Security News

Researchers Uncover Prompt Injection Vulnerabilities in DeepSeek and Claude AI
2024-12-09 11:55

Details have emerged about a now-patched security flaw in the DeepSeek artificial intelligence (AI) chatbot that, if successfully exploited, could permit a bad actor to take control of a victim's...

Researchers Uncover Flaws in Popular Open-Source Machine Learning Frameworks
2024-12-06 11:28

Cybersecurity researchers have disclosed multiple security flaws impacting open-source machine learning (ML) tools and frameworks such as MLflow, H2O, PyTorch, and MLeap that could pave the way...

Researchers Uncover 4-Month Cyberattack on U.S. Firm Linked to Chinese Hackers
2024-12-05 11:00

A suspected Chinese threat actor targeted a large U.S. organization earlier this year as part of a four-month-long intrusion. According to Broadcom-owned Symantec, the first evidence of the...

Researchers Uncover Backdoor in Solana's Popular Web3.js npm Library
2024-12-04 09:48

Cybersecurity researchers are alerting to a software supply chain attack targeting the popular @solana/web3.js npm library that involved pushing two malicious versions capable of harvesting users'...

Researchers discover first UEFI bootkit malware for Linux
2024-11-27 17:37

The first UEFI bootkit specifically targeting Linux systems has been discovered, marking a shift in stealthy and hard-to-remove bootkit threats that previously focused on Windows. [...]

ESET researchers analyze first UEFI bootkit for Linux systems
2024-11-27 16:10

ESET Research has discovered the first UEFI bootkit designed for Linux systems, named Bootkitty by its creators. Researchers believe this bootkit is likely an initial proof of concept, and based...

Researchers Discover "Bootkitty" – First UEFI Bootkit Targeting Linux Kernels
2024-11-27 16:05

Cybersecurity researchers have shed light on what has been described as the first Unified Extensible Firmware Interface (UEFI) bootkit designed for Linux systems. Dubbed Bootkitty by its creators...

Researchers reveal exploitable flaws in corporate VPN clients
2024-11-26 15:33

Researchers have discovered vulnerabilities in the update process of Palo Alto Networks (CVE-2024-5921) and SonicWall (CVE-2024-29014) corporate VPN clients that could be exploited to remotely...

Researchers Uncover Malware Using BYOVD to Bypass Antivirus Protections
2024-11-25 09:16

Cybersecurity researchers have uncovered a new malicious campaign that leverages a technique called Bring Your Own Vulnerable Driver (BYOVD) to disarm security protections and ultimately gain...

Researchers unearth two previously unknown Linux backdoors
2024-11-21 09:59

ESET researchers have identified multiple samples of two previously unknown Linux backdoors: WolfsBane and FireWood. The goal of the backdoors and tools discovered is cyberespionage that targets...