generalnews.media
All World Business Technology Science Health Sports Entertainment Security
336 stories
security

Malvertising Delivers Malware in Parts, Browser Reassembles Executable

A new malvertising campaign distributes malware in fragmented pieces, then tricks the victim's browser into assembling the executable. This technique helps the attack evade traditional security scans by never sending the full malicious file at once. It underscores the growing sophistication of browser-based threats.

Exclusive

RaaS Portal DevMan Centralizes Payloads, Victim Management, Payouts

The DevMan ransomware-as-a-service portal integrates payload building, victim data management, and affiliate payments into a single platform. This streamlines operations for cybercriminals, lowering the technical barrier to launching ransomware attacks. The development signals a growing professionalization of ransomware ecosystems, increasing the threat to organizations globally.

business security world

How concerned should we be about the claimed OpenAI hack?

A hacker claims to have breached OpenAI's internal systems, but experts are divided on whether this is a genuine security incident or a publicity stunt. The incident raises questions about the safety of AI development and the potential for sensitive data exposure. The outcome could affect trust in leading AI firms and their security practices.

Exclusive

Security Teams Must Enforce AI Agent Actions, Not Just Monitor Them

The article argues that simply observing AI agents is insufficient for security; teams must actively enforce policies on what agents can do. It highlights the need for granular controls over agent actions to prevent misuse. This matters as AI agents become more autonomous, requiring proactive security measures rather than passive monitoring.

Exclusive

Why AI Needs a Genie Coefficient

The article proposes a "Genie Coefficient" as a metric to measure and control how much an AI system can act autonomously without human oversight. This concept aims to manage AI risks by quantifying the degree of freedom and potential impact. It matters because it offers a practical framework for regulating increasingly powerful AI systems.

Exclusive

Golden Chickens Threat Group Returns with Four New Malware Families

The Golden Chickens cybercriminal group has resurfaced, deploying four new malware families and modular implants. This evolution indicates the group's continued activity and increased sophistication in their attacks. It matters because it highlights ongoing cybersecurity threats from a persistent, adaptive threat actor.

Exclusive

NodeBB Fixes Eight AI-Discovered Vulnerabilities That Leaked Admin Access and Private Chats

NodeBB, a popular open-source forum software, patched eight security vulnerabilities discovered by AI-powered tools. The flaws could have allowed attackers to gain administrator access and view private chat messages. The updates are critical for any NodeBB site to prevent data breaches and unauthorized access.

Exclusive

Fake Notepad++ Plugin Delivers MATCHBOIL.V2 Malware in Targeted Attacks

A threat actor known as UAC-0099 is using a fake Notepad++ plugin to distribute the MATCHBOIL.V2 backdoor. The attack targets users who download the plugin from unofficial sources, posing a supply chain risk. This highlights the importance of verifying software downloads to avoid malware infections.

security technology

TheNumbers.com Goes Offline

TheNumbers.com, a popular site for box office data and film industry statistics, is no longer accessible. The shutdown has prompted speculation among users about the reason for its disappearance, with no official explanation yet. The loss of this resource affects movie analysts, historians, and fans who relied on its detailed figures.