Cybersecurity

30 readers
14 users here now

An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!

Rules

Community Rules

founded 2 years ago
MODERATORS
176
 
 

#UK launches vulnerability research program for external experts

https://www.bleepingcomputer.com/news/security/uk-launches-vulnerability-research-program-for-external-experts/

#cybersecurity

177
 
 

#Episource is notifying millions of people that their #health data was stolen

https://techcrunch.com/2025/07/14/episource-is-notifying-millions-of-people-that-their-health-data-was-stolen/

#cybersecurity #privacy #DataBreach #healthcare

178
 
 

#Trump administration to spend $1 billion on ‘offensive’ hacking operations

https://techcrunch.com/2025/07/14/trump-administration-to-spend-1-billion-on-offensive-hacking-operations/

#cybersecurity #cyberwar #politics

179
 
 

#Interlock #ransomware adopts #FileFix method to deliver #malware

https://www.bleepingcomputer.com/news/security/interlock-ransomware-adopts-filefix-method-to-deliver-malware/

#cybersecurity #cybercrime

180
 
 

#Gigabyte motherboards vulnerable to #UEFI #malware bypassing #SecureBoot

https://www.bleepingcomputer.com/news/security/gigabyte-motherboards-vulnerable-to-uefi-malware-bypassing-secure-boot/

#cybersecurity #mobo #motherboard

181
 
 

Malicious #VSCode extension in #CursorIDE led to $500K #crypto theft

https://www.bleepingcomputer.com/news/security/malicious-vscode-extension-in-cursor-ide-led-to-500k-crypto-theft/

#cybersecurity

182
183
 
 

#Google#EGemini flaw hijacks email summaries for #phishing

https://www.bleepingcomputer.com/news/security/google-gemini-flaw-hijacks-email-summaries-for-phishing/'

#cybersecurity #AI #email

184
 
 

Hackers are exploiting critical RCE flaw in #WingFTPServer

https://www.bleepingcomputer.com/news/security/hackers-are-exploiting-critical-rce-flaw-in-wing-ftp-server/

#cybersecurity #Wing #FTP

185
 
 

Can an “ethical” spyware company justify providing its tech to ICE, the U.S.’s immigration enforcement arm that has been carrying out large-scale raids across the country? @Techcrunch explores:

https://flip.it/kqMETW

#Tech #TechNews #SpyWare #CyberSecurity

186
 
 

Exploits for pre-auth #Fortinet #FortiWeb RCE flaw released, patch now

https://www.bleepingcomputer.com/news/security/exploits-for-pre-auth-fortinet-fortiweb-rce-flaw-released-patch-now/

#cybersecurity

187
 
 

#WordPress #GravityForms developer hacked to push backdoored plugins

https://www.bleepingcomputer.com/news/security/wordpress-gravity-forms-developer-hacked-to-push-backdoored-plugins/

#cybersecurity

188
 
 

#NVIDIA shares guidance to defend #GDDR6 GPUs against #Rowhammer attacks

https://www.bleepingcomputer.com/news/security/nvidia-issues-guidance-to-defend-gddr6-gpus-against-rowhammer/

#cybersecurity #GPU

189
 
 

#CISA tags #CitrixBleed2 as exploited, gives agencies a day to patch

https://www.bleepingcomputer.com/news/security/cisa-tags-citrix-bleed-2-as-exploited-gives-agencies-a-day-to-patch/

#cybersecurity #Citrix

190
 
 

#Russia, hotbed of #cybercrime, says nyet to #EthicalHacking bill

https://www.theregister.com/2025/07/10/russia_ethical_hacking_bill/

#cybersecurity #politics

191
 
 

#Windows11 now uses #JScript9Legacy engine for improved security

https://www.bleepingcomputer.com/news/security/windows-11-now-uses-jscript9legacy-engine-for-improved-security/

#cybersecurity

192
 
 

#PerfektBlue #Bluetooth flaws impact #Mercedes, #Volkswagen, #Skoda cars

https://www.bleepingcomputer.com/news/security/perfektblue-bluetooth-flaws-impact-mercedes-volkswagen-skoda-cars/

#cybersecurity

193
 
 

Was the FBI’s “raw” Jeffrey Epstein prison video modified? @WIRED dives into the “ambiguities around how the video was processed may further fuel conspiracy theories about Epstein’s death.”

https://flip.it/GRlGhk

#Tech #Epstein #CyberSecurity #EpsteinFiles

194
 
 

Russian pro #basketball player arrested for alleged role in #ransomware attacks

https://www.bleepingcomputer.com/news/security/russian-pro-basketball-player-arrested-for-alleged-role-in-ransomware-attacks/

#cybersecurity #cybercrime #politics

195
 
 

"If you want a job at McDonald’s today, there’s a good chance you'll have to talk to Olivia. Olivia is not, in fact, a human being, but instead an AI chatbot that screens applicants, asks for their contact information and résumé, directs them to a personality test, and occasionally makes them “go insane” by repeatedly misunderstanding their most basic questions.

Until last week, the platform that runs the Olivia chatbot, built by artificial intelligence software firm Paradox.ai, also suffered from absurdly basic security flaws. As a result, virtually any hacker could have accessed the records of every chat Olivia had ever had with McDonald's applicants—including all the personal information they shared in those conversations—with tricks as straightforward as guessing that an administrator account's username and password was “123456."

On Wednesday, security researchers Ian Carroll and Sam Curry revealed that they found simple methods to hack into the backend of the AI chatbot platform on McHire.com, McDonald's website that many of its franchisees use to handle job applications. Carroll and Curry, hackers with a long track record of independent security testing, discovered that simple web-based vulnerabilities—including guessing one laughably weak password—allowed them to access a Paradox.ai account and query the company's databases that held every McHire user's chats with Olivia. The data appears to include as many as 64 million records, including applicants' names, email addresses, and phone numbers."

https://www.wired.com/story/mcdonalds-ai-hiring-chat-bot-paradoxai/?amp%3Bmc_eid=ceff4c8226

#CyberSecurity #AI #GenerativeAI #Chatbots #DataProtection

196
 
 

Four arrested in #UK over M&S, #CoOp, #Harrod cyberattacks

https://www.bleepingcomputer.com/news/security/four-arrested-in-uk-over-mands-co-op-harrod-cyberattacks/

#cybercrime #MarksAndSpencer #cybersecurity

197
 
 

Browser extensions turn nearly 1 million browsers into website-scraping bots

https://arstechnica.com/security/2025/07/browser-extensions-turn-nearly-1-million-browsers-into-website-scraping-bots/

#cybersecurity

198
 
 

#AMD warns of new #Meltdown, #Spectre-like bugs affecting CPUs

https://www.theregister.com/2025/07/09/amd_tsa_side_channel/

#cybersecurity

199
 
 

#McDonald’s #AI Hiring Bot Exposed Millions of Applicants’ Data to Hackers Who Tried the Password ‘123456’

https://www.wired.com/story/mcdonalds-ai-hiring-chat-bot-paradoxai/

#cybersecurity

200
 
 

#JackDorsey says his ‘secure’ new #Bitchat app has not been tested for security

https://techcrunch.com/2025/07/09/jack-dorsey-says-his-secure-new-bitchat-app-has-not-been-tested-for-security/

#cybersecurity

view more: ‹ prev next ›