<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>挖矿木马 on Lynx Tech Blog</title><link>https://blog.lynxflow.co/en/tags/%E6%8C%96%E7%9F%BF%E6%9C%A8%E9%A9%AC/</link><description>Recent content in 挖矿木马 on Lynx Tech Blog</description><generator>Hugo -- gohugo.io</generator><language>en</language><lastBuildDate>Wed, 02 Sep 2026 01:00:00 +0800</lastBuildDate><atom:link href="https://blog.lynxflow.co/en/tags/%E6%8C%96%E7%9F%BF%E6%9C%A8%E9%A9%AC/index.xml" rel="self" type="application/rss+xml"/><item><title>How a Monitoring Probe Became a Master Key: The Nezha Panel Compromise, Retraced in Full, with a Cross-Domain Table of Major Vulnerabilities</title><link>https://blog.lynxflow.co/en/posts/nezha-probe-panel-takeover-vuln-history/</link><pubDate>Wed, 02 Sep 2026 01:00:00 +0800</pubDate><guid>https://blog.lynxflow.co/en/posts/nezha-probe-panel-takeover-vuln-history/</guid><description>&lt;img src="https://blog.lynxflow.co/images/nezha-probe-panel-takeover-vuln-history.png?v=090818" alt="Featured image of post How a Monitoring Probe Became a Master Key: The Nezha Panel Compromise, Retraced in Full, with a Cross-Domain Table of Major Vulnerabilities" /&gt;Introduction: the official list it never made In November 2021, the U.S. government opened a special catalog: every vulnerability &amp;ldquo;proven to be used in real attacks&amp;rdquo; would be recorded there, and federal agencies would be ordered to patch on a deadline. It&amp;rsquo;s called CISA KEV — the Known Exploited Vulnerabilities catalog. (For the terminology — what CVE/KEV actually mean and where they come from, see this site&amp;rsquo;s explainer.) As of the August 31, 2026 release, KEV holds 1,687</description></item></channel></rss>