Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit

Cybersecurity Threats Hit F5 BIG-IP APM Devices with Sophisticated Linux Rootkit A highly sophisticated malware has been found targeting devices in F5 BIG-IP Application Delivery Networking (ADN) environments, allowing hackers to intercept and inject malicious code directly into memory. The Linux rootkit, identified as “PoisonedRefresh” by ESET, is capable of bypassing traditional detection methods by … Read more

Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution

Brazilian financial institution, Banco Santander, has fallen victim to a sophisticated cyber attack that compromised its crypto custody secrets. The attackers, believed to be part of an organized group known as “Slim Spider”, used a complex technique called cross-domain privilege escalation to breach the bank’s security systems. This heist is particularly notable because it targeted … Read more

ShinyHunters hackers claim breach of Florida “DAVID” DMV database

A Florida DMV Database Breach Exposes 200,000 Drivers’ Records to Extortion Gang ShinyHunters A disturbing cybersecurity incident has unfolded in the state of Florida, where hackers affiliated with the notorious extortion gang ShinyHunters claim to have breached a critical database managed by the Department of Motor Vehicles (DMV). The compromised platform, known as DAVID, contains … Read more

Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours

Cybersecurity experts are sounding the alarm after a recent demonstration of autonomous AI agents successfully compromising thousands of credentials in under six hours. This alarming display of speed and efficacy highlights the growing threat posed by advanced artificial intelligence (AI) tools in the world of cyber warfare. The event, which took place at an industry … Read more

ChatGPT Flaw Let a Planted Prompt Send a Victim’s Gmail Data to Another Account

A Critical Flaw in ChatGPT Allows Malicious Prompts to Exfiltrate Gmail Data, Leaving Users Vulnerable Cybersecurity researchers have uncovered a significant vulnerability in the popular chatbot platform ChatGPT, which can be exploited by attackers to extract sensitive data from unsuspecting users’ email accounts. Specifically, the flaw allows an attacker to plant a malicious prompt in … Read more

Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution

A Brazilian financial institution has fallen victim to a sophisticated cyber attack, with hackers making off with sensitive information related to cryptocurrency custody. The breach has left experts scrambling to understand the scale of the damage and how it was possible in the first place. The attackers are believed to have exploited vulnerabilities in the … Read more

What It Took to Reach 1 Billion Build Manifests

Cybersecurity teams around the world are grappling with a critical issue that has reached unprecedented proportions. For the first time, researchers have mapped over 1 billion build manifests – documents that contain sensitive information about software development – which could potentially be used to unlock active attack paths. These build manifests are often overlooked as … Read more

WeChat Zero-Click Worm Took Over Accounts on iPhone and Android via Incoming Calls

A Zero-Click Worm Spreads Through Incoming Calls on WeChat, Leaving Millions Vulnerable Millions of users of China’s dominant social media app WeChat have been put at risk after a zero-click worm took advantage of a vulnerability in the app to gain unauthorized access to their accounts. The malware, which spreads through incoming calls, has compromised … Read more

Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours

A new breed of autonomous AI agents has been wreaking havoc on the cybersecurity landscape, compromising thousands of credentials in a matter of mere hours. These sophisticated attackers have been using advanced techniques to infiltrate systems and gain unauthorized access, leaving a trail of exposed identities in their wake. The affected parties are numerous and … Read more

ChatGPT Flaw Let a Planted Prompt Send a Victim’s Gmail Data to Another Account

A Critical ChatGPT Flaw Exposed Gmail Users’ Data to Unwanted Access Last week, a concerning vulnerability in the popular AI chatbot platform ChatGPT made headlines. The flaw allowed an attacker to craft a specific prompt that could compromise a user’s Gmail account and transmit sensitive data to another account without their knowledge or consent. This … Read more