Security News

ASUS Confirms Critical Flaw in AiCloud Routers; Users Urged to Update Firmware
2025-04-19 08:52

ASUS has disclosed a critical security flaw impacting routers with AiCloud enabled that could permit remote attackers to perform unauthorized execution of functions on susceptible devices. The...

Friday Squid Blogging: Live Colossal Squid Filmed
2025-04-18 21:02

A live colossal squid was filmed for the first time in the ocean. It’s only a juvenile: a foot long. As usual, you can also use this squid post to talk about the security stories in the news that...

Dems fret over DOGE feeding sensitive data into random AI
2025-04-18 19:06

Using LLMs to pick programs, people, contracts to cut is bad enough – but doing it with Musk's Grok? Yikes A group of 48 House Democrats is concerned that Elon Musk's cost-trimmers at DOGE are...

#AI
Interlock ransomware gang pushes fake IT tools in ClickFix attacks
2025-04-18 17:44

The Interlock ransomware gang now uses ClickFix attacks that impersonate IT tools to breach corporate networks and deploy file-encrypting malware on devices. [...]

OpenAI details ChatGPT-o3, o4-mini, o4-mini-high usage limits
2025-04-18 17:05

OpenAI has launched three new reasoning models - o3, o4-mini, and o4-mini-high for Plus and Pro subscribers, but as it turns out, these models do not offer 'unlimited' usage. [...]

Oracle hopes talk of cloud data theft dies off. CISA just resurrected it for Easter
2025-04-18 16:28

Some in the infosec world definitely want to see Big Red crucified CISA – the US government's Cybersecurity and Infrastructure Security Agency – has issued an alert for those who missed Oracle...

FBI: Scammers pose as FBI IC3 employees to 'help' recover lost funds
2025-04-18 16:19

The FBI warns that scammers posing as FBI IC3 employees are offering to "help" fraud victims recover money lost to other scammers. [...]

ASUS warns of critical auth bypass flaw in routers using AiCloud
2025-04-18 16:05

ASUS is warning about an authentication bypass vulnerability in routers with AiCloud enabled that could allow remote attackers to perform unauthorized execution of functions on the device. [...]

Chinese Smishing Kit Powers Widespread Toll Fraud Campaign Targeting U.S. Users in 8 States
2025-04-18 15:15

Cybersecurity researchers are warning of a "widespread and ongoing" SMS phishing campaign that's been targeting toll road users in the United States for financial theft since mid-October 2024....

SonicWall SMA VPN devices targeted in attacks since January
2025-04-18 15:02

A remote code execution vulnerability affecting SonicWall Secure Mobile Access (SMA) appliances has been under active exploitation since at least January 2025, according to cybersecurity company...