home.social

Search

147 results for “edwardk”

  1. Engineer sentenced for locking over 3,000 devices on employer network

    A former core infrastructure engineer at a New Jersey-headquartered industrial company was sentenced to 32 months in prison for locking thousands of devices on his employer’s network in a ransomware-style attack. bleepingcomputer.com/news/secu

  2. MCP for agent-to-agent comms may be the riskiest protocol you’ve never heard of

    Ars Technica examines the Model Context Protocol used for agent-to-agent communication, warning that trust gaps can spread malicious prompts from one agent to another. The piece argues it may be one of the riskiest protocols most practitioners have not heard of. arstechnica.com/security/2026/

  3. Wikimedia Foundation: OpenAI agents tried to edit pages and compromise notes tool

    The Wikimedia Foundation says OpenAI agents tried to edit pages and compromise a notes tool on its platforms. Beyond potential misuse, the foundation said AI agent activity drains web platforms that are operating with limited resources. therecord.media/wikimedia-foun

  4. Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access

    Apple says it will tighten controls around macOS Full Disk Access because of security risks from AI agents. Some developers are using the permission in ways that could expose files, mail, messages, and browsing history without users' full knowledge. thehackernews.com/2026/10/appl

  5. Zammad Zero-Day Chain Lets AI Agent Hijack Sessions, Execute Code and Escalate to Root

    An AI agent breached the Dutch Institute for Vulnerability Disclosure by chaining two previously unknown flaws in Zammad, an open-source helpdesk platform. The September 21 attack moved from a hijacked session to root access, giving the intruder full server control within seconds. DIVD detected the intrusion the next day and blocked it. cybersecuritynews.com/zammad-z

  6. Malicious HEIC Images Can Trigger Remote Code Execution on WordPress Servers

    Researchers have demonstrated an attack chain in which a malicious HEIC image uploaded to a WordPress Media Library can lead to remote code execution in the PHP-FPM process. The risk comes from libheif, a widely used component for reading HEIC, HEIF, and AVIF formats. cybersecuritynews.com/maliciou

  7. IQVIA fined $7.8 million for failing to properly anonymize health data

    Italy’s data protection authority has fined IQVIA 7 million euros (about $7.8 million) over poor data-processing practices. The agency said roughly one million patients were put at risk of data exposure and de-anonymization. bleepingcomputer.com/news/secu

  8. Hackers Breached Propulsion System of U.S.-Bound Oil Tanker

    FBI and US Coast Guard investigators found evidence that hackers accessed the propulsion system of an oil supertanker as it approached the Texas coast this summer, according to US officials. The breach highlights the growing physical risks to maritime operations from cyberattacks. databreaches.net/2026/10/05/ha

  9. South Korea probes bank breaches amid suspected AI-powered attacks

    South Korea’s Financial Services Commission held an emergency meeting after a series of cyberattacks targeting the country’s financial institutions. The incidents are being investigated amid suspicions the attacks were AI-powered. bleepingcomputer.com/news/secu

  10. MI5 Raises Alarm Over Chinese Funding of UK Academic Research

    MI5 has warned UK universities that over 100 academics may have unknowingly worked on research funded by the China General Technology Research Institute, which it describes as having strong ties to China’s Ministry of State Security. The warning was published on September 30. securityaffairs.com/200396/int

  11. Iranian hacker accused of draining 31TB from university inboxes extradited to the US

    Iranian-Turkish dual citizen Amir Barati, 40, is being extradited from Montenegro to the US over an alleged Iranian campaign that stole 31 terabytes of data from university inboxes. A Montenegrin court approved the extradition this week. securityaffairs.com/200387/sec

  12. Researcher Infiltrates Lazarus Group’s Crypto Laundering Network After $1.5B Bybit Hack

    Blockchain investigator ZachXBT says he infiltrated a Chinese crypto laundering network linked to North Korea’s Lazarus Group following the $1.5 billion Bybit hack. Correlating private chats with public blockchain records, he says the work helped freeze stolen funds and exposed operators claiming to handle money from several major thefts. cybersecuritynews.com/zachxbt-

  13. Chinese Hackers Impersonate US Officials for AI Cyber Espionage

    An emerging threat group tracked as TA419 established seemingly legitimate professional relationships with AI policy experts at US think tanks, universities, and legal organizations. The group then used those contacts as a vector for cyber espionage, impersonating US officials along the way. darkreading.com/cyberattacks-d

  14. Midnight Blizzard Uses Captive Portals to Deliver CornFlake RAT and Steal Traveler Credentials

    A Midnight Blizzard subcluster (Storm-2945) has resumed CaptiveCrunch, an espionage campaign abusing hospitality Wi-Fi captive portals to infect travelers and compromise corporate accounts. Renewed activity observed September 29 includes a Rust variant of the CornFlake infostealer, with indicators consistent with AI-enabled malware development. gbhackers.com/midnight-blizzar

  15. ClickFix Smuggles Payloads Through Browser Cache to Bypass Windows Run Limits

    A new ClickFix attack technique uses compromised websites to trick users into executing a payload cached in the browser cache rather than downloading one. The sites pre-fetch a script payload into the cache disguised as a PNG file, bypassing Windows Run dialog length limits. Microsoft Threat Intelligence reported the technique on X. thehackernews.com/2026/10/clic

  16. Hackers Exploit 24 IoT Vulnerabilities to Install ClingSTUN Linux Backdoor

    Researchers have described ClingSTUN, a new Linux backdoor that exploits 24 IoT vulnerabilities to install itself on vulnerable devices. Once installed, it gives attackers remote command access and turns infected devices into persistent proxy nodes. hackread.com/hackers-exploit-i

