News
-
"Google Paid $10 Million in Bug Bounty Rewards Last Year"Google recently revealed that it had awarded $10 million to 632 researchers from 68 countries in 2023 for finding and responsibly reporting security flaws in the company's products and services.
-
"Researchers Jailbreak AI Chatbots With ASCII Art -- ArtPrompt Bypasses Safety Measures to Unlock Malicious Queries"A team of researchers has developed ArtPrompt, a new approach for bypassing the safety measures built into Large Language Models (LLMs).
-
"Researchers Develop Tantalizing Method to Study Cyberdeterrence"An experimental multiplayer online war game named "Tantalus," after a figure from Greek mythology, provides insightful data for real-world cyberattacks.
-
"EquiLend Ransomware Attack Leads to Data Breach"Fintech firm EquiLend has recently started sending notification letters to its employees to inform them of a data breach resulting from a January 2024 ransomware attack.
-
"Researchers Expose Microsoft SCCM Misconfigs Usable in Cyberattacks"Security researchers at SpecterOps have developed a knowledge base repository for attack and defense techniques stemming from the improper setup of Microsoft's Configuration Manager (MCM).
-
"Google's Gemini AI Vulnerable to Content Manipulation"Despite its safeguards and safety protocols, Google's Gemini Large Language Model (LLM) is still vulnerable to attacks that could cause it to generate harmful content, reveal sensitive data, or perform malicious actions.
-
"Three-Quarters of Cyber Incident Victims Are Small Businesses"According to security researchers at Sophos, over three-quarters of cyber incidents impacted small businesses in 2023, with ransomware having the biggest impact on these firms.
-
"Japan Blames North Korea for PyPI Supply Chain Cyberattack"According to Japanese cybersecurity officials, the North Korea-affiliated Lazarus Group recently launched a supply chain attack on the PyPI software repository for Python apps.
-
"New Banking Trojan CHAVECLOAK Targets Brazilian Users via Phishing Tactics"A new banking Trojan called "CHAVECLOAK" targets Brazilian users through phishing emails with PDF attachments.
-
"Generative AI Poised to Make Substantial Impact on DevSecOps"Generative Artificial Intelligence (AI) is expected to help with secure code writing, code analysis, test creation, documentation, and various other DevSecOps functions.
-
"In Effort to Bolster Government Cybersecurity, Biden Administration Takes Step to Ensure Secure Development Practices"To help ensure a safe and secure digital ecosystem for all Americans, the Biden-Harris Administration has approved a secure software development attestation form, taking a step in implementing its requirement that those who produce software used by the
-
"Magnet Goblin Exploits Ivanti Vulnerabilities"Security researchers at Check Point Security have uncovered a trend involving the exploitation of 1-day vulnerabilities, including two in Ivanti Connect Secure VPN.