Researchers Uncover Vulnerabilities in Open-Source AI and ML Models

29/10/2024 0 Comments 0 tags

A little over three dozen security vulnerabilities have been disclosed in various open-source artificial intelligence (AI) and machine learning (ML) models, some of which could lead to remote code execution

U.S. Government Issues New TLP Guidance for Cross-Sector Threat Intelligence Sharing

29/10/2024 0 Comments 0 tags

The U.S. government (USG) has issued new guidance governing the use of the Traffic Light Protocol (TLP) to handle the threat intelligence information shared between the private sector, individual researchers,

New Research Reveals Spectre Vulnerability Persists in Latest AMD and Intel Processors

29/10/2024 0 Comments 0 tags

More than six years after the Spectre security flaw impacting modern CPU processors came to light, new research has found that the latest AMD and Intel processors are still susceptible

Chinese Hackers Use CloudScout Toolset to Steal Session Cookies from Cloud Services

28/10/2024 0 Comments 0 tags

A government entity and a religious organization in Taiwan were the target of a China-linked threat actor known as Evasive Panda that infected them with a previously undocumented post-compromise toolset

Sailing the Seven Seas Securely from Port to Port – OT Access Security for Ships and Cranes

28/10/2024 0 Comments 0 tags

Operational Technology (OT) security has affected marine vessel and port operators, since both ships and industrial cranes are being digitalized and automated at a rapid pace, ushering in new types

Cybercriminals Use Webflow to Deceive Users into Sharing Sensitive Login Credentials

28/10/2024 0 Comments 0 tags

Cybersecurity researchers have warned of a spike in phishing pages created using a website builder tool called Webflow, as threat actors continue to abuse legitimate services like Cloudflare and Microsoft

THN Cybersecurity Recap: Top Threats, Tools and News (Oct 21 – Oct 27)

28/10/2024 0 Comments 0 tags

Cybersecurity news can sometimes feel like a never-ending horror movie, can’t it? Just when you think the villains are locked up, a new threat emerges from the shadows. This week

BeaverTail Malware Resurfaces in Malicious npm Packages Targeting Developers

28/10/2024 0 Comments 0 tags

Three malicious packages published to the npm registry in September 2024 have been found to contain a known malware called BeaverTail, a JavaScript downloader and information stealer linked to an

Russian Espionage Group Targets Ukrainian Military with Malware via Telegram

28/10/2024 0 Comments 0 tags

A suspected Russian hybrid espionage and influence operation has been observed delivering a mix of Windows and Android malware to target the Ukrainian military under the Telegram persona Civil Defense.

Researchers Uncover OS Downgrade Vulnerability Targeting Microsoft Windows Kernel

28/10/2024 0 Comments 0 tags

A new attack technique could be used to bypass Microsoft’s Driver Signature Enforcement (DSE) on fully patched Windows systems, leading to operating system (OS) downgrade attacks. “This bypass allows loading