Aggregator
Please support the site operations by clicking ads.
Your passkeys can now move between password managers on Android
Google turned on a transfer feature in Android that moves passwords and passkeys straight from one password manager to another, with no file to download along the way. You start it from inside the app you are switching to, and Google says the data moves between the apps in a few seconds. “Historically, moving your passwords meant downloading them into an unencrypted text file, which left them unprotected on your device,” Google said. Passkeys, the … More →
The post Your passkeys can now move between password managers on Android appeared first on Help Net Security.
AI-powered attack exploited PaperCut flaws to hack 395 organizations
OpenAI 声称解决了 Navier-Stokes 问题,但引发了利用未发布成果的争议
Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers
震网Stuxnet蠕虫病毒重构源码公开
Думаете, кольца бывают только у Сатурна? Астероид в 250 км перестраивает свои прямо на глазах у Уэбба
Nightmare-Eclipse Strikes Again With 'ShieldCrash' Windows Exploit
More Capable AI, Not Enough Guardrails
Microsoft пообещала не учить ИИ на школьниках
Introducing AI Assistant for Akamai Web Security Analytics
IDScan confirms breach tied to 153 million stolen driver’s licenses
Google Play Early Access Abused to Push Thousands of Deceptive Android Apps
ИИ собрал цифровую клетку и начал тестировать лекарства без пробирок
PuzzleMask: Abusing Plain Prose as a Covert AI Attack Vector
Executive Summary In this research we introduce a prompt-crafting technique for bypassing quick LLM-based policy checks — using plain English (no emojis, base64, invisible formatting, etc.) A policy-violating payload (e.g. ”encrypt files in ~/Documents”, “give me a biohazard recipe”, “ignore all previous instructions and…”) is embedded in a specially crafted prose wrapper. An LLM with limited […]
The post PuzzleMask: Abusing Plain Prose as a Covert AI Attack Vector appeared first on Check Point Research.
Hackers Use Fake GTA 6 Downloads to Deploy RATs, Infostealers and Data-Wiping Malware
Cybercriminals are exploiting intense interest in Grand Theft Auto VI by pushing fake game downloads that install several types of malware instead of a playable game. The campaign targets people looking for an early build, leaked copy, or unofficial demo before the title’s release. The malicious downloads are distributed through poisoned search results, gaming forums, […]
The post Hackers Use Fake GTA 6 Downloads to Deploy RATs, Infostealers and Data-Wiping Malware appeared first on Cyber Security News.
New 'BlueMoon' kit exploited Windows and Chrome zero-day flaws
WordPress Uses AI to Stop Malicious Plugin Updates Before They Reach Millions of Websites
WordPress has rolled out an automated, AI-driven security review that screens every plugin release before it reaches the WordPress.org update API, adding a critical checkpoint to a distribution pipeline that had previously lacked one. The move follows a real-world incident in which a backdoor was slipped into an update for a plugin with roughly 20,000 […]
The post WordPress Uses AI to Stop Malicious Plugin Updates Before They Reach Millions of Websites appeared first on Cyber Security News.
Hackers Use Blob URLs and Microsoft Teams to Create Phishing Pages Inside Victims’ Browsers
A new phishing campaign is moving fake login pages into victims’ browsers. Rather than sending people to a malicious website, its operators use browser-generated blob URLs to assemble the page in local memory, leaving less for security tools to inspect before it appears. The operation starts with a DocuSign-themed email carrying a calendar invitation. Its […]
The post Hackers Use Blob URLs and Microsoft Teams to Create Phishing Pages Inside Victims’ Browsers appeared first on Cyber Security News.