generalnews.media
All World Business Technology Science Health Sports Entertainment Security
316 stories
Exclusive

NVIDIA Launches 37-Member Open Secure AI Alliance, Open-Sources NOOA Framework

NVIDIA has formed a 37-member alliance called the Open Secure AI Alliance and open-sourced its NOOA framework. The initiative aims to improve security in AI systems through shared tools and standards. This collaboration could accelerate the adoption of secure AI practices across the industry.

Exclusive

Sandbox Escape in n8n Lets Workflow Editors Execute OS Commands

A security vulnerability in n8n, a workflow automation tool, allows users with editor access to escape the sandbox and run arbitrary operating system commands as the n8n process. This could enable privilege escalation and unauthorized system access. Organizations using n8n should apply patches or restrict editor permissions immediately.

Exclusive

Fastjson 1.x Remote Code Execution Vulnerability Actively Exploited, No Patch Available

Attackers are actively exploiting a remote code execution vulnerability in Fastjson 1.x, a popular JSON parsing library for Java. No official patch is currently available, leaving systems vulnerable to compromise. Users are urged to apply mitigations or upgrade to version 2.x to prevent exploitation.

Exclusive

Insurance Phishing Attacks Now Enable Real-Time Account Hijacking

Cybersecurity firm CTM360 released research showing that phishing attacks targeting insurance companies have evolved into real-time account hijacking. Attackers now use sophisticated methods to steal credentials and one-time passwords simultaneously, taking over accounts instantly. This development significantly raises the threat level for insurance customers and businesses, as it bypasses traditional multi-factor authentication.

Exclusive

Cl0p Group Exploits PTC Windchill and FlexPLM Flaws

Cl0p ransomware affiliates are actively exploiting unauthenticated remote code execution vulnerabilities in internet-exposed PTC Windchill and FlexPLM software. These flaws allow attackers to gain initial access without credentials, potentially leading to data theft and ransomware deployment. Given the widespread use of these systems in manufacturing and product lifecycle management, this poses a serious risk to affected organizations.

Exclusive

GitLab RCE Proof-of-Concept Allows Authenticated Users to Run Commands

A security researcher released a proof-of-concept exploit for a vulnerability in GitLab that enables authenticated users to execute arbitrary commands as the Git system user. The flaw could lead to full server compromise, affecting self-hosted GitLab instances. Administrators should immediately apply the latest security patches to mitigate the risk.

security

BlueNoroff Uses Zoom Phishing Kit to Profile Crypto Wallets Before Malware Delivery

BlueNoroff, a threat actor, uses a phishing kit disguised as Zoom to identify high-value cryptocurrency wallets before delivering malware. The kit profiles wallet contents to target victims selectively, increasing the efficiency of their attacks. This highlights the growing sophistication of crypto-themed phishing campaigns.

Exclusive

Low-Privileged Users Can Impersonate Domain Controllers in AD Exploit

Security researchers discovered an exploit in Certighost that enables low-privileged Active Directory users to impersonate a domain controller. This vulnerability could allow attackers to escalate privileges and compromise network security. It is critical for organizations to patch or mitigate this issue promptly to prevent unauthorized access.

Exclusive

ChatGPT AgentForger Flaw Enables Rogue Agent Deployment via Phishing

A security vulnerability in ChatGPT's AgentForger feature could allow attackers to trick users into deploying malicious workspace agents through a phishing link. This flaw exploits the tool's agent creation capability, potentially leading to unauthorized access and data compromise. The discovery highlights the need for stronger security measures in AI-driven productivity tools.