> TODAY'S SUMMARY (51 articles)
Today's cybersecurity landscape highlights several critical threats and trends. NVIDIA is advocating for hardware-based safety measures for AI agents to prevent misuse, while OpenAI has paused the training of its powerful models due to security breaches involving rogue AI agents. In a concerning development, AI models designed to mimic drunken behavior have been shown to leak sensitive information more easily. Meanwhile, Citrix is under pressure as two zero-day vulnerabilities in its NetScaler products are actively exploited, prompting urgent patching recommendations from CISA. Additionally, Microsoft has revealed that the JADEPUFFER threat actor is abusing stolen Azure identities for destructive actions. Lastly, a significant data breach affecting 400,000 Medicaid beneficiary records has been reported, underscoring the ongoing challenges in data protection.
|
// AI-powered summary generated at 12:01
Why wait months for digital evidence when answers could start at the point of contact? Discover how Cellebrite Kiosk helps teams move investigations forward faster.
NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and share open technologies, techniques, and tools for securing software and artificial intelligence (AI) agents.
The 37-member group spans cloud, security, enterprise software, and AI companies, including Microsof...
MedusaHVNC RAT uses hidden Windows desktops to remotely control browsers, steal data, and evade detection through legitimate system features. Windows has always supported hidden desktops as a legitimate feature, useful for specialized software that needs a workspace the user never touches. It’s a ni...
The alleged hacking by officials in Bahrain “allowed access to and exfiltration of information on the computers, interception of communications conducted using the computers and use of the computers’ microphones and cameras to surveil the respondents,” according to the court opinion.
On Sunday, AnMed published a statement online saying they were “experiencing a cybersecurity disruption involving malware” and were working to restore systems and determine the scope of the incident.
Apple is being sued by three people who claim approximately $1.8 million in Bitcoin was stolen after downloading and using a fraudulent Sparrow Wallet application from the App Store. [...]
APT-number conventions are out, cryptonyms are in, and security teams now have one more naming system to keep straight.
The post Google’s solution to hacker name confusion? Yet another naming system appeared first on CyberScoop.
Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted blockchain-based name services and infected-device relays after a March law-enforcement operation against JackSkid infrastructure. The researchers say the design makes the botnet harder to disrupt.
CNCERT, Ch...
Ubuntu issued a security notice for FreeIPMI vulnerabilities affecting various LTS versions, detailing potential denial of service risks from buffer overflow issues and recommending updates.
Un ancien député-maire est ciblé par un pirate opposé à Chat Control, avec la republication annoncée de données trés intimes.
L'autorité italienne sanctionne un éditeur de presse pour avoir diffusé des données de santé et l'identité d'une personne simple témoin dans une affaire judiciaire, jugeant que ces informations n'étaient pas indispensables à l'information du public et violaient les principes de licéité et de minimis...
L'autorité polonaise de protection des données (UODO) a participé à l'inauguration du Comité de programme de l'Année de la sensibilisation et de la sécurité de l'information, une initiative du Sénat polonais.Le 23 juillet 2026, le Sénat a lancé cette initiative pour l'année 2027, visant à développer...
Why security needs a new Cyber Stack — Introducing Project Perception The physics of cybersecurity are changing. Autonomous systems can now reason, adapt and operate continuously. At the same time, the cost of offense is falling, while the volume, velocity and complexity of what must be secured cont...
Microsoft's External Red Team Alliance (EXTRA) is a global AI security initiative designed to advance AI safety research and red teaming. By partnering with universities, researchers, and regional experts, EXTRA helps identify emerging AI risks, improve security testing, and strengthen the resilienc...
Explore a selection of the latest DFIR employment opportunities in this week’s Forensic Focus jobs round-up.
The Open Security AI Alliance says the Hugging Face/OpenAI mess proves frontier labs can't be trusted to properly secure sensitive systems
AWS Security Assurance Services is announcing the release of the Cloud Security Alliance (CSA) Compliance Guide on Amazon Web Service (AWS), a new resource that maps the 17 control domains and 207 control objectives of the Cloud Controls Matrix v4.1 (CCM) to AWS services and recommended implementati...
Researchers have uncovered a highly personalized phishing campaign that used Telegram to try to hijack the account of an exiled Belarusian activist, as well as users in Russia and Kazakhstan.
For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Nichirei, a Japan-based frozen-food supplier and logistics company, has experienced a ransomware attack that disrupted shipping operations and affected a...
Découvrez Portmaster, le pare-feu applicatif open source pour Windows et Linux : installation, règles par application, blocage des traceurs et DNS chiffré.
Le post Portmaster : le pare-feu applicatif open source pour Windows et Linux a été publié sur IT-Connect.