The malware can spy on victims, steal their information, and make configuration changes on devices.
Hi, what are you looking for?
The malware can spy on victims, steal their information, and make configuration changes on devices.
The company will accelerate product development, scale go-to-market efforts, and expand its global footprint.
The startup will expand its AI research team, train additional security models, and scale enterprise adoption.
The malware steals credentials, installs a malicious browser extension, and can spread via USB drives.
Jonathan Spalletta exploited smart contract vulnerabilities to steal approximately $55 million in cryptocurrency and cause Uranium to shut down.
A long-lived NPM access token was used to bypass the GitHub Actions OIDC-based CI/CD publishing workflow and push backdoored package versions.
After validating stolen credentials using TruffleHog, the hacking group started AWS services enumeration and lateral movement activities.
Attackers can exploit the bugs through prompt injection, chaining them together to escape the sandbox and execute arbitrary code.
The SQL injection vulnerability allows unauthenticated attackers to execute arbitrary code remotely, via crafted HTTP requests.
Remotely exploitable, the integer underflow vulnerability impacts StrongSwan releases spanning 15 years.
A faulty software update led to the exposure of mobile banking users’ transactions to other users of the application.
The startup has built an edge security management (ESM) platform, an AI engine atop the entire edge security stack.
The state-sponsored group’s campaign has targeted government, higher education, financial, and legal entities, as well as think tanks.
Two malicious versions of the popular SDK were uploaded to the PyPI registry, targeting Windows, macOS, and Linux.
The critical-severity flaw leaks application memory and can be exploited to obtain authenticated administrative session IDs.
Initially disclosed as a high-severity denial-of-service (DoS), the bug was reclassified as a critical RCE issue.
The infection chain includes a fake CAPTCHA page, a Bash script, a Nuitka loader, and the Python-based infostealer.
Through the new program, OpenAI will reward reports covering design or implementation issues leading to material harm.
The security defects could be used to bypass authentication, execute arbitrary commands, and decrypt configuration files.
Coruna contains the updated version of a kernel exploit used in Operation Triangulation three years ago.