  17. Critical WatchGuard Endpoint Security Flaw Exposes Kernel and Process Memory

    A critical vulnerability in WatchGuard endpoint security products, tracked as CVE-2026-13043 (CVSS 9.3), could let a local authenticated attacker bypass driver authentication and access sensitive kernel and process memory. The issue affects the Panda Kernel Memory Access Driver (pskmad.sys). gbhackers.com/critical-watchgu

  18. Dell Urges Customers to Patch Critical DSU Flaw That Can Give Attackers Root Access

    Dell is urging customers to patch a critical flaw in its System Update tool, tracked as CVE-2026-86360 (CVSS 9.6). The path traversal vulnerability can let attackers run code as root on affected PowerEdge systems. Customers should update affected systems as soon as possible. securityaffairs.com/200458/sec

  19. Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes

    Microsoft has released out-of-band security updates for a high-severity flaw in Microsoft Exchange Server tracked as CVE-2026-96940 (CVSS 8.8). Weak authorization allows an authenticated attacker to elevate privileges and read other users' mailboxes under certain conditions. thehackernews.com/2026/10/micr

  20. Rejetto HFS servers now actively scanned for critical RCE flaw

    Hackers are actively scanning for Rejetto HFS servers affected by a critical weak-signing-key vulnerability tracked as CVE-2026-61500. The flaw allows session forgery, account takeover, and remote code execution. Administrators are urged to patch or restrict exposure of HFS instances. bleepingcomputer.com/news/secu

  21. Denmark Says Attackers Accessed CPR Data for 8.8 Million People via Company Account

    Unauthorized parties gained access to the names, addresses, and personal identification numbers of about 8.8 million people, living and dead, in Denmark’s national population register, the digitalization ministry said on October 5. The attackers used a private Danish company’s lawful right to look up records in the Central Person Register (CPR). thehackernews.com/2026/10/denm

  22. Citrix discloses third actively exploited NetScaler zero-day in less than a week

    Citrix has disclosed a third actively exploited NetScaler zero-day in less than a week. The vendor’s response was faster and more consistent than with the previous two flaws, and researchers consider this one’s impact relatively low by comparison. US and Australian authorities have warned organizations about the latest vulnerability. cyberscoop.com/citrix-netscale

  23. Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products

    A critical flaw (CVE-2026-21589, CVSS 9.3) in eight Atlassian Data Center products allows an unauthenticated attacker to read known files from each product’s web application root directory. The attacker must know a file’s exact name and path; listing directory contents is not possible. Atlassian disclosed the issue on October 5 and urges customers to patch. thehackernews.com/2026/10/crit

  24. Tower Insurance calls Coinbase Cartel leak-site claim unverified, says it’s investigating

    Tower Insurance says it is investigating a Coinbase Cartel leak-site listing naming the company, describing the circulating information as unverified. The insurer says outside consultants are engaged and the relevant authorities have been notified. The listing has been live since August 22, so Tower’s statement ends roughly six weeks of silence. nationalcybersecurity.com/towe

  25. Nueva EPS, Colombia’s largest regional healthcare promoting entity has allegedly been hacked

    Colombia’s largest health-promoting entity, Nueva EPS, has allegedly been hacked by an individual demanding 5 million not to leak the stolen data, according to DataBreaches.net. The claim remains unverified, but the targeting of a major healthcare provider raises the stakes for patient data exposure. databreaches.net/2026/10/05/nu

  26. Ukraine grocery chain ATB confirms cyberattack as hackers threaten to leak data

    Ukraine’s largest grocery chain, ATB, confirmed it was hit by a cyberattack after hackers posted an extortion demand on its website, The Record reports. The incident follows a pattern of double-extortion attacks pairing disruption with threats to leak stolen data. therecord.media/atb-ukraine-cy

  27. University of Illinois Chicago affected by ransomware attack on medical school

    A ransomware attack affecting the University of Illinois Chicago College of Medicine resulted in the theft of some information from its servers, The Record reports. Details on the threat actor and the scope of the stolen data have not yet been disclosed. therecord.media/ransomware-uni

  28. Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

    Attackers are exploiting Realtek Jungle SDK vulnerabilities in exploit attempts that deliver the Cling botnet, which uses STUN-based command-and-control infrastructure. Separately, researchers report hackers exploiting 24 IoT vulnerabilities to install the ClingSTUN Linux backdoor on exposed devices. The activity underscores the continued recruitment of internet-facing IoT gear into botnets. thehackernews.com/2026/10/real

  29. Meta Rushed to Fix Muse ‘VM Escape’ Vulnerability Soon Before Launch

    In the weeks before the launch of Meta’s Muse AI agent, engineers discovered several security vulnerabilities — including at least one that could have let users break out of their per-user virtual machines and reach Meta’s own sensitive internal databases, 404 Media reports. The flaws were severe enough to reach Mark Zuckerberg, triggering a multi-team ‘mad dash’ to fix ‘a sudden spike in reported KVM escapes’ before release. One Meta source described ‘half-baked protections being rushed out to enable the launch,’ with senior engineers warning a major breach was inevitable. 404media.co/meta-rushed-to-fix

  30. FBI confirms ‘multiple’ arrests related to ShinyHunters hack

    The FBI has confirmed multiple arrests connected to the ShinyHunters hacking group, The Register reports, following the reported detention of suspected member ‘Rey’ — identified as Saif al-Din Khader — in Jordan earlier this week. Two sources told Reuters that Khader is cooperating with the FBI and international law enforcement to help locate other members of the extortion group. The arrests mark a significant escalation against a crew linked to a string of high-profile data theft campaigns. theregister.com/security/2026/

Share on Mastodon

Enter the server where you have an account.