Slovakia Warns of Cyber Risks in Road Speed Cameras

2 weeks ago

Slovakia warns that vulnerable speed cameras could expose vehicle data, enable remote access and provide attackers with a foothold into…

TikTok Settles U.S. Child Privacy Case for $400 Million

2 weeks ago

TikTok will pay $400 million to settle U.S. claims that it violated child privacy laws by collecting data from users…

iAuthFlow v2: The $10,000 Phishing Toolkit That Survives Your Password Reset

2 weeks ago

iAuthFlow v2 phishing toolkit uses a phished Google session to enroll an attacker-controlled passkey that survives password resets. Abnormal Security…

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 111

2 weeks ago

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware…

UK Power Plant Disabled for Four Days by Iran-Linked Hackers, Concurrent with US Water Attacks

3 weeks ago

Iran-linked hackers shut down a UK power plant for four days in the first confirmed attack of its kind, concurrent…

Security Affairs newsletter Round 591 by Pierluigi Paganini – INTERNATIONAL EDITION

3 weeks ago

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs…

Zero-Click Grok Chat History Theft: Adversa AI Demonstrates Cryptographic Context Injection

3 weeks ago

New Cryptographic Context Injection technique bypasses AI guardrails via AES-encrypted payloads, leaking full Grok chat histories zero-click Adversa AI researcher…

ToxicPanda 2.0 Gets a Major Upgrade, Expanding Attacks Across 16 Countries

3 weeks ago

ToxicPanda 2.0 targets 349 financial apps and abuses Android Wireless Debugging to gain deeper device access and steal banking credentials.…

Malware Hijacks Android Car Head Units

3 weeks ago

Malware is abusing car infotainment updates to install proxy software, turning Android head units into nodes for the BADBOX network.…

Critical Flaw in NASA/JPL Open-Source Spacecraft Command Software Allowed Unauthenticated Command Execution

3 weeks ago

A critical flaw (CVSS 9.4) in NASA/JPL's AIT-GUI let anyone send unauthenticated commands to spacecraft instruments. Cycode researchers found that…

This website uses cookies.