Aggregator
Cursor IDE Auto-Executes Malicious Code in Poisoned Repos
Why AI Moves Faster Than the Controls Built to Manage It
Boardroom Conversations Shift to Surviving a Breach
NEW2CTI | Connecting the Dots: Incident to Campaign Intel
Black Nevas
You must login to view this content
xAI Grok CLI Exposed Developer Code Through Automatic Whole-Repository Uploads
According to a reproducible wire-level analysis of version 0.2.93, xAI’s Grok Build CLI allegedly transmitted entire Git repositories, including unread files and commit history, to xAI infrastructure by default. The researcher noted that the behavior also sent the contents of files accessed by the agent, including a test .env file containing simulated credentials, without redaction. […]
The post xAI Grok CLI Exposed Developer Code Through Automatic Whole-Repository Uploads appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Microsoft Entra ID gets passkeys default authentication starting September
New phishing kits target Microsoft 365 accounts, evade MFA
课程中心上线了
11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot
Attackers Distribute Password Attacks Across Fictional OAuth Apps to Evade SOC Alerts
Attackers are increasingly abusing spoofed OAuth application identifiers to enumerate Microsoft Entra ID accounts, test credentials, and fragment authentication activity across hundreds of thousands or millions of fictional applications. The technique exploits how Entra ID processes the client_id parameter in OAuth authentication requests. Every registered OAuth application is assigned a globally unique application identifier, and […]
The post Attackers Distribute Password Attacks Across Fictional OAuth Apps to Evade SOC Alerts appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Один трюк с алгеброй может ускорить все вычисления в мире: от шифрования до искусственного интеллекта
DragonForce
You must login to view this content
DragonForce
You must login to view this content
Cybercriminals Target Turkish Banks With 8,400 Phishing Domains and 6,600 Scam Ads
Cybercriminals are operating an industrial-scale fraud ecosystem targeting Turkey’s financial sector, using more than 8,400 phishing domains, thousands of social media advertisements, fake loan offers, illicit gambling services, and money-mule recruitment to steal credentials. Group-IB’s investigation links these operations into five interconnected schemes targeting dozens of Turkish banking brands. Group-IB recorded more than 6,600 scam […]
The post Cybercriminals Target Turkish Banks With 8,400 Phishing Domains and 6,600 Scam Ads appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
两道初二分式方程练习题
Telegram’s t.me Links Go Offline After Registry Places Domain on serverHold
Почему 90% людей — правши, а не 50 на 50? Учёные подобрались к разгадке ближе, чем когда-либо
CISA Adds Four Known Exploited Vulnerabilities to Catalog
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
- CVE-2026-15409 SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability
- CVE-2026-15410 SonicWall SMA1000 Appliances Code Injection Vulnerability
- CVE-2026-56155 Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability
- CVE-2026-56164 Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability
These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risks to the federal enterprise.
Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates Based on Risk establishes vulnerability management requirements for Federal Civilian Executive Branch (FCEB) agencies. BOD 26-04 reinforces the importance of the KEV Catalog and requires federal agencies to prioritize rapid remediation of high-risk vulnerabilities, specifically those identified by Common Vulnerabilities and Exposures (CVEs) listed in CISA’s KEV Catalog on publicly exposed assets that grant total control of the asset post-exploitation, while deferring action for lower-risk vulnerabilities. BOD 26-04 further establishes basic expectations for when agencies must check whether threat actors compromised the system before the patch was applied.
While BOD 26-04 applies only to FCEB agencies, CISA encourages all organizations to adopt risk-based vulnerability management and prioritize remediation of KEV Catalog vulnerabilities. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria.
Aware of an exploited vulnerability not currently listed in the KEV Catalog? Submit it for potential addition through CISA’s KEV Nomination Form. Potential KEV additions must have a CVE ID, evidence of exploitation, and clear mitigation guidance.