ποΈ AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zeroday exploit. It abuses a standard feature built into almost every major AI assistant prefilled deep links. We observed production websites embedding hidden prompt injection payloads inside "Ask AI" buttons on marketing and competitor comparison pages. When a user.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Attackers broke into an organization's Oracle database through a SQL injection flaw in a publicfacing web application, then installed a postexploitation toolkit without writing an executable to disk. They fed Java source code to the database, let Oracle compile it into stored schema objects, and ran commands from inside the database engine. Huntress, which tracks the toolkit as khunt,.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
β€1
ποΈ AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Security flaws in agent infrastructure from Amazon Web Services AWS, Google, and Vercel let untrusted or forged instructions reach an agent's tools with no check that a model turn had authorized them. In several of the attack paths, the model never ran at all, so system prompts, content filters, and modellevel guardrails never got a chance to intervene. The affected products include Amazon.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
β€1
ποΈ Chinese-Made Zbtlink Routers Ship With Backdoor That Opens Unauthenticated Root Shells ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have disclosed details of a "factoryshipped backdoor" implanted in at least 20 Chinese router models from Zbtlink. According to a new report from VulnCheck, the implant appears in all 21 firmware images currently available from Zbtlink that span more than 2 years. The backdoors are designed such that they start automatically and attempt to beacon to Chinese.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Ransom Cartel Creator Gets 16 Years in Prison for Operating Ransomware-as-a-Service ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A federal judge in Alexandria, Virginia, sentenced Maksim Silnikau to 16 years in prison on August 5 for creating and running Ransom Cartel, the ransomwareasaservice operation he stood up in 2021. Between 2021 and 2023, Ransom Cartel conspirators attacked at least 18 companies, including firms in California, New York and Nebraska, and others abroad, according to the Justice Department.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A newly patched security flaw impacting onpremise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S. Cybersecurity and Infrastructure Security Agency CISA. The vulnerability in question is CVE202663077 CVSS score 9.8, a case of deserialization of untrusted data that could allow an unauthenticated attacker with access to a TeamCity server.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Snowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Connor Riley Moucka pleaded guilty in Seattle federal court on Wednesday to computer fraud, wire fraud, aggravated identity theft and a related conspiracy over the 2024 breaches of Snowflake customer accounts. The intrusions reached at least 165 organizations and exposed records belonging to at least 100 million people. Moucka, 26, of Kitchener, Ontario, personally took at least 495,000 from.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A macOS ClickFix operation spanning more than 250 frontend domains now fingerprints visitors before deciding whether to show them a malware lure, a change Microsoft Threat Intelligence tracked on infrastructure it had been watching for weeks. The serverside gate hides the malicious page from crawlers and sandboxes while presenting selected Mac users with a fake software download. Microsoft.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ OpenAI Disrupts Poipet Scam Network Using ChatGPT Across Multiple Fraud Schemes ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
OpenAI said it disrupted a Cambodiabased scam operation that used its generative artificial intelligence AI chatbot ChatGPT to facilitate a wide range of investment, romance, gambling, and law enforcement impersonation schemes. To that end, it banned a coordinated network of ChatGPT accounts likely originating from Southeast Asia and operating from the city of Poipet, a region with extensive.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have discovered more than halfadozen services advertisements for illegal access to artificial intelligence AI models on underground cybercrime forums and messaging platforms. One such service, Poison Claude, claims to offer access to Anthropic's large language models LLMs, including Opus 4.8, Opus 4.7, Opus 4.6, and Sonnet 4.6. "Advertisements for Poison Claude.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an opensource control plane for teams of artificial intelligence AI agents, and both paths rely on importing a malicious agent and starting it. A third flaw could expose sensitive data and controlplane details through application programming interface API routes.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django. The three most serious An unauthenticated flaw in Veeam's console that hands over a managed agent's credentials, rated 9.5 A crosstenant flaw in HashiCorp's MCP server that lets one user's Terraform token be reused for later users'.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have flagged an evolution of the EtherHiding blockchainbased commandandcontrol C2 technique that conceals the C2 server IP address inside a madeup destination address of a completely empty Ethereum transfer. The new dead drop resolver approach, observed in two trojanized npm packages "bianiraui" and "fluidtypeui," has been codenamed NullReceiver by.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of defaultconfigured distributions, and a public exploit ships with prebuilt records for roughly 800 kernel builds. The vulnerability, tracked as CVE202664531 CVSS score 7.8 and codenamed OVSwrap by its discoverer, was disclosed by security researcher Asim.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attackercontrolled device codes that victims approve on Microsoft's real authentication page. Once access and refresh tokens are issued, attackers may retain access to email, documents, and cloud resources, creating a direct path to data exposure, financial fraud,.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
β€1
ποΈ Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
An unauthenticated attacker can read any file the service account can access on Gitea, the selfhosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public repository and crafted Orgmode markup are enough. The flaw is fixed in Gitea 1.27.1. The fileread flaw is tracked as CVE202659774, rated Critical with a CVSS score of 9.8, and received its.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Leaked n8n API Tokens Exposed Live Instances to Credential Theft ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream credentials without exploiting a software vulnerability. We scanned public GitHub commits for exposed n8n API tokens and identified 4,576 unique credentials associated with 1,255 hostnames. Of the 896.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
β€1
π 10 Best AI SOC Vendors without Lock-In Contracts : Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms π
π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
Which AI SOC vendors let you own your logs and leave freely? Discover data portability, sovereignty, and exit clauses compared across 6 platforms. The post 10 Best AI SOC Vendors without LockIn Contracts Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms appeared first on UnderDefense.π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
UnderDefense
10 Best AI SOC Vendors without Lock-In Contracts : Data Portability Clauses, Log Ownership, and Exit Rights Compared Across 6 Platforms
Which AI SOC vendors let you own your logs and leave freely? Discover data portability, sovereignty, and exit clauses compared across 6 platforms.
ποΈ OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
OpenAI has announced that it's pausing some "internal activities" involving its upcoming artificial intelligence AI model Astra after an internal evaluation found it had made significant advancements in agentic coding and cybersecurity. In response to the discovery, the AI upstart said it's implementing security controls for highercapability models and associated activities, such as isolated.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code VS Code extension named Solidity Pro "soliditypro" that has been observed delivering a browser wallet and credential stealer. The names of the extensions are below helperbeeps.soliditypro web3devtoolsx.soliditypro Although neither of the extensions is now available on Open VSX, the GitHub repository.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π US Sanctions Iranian $6bn Crypto βExchangeβ Shelbit π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
US Sanctions Iranian $6bn Crypto βExchangeβ Shelbit
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange