注册并分享邀请链接,可获得视频播放与邀请奖励。

与「cookie」相关的搜索结果

cookie 贴吧
一个关键词就是一个贴吧,路径全站唯一。
创建贴吧
用户
未找到
包含 cookie 的内容
🚨 Threat Intelligence | The StealC Info-Stealing Chain Behind the Qwen Impersonation Repository SlowMist Security Team identified a #GitHub# repository impersonating local quantized weights for Qwen 3.8 27B. A real Q4_K_M 27B package should exceed 16 GB. The asset delivered was only 487 KB — no GGUF weights, just three files: Application.cmd, a renamed LuaJIT interpreter, and an obfuscated Lua script disguised as cert.txt. The official #Qwen# project was not compromised. The repo kept the look of a normal offline model project, while the malicious ZIP sat in assets/. After deobfuscation, the script collects host data, takes a screenshot, and POSTs them to C2. When the hardcoded server fails, it reads a fallback C2 from a Polygon contract via eth_call, so operators can rotate infrastructure with a single on-chain transaction. Preserved C2 responses then delivered an inner payload we attribute to #StealC#, targeting: 🔹 Browser logins, cookies, and history — including a Chrome App-Bound Encryption bypass 🔹 Email, WinSCP, and Steam credentials 🔹 Wallet-related files and extension data, dispatched by server-side tasks MistEye reconstructed the multi-stage chain and compared 29 similar ZIPs across 23 repositories using the same Lua delivery stack. Between two collection dates, repositories, filenames, the outer PE, and the AES key had already rotated. A 27B model that downloads in 487 KB is not a model. Inspect asset size and unpack downloaded packages before running them. Read the full analysis 👇
显示更多
KFC is releasing a new Oreo chicken burger The collab features cookie-style buns, mashed potatoes covered in crushed Oreo pieces, a fried chicken fillet and launches in China on August 28
显示更多
0
3.7K
57.5K
2.8K
转发到社区
COOKIES! An NBA Defense Week treat… some of last season’s best on-ball steals 🍪
0
21
402
32
转发到社区
damn this cookie good
0
54
1.8K
37
转发到社区
一个超级Skill,让你的Codex增强十倍! 开源一套我花了数月打造的Codex组合技:yichen-web-research Skill——涵盖全网和社媒搜索、社媒读取下载和归档、私人收藏链接导出和音视频ASR转写。 四个核心Skill: ⓵ yichen-unified-search:Codex的眼镜——全网+社媒搜索,适合深度思考问题、查找实时信息、搜寻开源工具...... 1. 全网网页、新闻、官网:AnySearch 公共搜索。 2. 法律、金融、学术、安全等垂直领域:AnySearch 垂直搜索。 3. GitHub:gh search 搜索仓库、代码、Issue 和 PR。 4. 微信公众号:OpenCLI,通过搜狗微信进行匿名公开搜索。 5. 小红书:OpenCLI,读取Chrome登录态进行站内搜索,需要当轮授权。 6. 抖音:OpenCLI,读取Chrome登录态进行低频站内搜索,需要当轮授权。 7. 今日头条:OpenCLI,使用专用匿名环境搜索文章和图文内容。 8. X/Twitter:Grok OAuth+grok-consult,执行X平台公开内容搜索。 9. B站:bili search,匿名搜索公开视频和相关信息。 10. YouTube:yt-dlp ytsearch,匿名搜索公开视频,只提取信息和链接。 11. 小宇宙:AnySearch,通过 site: 搜索公开内容。 12. 其他指定网站:AnySearch,通过 site:目标域名 搜索已被公开收录的页面。 13. 多关键词批量搜索:AnySearch batch_search,并行搜索多组关键词。 14.未指定平台的社交媒体讨论:AnySearch 的社交媒体垂直搜索,先发现公开候选。 ⓶yichen-content-archive:读取用户直接提供的网页、小红书、抖音、公众号、YouTube、B站和小宇宙链接,并且下载归档。 1. 普通网页:用 Jina Reader 或 Web Reader 提取正文并转换成Markdown。 2. 小红书:解析网页中的 INITIAL_STATE 获取正文、图片和视频直链,必要时经授权使用登录态。 3. 抖音:用 Playwright监听视频详情接口,提取元数据和无水印视频地址。 4. 微信公众号:通过公开文章解析接口读取单篇正文,批量文章使用本地公众号归档工具。 5. YouTube:用 yt-dlp 读取视频信息,下载视频、音频、字幕或枚举播放列表。 6. B站:用 bili-cli 读取视频信息,用 yt-dlp 下载视频或枚举合集。 7. 小宇宙:匿名解析单集页面中的音频地址并下载,播客清单需要OpenCLI授权枚举。 ⓷yichen-bookmarks-export:只读导出小红书、抖音、X 的私人收藏链接。 1. X:使用本机 Field Theory CLI,读取 Chrome 登录态并调用 X 内部 GraphQL Bookmarks 接口,同步到本地索引后由 Python 脚本导出链接。 2. 小红书:复用已登录的 Chrome 会话,进入收藏页后自动滚动,通过页面 DOM 提取笔记链接并去重,保留 xsec_token,不导出 Cookie。 3. 抖音:复用已登录的 Chrome 会话,滚动收藏列表并解析页面中的 /video/ 和 /note/ 链接。 ⓸yichen-asr:用 Step ASR 或豆包 ASR 转写已有音视频。两者效果差距不大,豆包略微好一点点。 1. 阶跃星辰Step ASR大概一个小时一毛五: 2.火山引擎豆包ASR大概一个小时一块钱: yichen-web-research Skill相当于一个入口,如果没有特殊指定,你的所有上述相关的操作会自动分配对应的Skill,如果能记住单独Skill的名字,也可以单独调用。 让你的Codex起飞吧:
显示更多
0
74
1.4K
313
转发到社区
Cookie Monster got Indy HYPED at last year's NASCAR In-Season Challenge Final 🍪🤩 (via @IMS/IG)
hope you like cookies 🍪
0
68
2.4K
73
转发到社区
Me need a cookie and a nap.
0
424
22.7K
5.4K
转发到社区
So neatly arranged, it's impossible not to love this cookies, you'll love it.
0
411
707
214
转发到社区
Codex更新了内置浏览器,现在能开多个标签页、导入cookie和密码。两天后Claude Code也跟着上了类似更新。 这意味着Agent不再只是写代码,而是能直接接管你平时用浏览器干的那些事——登录、填表、跨标签操作,人机交互的入口在变。
显示更多