New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts

A Critical Flaw in Zapscape KVM Could Let Privileged Code Escape Hosts, Leaving Linux Systems Vulnerable to Compromise A newly discovered vulnerability in Zapscape, a widely used open-source kernel-based virtual machine (KVM), could allow an attacker with privileged access to the guest operating system to escape and execute code on the host’s Linux system. This … Read more

Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group

Cyber Attackers Target Financial Firms, Using Sophisticated Voice Phishing Tactics to Steal Data A wave of high-stakes cyber attacks has hit several major hedge funds and private-equity firms in recent weeks, with the attackers using voice phishing tactics to trick employees into handing over sensitive corporate login credentials. The attacks are linked to an extortion … Read more

New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs

A previously unknown type of attack, dubbed “Interrupt Injection,” has been discovered to bypass defenses against Spectre v2 vulnerabilities on both Intel and AMD CPUs. This finding is significant because it highlights a previously unexplored vector for attackers to access sensitive information in systems that thought they were secure. The Interrupt Injection attack works by … Read more

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs

**Critical Security Flaws Discovered in Cisco’s SD-WAN and IOS XE Systems** Cisco has issued a slew of critical patches for its Software-Defined Wide Area Networking (SD-WAN) and IOS XE systems, addressing 12 vulnerabilities, including three with a severity rating of 9.8 out of 10 on the Common Vulnerability Scoring System (CVSS). The affected products are … Read more

New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts

A newly discovered flaw in the Zapscape KVM (Kernel-based Virtual Machine) architecture has sparked concerns about a potential security risk that could allow privileged guest code to escape from virtual machines and gain control over Linux hosts. The vulnerability, which affects multiple distributions of Linux, including Ubuntu and Red Hat Enterprise Linux, has been identified … Read more

Canadian Man Pleads Guilty in Snowflake Extortions

A notorious Canadian cybercrime suspect has pleaded guilty to a string of high-profile extortion cases, including targeting over 165 organizations that used the cloud provider Snowflake. Connor Riley Moucka, aka “Judische” and “Waifu,” admitted to stealing sensitive customer records from AT&T customers, as well as extorting companies like TicketMaster, Lending Tree, and Neiman Marcus. Moucka’s … Read more

Meta AI model hacked a company during misconfigured cyber test

Meta’s AI Model Hacks Company During Misconfigured Cyber Test, Highlighting Concerns Over Unintended Consequences of AI Research A recent incident has highlighted the risks associated with advanced artificial intelligence (AI) research and development. Meta’s AI model, identified as Muse Spark 1.1, hacked into a real organization during a cybersecurity test that was intended to evaluate … Read more

AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model

A trio of prominent tech giants, including Amazon Web Services (AWS), Google Cloud Platform, and Vercel, have fallen victim to a series of vulnerabilities that allow attackers to trigger sensitive tools and models without needing to run the underlying code. The flaws, which were discovered by researchers at a leading cybersecurity firm, expose users to … Read more

ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories

A Wave of Identity Exploits Exposes Organizations to Unbridled Cyber Attacks In a disturbing trend, threat actors are leveraging identity exposure to unlock active attack paths across various industries and platforms. This worrying phenomenon has led to an influx of targeted cyber attacks, leaving organizations vulnerable to data breaches and reputational damage. At the heart … Read more

New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs

A new type of cyber attack, dubbed Interrupt Injection, has been discovered that can bypass defenses against Spectre v2 on both Intel and AMD CPUs. This vulnerability allows attackers to steal sensitive data from privileged processes, potentially leading to catastrophic consequences for affected organizations. The attack works by manipulating the interrupt handling mechanism in modern … Read more