Security News

APT28 Hacker Group Targeting Europe, Americas, Asia in Widespread Phishing Scheme
2024-03-18 05:59

The Russia-linked threat actor known as APT28 has been linked to multiple ongoing phishing campaigns that employ lure documents imitating government and non-governmental organizations (NGOs) in...

Filipino police free hundreds of slaves toiling in romance scam operation
2024-03-18 05:46

Filipino police rescued 875 "Workers" - including 504 foreigners - in a raid late last week on a firm that posed as an online gaming company but in reality operated a forced labor camp that housed romance scam operators. The "Gaming company" that ran the operation - which went by Zun Yuan Technology Incorporated - maintains a meager website that may not initially set off alarm bells and appears more targeted toward recruiting staff than clients.

Public anxiety mounts over critical infrastructure resilience to cyber attacks
2024-03-18 05:30

With temporary failures of critical infrastructure on the rise in the recent years, 81% of US residents are worried about how secure critical infrastructure may be, according to MITRE and The Harris Poll. Public views cyberattacks as greatest risk to critical infrastructure.

Harnessing the power of privacy-enhancing tech for safer AI adoption
2024-03-18 05:00

A consensus on regulatory AI frameworks seems distant. The imperative for secure and responsible AI deployment cannot be overstated.

Quicmap: Fast, open-source QUIC protocol scanner
2024-03-18 04:30

Quicmap is a fast, open-source QUIC service scanner that streamlines the process by eliminating multiple tool requirements. It effectively identifies QUIC services, the protocol version, and the supported ALPNs.

The dark side of GenAI
2024-03-18 04:00

Beyond traditional AI models, generative AI can create new content, images, and even entire scenarios from scratch. While this technology holds immense promise across various sectors, it also introduces challenges and threats to cybersecurity.

Protecting distributed branch office environments from ransomware
2024-03-18 03:00

The serious scale of the threat posed by ransomware attacks in the UK, Europe and globally was bought into sharp focus by the UK House of Commons/House of Lords Joint Committee on the National Security Strategy in its December 2023 report, A hostage to fortune: ransomware and UK national security. Huawei aims to do just that, having unveiled its new HiSec SASE Solution - designed to deliver cloud-network-edge-endpoint integrated intelligent protection and provide consistent security assurance for both enterprise headquarters and branch offices - at last month's Mobile World Congress in Spain.

ChatGPT side-channel attack has easy fix: token obfuscation
2024-03-18 02:31

In brief Almost as quickly as a paper came out last week revealing an AI side-channel vulnerability, Cloudflare researchers have figured out how to solve it: just obscure your token size. The paper [PDF], from researchers at the Offensive AI Institute at Israel's Ben Gurion University, found an issue with how all non-Google ChatGPT derivatives transmit chat sessions between LLM servers and users.

AT&T says leaked data of 70 million people is not from its systems
2024-03-17 23:24

AT&T says a massive trove of data impacting 71 million people did not originate from its systems after a hacker leaked it on a cybercrime forum and claimed it was stolen in a 2021 breach of the company. While BleepingComputer has not been able to confirm the legitimacy of all the data in the database, we have confirmed some of the entries are accurate, including those whose data is not publicly accessible for scraping.

Microsoft again bothers Chrome users with Bing popup ads in Windows
2024-03-17 17:08

Microsoft is once again harassing Google Chrome users on Windows 10 and Windows 11 with popup desktop advertisements promoting Bing and its GPT-4 Bing Chat platform. The unsolicited ads are believed to be shown when users have Google Chrome open and configured to use Google as the default search engine.