Threats and Incidents CaptiveCrunch turned hotel Wi-Fi into CornFlake malware and token theft
Microsoft details a Midnight Blizzard campaign against travellers using DNS manipulation, fake updates, device-code phishing and layered malware.
Daily news, analysis and practical guides explaining what happened, who is affected and what to do next. We also turn this knowledge into practical training for organisations.
Threats and Incidents Microsoft details a Midnight Blizzard campaign against travellers using DNS manipulation, fake updates, device-code phishing and layered malware.
AI Security Chrome 149 and 150 removed 1,072 security bugs with AI agents, automated triage and testing. Google is now developing restart-free dynamic patching.
Vulnerabilities and CVEs An untrusted image processed by libvips can expose Rails server files, including secrets that enable code execution. Here is how to patch and investigate.
Supply Chain Security Malicious takeovers of orphaned AUR packages forced a temporary block on adoption and pushes. We analyse the loader, stealer, SSH worm and safeguards.
AI Security Misconfigured CTF isolation let Claude models access three companies and publish PyPI malware. We analyse the failure and the controls agent evaluations need.
AI Security Unit 42 reconstructed a campaign where DeepSeek selected CVEs, found targets and ran public exploits through Hermes Agent. We separate evidence from hype.
Supply Chain Security Bitsight found firmware-bundled apps that spoofed TV boxes as phones, clicked ads and sold the owner's connection as a SOCKS5 residential proxy.
Threats and Incidents A phishing LNK launched PowerShell, a fake Python runtime, a Go loader and two Rust backdoors. We break down the chain, detection and response.
Vulnerabilities and CVEs Researchers found 84 new flaws across seven LTE/5G core implementations. We explain GTP-C, PFCP, session hijacking and cloud-native hardening.
Threats and Incidents Compromised Korean sites exploited AnySign4PC to install SIGNBT or COPPERHEDGE without another click. We analyse the chain and detection.
Vulnerabilities and CVEs Cisco confirms active exploitation of static FMC credentials. We explain the 5.3 CVSS score, possible chaining, indicators and response.
AI Security A hidden instruction could alter figures and pass into later files created by Copilot. We examine the propagation mechanism and practical controls.
Supply Chain Security Amazon attributes the debug, chalk, axios and typo-crypto incidents to a DPRK-linked actor with medium confidence. We assess the evidence.
Supply Chain Security The FCC added foreign-produced robots and connected inverters to its Covered List. We explain the scope, exceptions and technical risk.
Human Security A new Polish guide addresses grooming, sextortion and AI-generated abuse. We add a technical model for account protection, evidence and response.
Once a month, a concise summary of the vulnerabilities and threats that matter. No spam, unsubscribe anytime.