[tl;dr sec] #214 - Poisoning GitHub’s Runner Images, Fuzzing AWS WAF, LLM-powered Honeypot
18
Jan
2024

[tl;dr sec] #214 – Poisoning GitHub’s Runner Images, Fuzzing AWS WAF, LLM-powered Honeypot

I hope you’ve been doing well! 🤢 A Devastating Slip Recently I was rushing down the BART escalator after my…

Department of Justice
18
Jan
2024

US govt wants BreachForums admin sentenced to 15 years in prison

The United States government has recommended that Conor Brian Fitzpatrick, the creator and lead administrator of the now-defunct BreachForums hacking…

LeftoverLocals Attack Steal AI Data From Apple, Qualcomm & AMD
18
Jan
2024

LeftoverLocals Attack Steal AI Data From Apple, Qualcomm & AMD

An attacker may be able to steal a significant amount of data from a GPU’s memory due to a flaw…

Anonymous Sudan Hits Israeli Oil Refinery Giant BAZAN Hit with Crippling DDoS Attacks
18
Jan
2024

Anonymous Sudan’s DDoS Attacks Disrupt Network at Israeli BAZAN Group

Anonymous Sudan has also claimed responsibility for DDoS attacks on Thuraya Mobile Satellite Communications Company, an international mobile-satellite service (MSS)…

Students and teachers fight back cyber attack on University Network
18
Jan
2024

Students and teachers fight back cyber attack on University Network

In recent times, educational institutions have frequently fallen victim to cyber-attacks, with universities, schools, and other facilities being targeted. However,…

Poorly secured PostgreSQL, MySQL servers targeted by ransomware bot
18
Jan
2024

Poorly secured PostgreSQL, MySQL servers targeted by ransomware bot

Users exposing poorly secured PostgreSQL and MySQL servers online are in danger of getting their databases wiped by a ransomware…

Russian COLDRIVER Hackers Expand Beyond Phishing with Custom Malware
18
Jan
2024

Russian COLDRIVER Hackers Expand Beyond Phishing with Custom Malware

The Russia-linked threat actor known as COLDRIVER has been observed evolving its tradecraft to go beyond credential harvesting to deliver…

Office workers feel AI is better than a human boss
18
Jan
2024

Gartner: The big IT outsourcing contract returns

Two recent major contracts point to the return of big outsourcing contracts. Earlier in January, Canada Post announced it has…

Google TAG warns that Russian COLDRIVER APT is using a custom backdoor
18
Jan
2024

Google TAG warns that Russian COLDRIVER APT is using a custom backdoor

Google TAG warns that Russian COLDRIVER APT is using a custom backdoor Pierluigi Paganini January 18, 2024 Google warns that…

Hackerone logo
18
Jan
2024

The Impacts of Cross-site Scripting (XSS) [With Real Examples]

According to HackerOne’s 7th Annual Hacker Powered Security Report, XSS is the number one most common vulnerability for bug bounty…

New iShutdown Enables Detection of Spyware On iPhones
18
Jan
2024

New iShutdown Enables Detection of Spyware On iPhones

Malware hunting on iOS devices has been extremely difficult due to the nature of the iOS ecosystem. There were only…

‘Stablecoins’ Enabled $40 Billion in Crypto Crime Since 2022
18
Jan
2024

‘Stablecoins’ Enabled $40 Billion in Crypto Crime Since 2022

Stablecoins, cryptocurrencies pegged to a stable value like the US dollar, were created with the promise of bringing the frictionless,…