generalnews.media
All World Business Technology Science Health Sports Entertainment Security
15 stories
Exclusive

Kimsuky Builds Offline AI System to Boost Phishing and Automate Malware

The North Korean hacking group Kimsuky is developing an offline AI stack to improve its phishing operations and automate malware development. By running AI locally, the group reduces reliance on external services and increases operational security. This could make their cyberattacks more scalable and harder to detect.

Exclusive

Python Gets a Post-Quantum Encryption Library

A new library introduces post-quantum cryptographic algorithms to Python, letting developers build applications resistant to future quantum computer attacks. This matters because quantum computers could eventually break current encryption standards, so having accessible tools now helps prepare critical systems for the future.

Exclusive

Atlassian Rovo Flaw Lets Attackers Steal Jira and Confluence Data

Researchers have demonstrated that Atlassian's Rovo AI assistant can be manipulated through prompt injection to exfiltrate sensitive data from connected Jira and Confluence projects. The attack requires a user to interact with maliciously crafted content, potentially exposing confidential corporate information to external actors. Administrators should restrict Rovo access and monitor for unusual activity until a patch is available.

Exclusive

CISA Adds Progress Kemp LoadMaster Flaw to KEV After 792 Exploit Attempts

CISA has added a security flaw in Progress Kemp LoadMaster to its Known Exploited Vulnerabilities catalog following 792 reported exploit attempts. The vulnerability is being actively exploited, putting affected organizations at risk. Administrators should apply patches or mitigations immediately.

security

ClickFix Malware Targets macOS to Steal Crypto Wallet Credentials

A new campaign uses ClickFix social engineering tactics to trick macOS users into installing malware that steals sensitive data, including crypto wallet credentials. The attack can drain digital assets from compromised wallets, posing a serious risk to cryptocurrency users. This highlights the expanding threat landscape beyond Windows-focused malware.

Exclusive

Webinar: Securing Development When AI Enables 10–50x Faster Code Shipping

The Hacker News is promoting a webinar focused on security challenges that arise when AI tools dramatically accelerate code delivery. The session will address how teams can protect applications and infrastructure while shipping code 10 to 50 times faster. This matters for developers and security professionals adapting to AI-driven workflows.