Cybersecurity

30 readers
19 users here now

An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!

Rules

Community Rules

founded 2 years ago
MODERATORS
176
 
 

Exploits for pre-auth #Fortinet #FortiWeb RCE flaw released, patch now

https://www.bleepingcomputer.com/news/security/exploits-for-pre-auth-fortinet-fortiweb-rce-flaw-released-patch-now/

#cybersecurity

177
 
 

#WordPress #GravityForms developer hacked to push backdoored plugins

https://www.bleepingcomputer.com/news/security/wordpress-gravity-forms-developer-hacked-to-push-backdoored-plugins/

#cybersecurity

178
 
 

#NVIDIA shares guidance to defend #GDDR6 GPUs against #Rowhammer attacks

https://www.bleepingcomputer.com/news/security/nvidia-issues-guidance-to-defend-gddr6-gpus-against-rowhammer/

#cybersecurity #GPU

179
 
 

#CISA tags #CitrixBleed2 as exploited, gives agencies a day to patch

https://www.bleepingcomputer.com/news/security/cisa-tags-citrix-bleed-2-as-exploited-gives-agencies-a-day-to-patch/

#cybersecurity #Citrix

180
 
 

#Russia, hotbed of #cybercrime, says nyet to #EthicalHacking bill

https://www.theregister.com/2025/07/10/russia_ethical_hacking_bill/

#cybersecurity #politics

181
 
 

#Windows11 now uses #JScript9Legacy engine for improved security

https://www.bleepingcomputer.com/news/security/windows-11-now-uses-jscript9legacy-engine-for-improved-security/

#cybersecurity

182
 
 

#PerfektBlue #Bluetooth flaws impact #Mercedes, #Volkswagen, #Skoda cars

https://www.bleepingcomputer.com/news/security/perfektblue-bluetooth-flaws-impact-mercedes-volkswagen-skoda-cars/

#cybersecurity

183
 
 

Was the FBI’s “raw” Jeffrey Epstein prison video modified? @WIRED dives into the “ambiguities around how the video was processed may further fuel conspiracy theories about Epstein’s death.”

https://flip.it/GRlGhk

#Tech #Epstein #CyberSecurity #EpsteinFiles

184
 
 

Russian pro #basketball player arrested for alleged role in #ransomware attacks

https://www.bleepingcomputer.com/news/security/russian-pro-basketball-player-arrested-for-alleged-role-in-ransomware-attacks/

#cybersecurity #cybercrime #politics

185
 
 

"If you want a job at McDonald’s today, there’s a good chance you'll have to talk to Olivia. Olivia is not, in fact, a human being, but instead an AI chatbot that screens applicants, asks for their contact information and résumé, directs them to a personality test, and occasionally makes them “go insane” by repeatedly misunderstanding their most basic questions.

Until last week, the platform that runs the Olivia chatbot, built by artificial intelligence software firm Paradox.ai, also suffered from absurdly basic security flaws. As a result, virtually any hacker could have accessed the records of every chat Olivia had ever had with McDonald's applicants—including all the personal information they shared in those conversations—with tricks as straightforward as guessing that an administrator account's username and password was “123456."

On Wednesday, security researchers Ian Carroll and Sam Curry revealed that they found simple methods to hack into the backend of the AI chatbot platform on McHire.com, McDonald's website that many of its franchisees use to handle job applications. Carroll and Curry, hackers with a long track record of independent security testing, discovered that simple web-based vulnerabilities—including guessing one laughably weak password—allowed them to access a Paradox.ai account and query the company's databases that held every McHire user's chats with Olivia. The data appears to include as many as 64 million records, including applicants' names, email addresses, and phone numbers."

https://www.wired.com/story/mcdonalds-ai-hiring-chat-bot-paradoxai/?amp%3Bmc_eid=ceff4c8226

#CyberSecurity #AI #GenerativeAI #Chatbots #DataProtection

186
 
 

Four arrested in #UK over M&S, #CoOp, #Harrod cyberattacks

https://www.bleepingcomputer.com/news/security/four-arrested-in-uk-over-mands-co-op-harrod-cyberattacks/

#cybercrime #MarksAndSpencer #cybersecurity

187
 
 

Browser extensions turn nearly 1 million browsers into website-scraping bots

https://arstechnica.com/security/2025/07/browser-extensions-turn-nearly-1-million-browsers-into-website-scraping-bots/

#cybersecurity

188
 
 

#AMD warns of new #Meltdown, #Spectre-like bugs affecting CPUs

https://www.theregister.com/2025/07/09/amd_tsa_side_channel/

#cybersecurity

189
 
 

#McDonald’s #AI Hiring Bot Exposed Millions of Applicants’ Data to Hackers Who Tried the Password ‘123456’

https://www.wired.com/story/mcdonalds-ai-hiring-chat-bot-paradoxai/

#cybersecurity

190
 
 

#JackDorsey says his ‘secure’ new #Bitchat app has not been tested for security

https://techcrunch.com/2025/07/09/jack-dorsey-says-his-secure-new-bitchat-app-has-not-been-tested-for-security/

#cybersecurity

191
 
 

#RuckusNetworks leaves severe flaws unpatched in management devices

https://www.bleepingcomputer.com/news/security/ruckus-networks-leaves-severe-flaws-unpatched-in-management-devices/

#cybersecurity

192
 
 

#IngramMicro starts restoring systems after #ransomware attack

https://www.bleepingcomputer.com/news/security/ingram-micro-starts-restoring-systems-after-ransomware-attack/

#cybersecurity

193
 
 

Treasury sanctions North Korean over IT worker #malware scheme

https://www.bleepingcomputer.com/news/legal/treasury-sanctions-north-korean-over-it-worker-malware-scheme/

#NorthKorea #cybersecurity politics

194
 
 

New #ServiceNow flaw lets attackers enumerate restricted data

https://www.bleepingcomputer.com/news/security/new-servicenow-flaw-lets-attackers-enumerate-restricted-data/

#cybersecurity

195
 
 

#SIMswapping attacks expose your online accounts to hackers — but your phone carrier can help

https://techcrunch.com/2025/07/09/how-to-protect-your-cell-phone-number-from-sim-swap-attacks/

#cybersecurity #privacy

196
 
 

#Tuta: #GoEuropean sale, 50% off until July 15

https://tuta.com/goeuropean?t-src=the-new-oil

#cybersecurity #privacy #EU #Europe #email #encryption #FOSS

197
 
 

#Samsung announces major security enhancements coming to #OneUI8

https://www.bleepingcomputer.com/news/security/samsung-announces-major-security-enhancements-coming-to-one-ui-8/

#cybersecurity #Android #OneUI

198
 
 

M&S confirms #SocialEngineering led to massive #ransomware attack

https://www.bleepingcomputer.com/news/security/mands-confirms-social-engineering-led-to-massive-ransomware-attack/

#MarksAndSpencer #retail #UK #cybersecurity #privacy #DataBreach

199
 
 

#Activision took down #CallOfDuty game after PC players hacked, says source

https://techcrunch.com/2025/07/08/activision-took-down-call-of-duty-game-after-pc-players-hacked-says-source/

#cybersecurity #gaming #CoD

200
 
 

#Microsoft July 2025 #PatchTuesday fixes one zero-day, 137 flaws

https://www.bleepingcomputer.com/news/microsoft/microsoft-july-2025-patch-tuesday-fixes-one-zero-day-137-flaws/

#cybersecurity #Windows

view more: ‹ prev next ›