Researchers at Adversa AI discovered a new attack technique and named it Cryptographic Context Injection. They reported their findings to...
Cybersecurity researchers have uncovered a new attack technique in which threat actors are using large language model (LLM) agents to automate post-exploitation activities after breaching systems...
Cybersecurity researchers have identified a new vulnerability affecting how ChatGPT processes and displays web content, potentially exposing users to phishing attacks through seemingly harmless AI-generated summaries....
A rapidly emerging cybersecurity risk is coming from an unexpected source: employees independently building full-scale applications using AI-powered “vibe coding” platforms and deploying them directly to...
A newly identified cyber espionage group known as GREYVIBE has been linked to sustained and evolving cyberattacks targeting Ukraine and related entities, with researchers reporting the...
A high-severity security vulnerability has been discovered in Gogs, a widely used open-source self-hosted Git service, that allows authenticated users to execute arbitrary code on affected...
Cybersecurity researchers have uncovered a coordinated wave of software supply chain attacks involving malicious packages published to both NuGet and npm registries, designed to steal sensitive...
Microsoft has strongly criticized the public disclosure of multiple zero-day vulnerabilities affecting Windows systems, reaffirming its support for Coordinated Vulnerability Disclosure (CVD) and warning that premature...
A critical security vulnerability in FortiClient Endpoint Management Server (EMS) is being actively exploited by threat actors to distribute a newly identified credential-stealing malware known as...
A high-severity vulnerability in the KnowledgeDeliver LMS platform has been actively exploited as a zero-day to deliver web shells and post-exploitation malware, including Cobalt Strike Beacon....
Advanced Phishing, SEO Poisoning, and Fake Software Installers Used to Spread MiniFast and MiniJunk V2 A state-linked Iranian cyber espionage group identified as Nimbus Manticore, also...
Recent Comments