> TODAY'S SUMMARY (98 articles)
Today's cybersecurity news highlights several critical threats and trends. Z.ai faced backlash for security flaws in its ZCode coding assistant, prompting the temporary disabling of certain features. In the UK, two individuals were arrested following the disruption of the "EvilTokens" AI chatbot, which facilitated cybercriminals in account compromise for a subscription fee. Researchers revealed that stolen passwords pose significant risks to U.S. water providers, exposing critical infrastructure to potential cyberattacks. Additionally, a wave of AI-driven threats is emerging, with reports indicating that AI is increasingly aiding cybercriminals while defenders struggle to keep pace. Lastly, vulnerabilities in Zyxel switches and recent attacks exploiting deepfake technology underscore the evolving landscape of cybersecurity risks.
|
// AI-powered summary generated at 16:01
This month's Patch Tuesday is light, containing just five bulletins. Two are marked critical and three are marked important. One of the critical bulletins addresses Internet Explorer, and is believed to include a fix for the zero-day vulnerability highlighted by FireEye last month. Three fixes requi...
It was post-dot-com bubble and post-Worldcom implosion, and the so-called “telecom winter” was dragging on. In the early 2000s, the communications industry had, in a word, been economically decapitated, and companies were struggling to find a new path to innovation and technology enablement that lef...
Javelin shows you how modern attackers would approach and exploit your enterprise. By simulating real-time, real-world attack techniques, Javelin identifies which employees are most likely to be targets of spearphishing campaigns, uncovers security infrastructure weaknesses, and compares overall vul...
As the adoption of mobile devices continues to grow rapidly and businesses increasingly provide on-the-go access to corporate assets, the mobile malware landscape is evolving to take advantage of mainstream user behavior. In a sign of the times, web ads directing users to malicious sites have eclips...
One of the leading anti-virus test labs, AV Comparatives, has published its fourth annual survey of users.Five thousand eight hundred and forty five users from all around the world responded to the survey, giving a snapshot of browsers, operating systems, and AV products currently being used.
Have you ever wanted to make a query into a native mode program asking about program locations that write a specific value to a register? Have you ever wanted to automatically deobfuscate obfuscated strings? Reverse engineering a native program involves understanding its semantics at a low level unt...
Anti-virus firm Malwarebytes has announced that it will now defend Android users against pups, or 'potentially unwanted programs.' "The research team at Malwarebytes has noticed an increasing number of Android PUPs and, as from today, the new version of Anti-Malware Mobile will give people an option...
The worldwide cybersecurity skills shortage is well-documented; and many countries have developed programs to fill the gap. These programs usually try to instill interest in schools, or tempt IT professionals into a career in security.
There are a number of big artists touring this year, such as Beyoncé, Justin Timberlake and One Direction, and it’s also drawing closer and closer to the 2014 FIFA World Cup in Brazil. Given the marquee nature of the events, people need to be careful when searching the web for tickets to sold-out ev...
A new spam campaign delivering a Java remote access trojan (RAT) known as JRAT has been uncovered, with the emails claiming to have attached a payment certificate to the message. The campaign has predominantly affected the UAE and the UK to date and appears to be after specific victims.
Tor was developed to provide internet anonymity to those who need it. But with the Snowden surveillance revelations came an increased interest in and demand for such anonymity – and not surprisingly that includes the criminal element. Malware C&C servers are hosted, illicit trading organizations...
The Zeus banking trojan and botnet has had a number of iterations over the years, particularly since the source code was leaked online.
Even though Edward Snowden’s revelations about NSA mass surveillance programs have dominated headlines since last year and sparked an ongoing trend toward “transparency” on the part of the tech giants, it turns out that infosecurity professionals aren’t quite as concerned as the general public or so...
The (Russian) Neutrino exploit kit was first described by the French researcher Kafeine (Malware don't need Coffee) almost exactly one year ago. "A new exploit kit is being advertised since yesterday on underground forum : Neutrino," he announced. Now it is for sale.
Team Cymru, a US security research firm based in Illinois has been investigating a SOHO router pharming campaign since January. So far it has identified 300,000 compromised devices, predominantly in Europe and Asia, with evidence that the campaign started at least in December 2013.
Reuters Technology reporter Joseph Menn interviewed security expert Bruce Schneier in front of last week’s TrustyCon audience in San Francisco, where the security expert provided his analysis of the government surveillance controversy
As teens and tweens increasingly live their lives digitally and in an oversharing-friendly way, online safety has become a hot topic for concerned parents. Typically it’s seen as the families’ responsibility for monitoring their children’s internet and mobile use, but purveyors of social sites are b...
Russia Today (RT) tweeted Sunday, "Hackers deface http://RT.com website, crack admin access, place 'Nazi' in every headline. Back to normal now." Although the hackers are not known, it could be in retaliation for the increasing number of reports describing the pro-West Kiev government as 'neo-Nazi....
Bloomberg reported Saturday that US retail giant Sears "is investigating a possible security breach after a series of cyberattacks on other retailers have exposed the data of millions of consumers." Sears is apparently being aided in this investigation by both Verizon's digital forensics unit and th...
The SANS Institute has released its latest training and events schedule for 2014 in the Europe, Middle East and Asia regions