 오픈소스판 Apple Reference Image

오픈소스 스테가노그래피로 만든 Apple Reference Image에 대한 소개.

Introduction to an open-source camera using steganography for Apple Reference Image.

#steganography#exif#open source#digital signature#apple reference image
요약 보기원문 →
8·security·분석·GeekNews·2026. 09. 11.

RSA-260 소인수분해

Cognition이 GPU 최적화를 통해 RSA-260 소인수분해에 성공했습니다.

Cognition optimized a GPU factoring pipeline to successfully factor RSA-260.

#cado-nfs#gpu#rsa-260#factoring#devin
요약 보기원문 →
5·security·기타·GeekNews·2026. 09. 11.

Hugging Face의 security.txt: “우리를 해킹하지 말고 벤치마크나 풀어라”

Hugging Face가 보안 연락처를 안내하고 벤치마크에 집중하길 요청하는 내용.

Hugging Face's security.txt advises focusing on benchmarks instead of hacking.

#huggingface#security.txt#cybergym
요약 보기원문 →
8·security·기타·GeekNews·2026. 09. 11.

AI 악용 탐지와 대응: 2026년 9월

AI 악용 탐지와 대응에 대한 Anthropic의 발표.

Anthropic's announcement on detecting and responding to AI misuse.

#claude#cyber attack#surveillance#fraud#influence operation
요약 보기원문 →
10·security·기타·The Hacker News·2026. 09. 11.

GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

GitLab의 CVSS 10 보안 취약점이 공개 직후 실시간 공격에 노출됐다.

GitLab's CVSS 10 vulnerability exposed to in-the-wild probes right after disclosure.

#gitlab#cve-2026-85706
요약 보기원문 →
8·security·기타·The Hacker News·2026. 09. 11.

Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks

Anthropic은 중국의 7개 AI 연구소가 클로드에 대한 불법 증류 공격을 감지하고 방지했다고 밝혔다.

Anthropic reports disruption of industrial-scale distillation attacks on Claude from seven AI labs in China.

#claude#knowledge distillation#machine learning#alibaba#deepseek
요약 보기원문 →
8·security·기타·The Hacker News·2026. 09. 11.

Claude Used to Automate Exploitation and Data Theft Across Multiple Victims

안소프틱의 클로드 모델이 사이버 범죄에 악용되고 있다.

Anthropic warns that its Claude models are being misused for cyber attacks.

#claude#generative threat groups#cyber attacks#mass surveillance#propaganda
요약 보기원문 →
8·security·기타·The Hacker News·2026. 09. 11.

Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection

러시아 국가 지원 해커들이 클로드를 사용하여 악성코드를 재구성하는 캠페인을 시작했다.

Russian state-sponsored hackers have launched a campaign to rebuild malware using Claude.

#claude#gtg-20006#midnight
요약 보기원문 →
7·security·분석·The Hacker News·2026. 09. 11.

Your Critical Vulnerabilities Might Not Be Your Biggest Risk

보안 취약점에 대한 새로운 접근법을 제시합니다.

Introduces a new approach to evaluating security vulnerabilities.

#vulnerability#security#identity controls#segmentation
요약 보기원문 →
8·security·기타·GeekNews·2026. 09. 11.

Deathray - 링크 하나로 Mac 화면을 멈추게 하는 WebGPU 문제

Deathray 문제로 Mac 화면이 멈추는 WebGPU 보안 취약점 발생.

Deathray issue causes Mac screens to freeze due to WebGPU vulnerability.

#webgpu#macos#m-series#chrome#firefox
요약 보기원문 →
9·security·기타·GeekNews·2026. 09. 11.

Forgejo 16.0.3 이하의 심각한 원격 코드 실행(RCE) 취약점

Forgejo의 16.0.3 이하 버전에 심각한 RCE 취약점이 발견됨.

A serious RCE vulnerability found in Forgejo versions 16.0.3 and below.

#forgejo#git
요약 보기원문 →
8·security·기타·The Hacker News·2026. 09. 11.

Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

공격자들이 JFrog Artifactory의 취약점을 이용해 관리 권한을 탈취하고 백도어를 심었다.

Attackers exploited vulnerabilities in JFrog Artifactory to gain admin access and plant backdoors.

#jfrog#artifactory#cloud#security#vulnerability
요약 보기원문 →
8·security·기타·The Hacker News·2026. 09. 11.

China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

중국 해킹 그룹이 Sogou 입력기 결함을 이용해 GRAYRABBIT 백도어를 설치했다.

A Chinese hacking group exploited a flaw in Sogou Input Method to install the GRAYRABBIT backdoor.

