Featured
Critical Security Breach: Popular Python AI Library Compromised with Crypto Mining Malware
The Ultralytics AI library was discovered distributing malicious cryptocurrency mining code through compromised versions on PyPI. The attack, which exploited GitHub Actions workflows, potentially impacted thousands of AI developers worldwide and highlights growing concerns around supply chain security.
Ukraine Moves to Curb Telegram Use Over Russian Security Threats
Ukrainian authorities are taking steps to reduce dependence on Telegram messaging app due to security vulnerabilities in the ongoing war with Russia. The government has ordered restrictions for military and state employees while proposing new regulations to combat potential surveillance and disinformation risks.
Croatian Port Operator Successfully Blocks 8Base Ransomware Attack
Luka Rijeka, a major Croatian port operator, thwarted a ransomware attack through rapid incident response and system shutdowns. The company's IT team successfully restored operations within days, preventing data loss despite threats from the 8Base ransomware group.
Critical Prompt Injection Flaws Discovered in Leading AI Chatbots
Security researchers uncover dangerous vulnerabilities in DeepSeek and Claude AI chatbots that could enable account hijacking and malicious code execution. The findings highlight significant security risks in AI systems, prompting companies to strengthen defenses against prompt injection attacks.
Massive Socks5Systemz Botnet Fuels Illegal Global Proxy Service Network
BitSight uncovers a sprawling botnet operation that has compromised over 85,000 devices to power an illicit proxy service called PROXY.AM. The network, active since 2013, allows cybercriminals to rent infected machines as proxy servers for monthly fees up to $700.
Critical Buffer Overflow Vulnerability Discovered in Curl Web Tool
A serious security flaw in Curl, the widely-used data transfer tool, could allow attackers to exploit buffer overflow vulnerabilities when processing IP addresses. The issue affects both IPv4 and IPv6 address handling, putting countless websites and applications at risk.
Apple Faces $1.2 Billion Lawsuit Over Abandoned Child Safety Scanning System
Apple is being sued for $1.2 billion by child abuse victims after abandoning plans to scan iCloud for CSAM content. The lawsuit, representing over 2,600 victims, argues that Apple's decision enables continued circulation of abuse materials while the company defends its commitment to fighting exploitation.
Inside the Secret Life of Brian Krebs: The Journalist Who Hunts Cybercriminals
From an undisclosed location, cybersecurity journalist Brian Krebs fearlessly investigates and exposes dangerous cybercriminals, despite constant threats and attacks. His deep technical expertise and vast network of sources have helped uncover major data breaches and cybercrime operations.
Cities Fight Back Against AI-Powered Rent Hikes as Legal Scrutiny Intensifies
U.S. cities are increasingly challenging landlords' use of AI algorithms to set rental prices, with San Diego joining San Francisco and Philadelphia in proposing restrictions. The movement gains momentum as federal authorities pursue antitrust action against leading provider RealPage.