随着大语言模型(下统称LLM)的兴起,其在软件安全测试领域的应用前景备受瞩目。传统模糊测试(下统称Fuzzing)依赖人工编写测试用例和规则,这种方法不仅耗时费力,还难以覆盖复杂的输入空间。而LLM凭...
Crypto-Wallet Stealer之Clipboard篇
参考文献[1] Microsoft 365 Defender Research Team. In hot pursuit of ‘cryware’: Defending hot wallets fro...
ATT&CK - 资源劫持
资源劫持 对手可能会利用增补系统的资源,以解决可能影响系统和/或托管服务可用性的资源密集型问题。 资源劫持的一个常见目的是验证加密货币网络的交易并获得虚拟货币。对手可能会消耗足够的系统资源,从而对受影...
前安全工程师被判3年监禁:盗窃1230万美元的加密货币交易
A former security engineer has been sentenced to three years in prison in the U.S. for charges relat...
新型的网络钓鱼工具针对加密货币用户
A novel phishing kit has been observed impersonating the login pages of well-known cryptocurrency se...
Bitzlato加密货币交易所创始人在洗钱计划中认罪
The Russian founder of the now-defunct Bitzlato cryptocurrency exchange has pleaded guilty, nearly 1...
朝鲜Lazarus集团通过加密货币黑客攻击牟利30亿美元
Threat actors from the Democratic People's Republic of Korea (DPRK) are increasingly targeting the c...