TGViewer
Channel Public Channel
πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News

πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News

@cibsecurity

πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Subscribers
28.4K
Photos
0
Videos
0
Links
90.9K

Showing posts older than #90973 Β· Back to latest

Older Posts 20 shown
Post #90972 396
πŸ–‹οΈ Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws πŸ–‹οΈ

Three researchers at the security firm Hacktron used Anthropic's Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI's public help forum and moved through a weakness in OpenAI's own login system. This was security research,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
Post #90971 293
🦿 Hackers Are Using Passkey Updates as a New Microsoft Phishing Hook 🦿

Microsoft warns attackers are using passkey and MFA update requests to phish employees, hijack sessions, and access Microsoft 365 data. The post Hackers Are Using Passkey Updates as a New Microsoft Phishing Hook appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
TechRepublic Hackers Are Using Passkey Updates as a New Microsoft Phishing Hook Microsoft warns attackers are using passkey and MFA update requests to phish employees, hijack sessions, and access Microsoft 365 data.
Post #90970 494
πŸ–‹οΈ Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws πŸ–‹οΈ

Three researchers at the security firm Hacktron used Anthropic's Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI's public help forum and moved through a weakness in OpenAI's own login system. This was security research,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
Post #90969 536
πŸ–‹οΈ Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws πŸ–‹οΈ

Three researchers at the security firm Hacktron used Anthropic's Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI's public help forum and moved through a weakness in OpenAI's own login system. This was security research,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
  • ❀ 1
Post #90968 909
πŸš€ Beware the SparroWock: The backdoor that bites, the commands that catch πŸš€

ESET researchers document SparroWocky, the new flagship backdoor of the FamousSparrow APT group.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
Welivesecurity Beware the SparroWock: The backdoor that bites, the commands that catch ESET researchers document SparroWocky, the new flagship backdoor of the FamousSparrow APT group
Post #90967 848
πŸ•΅οΈβ€β™‚οΈ CISA Ditches Weekly Vulnerability Roundups for Risk-Based Focus πŸ•΅οΈβ€β™‚οΈ

The move is consistent with the agency's advice on the need for organizations to prioritize the vulnerabilities that actually matter.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
Dark Reading CISA Ditches Weekly Vulnerability Roundups for Risk-Based Focus The move is consistent with the agency's advice on the need for organizations to prioritize the vulnerabilities that actually matter.
Post #90966 643
πŸ•΅οΈβ€β™‚οΈ China's FamousSparrow APT Spies on US Politics in Latin America πŸ•΅οΈβ€β™‚οΈ

Amid the US and China's fight for ecocolonial influence in Latin America, a stealthy backdoor has taken flight.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
Dark Reading China's FamousSparrow APT Spies on US Politics in Latin America Amid the US and China's fight for eco-colonial influence in Latin America, a stealthy backdoor has taken flight.
Post #90965 578
🦿 China’s Answer to AI Safety: More Controls, Not Slower Development 🦿

China is emphasizing technical controls for AI agents as U.S. leaders debate slowing frontier AI, raising new questions for businesses deploying autonomous systems. The post Chinas Answer to AI Safety More Controls, Not Slower Development appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
TechRepublic China’s Answer to AI Safety: More Controls, Not Slower Development China is emphasizing technical controls for AI agents as U.S. leaders debate slowing frontier AI, raising new questions for businesses deploying autonomous systems.
Post #90964 478
πŸ¦… Why APAC Enterprises Need Real-Time Threat Intelligence as Singapore, Malaysia, and Thailand Tighten Cyber Compliance in 2026 πŸ¦…

Cybersecurity compliance APAC 2026 has moved from guidance to enforcement across three of Southeast Asia's largest economies, almost in step. Singapore's Cyber Security Agency issued an updated Cybersecurity Code of Practice 2026 for Critical Information Infrastructure on 29 July 2026. Malaysia's Cyber Security Act 2024 has been active since August 2024, with NACSA now well into audits and incidentreporting enforcement. Thailand's Cybersecurity Act NCSA mandate now covers new cloud and website security standards, with the cloud standard already in force.  None of this happened quietly, and none of it is optional for the organizations it covers. For enterprise CISOs and compliance leads across ASEAN, the message from three separate regulators is the same continuous monitoring and ...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
Cyble Why APAC Enterprises Need Real-Time Threat Intelligence as Singapore, Malaysia, and Thailand Tighten Cyber Compliance in 2026 Cybersecurity compliance APAC 2026 is tightening in Singapore, Malaysia, and Thailand β€” see why real-time threat intel matters now.
Post #90962 296
🌊 UnderDefense Introduces MAXI MCP – Your SOC Data Where You Already Work 🌊

Jacksonville, FL, September 17, 2026. UnderDefense, a cybersecurity company delivering Agentic AI SOC and Compliance AI to enterprise clients across the US and EU, today announced the launch of MAXI MCP, a single connection that brings SIEM, EDR, and SOC data directly into the AI assistants and IDEs security teams already use, including Claude, ChatGPT, The post UnderDefense Introduces MAXI MCP Your SOC Data Where You Already Work appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
UnderDefense UnderDefense MAXI MCP: Unified SOC Data for AI Assistants & IDEs UnderDefense launches MAXI MCP, connecting your SIEM, EDR, and SOC data directly to Claude, ChatGPT, Cursor, and IDEs via Model Context Protocol.
Post #90958 204
πŸ“” New Chinese-Made β€˜RatHat’ Android Malware Leverages AI to Steal Financial Data πŸ“”

Researchers at Zimperium have uncovered a new Android malware strain, dubbed RatHat, with spyware and backdoor capabilities.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
Infosecurity Magazine New β€˜RatHat’ Android Malware Leverages AI to Steal Financial Data Researchers at Zimperium have uncovered a new Android malware strain, dubbed RatHat, with spyware and backdoor capabilities
Post #90957 268
πŸ“” CISA Urges Critical Infrastructure to Plant Decoys Inside Networks πŸ“”

CISA released guidance on using cyber decoys to detect disrupt malicious activity inside networks.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
Infosecurity Magazine CISA Urges Critical Infrastructure to Plant Decoys Inside Networks CISA released guidance on using cyber decoys to detect & disrupt malicious activity inside networks
Post #90955 170
πŸ–‹οΈ U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks πŸ–‹οΈ

The U.S. Department of Justice DoJ on Tuesday announced the courtauthorized seizure of internet domains associated with a distributed denialofservice DDoSforhire service known as NightmareStresser. The domains in question are nightmarestresser.com and nightmarestresser.org. Visitors to the site are now greeted by a seizure banner that states "This domain has been seized by the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
Post #90954 207
πŸ–‹οΈ Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks πŸ–‹οΈ

Cisco has warned of a fresh maximumseverity security flaw impacting Identity Services Engine ISE that has come under active exploitation. The vulnerability, tracked as CVE202676460 CVSS score 10.0, could allow an unauthenticated, remote attacker to bypass authentication. "This vulnerability is due to insufficient authentication control on an API endpoint," Cisco said. "An attacker.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
Post #90953 206
πŸ–‹οΈ Gyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata Records πŸ–‹οΈ

A security breach at Gyazo, Helpfeel's imagesharing service, exposed about 23.62 million user records, including email addresses and password hashes, the Kyotobased company said in a notice published Wednesday. It also exposed about 490 million image metadata records, mostly for images from January 2019 or earlier, including the IDs that make up Gyazo image links. Helpfeel said.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
Older posts β†’
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook β†’Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 β†’