News
-
"Department of Commerce Announces New Guidance, Tools 270 Days Following President Biden's Executive Order on AI"On the 270th day after President Biden's Executive Order (EO) on the Safe, Secure, and Trustworthy Development of Artificial Intelligence (AI), the US Department of Commerce announced the release of new guidance and software to help improve the safety,
-
"Microsoft 365 Users Targeted by Phishers Abusing Microsoft Forms"Phishing campaigns involving Microsoft Forms have increased to steal Microsoft 365 login credentials. Threat actors use breached business partners' and vendors' email accounts to send phishing emails.
-
"Millions of Websites Susceptible XSS Attack via OAuth Implementation Flaw"Researchers at Salt Labs have discovered and published details of a Cross-Site Scripting (XSS) attack that could affect millions of websites worldwide.
-
"Misconfigured Selenium Grid Servers Abused for Monero Mining"Threat actors are abusing a Selenium Grid misconfiguration to deploy a modified XMRig tool for Monero cryptocurrency mining.
-
"PKfail Vulnerability Allows Secure Boot Bypass on Hundreds of Computer Models"According to Binarly, there is a Secure Boot issue affecting hundreds of computer models. The vulnerability, called "PKfail," enables attackers to run malicious code during the device's boot process.
-
"FraudGPT and Other Malicious AIs Are the New Frontier of Online Threats. What Can We Do?"Researchers at Monash University give their insights on the rise of dark Large Language Models (LLMs), what we can do to protect ourselves, and the role of government in regards to regulations on Artificial Intelligence (AI).
-
"Researchers Improve Method to Discover Anomalies in Data"Washington State University researchers have developed an algorithm that improves upon discovering data anomalies, including in streaming data.
-
"Technology Policy Experts Argue That It Is Time to Rethink Data Privacy Protections"The Association for Computing Machinery's (ACM) global Technology Policy Council (TPC) has released "TechBrief: Data Privacy Protection," which highlights the growing ineffectiveness of controls over information privacy.
-
"Striking the Balance in Communication Privacy and Lawful Interception"A team of researchers from the University of Luxembourg and the KASTEL Security Research Labs has devised a security protocol that allows court-authorized monitoring of end-to-end encrypted or anonymous communications while also detecting illicit or ex
-
"NVIDIA Patches Flaw in Jetson Software Used in AI-Powered Systems"NVIDIA has patched a high-severity flaw impacting its Jetson series computing boards.
-
"This AI-Powered Cybercrime Service Bundles Phishing Kits with Malicious Android Apps"The Spanish-speaking cybercrime group "GXC Team" bundles phishing kits with malicious Android apps, advancing Malware-as-a-Service (MaaS) offerings.
-
"US Offers $10 Million Reward for Information on North Korean Hacker"The US Department of State is offering $10 million for information on Rim Jong Hyok, an alleged member of the hacking group "APT45," which operates on behalf of a North Korean military intelligence agency, the Reconnaissance General Bureau.