> TODAY'S SUMMARY (9 articles)
Today's cybersecurity landscape reveals several critical threats and vulnerabilities. AI models like Claude Opus 5 are exposing significant security flaws, with researchers successfully exploiting these to access OpenAI accounts. SolarWinds has issued patches for a severe flaw in its Access Rights Manager that could allow unauthenticated remote code execution. Additionally, a critical vulnerability in the Orkes Conductor Workflow Platform is actively being exploited in the wild. On the open-source front, CrowdSec reported a breach involving the copying of 170 private GitHub repositories via a former employee's account. Furthermore, CISA has flagged three Linux kernel vulnerabilities that are being actively exploited. The situation underscores an ongoing vulnerability explosion amid rapid AI development and exploitation.
|
// AI-powered summary generated at 12:00
In an ironic turn of events, Luis Corrons, technical director with Panda Security, has revealed that two of the three techies allegedly behind the Mariposa botnet have requested jobs with Panda Security.
UK IT security and data protection firm Sophos has agreed to sell a majority interest in the company to global private equity group Apax Partners.
The US government has released further information about its plans to store every Twitter post ever produced, for perpetuity, in the Library of Congress.
IBM is considering cutting three-quarters of its 399,000 permanent staff in the next seven years and re-hiring them for projects as part of an HR strategy due to end in 2017.
Research just released suggests that the public sector's move to green IT – which forms a central plank of many organisation's IT security strategies when moving to cloud computing – is more of a myth than reality.
Things are not looking good for Terry Childs, the former San Francisco network administrator who compromised the city's network and essentially held it to ransom. Childs was convicted of computer tampering this week, and now faces up to five years in jail.
Security researchers have identified a new version of the Storm worm that plagued the internet three years ago. The new version uses HTTP for command-and-control purposes instead of the original peer-to-peer approach, say reports.
The FBI has promoted Gordon M. Snow as assistant director of its Cyber Division, saying that the bureau’s highest priority in the criminal sphere is combating cybercrime.
Israel has lifted a ban on imports of Apple's iPad, which was imposed because authorities said the device's Wi-Fi system was incompatible with Israel's wireless standard.
Kaspersky Lab has announced it will be hosting an IT security student conference in Krakow, Poland, on May 23/24. The event - titled 'IT Security for the Next Generation' - forms part of the Kaspersky academy education programme.
Shoppers’ social networking service Blippy suffered a security flaw late last week, after some of its users’ credit card numbers began appearing in search results.
Microsoft has won its first big piracy battle in China against a Shanghai-based insurer.
Companies around the world have been forced to clean up thousands of computers after the flawed McAfee anti-virus update released on Wednesday caused chaos.
Gartner has warned that the use of Flash local storage as a means of verifying end-user devices for security purposes is coming to an end.
Lancashire Constabulary has implemented a secure virtual desktop environment to manage staff access to its restricted and confidential networks.
Security researchers have discovered a way to track a mobile phone user's whereabouts without using a GPS signal, it was revealed this week. It is even possible to listen in on telephone voicemails, according to the information, divulged in a presentation at the SOURCE Boston security conference thi...
Reports are coming in that McAfee's popular IT security software is tagging Microsoft Windows system files as malicious, causing serious stability problems, screen freezes and bootup loops for a large number of Windows XP users.
Google has closed four high-priority vulnerabilities in version 4 of its Chrome browser for Windows.
Reports are coming in that McAfee's popular IT security software is tagging Microsoft Windows system files as malicious, causing serious stability problems, screen freezes and bootup loops for a large number of Windows XP users.
The blueprint for Lib Dem Nick Clegg's top-secret TV debate strategy has been found in the back of a London cab, The Sun reports