<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	 xmlns:media="http://search.yahoo.com/mrss/" >

<channel>
	<title>PSA.NGO</title>
	<atom:link href="https://psa.ngo/feed/" rel="self" type="application/rss+xml" />
	<link>https://psa.ngo</link>
	<description>关注数字隐私、信息安全、知识可及性</description>
	<lastBuildDate>Sat, 13 Jun 2026 18:11:03 +0000</lastBuildDate>
	<language>zh-Hans</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://psa.ngo/wp-content/uploads/2024/07/PSA-icon-150x150.png</url>
	<title>PSA.NGO</title>
	<link>https://psa.ngo</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Flock被曝将警方车牌检索与查询理由泄露至搜索引擎</title>
		<link>https://psa.ngo/news/flock-exposed-police-plate-searches-on-duckduckgo-and-bing/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Sat, 13 Jun 2026 18:11:03 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<category><![CDATA[科技公司]]></category>
		<category><![CDATA[隐私]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/flock-exposed-police-plate-searches-on-duckduckgo-and-bing/</guid>

					<description><![CDATA[自动车牌识别（ALPR）公司Flock被指意外在DuckDuckGo与Bing等常见搜索引擎中暴露警方正在检索 [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>自动车牌识别（ALPR）公司Flock被指意外在DuckDuckGo与Bing等常见搜索引擎中暴露警方正在检索的车牌信息及其检索理由。此事由隐私倡议者与404 Media测试发现，并有公司声明予以回应，相关细节首先由<a href="https://www.404media.co/flock-leaked-cops-license-plate-searches-via-duckduckgo-bing/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">404 Media<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>报道。</p>
<p>这起不寻常的数据暴露显示，监控技术可能通过出人意料的途径泄漏敏感信息。此前，404 Media也曾披露Flock部分摄像头实时画面对外可见。另据NoCo Privacy Coalition称，该组织于5月向媒体提供了多条搜索结果样例，显示与Flock检索相关的数据疑被索引。</p>
<p>目前公开报道未说明涉事规模、受影响机构范围或Flock采取的具体补救措施。Flock已就此事发表声明，但更多细节仍有待进一步披露。</p>
<p><a href="https://www.404media.co/flock-leaked-cops-license-plate-searches-via-duckduckgo-bing/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>执法部门打掉“AudiA6”勒索软件加密洗钱服务</title>
		<link>https://psa.ngo/news/audia6-crypto-laundering-service-dismantled/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Sat, 13 Jun 2026 18:11:03 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/audia6-crypto-laundering-service-dismantled/</guid>

					<description><![CDATA[据BleepingComputer报道，执法机构已摧毁名为“AudiA6”的勒索软件加密货币洗钱服务。该服务被 [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>据<a href="https://www.bleepingcomputer.com/news/legal/authorities-dismantle-audia6-ransomware-crypto-laundering-service/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">BleepingComputer<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>报道，执法机构已摧毁名为“AudiA6”的勒索软件加密货币洗钱服务。该服务被指为勒索团伙提供资金转移与“洗白”通道。</p>
<p>截至发稿，涉案金额、基础设施处置、涉案人员及司法进展等关键细节尚未公开。我们将继续关注官方通报与技术取证更新。</p>
<p><a href="https://www.bleepingcomputer.com/news/legal/authorities-dismantle-audia6-ransomware-crypto-laundering-service/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Microsoft修复Windows Server 2025上影响BitLocker恢复的故障</title>
		<link>https://psa.ngo/news/microsoft-fixes-bitlocker-recovery-bug-windows-server-2025/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Sat, 13 Jun 2026 15:11:00 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<category><![CDATA[科技公司]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/microsoft-fixes-bitlocker-recovery-bug-windows-server-2025/</guid>

					<description><![CDATA[据BleepingComputer报道，Microsoft已修复Windows Server 2025中与Bi [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>据<a href="https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-bitlocker-recovery-bug-on-windows-server-2025/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">BleepingComputer报道<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>，Microsoft已修复Windows Server 2025中与BitLocker恢复相关的一个故障。该问题被官方确认并发布修复，但报道未披露更具体的技术细节。</p>
<p>鉴于信息尚不完整，企业与机构管理员应关注Microsoft后续发布说明与已知问题列表，尽快在测试环境评估更新对关键业务工作负载与加密策略的影响，并有序推进生产环境部署，以降低潜在的访问受阻与数据可用性风险。</p>
<p><a href="https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-bitlocker-recovery-bug-on-windows-server-2025/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Nottingham University曝出数据泄露 逾45万名学生受影响</title>
		<link>https://psa.ngo/news/nottingham-university-data-breach-450k-students/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Sat, 13 Jun 2026 15:10:56 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<category><![CDATA[隐私]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/nottingham-university-data-breach-450k-students/</guid>

