-
"Audio-Jacking: Using Generative AI to Distort Live Audio Transactions"The emergence of generative Artificial Intelligence (AI), such as text-to-image, text-to-speech, and Large Language Models (LLMs), has created new security challenges and risks.
-
"MIT Student Claims to Hack Apple Vision Pro on Launch Day"Joseph Ravichandran, a Ph.D. student at the Massachusetts Institute of Technology (MIT) and an Apple Vision Pro user, says they have discovered vulnerabilities in the popular Augmented Reality (AR) headset.
-
"Google Supply Chain Bug Patched in Code-Testing Tool Bazel"A critical supply chain bug in Bazel, Google's open-source software development tool, allowed hackers to insert malicious code.
-
"HopSkipDrive Says Personal Data of 155,000 Drivers Stolen in Data Breach"Student rideshare startup HopSkipDrive has recently confirmed a data breach involving the personal data of more than 155,000 drivers. Los Angeles-based HopSkipDrive offers an Uber-style rideshare service for children and teenagers.
-
"Airbus NAVBLUE Flysmart+ Manager Hack"A flaw was discovered in Flysmart+ Manager, one of several apps in the Flysmart+ suite used by Airbus pilots to synchronize data with other Flysmart+ apps that inform pilots about safe takeoffs and landings.
-
"New Mispadu Banking Trojan Exploiting Windows SmartScreen Flaw"A new variant of the Mispadu banking Trojan is exploiting a now-patched Windows SmartScreen security bypass flaw to compromise users in Mexico.
-
"Teens Committing Scary Cybercrimes: What's Behind the Trend?"The rise in teens committing cybercrimes on a large scale and causing real harm in the process should not be ignored.
-
"Google Offers Free Access to Fuzzing Framework"Fuzzing can be an effective tool for identifying zero-day vulnerabilities in software.
-
"Pennsylvania Courts’ Website Disrupted by DoS Attack"The Pennsylvania Courts system has recently been hit by a cyberattack, taking down parts of its website. The Administrative Office of Pennsylvania Courts revealed via social media that the service had suffered a denial of service (DoS) attack.
-
"Newest Ivanti SSRF Zero-Day Now Under Mass Exploitation"Multiple attackers are currently exploiting a Server-Side Request Forgery (SSRF) vulnerability in Ivanti Connect Secure and Ivanti Policy Secure, tracked as CVE-2024-21893.
-
"CSE Faculty Are Among Google's First Trust & Safety Research Award Winners"Three faculty members from UC San Diego's Department of Computer Science and Engineering (CSE) are some of the first academic researchers worldwide to receive Google's Trust and Safety Research Award.
-
"Mastodon Vulnerability Allows Attackers to Take Over Accounts"Mastodon, the free and open-source decentralized social networking platform, has recently fixed a critical vulnerability that allows attackers to impersonate and take over any remote account.
News