Web Security

Zero Tolerance for Malicious Intrusions—NSFOCUS’s Full-Chain WEB Security Protection System

março 9, 2026

As regional military conflicts escalate, cyberspace has become a critical battleground, with core WEB application systems frequently targeted by adversaries. Attackers tamper with application content and inject anti-social or anti-government rhetoric, disrupting cyberspace order and inciting public panic, severely damaging institutional credibility. WEB services serve as key platforms for information dissemination and core operations across […]

AI-Empowered Cybersecurity: Key Events and Emerging Trends in 2025

fevereiro 20, 2026

In September 2025, Anthropic disclosed a groundbreaking incident—the world’s first autonomous AI-driven cyberattack. This event, documented as the first large-scale cyber offensive primarily executed by AI with minimal human intervention, underscored the immense threat posed by AI agents in malicious applications. The attackers posed as representatives of a legitimate cybersecurity firm conducting a defense assessment. They […]

Top Security Incidents of 2025: Chrome Browser 0-Day Vulnerability Exploitation

fevereiro 18, 2026

Background In March 2025, cybersecurity researchers disclosed a highly sophisticated targeted attack campaign named “Operation ForumTroll.” Orchestrated by an unidentified state-sponsored APT group, the operation leveraged a Google Chrome 0-day vulnerability (CVE-2025-2783) as its core weapon. This vulnerability enabled sandbox escape, allowing arbitrary code execution on victims’ Windows systems and granting full control over the targeted […]

Top Security Incidents of 2025: Lazarus Group’s Cryptocurrency Heist

Imagem que ilustra como a inteligência artificial pode ser uma fácil entrada para hackers.

fevereiro 16, 2026

Event Summary In February 2025, the North Korea-linked APT group Lazarus launched a highly sophisticated supply chain attack against the prominent cryptocurrency exchange Bybit, successfully stealing over 400,000 ETH and stETH—valued at approximately $1.5 billion. This incident marks the largest single security breach in the global cryptocurrency sector to date. The attack exposed critical vulnerabilities […]

Top Security Incidents of 2025:  The Emergence of the ChainedShark APT Group

fevereiro 13, 2026

In 2025, NSFOCUS Fuying Lab disclosed a new APT group targeting China’s scientific research sector, dubbed “ChainedShark” (tracking number: Actor240820). Been active since May 2024, the group’s operations are marked by high strategic coherence and technical sophistication. Its primary targets are professionals in Chinese universities and research institutions specializing in international relations, marine technology, and related […]

An Overview of 2025 Global APT Attack Landscape

Imagem que ilustra como a inteligência artificial pode ser uma fácil entrada para hackers.

fevereiro 11, 2026

In 2025, the global cybersecurity situation continued to deteriorate, with a significant rise in the use of 0-day vulnerabilities in Advanced Persistent Threat (APT) attacks, which became a key driver of accelerating threats. Numerous 0-day vulnerabilities were exploited in operating systems, browsers, network devices, and security software, enabling attackers to bypass defenses for extended periods […]

AI-PTS: Breaking Traditional Barriers, Revolutionizing Penetration Testing

fevereiro 9, 2026

AI Penetration Testing System (AI-PTS) Leveraging AI to empower penetration testing, the AI-PTS integrates AI technology with traditional penetration testing methods. It delivers an AI+ defense system tailored for real-world attack scenarios. The AI-PTS is designed to help security professionals conduct non-destructive security assessments for networks, systems, and applications, significantly improving testing efficiency and quality. […]

NSFOCUS WAF New Version: Intelligent Asset Self-Identification, Synchronizing Security Protection with Business Growth

Imagem que ilustra o que é WAF.

julho 28, 2025

Customer Pain Points “Gap” in security protection after new business launch A financial company launched a new business system; the O&M team had to manually add the server IP to the WAF whitelist. Due to the cumbersome approval process, the configuration was not completed until 3 days later. During this period, hackers had invaded the […]

Key Events of 2024 for NSFOCUS WAF

janeiro 8, 2025

Summarizing the past, embracing the future. Let’s take a recap at the key events of NSFOCUS WAF in 2024. Market Recognition Market share: From 2019 to 2023, NSFOCUS WAF has been ranked 1st in China’s WAF hardware market share. March 2024: Recognized by Forrester, a leading market research company, for our outstanding Bot Management capabilities. […]

Are More Than Two-Thirds of Websites Vulnerable?

Uma imagem que ilustra vários icones de tecnologia e um notebook ao fundo.

setembro 25, 2024

Cybersecurity threats have become a norm, with old vulnerabilities still frequently exploited and new ones emerging continuously, posing significant challenges to web security. Zero-day vulnerabilities have become a critical tool for attackers to breach defenses. According to a Gartner survey, over 75% of information security attacks focus on web applications, and more than two-thirds of […]

Search

Inscreva-se no Blog da NSFOCUS