					<description><![CDATA[据BleepingComputer报道，Nottingham University发生数据泄露事件，受影响学生 [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>据<a href="https://www.bleepingcomputer.com/news/security/nottingham-university-data-breach-affects-over-450-000-students/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">BleepingComputer<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>报道，Nottingham University发生数据泄露事件，受影响学生超过45万人。报道未披露更多技术细节或涉及的数据类型，事件仍在进一步发展中，更多信息有待后续确认。</p>
<p><a href="https://www.bleepingcomputer.com/news/security/nottingham-university-data-breach-affects-over-450-000-students/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>macOS 27测试版调整引导检测：Asahi Linux在Apple Silicon上暂被“隐身”</title>
		<link>https://psa.ngo/news/macos-27-beta-hides-asahi-linux-on-apple-silicon/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Fri, 12 Jun 2026 19:11:25 +0000</pubDate>
				<category><![CDATA[开源]]></category>
		<category><![CDATA[科技公司]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/macos-27-beta-hides-asahi-linux-on-apple-silicon/</guid>

					<description><![CDATA[Apple于本周WWDC发布的macOS 27测试版，因更改了启动管理器和“启动磁盘”对可引导系统卷的识别方式 [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>Apple于本周WWDC发布的macOS 27测试版，因更改了启动管理器和“启动磁盘”对可引导系统卷的识别方式，导致Asahi Linux分区在Apple Silicon设备上不再显示，用户暂时无法从该分区引导Linux。相关变化由Asahi Linux团队披露，并提醒用户留意影响<a href="https://www.theregister.com/os-platforms/2026/06/10/macos-27-beta-boots-asahi-linux-off-apple-silicon/5253587" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">细节与风险<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>。</p>
<p>团队建议Asahi Linux用户暂勿升级至macOS 27测试版；若必须尝鲜，应先在次要卷安装一份macOS 26，或将macOS 27安装到次要卷，以保留可回退的稳定系统。Asahi Linux安装器已临时阻止在macOS 27上执行安装；对于未保留稳定版macOS便直接安装测试版的用户，团队表示将不提供支持。</p>
<p>Asahi Linux称已向Apple提交错误报告，并判断此问题更可能是测试版阶段的意外变动而非刻意封堵。已升级测试版且发现Asahi分区“消失”的用户无需恐慌——分区仍在，数据未丢失。尽管项目今年经历人事波动，Asahi Linux仍持续推进对Apple Silicon的适配，4月发布了Fedora Asahi Remix 44，此次状况被形容为“路上的小坎”，并非终点。</p>
<p><a href="https://www.theregister.com/os-platforms/2026/06/10/macos-27-beta-boots-asahi-linux-off-apple-silicon/5253587" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>GitHub公布npm安全调整，瞄准软件供应链风险</title>
		<link>https://psa.ngo/news/github-npm-security-changes-supply-chain-attacks/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Fri, 12 Jun 2026 19:11:25 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<category><![CDATA[开源]]></category>
		<category><![CDATA[科技公司]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/github-npm-security-changes-supply-chain-attacks/</guid>

					<description><![CDATA[据安全媒体报道，GitHub宣布将对npm实施一系列安全调整，以应对不断增加的供应链攻击风险，强化JavaSc [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>据安全媒体报道，<a href="https://www.bleepingcomputer.com/news/security/github-announces-npm-security-changes-to-tackle-supply-chain-attacks/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">GitHub宣布将对npm实施一系列安全调整<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>，以应对不断增加的供应链攻击风险，强化JavaScript生态的包管理与发布流程安全。</p>
<p>报道指出，此举旨在降低依赖被投毒、账号被盗用等带来的传播风险；更多实施细节与时间表尚待进一步披露，相关变更预计将影响开发者的发布与依赖管理实践。</p>
<p><a href="https://www.bleepingcomputer.com/news/security/github-announces-npm-security-changes-to-tackle-supply-chain-attacks/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>与China相关的JDY僵尸网络扩大针对U.S. military网络行动</title>
		<link>https://psa.ngo/news/china-linked-jdy-botnet-expands-targeting-us-military-networks/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Fri, 12 Jun 2026 17:10:51 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<category><![CDATA[政治]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/china-linked-jdy-botnet-expands-targeting-us-military-networks/</guid>

