Japan Video-Sharing Website Suspensed Services Following Cyber Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The popular Japanese video-sharing website Niconico has suspended its services due to a large-scale cyberattack. Niconico is one of Japan’s most extensive video-sharing services. Users share various videos, from music and sports to multiple hobbies. The platform also offers live …

Fortinet to Acquire AI-Powered Cloud Security Platform Lacework

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet, a global leader in broad, integrated, and automated cybersecurity solutions, has announced its acquisition of Lacework, an AI-powered cloud-native application protection platform (CNAPP). This strategic move aims to enhance Fortinet’s already comprehensive cybersecurity platform by integrating Lacework’s advanced cloud …

Apple Unveils “Apple Intelligence” AI Features for iPhone, iPad, and Mac

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple has introduced a groundbreaking personal intelligence system called “Apple Intelligence” at its Worldwide Developers Conference (WWDC) 2024. This innovative AI technology is set to transform user experiences across iPhone, iPad, and Mac devices by harnessing the power of generative …

EmailGPT Vulnerability Let Attackers Access Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new prompt injection vulnerability has been discovered in the EmailGPT service. This API service and Google Chrome plugin help users write emails in Gmail using OpenAI’s GPT model. The prompt injection vulnerability arises when an attacker manipulates a large …

Criminal IP Unveils Innovative Fraud Detection Data Products on Snowflake Marketplace

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AI SPERA, a leader in Cyber Threat Intelligence (CTI) solutions, announced that it has started selling its paid threat detection data from its CTI search engine ‘Criminal IP‘ on the Snowflake Marketplace. Criminal IP is committed to offering advanced cybersecurity …

Apple To Unveil It’s Dedicated Password Manager For Ios Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple is set to make a significant announcement at the Worldwide Developers Conference (WWDC), which kicks off on June 10. According to Bloomberg’s Mark Gurman, the tech giant will introduce a new homegrown app called “Passwords,” designed to simplify users’ logging into websites and software. A New Era in Password Management The Passwords app is …

VS Code Marketplace Flaw Let Attackers Include Malicious Extensions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers identified security vulnerabilities in the VS Code Marketplace that could be exploited by malicious actors, as these flaws allowed extensions with malicious dependencies to gain credibility (through high install numbers) and access to user systems.  They found extensions that …

Safari, Microsoft Edge, & DuckDuckGo Spoofing Flaws Impacting Millions of Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

RedSecLabs security researchers Rafay Baloch and Muhammad Samaak have uncovered address bar spoofing vulnerabilities in widely used mobile browsers such as Safari, Microsoft Edge, and DuckDuckGo. These vulnerabilities have a significant impact, affecting millions of users worldwide. The Severity of …

Mozilla’s 0Day Investigative Network, Next Generation Bug Bounty Program

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Generative artificial intelligence (GenAI) is reshaping our world, from streamlining work tasks like coding to helping us plan summer vacations. As we increasingly adopt GenAI services and tools, we face the emerging risks of their malicious use. Security is crucial, …

PoC Exploit Published For SharePoint XML eXternal Entity (XXE) Injection Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new XXE (XML eXternal Entity) Injection has been discovered to affect SharePoint on both on-prem and cloud instances. This vulnerability has been assigned to CVE-2024-30043, and the severity has been given as 6.3 (Medium). However, successfully exploiting this vulnerability …