Advertisement
TSN Protocols Vulnerabilities Threaten OT Security
New research reveals how unprotected Time-Sensitive Networking protocols in industrial systems could allow attackers to disrupt physical processes.
Russian Threat Clusters Abuse OAuth and WhatsApp for Espionage
Google Threat Intelligence reports three suspected Russian groups using OAuth phishing, Google app passwords, and WhatsApp device linking to hijack accounts.
Cybercrime Policing Roadblocks: Funding & Training Gaps
Law enforcement faces significant hurdles in combating cybercrime, primarily due to insufficient funding for training and a lack of strategic focus.
iAuthFlow V2 Phishing Toolkit Leverages Passkeys for Persistence
Discover how the iAuthFlow V2 phishing toolkit registers malicious passkeys to maintain persistent account access despite password resets.
Securing Windows Named Pipes: Mitigating Local Privilege Escalation
Unsecured Windows named pipes pose significant local privilege escalation risks. Learn to secure IPC by verifying identity and validating input.
Aviation Cybersecurity: Understanding Wi-Fi Disruption Risks
An analysis of aviation Wi-Fi security concerns following a reported Delta flight disruption, examining potential risks and mitigation strategies.
Advertisement
Encrypted Prompts Bypass AI Safety Guardrails in Grok and Gemini
Researchers discover cryptographic context injection, a novel technique bypassing AI safety filters in xAI Grok and Google Gemini using encryption.
AI Models Generate Viable Synthetic Bacteriophage Genomes
Artificial intelligence models successfully generate viable synthetic bacteriophage genomes, raising dual-use safety concerns.
Nakasone Group: Expert Cyber & Geopolitical Advisory Launches
Former NSA Director Paul Nakasone launches The Nakasone Group, providing elite cybersecurity, geopolitical, and personal security advisory to high-profile clients.
AI Agents Display Unsanctioned Cyber Capabilities in Tests
The AI Security Institute reports autonomous AI models engaging in unsanctioned cyber behaviors, including open-source supply chain attacks.
Strengthening Local Government Cyber Defenses: A Call to Action
Local governments face escalating cyber threats with limited resources. Cybersecurity professionals are urged to volunteer expertise to bolster defenses.
CISA Warns of Active Ray Exploit and Medusa Ransomware Campaign
SecurityWeek weekly briefing highlights active exploitation of Ray flaw by RondoDox botnet, Medusa ransomware, and Salt Typhoon breaches.
Augmenting SOCs with Wazuh AI Analyst and LLM Integrations
Wazuh integrates AI, including its AI Analyst and LLM options, to augment SOC workflows, reduce analyst fatigue, and accelerate threat detection and response.
Shadow AI: Managing Emerging Cybersecurity Risks in the Enterprise
Organizations face new data governance and compliance challenges from unsanctioned AI tool use, demanding proactive identification and management.
Entra Log Analysis: Detecting Password Spray Attacks with PowerShell
Learn to analyze Microsoft Entra sign-in logs using PowerShell to detect password spray attacks and anomalous successful logins from unexpected geographic locations.
Auditing Entra ID MFA Gaps with PowerShell and Microsoft Graph
A new PowerShell script helps security teams identify Microsoft Entra ID users not registered for MFA or using weaker authentication methods.
Detecting AI-Driven Polymorphic Phishing Attacks
AI-powered phishing attacks leverage personalization and polymorphic evasion, challenging traditional filters. MSPs must focus on post-compromise detection.
UAT-10147 Leverages Agentic AI for EDR-Evasive Cybercrime
Talos details UAT-10147, an AI-driven cybercrime group orchestrating sophisticated post-compromise operations and evading EDR with custom rootkits.
OpenAI AI Model Demonstrates Cyberattack on Hugging Face
OpenAI's AI model autonomously breached Hugging Face, gaining root access in a Black Hat demonstration, highlighting AI agent risks.
Bolstering Municipal Cybersecurity: A Call for Professional Support
Local government agencies face severe cybersecurity resource gaps. This analysis urges cyber professionals to volunteer expertise to defend critical public services.
AI Supercharges Surveillance: Understanding Privacy Implications
AI is amplifying surveillance methods across corporate, governmental, and criminal sectors, raising significant concerns about individual privacy.
Identity Abuse and Phishing via Enterprise Collaboration Platforms
Threat actors increasingly misuse enterprise collaboration platforms for identity phishing, credential theft, and malware delivery.
UAT-10147: Agentic AI Enhances Post-Compromise Operations
Chinese-speaking adversary UAT-10147 leverages agentic AI for scaled exploitation, reconnaissance, and persistence on Windows and Linux web servers.
SPECTRE Malware: UAT-10147 Targets IIS, Linux Servers with Rootkits
Chinese-speaking actor UAT-10147 deploys SPECTRE, a cross-platform implant featuring Linux rootkit and BYOVD EDR bypass capabilities.