> TODAY'S SUMMARY (101 articles)
Today's cybersecurity news highlights several significant threats and trends. OpenAI has partnered with Ukraine to enhance the cybersecurity of critical infrastructure amid ongoing conflict with Russia. A member of the Ryuk ransomware gang received a two-year prison sentence for extorting over $1.2 million. The ShinyHunters group claims to have breached the FBI, demanding the retraction of a report criticizing their methods. Vulnerabilities in multiple platforms, including GitHub and WordPress, continue to pose risks, with leaked GitHub App keys still being exploited. Additionally, a new Windows malware, CLOSEDQUORUM, utilizes AI models to determine its actions, showcasing the evolving landscape of AI in cyberattacks.
|
// AI-powered summary generated at 16:00
33% of respondents in a survey admitted to successfully hacking their own or another organization.
60% of an organization’s Web traffic may be generated by programs that operate as an agent for a user or another program.
Earlier today, a federal judge ordered Apple to comply with the FBI’s request for technical assistance in the recovery of the San Bernadino gunmen’s iPhone 5C. Since then, many have argued whether these requests from the FBI are technically feasible given the support for strong encryption on iOS dev...
Photo sharing network finally gets serious about account security
With a stolen Gmail username and password combo, hackers showed that they could access bank accounts and more.
For most mobile app developers, password management has as much appeal as a visit to the dentist. You do it because you have to, but it is annoying and easy to screw up, even when using standard libraries or protocols like OAUTH. Your users feel the same way. Even if they know to use strong […]
All keypads and base stations will need to be replaced in order to secure the system.
Researchers discover new malicious macro-based threat
We’re excited to announce that Sophia D’Antoine will be the next featured speaker at Etsy’s Code as Craft series on Wednesday, February 10th from 6:30-8pm in NYC. What is Code as Craft? Etsy Code as Craft events are a semi-monthly series of guest speakers who explore a technical topic or computing t...
A vulnerability in the GNU C Library could result in remote code execution, and may affect most Linux machines.
84% of respondents experienced spear phishing attacks that penetrated their security solutions.
Every good security researcher has a well-curated list of blogs they subscribe to. At Trail of Bits, given our interest in software security and its intersections with programming languages, one of our favorites is The Programming Language Enthusiast by Michael Hicks. Our primary activity is to desc...
The malware also can read SMS messages, including authentication codes sent as part of two-factor authentication mechanisms.
1,000+ easy passwords leaked in #OpAfrica hacktivist effort.
Malware infection causes chaos
EU security agency in favor of strong and trustworthy crypto
Boy cuffed after individual breached John Brennan’s email account last year
The company plans to use the funds to accelerate the push behind its automated cyber security incident response, Hexadite AIRSÔ.
The latest campaign shows that non-browser-based applications can also be hit.
Love birds beware – the scammers are ready and waiting