					<description><![CDATA[据BleepingComputer报道，与China相关联的JDY僵尸网络正扩大针对U.S. military [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>据<a href="https://www.bleepingcomputer.com/news/security/china-linked-jdy-botnet-expands-targeting-of-us-military-networks/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">BleepingComputer<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>报道，与China相关联的JDY僵尸网络正扩大针对U.S. military网络的行动；该媒体指称此类活动近期出现扩张迹象，但更详尽的技术细节与影响范围尚未全面披露。</p>
<p>鉴于公开信息有限，事件仍在发展，相关机构与研究方后续回应与证据披露值得关注。</p>
<p><a href="https://www.bleepingcomputer.com/news/security/china-linked-jdy-botnet-expands-targeting-of-us-military-networks/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>ServiceNow通报安全事件：客户数据疑遭曝光</title>
		<link>https://psa.ngo/news/servicenow-security-incident-customer-data-exposed/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Thu, 11 Jun 2026 18:11:06 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<category><![CDATA[科技公司]]></category>
		<category><![CDATA[隐私]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/servicenow-security-incident-customer-data-exposed/</guid>

					<description><![CDATA[企业软件供应商ServiceNow披露一起安全事件，称部分客户数据可能遭到曝光。目前事件仍在调查中，受影响范围 [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>企业软件供应商ServiceNow披露一起安全事件，称部分客户数据可能遭到曝光。目前事件仍在调查中，受影响范围与具体数据类型尚未公开。根据<a href="https://www.bleepingcomputer.com/news/security/servicenow-discloses-security-incident-exposing-customer-data/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">BleepingComputer的报道<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>，公司已启动响应流程并通知相关客户。</p>
<p>ServiceNow表示已采取遏制与补救措施，并与客户及相关方沟通后续支持与风险评估。有关事件成因、时间线及潜在影响的更多细节仍待进一步披露与核实。</p>
<p><a href="https://www.bleepingcomputer.com/news/security/servicenow-discloses-security-incident-exposing-customer-data/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>与研究员交锋加剧，Microsoft在补丁日修复其曝出的两枚高危0-day</title>
		<link>https://psa.ngo/news/microsoft-patches-two-zero-days-amid-rift-with-nightmare-eclipse/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Thu, 11 Jun 2026 18:11:06 +0000</pubDate>
				<category><![CDATA[信息安全]]></category>
		<category><![CDATA[研究]]></category>
		<category><![CDATA[科技公司]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/microsoft-patches-two-zero-days-amid-rift-with-nightmare-eclipse/</guid>

					<description><![CDATA[据报道，Microsoft在本周二的例行更新中发布修复，堵住两枚由安全研究员Nightmare Eclipse [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>据<a href="https://arstechnica.com/security/2026/06/locked-in-heated-rivalry-with-researcher-microsoft-fixes-0-day-they-disclosed/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">报道<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>，Microsoft在本周二的例行更新中发布修复，堵住两枚由安全研究员Nightmare Eclipse披露的高危零日漏洞；此前双方因漏洞处置安排产生激烈摩擦。</p>
<p>报道提到，Nightmare Eclipse近月来接连公开数个高危缺陷并附上概念验证代码，使其在未修补前即构成“零日”。该研究员称，之所以选择公开，是因为Microsoft违背了双方就相关漏洞沟通时达成的一项安排。</p>
<p>此外，文中还称，另一枚同样由Nightmare Eclipse披露的零日似乎也已获得修补，但更多技术细节与影响范围仍有待厂商与平台进一步披露与确认。</p>
<p><a href="https://arstechnica.com/security/2026/06/locked-in-heated-rivalry-with-researcher-microsoft-fixes-0-day-they-disclosed/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>消息称Canada拟在Online Harms法案中纳入“16岁以下禁用社交媒体”条款</title>
		<link>https://psa.ngo/news/canada-online-harms-bill-ban-social-media-under-16/</link>
		
		<dc:creator><![CDATA[psa]]></dc:creator>
		<pubDate>Wed, 10 Jun 2026 14:11:16 +0000</pubDate>
				<category><![CDATA[可及性]]></category>
		<category><![CDATA[政治]]></category>
		<category><![CDATA[隐私]]></category>
		<guid isPermaLink="false">https://psa.ngo/news/canada-online-harms-bill-ban-social-media-under-16/</guid>

					<description><![CDATA[据Global News援引一位消息人士称，Canada即将提出的Online Harms法案拟包含一项新规： [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>据<a href="https://globalnews.ca/news/11894610/canada-social-media-ban-teens-online-harms-bill/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">Global News援引一位消息人士<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a>称，Canada即将提出的Online Harms法案拟包含一项新规：禁止16岁以下未成年人使用社交媒体。该消息显示，相关限制将被写入法案文本，但目前仍以匿名消息来源为依据。</p>
<p>报道未披露执行机制（如年龄验证方式）、实施时间表或豁免情形，也未见政府官员公开确认。有关细节仍待官方发布与进一步审查。</p>
<p><a href="https://globalnews.ca/news/11894610/canada-social-media-ban-teens-online-harms-bill/" rel="noopener nofollow external noreferrer" target="_blank" data-wpel-link="external" class="wpel-icon-right">来源<i class="wpel-icon dashicons-before dashicons-external" aria-hidden="true"></i></a></p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
