Blog

Imagem que ilustra um hacker.

NSFOCUS Monthly APT Insights – February 2026

abril 7, 2026 | NSFOCUS

Regional APT Threat Situation In February 2026, the global threat hunting system of FUYING Lab detected a total of 21 APT attack activities. These activities were primarily concentrated in regions including South Asia, East Asia, and Central Asia, as shown in the figure below. Regarding the activity levels of different groups, the most active APT […]

Imagem que ilustra um hacker.

NSFOCUS Monthly APT Insights – January 2026

abril 2, 2026 | NSFOCUS

Regional APT Threat Situation In January 2026, the global threat hunting system of Fuying Lab detected a total of 26 APT attack activities. These activities were primarily concentrated in regions including East Asia, South Asia, and Eastern Europe, as shown in the figure below. Regarding the activity levels of different groups, the most active APT […]

Axios Front-End Library npm Supply Chain Poisoning Alert

abril 1, 2026 | NSFOCUS

Overview On March 31, NSFOCUS CERT detected that the npm repository of the HTTP client library Axios was poisoned by the supply chain. The attacker bypassed the normal GitHub Actions CI/CD pipeline of the project, changed the account email address of the axios maintainer to an anonymous ProtonMail address, and manually released a malicious version […]

Microsoft’s March Security Update of High-Risk Vulnerability Notice for Multiple Products

março 30, 2026 | NSFOCUS

Overview On March 11, NSFOCUS CERT detected that Microsoft released the March Security Update patch, which fixed 83 security issues involving widely used products such as Windows, Microsoft Office, Microsoft SQL Server, Azure, etc., including high-risk vulnerability types such as privilege escalation and remote code execution. Among the vulnerabilities fixed by Microsoft’s monthly update this […]

Uma imagem que ilustra uma segurança cibernética, como um firewall.

O que é um Firewall? Funcionalidades e por que usar?

março 30, 2026 | Eduardo Guerra

Sabe-se que a segurança é fundamental para os usuários de computadores. Como atualmente estes aparelhos se tornam parte do dia-a-dia, é muito comum ver um aumento nas ameaças à segurança. Na hora de monitorar e filtrar esses possíveis ataques, foi desenvolvido o Firewall, que ajuda a bloquear o acesso não autorizado ou malicioso à redes, […]

AI Infrastructure LiteLLM Supply Chain Poisoning Alert

março 27, 2026 | NSFOCUS

Overview Recently, NSFOCUS Technology CERT detected that the GitHub community disclosed that there was a credential stealing program in the new version of LiteLLM. Analysis confirmed that it had suffered supply chain poisoning by the TeamPCP group on PyPI. It stole the publishing permission credentials by hacking into the security scanning tool Trivy used in […]

NSFOCUS Threat Intelligence: Building an OpenClaw Defense System with Multiple-Layer Protection

março 24, 2026 | NSFOCUS

In 2026, AI agents are being widely used. OpenClaw has become a high-frequency efficiency improvement tool for enterprises and developers with its autonomous decision-making and local execution capabilities. However, several authoritative security agencies have recently issued warnings: OpenClaw is facing multi-dimensional security threats from supply chain poisoning to remote control. When internal employees privately deploy […]

RSAC 2026 Innovation Sandbox | ZeroPath: From Alarm Accumulation to Executable Fixes

março 22, 2026 | NSFOCUS

Company Profile ZeroPath is an AI-native application security startup founded in 2024, and its core products also use the eponymous brand ZeroPath. The company focuses on using AI to automatically discover, verify and fix code vulnerabilities, trying to break through the limitations of traditional SAST, SCA, Secrets scanning and IaC scanning that are fighting each […]

RSAC 2026 Innovation Sandbox | Humanix: People-Oriented Social Engineering Attack Detection and Response

março 20, 2026 | NSFOCUS

Company Profile Humanix (see Figure 1) is a cybersecurity company focusing on human-centric threat detection and response, dedicated to protecting enterprises from social engineering attacks against “people”, headquartered in the San Francisco Bay Area of the United States [1]. Its core concept is: Traditional security focuses a lot of energy on systems and boundaries, and most […]

RSAC 2026 Innovation Sandbox | Clearly AI: Automated Software Security Platform Empowered by AI

março 19, 2026 | NSFOCUS

Company Profile Founded in 2024, Clearly AI is a company focused on automating enterprise security and privacy audits, headquartered in Seattle, Washington, USA. The company was co-founded by Emily Choi-Greene and Joe Choi-Greene, and the core team has deep practical and technical accumulation: CEO Emily worked at Amazon for 5 years, leading the Alexa AI […]