News
-
"Android’s June 2023 Security Update Patches Exploited Arm GPU Vulnerability"Google recently announced security updates for the Android operating system to resolve over 50 vulnerabilities, including an Arm Mali GPU flaw exploited by spyware vendors. Tracked as CVE-2022-22706, the exploited bug is a kernel driver issue that…
-
"Research Finds Greater Societal Awareness Needed to Protect Our Privacy and Data From AI When We Die"A study suggests raising society's awareness of "ghostbots" and including a "Do not bot me" clause in wills and other contracts to prevent people from being digitally resurrected without their permission when they die. The term "ghostbots" refers to…
-
"Cisco Counterfeiter Pleads Guilty to $100m Scheme"A Florida man has recently pleaded guilty to making over $100m from importing and selling counterfeit Cisco networking devices. Onur Aksoy, 39, of Miami, pleaded guilty to conspiring with others to traffic in counterfeit goods, to commit mail fraud…
-
"Malicious Actors Manipulating Photos and Videos to Create Explicit 'Deepfake' Content and Sextortion Schemes"The FBI is warning the public about malicious actors creating synthetic content, commonly known as "deepfakes," through the manipulation of harmless photographs or videos in order to target victims. Artificial Intelligence (AI)-enabled content creation…
-
"New Malware Campaign Leveraging Satacom Downloader to Steal Cryptocurrency"A new malware campaign uses the Satacom downloader as a channel for distributing stealthy malware that can steal cryptocurrency via a malicious browser extension for Chromium-based browsers. The malware dropped by the Satacom downloader primarily aims to…
-
"Dissecting the Dark Web Supply Chain: Stealer Logs in Context"Stealer logs are one of the main threat vectors for today's companies, but many security teams continue to focus on leaked credentials and are unaware of the significant threat posed by devices infected with infostealer malware. There are numerous…
-
"High-Risk Vulnerabilities Patched in ABB Aspect Building Management System"Prism Infosec discovered two high-risk vulnerabilities in ABB's Aspect Control Engine Building Management System (BMS). Users can monitor a building's performance with ABB's Aspect BMS, which combines real-time integrated control, supervision, data…
-
"US Aerospace Contractor Hacked With 'PowerDrop' Backdoor"Hackers using native Windows tools infected at least one US defense contractor with a novel backdoor, potentially paving the way for further malware implantation or worse. In a June 6 report, Adlumin researchers dubbed the backdoor "PowerDrop," after a "…
-
"Amid Volumes of Mobile Location Data, New Framework Reduces Consumers' Privacy Risk, Preserves Advertisers' Utility"The use of mobile technologies to collect and analyze location information on individuals has generated large amounts of consumer location data, further supporting a complex multibillion-dollar system in which consumers can exchange personal data for…
-
"OWASP Lists 10 Most Critical Large Language Model Vulnerabilities"The Open Worldwide Application Security Project (OWASP) has released a list of the top 10 most critical vulnerabilities commonly found in Large Language Model (LLM) applications, emphasizing their potential impact, exploitability, and prevalence. The…
-
"Informing and Inspiring the Next Generation of Cyber Talent Through Competition"US Cyber Games kicked off the competition to identify and select the Season III US Cyber Team last week. Over the next few months, athletes aged 18 to 24 will participate in events that will culminate with the selection of the top cyber athletes in…
-
"NASA Website Flaw Jeopardizes Astrobiology Fans"A vulnerability in NASA's astrobiology website could have led users to malicious websites by masking a dangerous URL with NASA's name. The Cybernews research team independently found an open redirect vulnerability impacting NASA's astrobiology website.…