-
Darktrace says a LiteLLM AI gateway linked to Amazon Bedrock was compromised for cryptomining after signs of exposed SSH activity.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Wiz found GhostApproval symlink flaws in major AI coding assistants that could hide sensitive file targets, bypass approval checks and enable system access too.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Kaspersky details how the newly named Armored Likho APT uses BusySnake Stealer, AI-generated loaders, and phishing to target government and energy organizations.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
China-linked UNK_MassTraction targets US and Canadian universities through Roundcube flaws, stealing sessions and opening access to research mail servers.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Vietnamese police, aided by US Homeland Security and ACE, arrested seven people accused of running HiAnime, tied to $12.85M in ad revenue.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Noma Labs details GitLost, a prompt injection flaw that made GitHub’s AI agent expose private repo data through a crafted public issue and guardrail failures.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Compare leading and best email security solutions with AI threat detection, phishing defense, malware blocking, and DLP features for teams.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Spanish police and the FBI arrested an alleged Cyber Army of Russia Reborn member as international efforts against pro Russia cyberattacks continue worldwide.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Malwarebytes links fake Google and Cloudflare verification pages to shared ClickFix infrastructure delivering StealC, NetSupport and other malware.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶


