Security News > 2024 > December

Ultralytics AI model hijacked to infect thousands with cryptominer
2024-12-06 18:54

The popular Ultralytics YOLO11 AI model was compromised in a supply chain attack to deploy cryptominers on devices running versions 8.3.41 and 8.3.42 from the Python Package Index (PyPI) [...]

Salt Typhoon forces FCC's hand on making telcos secure their networks
2024-12-06 18:27

Proposal pushes stricter infosec safeguards after Chinese state baddies expose vulns The head of America's Federal Communications Commission (FCC) wants to force telecoms operators to tighten...

Blue Yonder SaaS giant breached by Termite ransomware gang
2024-12-06 16:35

​The Termite ransomware gang has officially claimed responsibility for the November breach of software as a service (SaaS) provider Blue Yonder. [...]

New Windows zero-day exposes NTLM credentials, gets unofficial patch
2024-12-06 16:32

A new zero-day vulnerability has been discovered that allows attackers to capture NTLM credentials by simply tricking the target into viewing a malicious file in Windows Explorer. [...]

FSB Uses Trojan App to Monitor Russian Programmer Accused of Supporting Ukraine
2024-12-06 16:15

A Russian programmer accused of donating money to Ukraine had his Android device secretly implanted with spyware by the Federal Security Service (FSB) after he was detained earlier this year. The...

Resecurity introduces AI-powered GSOC at NATO Edge 2024
2024-12-06 13:00

Resecurity, a global leader in cybersecurity solutions, unveiled its advanced Government Security Operations Center (GSOC) during NATO Edge 2024, the NATO Communications and Information Agency’s...

Badass Russian techie outsmarts FSB, flees Putinland all while being tracked with spyware
2024-12-06 12:32

Threatened with life in prison, Kyiv charity worker gives middle finger to state spies A Russian programmer defied the Federal Security Service (FSB) by publicizing the fact his phone was infected...

Detecting Pegasus Infections
2024-12-06 12:09

This tool seems to do a pretty good job. The company’s Mobile Threat Hunting feature uses a combination of malware signature-based detection, heuristics, and machine learning to look for anomalies...

Windows, macOS users targeted with crypto-and-info-stealing malware
2024-12-06 11:48

Downloading anything from the internet is a gamble these days: you might think that you are downloading an innocuous app from a legitimate firm but thanks to clever misuse of AI and some social...

Researchers Uncover Flaws in Popular Open-Source Machine Learning Frameworks
2024-12-06 11:28

Cybersecurity researchers have disclosed multiple security flaws impacting open-source machine learning (ML) tools and frameworks such as MLflow, H2O, PyTorch, and MLeap that could pave the way...