Headlines
In the Crosshairs: North Korean Cyberspies Launch Attacks on GitHub Developerswordpress,cybersecurity,NorthKorea,cyberspies,GitHub,developers,attacks

In the Crosshairs: North Korean Cyberspies Launch Attacks on GitHub Developers

North Korean Lazarus APT Group Launches Impersonation Scam Targeting Developers Overview The North Korean state-sponsored Lazarus advanced persistent threat (APT) group has returned with a new social engineering campaign. This time, the group is impersonating developers and recruiters with legitimate GitHub or social media accounts to target a limited group of technology employees. The campaign…

Read More
The Achilles Heel of Financial Institutions: Open-Source Software Attackswordpress,financialinstitutions,open-sourcesoftware,attacks

The Achilles Heel of Financial Institutions: Open-Source Software Attacks

Protect Your Devices – Download McAfee Antivirus Now As technology becomes increasingly integrated into our daily lives, the need for robust cybersecurity measures becomes even more pressing. With financial institutions, businesses, and individuals relying heavily on technology, the potential threats looming over the digital landscape cannot be ignored. Malware, phishing, and other forms of cyber…

Read More
Can Google's Red Team Foil Attacks on AI Systems?google,redteam,attacks,AIsystems

Can Google’s Red Team Foil Attacks on AI Systems?

Google Creates Red Team to Test Attacks Against AI Systems Google has established an AI Red Team dedicated to carrying out sophisticated technical attacks on artificial intelligence systems. The creation of this team comes shortly after Google introduced the Secure AI Framework (SAIF), which aims to provide a security framework for the development, use, and…

Read More
Introducing CheckAI: Enhancing Security by Detecting and Preventing Attacks on ChatGPT-Generated Codewordpress,security,CheckAI,attacks,ChatGPT,code,detection,prevention

Introducing CheckAI: Enhancing Security by Detecting and Preventing Attacks on ChatGPT-Generated Code

New Plugin by Checkmarx Protects Against Attacks on GenAI-Generated Code Introduction Checkmarx, a global leader in application security solutions, has recently introduced the CheckAI Plugin for ChatGPT, becoming the first in the industry to offer a solution to detect and prevent potential attacks against ChatGPT-generated code. This plugin aims to protect developers and security teams…

Read More
Two Jira Plugin Vulnerabilities Expose System to Potential Attackswordpress,security,vulnerability,Jira,plugin,system,attacks

Two Jira Plugin Vulnerabilities Expose System to Potential Attacks

Two Jira Plugin Vulnerabilities in Attacker Crosshairs Attackers are actively exploiting two path traversal vulnerabilities in the ‘Stagil navigation for Jira – Menus & Themes’ plugin, according to a warning issued by the SANS Internet Storm Center. The plugin, available via the Atlassian marketplace, allows users to customize their Jira instance with custom navigation menus…

Read More
Are ChatGPT Hallucinations Enhancing Vulnerability to Supply-Chain Malware Attacks?cybersecurity,ChatGPT,hallucinations,vulnerability,supply-chain,malware,attacks

Are ChatGPT Hallucinations Enhancing Vulnerability to Supply-Chain Malware Attacks?

ChatGPT Vulnerability Can Allow Attackers to Spread Malware through Software Supply Chain Researchers from Vulcan Cyber’s Voyager18 research team have revealed a vulnerability in ChatGPT, an AI-based chatbot that allows attackers to exploit the platform’s tendency to provide false information. This can enable attackers to create and spread malicious code packages that can invade legitimate…

Read More
The Dangers of 'Picture-in-Picture' Obfuscation Attacks for Stealing Credentialscybersecurity,phishing,picture-in-picture,obfuscation,attacks,credentials,theft

The Dangers of ‘Picture-in-Picture’ Obfuscation Attacks for Stealing Credentials

Hackers Turn to Obfuscation Tactics in Phishing Campaigns Hackers are constantly updating their tactics with new tools and techniques to make their phishing campaigns more convincing and successful. In a recent campaign analyzed by Avanan, cybercriminals hid malicious links behind glossy advertising photos from trusted brands like Delta Airlines and Kohl’s to trick users into…

Read More
Lazarus Group escalates attack against vulnerable Windows IIS web serverswindows,IIS,webservers,cybersecurity,LazarusGroup,attacks

Lazarus Group escalates attack against vulnerable Windows IIS web servers

The Lazarus Group Targets Unpatched Windows IIS Web Servers The North Korean state-backed hacking group, Lazarus Group, is known for its malicious cyber activities worldwide. This time, the group has been found exploiting unpatched Windows IIS web servers for deploying its reconnaissance malware. AhnLab Security Response Center (ASEC) researchers have discovered that the latest round…

Read More