Category index

Cyber Security

4276 articles

4276 ARTICLES

FEATURED REPORT

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before running risky commands, and pointed it at Thailand’s Ministry of Finance, which runs the country’s treasury and tax collection. The agent then worked through the ministry’s network on its own, checking hosts for ways to gain root access, hunting through file systems, and

BY The Hacker News
MIN READ 1 MIN READ
EXPLORE north_east
Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
Golden Chickens Resurfaces With Four New Malware Families and Modular Implants
CYBERSECURITY

Golden Chickens Resurfaces With Four New Malware Families and Modular Implants

The threat actors behind the Golden Chickens malware-as-a-service (MaaS) ecosystem have resurfaced with four new malware families, indicating that the operators are showing no signs of stopping despite extensive public disclosures into their inner workings. The malware families in question are: TinyEgg, ChonkyChicken, a modularized variant of ChonkyChicken, and a modified web browser credential

1 MIN READ arrow_forward
Microsoft tightens Windows enterprise activation security
CYBERSECURITY

Microsoft tightens Windows enterprise activation security

Microsoft is making Trusted Platform Module (TPM)-backed attestation a requirement for Windows Key Management Service (KMS), the on-premises service used for Windows volume activation, replacing the software-only trust model with hardware-backed verification to strengthen enterprise activation security. Attestation will become mandatory with the next Windows Server Long-Term Servicing Channel (LTSC) release. How TPM-backed KMS attestation works The KMS server uses its TPM to generate an attestation report proving its identity and integrity before activation is … More → The post Microsoft tightens Windows enterprise activation security appeared first on Help Net Security.

1 MIN READ arrow_forward
Google gives developers an AI bug hunter that also writes patches
CYBERSECURITY

Google gives developers an AI bug hunter that also writes patches

Google has launched a preview of CodeMender, an AI agent built to scan code for security flaws, confirm they are exploitable, and generate fixes for developers to review. (Source: Google) The company describes it as a response to attackers who are already using AI to speed up their work, arguing that defenders need automation that moves at the same speed. “CodeMender can help you advance from passive scanning to automated code remediation, and reduce zero-day … More → The post Google gives developers an AI bug hunter that also writes patches appeared first on Help Net Security.

1 MIN READ arrow_forward
Google’s newest sign-in method asks you to look at the camera
CYBERSECURITY

Google’s newest sign-in method asks you to look at the camera

Google’s selfie video sign-in option verifies that an account owner is a real person and that the account wasn’t created or used by computer programs or bots for the purpose of abuse, such as spamming. It is not available for all regions, accounts, or devices. Source: Google A selfie video is recorded and securely stored with the account owner’s consent, and it can be deleted at any time in the Google Account. Users may take … More → The post Google’s newest sign-in method asks you to look at the camera appeared first on Help Net Security.

1 MIN READ arrow_forward
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats
CYBERSECURITY

NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats

Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit them. Aikido Security rates all eight as high severity and says its AI pentest agents found them in a six-hour review of the forum software’s source code. Every version before 4.14.0 is affected. NodeBB has fixed them all, and administrators should be on 4.14.2. The simplest one takes a settings change. A

1 MIN READ arrow_forward
Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say
CYBERSECURITY

Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say

Redis shipped seven security releases on July 23 after researchers published authenticated RCE PoCs for stock Redis 6.2.22, 7.4.9, 8.6.4, and 8.8.0. All four chains require RESTORE. The Streams chains also need EVAL and XGROUP; the 8.8.0 chain needs EVAL and the bundled RedisBloom module. Redis says the underlying memory flaws may lead to remote code execution. Redis 6.2.23, 7.2.15, and 7.4.10

1 MIN READ arrow_forward
Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks
CYBERSECURITY

Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks

The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that’s dressed up as a Notepad++ plugin to compromise Windows systems. The activity has been attributed by the agency to a threat cluster it tracks as UAC-0099, a Russia-aligned group that has previously observed weaponizing security flaws in WinRAR software to

1 MIN READ arrow_forward
The automotive software vulnerabilities hiding in your dashboard
CYBERSECURITY

The automotive software vulnerabilities hiding in your dashboard

Pop the hood on a new car and you won’t find much you can fix with a wrench. What you’ll find is software, and a lot of it. The screen in the dash probably runs Android or a flavor of Linux. The system watching the road for you might run QNX or VxWorks, the same kind of code that flies aircraft and runs factory floors. Carmakers spent the last decade making this switch, and it … More → The post The automotive software vulnerabilities hiding in your dashboard appeared first on Help Net Security.

1 MIN READ arrow_forward
Governing Al agents at scale: Lessons from the leaders who’ve done it
CYBERSECURITY

Governing Al agents at scale: Lessons from the leaders who’ve done it

Enterprise AI leaders from ZoomInfo, Docusign and AppViewX share what it took to build AI Centers of Excellence and govern agent identities inside two companies operating at scale. What you’ll take away: What an AI Center of Excellence looks like day to day at ZoomInfo and Docusign How to govern agent identities without standing up a parallel identity stack The traps both leaders worked hard to avoid, and what they’d do differently now What Venkat … More → The post Governing Al agents at scale: Lessons from the leaders who’ve done it appeared first on Help Net Security.

1 MIN READ arrow_forward