15 Apr

UK told its Big Tech habit is now a national security risk

Britain has spent years wiring its public sector into US Big Tech, and a new report says that dependence could quickly become a national security

Author rabih
15 Apr

Agents hooked into GitHub can steal creds – but Anthropic, Google, and Microsoft haven’t warned users

Exclusive Security researchers hijacked three popular AI agents that integrate with GitHub Actions by using a new type of prompt injection attack to steal API

Author rabih
14 Apr

Microsoft’s massive Patch Tuesday: It’s raining bugs

Attackers exploited a spoofing vulnerability in Microsoft SharePoint Server before Redmond issued a fix as part of April’s mega Patch Tuesday. The monthly patch party

Author rabih
14 Apr

Commvault has a Ctrl+Z for rogue AI agents

Keep your agents close and your agent-monitoring software closer. Commvault’s new AI Protect can discover and monitor AI agents running inside AWS, Azure, and GCP

Author rabih
14 Apr

No honor among thieves as 0APT threatens rival ransomware gang Krybit

Two rival ransomware gangs have locked horns after 0APT threatened to expose people affiliated with Krybit. Dark web watchers spotted the move on Sunday, though

Author rabih
13 Apr

Zombie Microsoft bugs rise from the dead, pave way for crims and ransomware scum

Crooks are exploiting four Microsoft vulnerabilities – one patched 14 years ago and another tied to ransomware activity – according to America’s lead cyber-defense agency,

Author rabih
13 Apr

Fake Linux leader using Slack to con devs into giving up their secrets

Imagine getting asked to do something by a person in authority. An unknown malware slinger targeting open source software developers via Slack impersonated a real

Author rabih
13 Apr

Rockstar Games gets a taste of grand theft data

ShinyHunters is back, this time pinning Rockstar Games to its leak site and claiming it didn’t so much hack its way in as walk through

Author rabih
13 Apr

Booking.com warns reservation data may have checked out with intruders

Booking.com is warning customers that their reservation details may have been exposed to unknown attackers, in the latest reminder that the travel giant still can’t

Author rabih
13 Apr

Gym giant Basic-Fit confirms data on a million members stolen in cyberattack

Basic-Fit, Europe’s largest gym chain, has confirmed data including the bank details of around a million customers was stolen from its systems. Around 200,000 members

Author rabih
13 Apr

Rockstar Games gets a taste of grand theft data amid ShinyHunters threat of ‘Pay or leak’

ShinyHunters is back, this time pinning Rockstar Games to its leak site and claiming it didn’t so much hack its way in as walk through

Author rabih
13 Apr

NHS pays £46K to prep next Microsoft licensing round

NHS England is spending £46,000 on “benchmarking” as it gears up for what looks like the next round of negotiations behind one of the UK

Author rabih
13 Apr

China wants AI to prepare school lessons and mark homework

Asia In Brief China’s National Data Administration last Friday published its action plan for AI in education which calls for upskilling of the nation’s citizens

Author rabih
12 Apr

Anthropic’s mysterious Mythos AI threatens to upend the infosec world

Kettle Anthropic dropped a doozy on us this week with the launch of Mythos, an AI model it says is able to find and exploit

Author rabih
11 Apr

Two different attackers poisoned popular open source tools – and showed us the future of supply chain compromise

FEATURE Two supply chain attacks in March infected open source tools with malware and used this access to steal secrets from tens of thousands –

Author rabih
11 Apr

Hungarian government creds left in the safe hands of ‘FrankLampard’

Hungary’s government has discovered the hard way that the biggest threat to national security might just be its own password choices. An investigation by Bellingcat

Author rabih
10 Apr

CPUID site hijacked to serve malware instead of HWMonitor downloads

Visitors to the CPUID website were briefly exposed to malware this week after attackers hijacked part of its backend, turning trusted download links into a

Author rabih
10 Apr

Project Glasswing and open source software: The good, the bad, and the ugly

Opinion Anthropic describes Project Glasswing as a coalition of tech giants committing $100 million in AI resources to hunt down and fix long-hidden vulnerabilities in

Author rabih
Load moreLoadingAll items loaded