Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
AhnLab ASEC analyzes AtlasRAT, a Windows remote access malware delivered through a four-stage in-memory loader chain disguised as AGE Flash Player. The final payload uses encrypted C2 communication, executes modular plugins, and performs keylogging and DLL injection into WeChat.
This report analyzes a four-stage in-memory loader chain delivering AtlasRAT, starting with a Delphi executable disguised as AGE Flash Player. The final payload uses TLS-based ChaCha20-encrypted C2 communication, executes modular plugins, performs offline keylogging, and injects DLLs into WeChat processes.
Dark Reading reports that agentic browsers suffer from a class of flaws called PleaseFix, which makes them easy to socially engineer. The vulnerabilities highlight weaknesses in cross-origin request handling, potentially regressing web security by 20 years.
Dark Reading reports that agentic browsers suffer from a class of flaws called PleaseFix, which makes them easy to socially engineer. The vulnerabilities highlight weaknesses in cross-origin request handling, potentially regressing web security by 20 years.
PleaseFix class of flaws makes it easy to socially engineer agentic browsers and highlights weaknesses in how they handle cross-origin requests.
Agentic browsers, which use AI to autonomously navigate websites and perform actions on behalf of users, introduce a class of vulnerabilities reminiscent of the PleaseFix flaws that plagued early web security, effectively rewinding progress by 20 years. These AI-driven browsers can be socially engineered through carefully crafted web pages that trick the agent into performing unintended actions like making purchases, authorizing payments, or leaking credentials.