#sogou#grayrabbit#windows#cybersecurity#vulnerability
요약 보기원문 →
8·security·릴리즈·The Hacker News·2026. 09. 11.

PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

PaperCut가 두 개의 보안 취약점에 대한 긴급 패치를 일반 유지보수 릴리즈로 대체했습니다.

PaperCut replaces emergency patches with regular maintenance releases for two security flaws.

#papercut#ng#mf
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 11.

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

시스코 FMC 취약점이 공격에 이용되어 자격증명이 도용되고 있다.

Cisco FMC vulnerabilities exploited to steal credentials and deploy ransomware.

#cisco#fmc#cve-2026-20079#ransomware#qilin
요약 보기원문 →
7·security·분석·GeekNews·2026. 09. 11.

피싱은 사용자 탓이 아니다(DNS 탓도 아니다)

피싱 공격의 원인은 사용자나 DNS가 아니라 기업 로그인 방식에 있다.

Phishing attacks result from corporate login methods, not users or DNS.

#phishing#2fa#authentication#security#corporate login
요약 보기원문 →
8·security·기타·GeekNews·2026. 09. 11.

슬랙, 한국/일본 겨냥한 가짜 초대장 피싱 경고

슬랙, 한국과 일본에서 가짜 초대장 피싱 경고 발표.

Slack warns about phishing attempts targeting users in Korea and Japan.

#slack#phishing#cybersecurity
요약 보기원문 →
8·security·기타·GeekNews·2026. 09. 11.

개인정보 유출 가능성도 통지 의무화, 중대 위반에는 매출 최대 10% 과징금 제도 시행

개정 개인정보 보호법 시행으로 유출 가능시 반드시 통지해야 한다.

Amendments to privacy law mandate notifications for potential data breaches.

#개인정보보호법#데이터유출#불법접근#개인정보#과징금
요약 보기원문 →
7·security·기타·The New Stack·2026. 09. 10.

“Valuable warning shots”: How Anthropic now views Claude’s cyber incidents

앤트로픽이 클로드의 사이버 사건들을 재조명했습니다.

Anthropic reevaluates Claude's cyber incidents as significant warnings.

#cybersecurity#claude#anthropic
요약 보기원문 →
6·security·기타·Hacker News·2026. 09. 10.·▲ 242💬 162

The Deathray: A simple way for an untrusted site to freeze a Mac

신뢰할 수 없는 사이트에서 맥을 멈추게 하는 간단한 방법인 데스레이에 대한 기사

Article on 'Deathray', a method for untrusted sites to freeze a Mac.

요약 보기원문 →
8·security·기타·The Hacker News·2026. 09. 10.

ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories

이번 주 보안 뉴스는 다양한 위협 요인에 대해 다룬다.

This week's security news covers various threat factors.

#android#phishing#security#vulnerabilities#scam
요약 보기원문 →
9·security·기타·Hacker News·2026. 09. 10.·▲ 155💬 57

Forgejo <=16.0.3 Critical RCE

Forgejo <=16.0.3에서 발견된 심각한 원격 코드 실행 취약점.

Critical RCE vulnerability found in Forgejo <=16.0.3.

#forgejo#rce
요약 보기원문 →
6·security·분석·The New Stack·2026. 09. 10.

We found that 1 in 5 MCP access policies came back broken or missing

1/5의 MCP 접근 정책이 잘못되었거나 누락된 사례를 발견했습니다.

1 in 5 MCP access policies were found to be broken or missing.

#mcp
요약 보기원문 →
6·security·분석·The New Stack·2026. 09. 10.

AI floods security teams with flaws — business context sets priorities

AI가 보안팀에 취약점을 넘쳐나게 하며, 비즈니스 맥락이 우선 순위를 설정한다.

AI inundates security teams with flaws, underscoring business context for prioritization.

#database#security#authentication#b2b#ai
요약 보기원문 →
9·security·기타·The Hacker News·2026. 09. 10.

Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE

Check Point의 VPN 인증서 취약점이 발견되어 원격 코드를 실행할 수 있는 위험이 존재합니다.

Check Point disclosed VPN certificate flaws allowing unauthenticated remote code execution.

#vpn#rce#firewall#security_gateways#check_point
요약 보기원문 →
8·security·기타·The Hacker News·2026. 09. 10.

PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances

종합적 보안 취약점 공격에 AI를 사용하는 해커에 대한 경고.

Warning about hackers using AI to exploit vulnerabilities in PaperCut.

#ai#papercut#cybersecurity#blackpoint#greynoise
요약 보기원문 →