At Google’s LLM bugSWAT event in Las Vegas, researchers uncovered and reported bugs in the company’s Bard AI (formerly known as Gemini) and received a $50,000 reward. Roni Carta, Justin …
Hackers Compromised 3,300 Websites Using Plug-in Vulnerability
Attackers exploit an unpatched Popup Builder vulnerability (CVE-2023-6000) to inject malicious code into vulnerable websites’ “Custom JS or CSS” sections. The code redirects users to phishing sites or injects further …
Incognito Darknet Market Mass-Extorts Buyers, Sellers
March 11, 2024 0 Comments Borrowing from the playbook of ransomware purveyors, the darknet narcotics bazaar Incognito Market has begun extorting all of its vendors and buyers, threatening to publish …
In the Crosshairs: Addressing Emerging Threats Through Adaptive Software Development and Cybersecurity Strategies
In today’s interconnected world, the threat landscape of cybersecurity is more dynamic and sophisticated than ever. Organizations face an array of challenges from malicious actors seeking to exploit vulnerabilities for …
Earth Kapre Hackers Using Weaponized ISO & IMG Files to Attack Organizations
The notorious hacking group known as Earth Kapre, also referred to as RedCurl and Red Wolf, has been targeting organizations across the globe with weaponized ISO and IMG files. This …
BianLian Hackers Exploiting TeamCity Servers to Deploy Powershell Backdoor
The notorious hacking group BianLian, known for its sophisticated cyber attacks, has shifted its focus to extortion-only operations following the release of a decryptor by Avast in January 2023. GuidePoint’s …
Vulnerabilities in Popular Fonts Allow XXE & Arbitrary Command Attacks
The popular fonts used in web development and design can be exploited to launch XML External Entity (XXE) attacks and execute arbitrary commands. These vulnerabilities, identified as CVE-2023-45139, CVE-2024-25081, and …
Magnet Goblin Hackers Exploiting 1-day Vulnerabilities To Attack Linux Servers
Threat actors often target Linux servers due to their widespread use in critical infrastructure, web hosting, and cloud environments. The open-source nature of the Linux operating system allows threat actors …
NSA Releases Top 10 Cloud Security Mitigation Strategies – 2024
NSA and CISA jointly released “Top 10 Cloud Security Mitigation Strategies” to advise cloud users on critical security practices for migrating data. The National Security Agency outlines ten essential strategies …
Beware of Fake Trading Apps on Google Play & App Store that Steal Your Money
A recent investigation unveiled a trend of fake trading apps on Google Play and the App Store designed to trick unsuspecting users out of their hard-earned money. This article delves …




