Researchers demonstrate how multi-turn “storytelling” attacks bypass prompt-level filters, exposing systemic weaknesses in GPT-5’s defenses.
Hi, what are you looking for?
Researchers demonstrate how multi-turn “storytelling” attacks bypass prompt-level filters, exposing systemic weaknesses in GPT-5’s defenses.
Taking place August 12-13, CodeSecCon is the premier virtual event bringing together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.
As attackers target help desks and identity systems, traditional security perimeters are proving insufficient against agile, socially-engineered threats.
Noteworthy stories that might have slipped under the radar: federal court filing system hack, Chanel data breach, emergency CISA directive.
Many companies are showcasing their products and services this week at the 2025 edition of the Black Hat conference in Las Vegas.
Columbia University has been targeted in a cyberattack where hackers stole the personal information of students, applicants, and employees.
Bouygues has been targeted in a cyberattack that resulted in the personal information of millions of customers getting compromised.
SonicWall has been investigating reports about a zero-day potentially being exploited in ransomware attacks, but found no evidence of a new vulnerability.
Many companies are showcasing their products and services this week at the 2025 edition of the Black Hat conference in Las Vegas.
Airlines Air France and KLM have disclosed a data breach stemming from unauthorized access to a third-party platform.
CISA and Microsoft have issued advisories for CVE-2025-53786, a high-severity flaw allowing privilege escalation in cloud environments.
A desync attack method leveraging HTTP/1.1 vulnerabilities impacted many websites and earned researchers more than $200,000 in bug bounties.
Zenity has shown how AI assistants such as ChatGPT, Copilot, Cursor, Gemini, and Salesforce Einstein can be abused using specially crafted prompts.
CyberArk has patched several vulnerabilities that could be chained for unauthenticated remote code execution.
A Google Salesforce instance may have been targeted as part of a ShinyHunters campaign that hit several major companies.
Splunk researchers developed a system to fingerprint post-logon behavior, using AI to find subtle signals of intrusion.