Aggregator
Noma Raised $100M to Expand Agentic AI Security Platform
With agentic AI deployments accelerating, Noma Security’s $100 million Series B will fuel development of risk management and runtime protection features. CEO Niv Braun said demand for securing agentic AI has surged among Fortune 500 firms and healthcare and financial institutions.
Genomics Gear Firm Pays $9.8M to Settle False Cyber Claims
Genomics sequencing firm Illumina Inc. has agreed to pay $9.8 million to resolve False Claims Act whistleblower allegations that it sold software and systems containing cybersecurity vulnerabilities over more than seven years to government agencies.
Safe Raises $70M Series C to Scale Cyber Risk Management
Safe's $70 million Series C will fund expanded capabilities across its cyber risk quantification, exposure management and third-party oversight tools. The company says its agentic AI vision – cyber AGI – will transform how enterprises manage and mitigate cyberthreats.
ISMG Editors: ToolShell Exploit Blurs Crime and Espionage
In this week's update, four ISMG editors discussed the latest on the ToolShell exploit and the rise of Warlock ransomware, why IT-OT integration may not be the best answer for industrial security and what to expect next week from ISMG Studio at Black Hat Conference 2025.
CVE-2013-10046 | Agnitum Outpost Internet Security 8.1 acs.exe path traversal (EUVD-2013-7275)
CVE-2013-10055 | Havalite CMS 1.1.7 upload.php unrestricted upload (EUVD-2013-7271 / EDB-26243)
LockBit Operators Using Stealthy DLL Sideloading Technique to Load Malicious App as Legitimate One
LockBit ransomware operators have adopted an increasingly sophisticated approach to evade detection by leveraging DLL sideloading techniques that exploit the inherent trust placed in legitimate applications. This stealthy method involves tricking legitimate, digitally signed applications into loading malicious Dynamic Link Libraries instead of their intended components, allowing cybercriminals to execute ransomware payloads while masquerading as […]
The post LockBit Operators Using Stealthy DLL Sideloading Technique to Load Malicious App as Legitimate One appeared first on Cyber Security News.
招聘 - Shopee 深圳 - 基础安全工程师/专家
CVE-2012-10022 | LxCenter Kloxo up to 6.1.12 privileges management (EUVD-2012-6568 / EDB-25406)
CVE-2013-10047 | MiniWeb HTTP Server up to Build 300 Management Instrumentation Service unrestricted upload (EUVD-2013-7267 / EDB-27607)
CVE-2010-1977 | Gohigheris Com Jwhmcs 1.5.0 index.php controller path traversal (EDB-12083 / BID-39243)
CVE-2010-1982 | Joomlart Com Javoice 2.0 index.php view path traversal (EDB-12121 / BID-39343)
CVE-2010-1601 | Joomlamart Com Jacomment index.php view path traversal (EDB-12236 / XFDB-57848)
CVE-2010-1721 | Thethinkery Com Iproperty 1.5.3 index.php ID sql injection (EDB-12246 / XFDB-57875)
CVE-2010-1953 | Joomlacomponent.inetlanka Com Multimap 1.0 IMAP index.php controller path traversal (EDB-10928 / Nessus ID 43636)
CVE-2010-1723 | Joomlacomponent.inetlanka Com Drawroot 1.1 index.php controller path traversal (EDB-12289 / Nessus ID 43636)
CVE-2010-1954 | Joomlacomponent.inetlanka Com Multiroot 1.0 index.php controller path traversal (EDB-10928 / Nessus ID 43636)
CVE-2010-4918 | iJoomla Com Magazine 3.0.1 magazine.functions.php config code injection (EDB-14896 / XFDB-61598)
11,000 Android Devices Hacked by Chinese Threats Actors to Deploy PlayPraetor Malware
A sophisticated malware-as-a-service operation orchestrated by Chinese-speaking threat actors has successfully compromised over 11,000 Android devices worldwide through the deployment of PlayPraetor, a powerful Remote Access Trojan designed for on-device fraud. The campaign represents a significant escalation in mobile banking malware operations, with the botnet expanding at an alarming rate of over 2,000 new infections […]
The post 11,000 Android Devices Hacked by Chinese Threats Actors to Deploy PlayPraetor Malware appeared first on Cyber Security News.