Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Researchers have uncovered 15 bugs in TP-Link devices that expose risks in automated provisioning. The findings serve as a case study on vulnerabilities within zero-trust network setups.
This article describes a macOS ClickFix operation using over 250 domains that fingerprint visitors before showing malware lures. The attack presents fake software downloads to real Mac users after verifying device characteristics, then requires a Terminal command to deploy an infostealer.
This article describes a macOS ClickFix operation using over 250 domains that fingerprint visitors before showing malware lures. The attack presents fake software downloads to real Mac users after verifying device characteristics, then requires a Terminal command to deploy an infostealer.
OpenAI disrupted a Cambodia-based scam operation that used ChatGPT to facilitate various fraud schemes including investment, romance, and impersonation. The network created fake personas and promotional content, and even used AI for administrative tasks.
OpenAI disrupted a Cambodia-based scam operation that used ChatGPT to facilitate various fraud schemes including investment, romance, and impersonation. The network created fake personas and promotional content, and even used AI for administrative tasks.
Google has fixed security flaws in its APK for Python that enabled agent-to-agent attacks. The issues exploited trust boundaries between AI agents with different privilege levels to trigger automation that could compromise the supply chain.