Latest Cybernews
CoSAI Established to Enhance AI Security Governance
Leading AI companies form CoSAI to offer guidance and tools for developing Secure-by-Design AI systems, with objectives including improving composition and provenance tracking for AI systems and establishing best practices and risk assessment frameworks for AI security governance.
View full story…
New Flaws in Sonos Smart Speakers Allow Hackers to Eavesdrop on Users
Researchers from NCC Group have identified vulnerabilities in Sonos smart speakers that could allow attackers to eavesdrop on users by exploiting memory corruption and arbitrary code execution flaws.
View full story…
CISA Warns of Hackers Exploiting Outdated Cisco Smart Install Feature
Hackers are targeting weak password types on Cisco network devices to access sensitive data through the outdated Smart Install feature, compromising infrastructure device integrity.
View full story…
CISA’s Secure by Demand Initiative Making Strides in Cybersecurity Practices
CISA’s Secure by Demand initiative, led by Director Jen Easterly, and the Secure by Design pledge are enhancing cybersecurity practices within organizations by prioritizing cybersecurity in procurement decisions and incorporating secure features in products.
View full story…
Microsoft Discovers Four Medium-Severity Security Flaws in OpenVPN Software
Microsoft researchers identify vulnerabilities in OpenVPN software that could lead to data breaches and system compromise.
View full story…
US Citizen Charged for Helping North Korean Workers Secure Remote IT Jobs
Matthew Isaac Knoot, a resident of Nashville, Tennessee, has been charged for running a “laptop farm” to assist North Korean workers in obtaining IT jobs in the US and UK, allegedly funding North Korea’s weapons program.
View full story…
OpenAI Develops Text Watermarking Method to Detect ChatGPT Content
OpenAI has developed a text watermarking method to detect content generated by ChatGPT, with concerns about potential negative impacts on users and the need for ethical integration of AI technologies into daily life.
View full story…
Latest Cybernews
Phishing Campaign Targets Amazon Accounts Using Google Drawings and WhatsApp Links
Cybercriminals exploit Google Drawings and WhatsApp links to deceive users into disclosing sensitive information in a recent phishing campaign targeting Amazon accounts.
View full story…
SANS Institute Hosts Network Security 2024 Event in Las Vegas and Online
Cybersecurity event featuring AI-focused keynotes, hands-on learning opportunities, and Cyber Bundle for attendees to enhance their skills and knowledge.
View full story…
Cybersecurity Leaders Prepare for 2024 US Election Threats
US cybersecurity leaders ramp up efforts to protect democratic process from evolving cyber threats and foreign adversaries as 2024 election approaches.
View full story…
Automated Security Validation and CTEM Framework Integration Enhances Organization’s Security Posture
The integration of Automated Security Validation (ASV) and the Continuous Threat Exposure Management (CTEM) framework proactively identifies and mitigates potential threats, enhancing security measures for organizations.
View full story…
Microsoft Addresses Vulnerabilities in Windows Update Process Exploited for Downgrade Attacks
SafeBreach Labs researcher Alon Leviev discovers technique to manipulate Windows Update process, rendering security patches ineffective and exposing systems to past vulnerabilities.
View full story…
Major Web Browsers Vulnerable to “000 Day” Zero-Day Exploit
Researchers discover critical vulnerability allowing malicious websites to exploit harmless IP addresses, potentially gaining access to sensitive services on macOS and Linux devices.
View full story…