NVIDIA has launched a new Open Secure AI Alliance to build an “open defense stack for agents”
Security & IT News
LiveReal-time news from 13+ trusted sources — BleepingComputer, The Hacker News, Krebs on Security, Dark Reading & more.
180 results in General
CREST’s new AI standards are optional add-on requirements for cybersecurity service providers wishing to demonstrate responsible AI usage
OpenAI’s chatbot tool ChatGPT ranked among the top 10 most impersonated brands in phishing attacks for the first time
CoreView research finds that security leadership is concerned about AI Assistant exposing confidential data
Dolphin X is a new infostealer that uses AI to sort and rank victims, giving cybercriminals a faster way to identify lucrative targets
New TrickBot variant hides C2 communication inside DNS queries, replacing decade-old HTTP pattern
CodeMender actively builds and runs exploits in customer-managed sandboxes to verify if vulnerabilities are truly exploitable
FBI warned of deepfake videos of IC3 leadership directing users to spoofed complaint sites
Craneware, a provider of financial software for US healthcare organizations, has disclosed a cyber incident involving unauthorized access and data theft
Cruciferra crypter used process ghosting and 90 custom ciphers to hide payloads for multiple actors
Global phishing campaign disguised a Lua loader as a font file to deploy RATs and infostealers
The perpetrators of the 2024 TfL cyber-attack have been jailed for five and a half years each after pleading guilty to Computer Misuse Act offences
SANS Institute says governance programs are still nascent even as AI failures and threats grow
Six-month phishing campaign used seasonal eCard lures to plant legitimate RMM tools on victims
The US Department of Defense announced the immediate suspension of the CMMC Phase II requirements until further review
Five UK residents have been charged in relation to supplying Russian Coms fraud devices and apps
Misconfigured server exposed three phishing operators running Evilginx forks to bypass MFA
Chinese and Indian spies converged on the same Balochistan police force, SentinelLabs found
New research reveals cyber-attackers can spoof OAuth Client IDs in Microsoft Entra ID, creating a stealthy path into cloud environments
Progress Software, the provider of the popular file-sharing and data storage solutions, has urged customers to shut down the server hosting their Storage Zone Controller