Security News

Implementing Cryptography in AI Systems
2025-02-21 15:33

Interesting research: “How to Securely Implement Cryptography in Deep Neural Networks.” Abstract: The wide adoption of deep neural networks (DNNs) raises the question of how can we equip them with...

Musky minion granted 'read-only' access to federal payment systems
2025-02-05 19:30

Nothing to see here, just a 'special government employee' doing his job The US Treasury Department has assured Congress that a "special government employee" associated with Elon Musk's Department...

Ransomware Targets ESXi Systems via Stealthy SSH Tunnels for C2 Operations
2025-01-28 11:01

Cybersecurity researchers have found that ransomware attacks targeting ESXi systems are also leveraging the access to repurpose the appliances as a conduit to tunnel traffic to command-and-control...

British Museum says ex-contractor 'shut down' IT systems, wreaked havoc
2025-01-27 09:30

Former freelancer cuffed a week after being dismissed by UK's top visitor attraction The British Museum was forced to temporarily close some galleries and exhibitions this weekend after a...

Meta's Llama Framework Flaw Exposes AI Systems to Remote Code Execution Risks
2025-01-26 10:15

A high-severity security flaw has been disclosed in Meta's Llama large language model (LLM) framework that, if successfully exploited, could allow an attacker to execute arbitrary code on the...

TRIPLESTRENGTH Hits Cloud for Cryptojacking, On-Premises Systems for Ransomware
2025-01-23 05:35

Google on Wednesday shed light on a financially motivated threat actor named TRIPLESTRENGTH for its opportunistic targeting of cloud environments for cryptojacking and on-premise ransomware...

Microsoft fixes Office 365 apps crashing on Windows Server systems
2025-01-17 16:59

​Microsoft has fixed a known issue that caused Microsoft 365 applications and Classic Outlook to crash on Windows Server 2016 or Windows Server 2019 systems. [...]

New UEFI Secure Boot flaw exposes systems to bootkits, patch now
2025-01-16 15:05

A new UEFI Secure Boot bypass vulnerability tracked as CVE-2024-7344 that affects a Microsoft-signed application could be exploited to deploy bootkits even if Secure Boot protection is active. [...]

Expired Domains Allowed Control Over 4,000 Backdoors on Compromised Systems
2025-01-13 06:01

No less than 4,000 unique web backdoors previously deployed by various threat actors have been hijacked by taking control of abandoned and expired infrastructure for as little as $20 per domain....

CISA Flags Critical Flaws in Mitel and Oracle Systems Amid Active Exploitation
2025-01-08 04:21

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three flaws impacting Mitel MiCollab and Oracle WebLogic Server to its Known Exploited Vulnerabilities (KEV)...