πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
24.9K subscribers
88.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” Critical Zero-Days Found in Versa Networks SD-WAN/SASE Platform πŸ“”

The unpatched vulnerabilities, with a CVSS score of 8.6 to 10.0, can lead to remote code execution via authentication bypass.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Security Threats of Open Source AI Exposed by DeepSeek πŸ•΅οΈβ€β™‚οΈ

DeepSeek's risks must be carefully considered, and ultimately mitigated, in order to enjoy the many benefits of generative AI in a manner that is safe and secure for all organizations and users.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Keeping LLMs on the Rails Poses Design, Engineering Challenges πŸ•΅οΈβ€β™‚οΈ

Despite adding alignment training, guardrails, and filters, large language models continue to jump their imposed rails and give up secrets, make unfiltered statements, and provide dangerous information.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ₯°1
πŸ•΅οΈβ€β™‚οΈ Keeping LLMs on the Rails Poses Design, Engineering Challenges πŸ•΅οΈβ€β™‚οΈ

Despite adding alignment training, guardrails, and filters, large language models continue to jump their imposed rails and give up secrets, make unfiltered statements, and provide dangerous information.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ GitLab's AI Assistant Opened Devs to Code Theft πŸ•΅οΈβ€β™‚οΈ

Even after a fix was issued, lingering prompt injection risks in GitLab's AI assistant might allow attackers to indirectly deliver developers malware, dirty links, and more.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Western Logistics and Tech Firms Targeted by Russia’s APT28 πŸ“”

NSA, NCSC and allies warn Western tech and logistics firms of Russian APT28 cyberespionage threat.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Keeping LLMs on the Rails Poses Design, Engineering Challenges πŸ•΅οΈβ€β™‚οΈ

Despite adding alignment training, guardrails, and filters, large language models continue to jump their imposed rails and give up secrets, make unfiltered statements, and provide dangerous information.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminals Mimic Kling AI to Distribute Infostealer Malware πŸ“”

A new malware campaign disguised as Kling AI used fake Facebook ads and counterfeit websites to distribute an infostealer.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ SideWinder APT Caught Spying on India's Neighbor Gov'ts πŸ•΅οΈβ€β™‚οΈ

A recent spearphishing campaign against countries in South Asia aligns with broader political tensions in the region.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Keeping LLMs on the Rails Poses Design, Engineering Challenges πŸ•΅οΈβ€β™‚οΈ

Despite adding alignment training, guardrails, and filters, large language models continue to jump their imposed rails and give up secrets, make unfiltered statements, and provide dangerous information.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ₯°1
πŸ“” Sensitive Personal Data Stolen in West Lothian Ransomware Attack πŸ“”

West Lothian Council confirmed that ransomware attackers have stolen personal and sensitive information held on its education network.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ GitLab's AI Assistant Opened Devs to Code Theft πŸ•΅οΈβ€β™‚οΈ

Even after a fix was issued, lingering prompt injection risks in GitLab's AI assistant might allow attackers to indirectly deliver developers malware, dirty links, and more.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2025: NCC Group Expert Warns UK Firms to Prepare for Cyber Security and Resilience Bill πŸ“”

UK businesses should start to plan for required changes to their cybersecurity programs ahead of the Cyber Security and Resilience Bill.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ SideWinder APT Caught Spying on India's Neighbor Gov'ts πŸ•΅οΈβ€β™‚οΈ

A recent spearphishing campaign against countries in South Asia aligns with broader political tensions in the region.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ GitLab's AI Assistant Opened Devs to Code Theft πŸ•΅οΈβ€β™‚οΈ

Even after a fix was issued, lingering prompt injection risks in GitLab's AI assistant might allow attackers to indirectly deliver developers malware, dirty links, and more.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ SideWinder APT Caught Spying on India's Neighbor Gov'ts πŸ•΅οΈβ€β™‚οΈ

A recent spearphishing campaign against countries in South Asia aligns with broader political tensions in the region.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminals Mimic Kling AI to Distribute Infostealer Malware πŸ“”

A new malware campaign disguised as Kling AI used fake Facebook ads and counterfeit websites to distribute an infostealer.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Experts Chart Path to Creating Safer Online Spaces for Women πŸ•΅οΈβ€β™‚οΈ

Gaps in laws, technology, and corporate accountability continue to put women's safety and privacy online at risk.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ€”1
πŸ•΅οΈβ€β™‚οΈ Experts Chart Path to Creating Safer Online Spaces for Women πŸ•΅οΈβ€β™‚οΈ

Gaps in laws, technology, and corporate accountability continue to put women's safety and privacy online at risk.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ€”1
πŸ•΅οΈβ€β™‚οΈ Lumma Stealer Takedown Reveals Sprawling Operation πŸ•΅οΈβ€β™‚οΈ

The FBI and partners have disrupted "the world's most popular malware," a sleek enterprise with thousands of moving parts, responsible for millions of cyberattacks in every part of the world.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Ivanti EPMM Exploitation Tied to Previous Zero-Day Attacks πŸ•΅οΈβ€β™‚οΈ

Wiz researchers found an opportunistic threat actor has been targeting vulnerable edge devices, including Ivanti VPNs and Palo Alto firewalls.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity