Microsoft Exchange Server Vulnerability Enables Privelege Escalation
07
Aug
2025

Microsoft Exchange Server Vulnerability Enables Privelege Escalation

A critical security vulnerability in Microsoft Exchange Server hybrid deployments has been disclosed, allowing attackers with on-premises administrative access to…

Confusion reigns as phishers abuse Exchange Online Direct Send
07
Aug
2025

Confusion reigns as phishers abuse Exchange Online Direct Send

An email feature for Microsoft’s Exchange Online that allows unauthenticated message submissions for mail deliveries is causing ongoing customer concern…

Google commits US$1 billion for AI training at US universities
07
Aug
2025

Google commits US$1 billion for AI training at US universities

Google has announced a three-year, US$1 billion (A$1.54 billion) commitment to provide artificial intelligence training and tools to US higher…

OVIC sets limits on GenAI tool use in external meetings
07
Aug
2025

OVIC sets limits on GenAI tool use in external meetings

The Office of the Victorian Information Commissioner (OVIC) has drawn a clear line when it comes to the insertion of…

The Desync Delusion: Are You Really Protected Against HTTP Request Smuggling?
07
Aug
2025

The Desync Delusion: Are You Really Protected Against HTTP Request Smuggling?

Andrzej Matykiewicz | 06 August 2025 at 22:22 UTC The Hidden Threat That’s Slipping Past Your Security HTTP request smuggling…

ACS backs digital productivity vision
07
Aug
2025

ACS backs digital productivity vision

The Australian Computer Society (ACS) has welcomed the Productivity Commission’s interim report on Harnessing Data and Digital Technology as a…

HTTP/1.1 Must Die: What This Means for Contract Pentesters and MSSPs
07
Aug
2025

HTTP/1.1 Must Die: What This Means for Contract Pentesters and MSSPs

Andrzej Matykiewicz | 06 August 2025 at 22:23 UTC At Black Hat USA and DEFCON 2025, PortSwigger’s Director of Research,…

Microsoft, CISA warn of cyberattacks targeting on-premises SharePoint servers
07
Aug
2025

CISA, Microsoft warn about new Microsoft Exchange server vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) and Microsoft late Wednesday warned that a new high-severity vulnerability in Microsoft Exchange…

HTTP/1.1 Must Die: What This Means for Bug Bounty Hunters
07
Aug
2025

HTTP/1.1 Must Die: What This Means for Bug Bounty Hunters

Andrzej Matykiewicz | 06 August 2025 at 22:23 UTC At Black Hat USA and DEFCON 2025, PortSwigger’s Director of Research,…

A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT
07
Aug
2025

A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT

The latest generative AI models are not just stand-alone text-generating chatbots—instead, they can easily be hooked up to your data…

HTTP/1.1 Must Die: What This Means for In-House Pentesters
07
Aug
2025

HTTP/1.1 Must Die: What This Means for In-House Pentesters

Andrzej Matykiewicz | 06 August 2025 at 22:23 UTC At Black Hat USA and DEFCON 2025, PortSwigger’s Director of Research,…

Government looks at tech to tackle peak electricity demand
07
Aug
2025

Government looks at tech to tackle peak electricity demand

Science minister Patrick Vallance has unveiled £4m in funding to support technology projects that can help manage the UK’s electricity…