Tag: computer
-
Shai-Hulud Attack Nips Cyber-Firm CrowdSec’s GitHub Data
Threat actors stole 170 private repositories using an OAuth token stolen from a former employee’s computer through the TanStack npm supply chain attack. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/shai-hulud-attack-cyber-firm-crowdsec-github-data
-
Data dive: Mapping UK police forces’ hyperscale dependence
Computer Weekly used public DNS records to map which outside companies Britain’s 48 police forces connect to and found a service that has quietly standardised on one US hyperscaler First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650799/Data-dive-Mapping-UK-police-forces-hyperscale-dependence
-
Google says Gemini breached three companies during security test
Google’s artificial intelligence model Gemini accessed computer systems belonging to three real companies without authorization during a cybersecurity test in May, the latest in a string of similar incidents. First seen on therecord.media Jump to article: therecord.media/gemini-google-cyber-breach
-
Cybersecurity und Datenschutz im iGaming-Sektor
www.pexels.com/de-de/foto/laptop-tippen-computer-kommunikation-5475752/ Wenige Online-Branchen verarbeiten so dichte Datenbestände wie das regulierte Glücksspiel. Ein Spielerkonto vereint Ausweisdaten, Bankverbindungen, Transaktionshistorien und detaillierte Verhaltensprofile in einem einzigen Datensatz. Entsprechend hoch sind die Anforderungen an IT-Sicherheit und Datenschutz, die Betreiber im deutschsprachigen Markt erfüllen müssen. Hinzu kommt die schiere Frequenz: Große Anbieter verzeichnen täglich hunderttausende Logins, Einzahlungen und Auszahlungsanträge…. First…
-
Hackers claim breach of Russian election systems days before parliamentary vote
An anonymous hacking group claimed to have broken into computer systems connected to Russia’s election infrastructure just days before the country begins voting for a new parliament. First seen on therecord.media Jump to article: therecord.media/russia-election-hackers-breach
-
North Korean IT Workers Pay People to Sit Through Job Interviews While They Control the Computer
North Korean IT-worker operators are recruiting foreign nationals to sit on camera during remote job interviews. At the same time, the real candidate provides answers, completes coding tasks, or remotely controls the proxy’s computer, according to new research from Silent Push. The campaign turns ordinary job seekers into identity and payment intermediaries, creating a direct…
-
How to Secure AI-Powered Computer Vision Applications: Authentication, Authorization, and Data Protection
Computer vision applications present a security challenge that most organizations underestimate until they’re in production. The models themselves get significant engineering attention, architecture, training data, accuracy, performance. The security layer that protects access to those models, governs what data… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/how-to-secure-ai-powered-computer-vision-applications-authentication-authorization-and-data-protection/
-
How to Secure AI-Powered Computer Vision Applications: Authentication, Authorization, and Data Protection
Computer vision applications present a security challenge that most organizations underestimate until they’re in production. The models themselves get significant engineering attention, architecture, training data, accuracy, performance. The security layer that protects access to those models, governs what data… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/how-to-secure-ai-powered-computer-vision-applications-authentication-authorization-and-data-protection/
-
Iranian Hackers Dodging Corporate Defenses to Reach Critics
Joint Advisory Details Chosen Brick Spyware Used Against Iran’s Critics Abroad. Iranian state hackers are steering dissidents, activists and journalists away from corporate devices and onto personal computers to plant spyware that can capture screens, record audio and steal messages, according to a joint advisory from British, U.S. and Dutch intelligence agencies. First seen on…
-
China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor
A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used tools for typing Chinese characters on Windows, to install a backdoor on victims’ computers, security company Gen Digital said in research published Thursday.The attack started with a crafted link and ended with the attacker able to do anything…
-
Quantum’s Bigger Threat: Forged Identities, Not Data Theft
Applied Quantum’s Marin Ivezic on Why Forged Signatures Beat Stolen Data as a Risk. Data theft dominates quantum risk planning, but a quieter threat could prove even worse. Marin Ivezic, CEO at Applied Quantum, says quantum computers used to forge digital signatures at some point in the future could undermine trust across IT and OT…
-
FBI Strategy Calls for More Takedowns, Better Info-Sharing
Bureau Won’t ‘Sit and Wait for the Best Opportunity,’ Says FBI’s Leatherman. The FBI vowed Wednesday to crack down on ransomware gangs and online scammers in a first-ever public cybercrime strategy that also said the bureau will prioritize working with victims and work more with private sector partners to take down criminal computer infrastructure. First…
-
Government rejects Computer Misuse Act amendment to protect cyber professionals
The government has rejected an amendment to the Cyber Security and Resilience Bill intended to protect cyber security professionals, but says reforms are a priority First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650173/Government-rejects-Computer-Misuse-Act-amendment-to-protect-cyber-professionals
-
Weekly Cybersecurity Newsletter Top 50 Biggest Cybersecurity Stories of the Week
Welcome to this week’s edition of the GBHackers cybersecurity newsletter, your weekly cybersecurity bulletin covering the 50 most important stories from August 31 September 5, 2026. AI ran through the whole week: OpenAI’s GPT-6 Astra built working exploits, Anthropic shipped Claude Fable 5.1 and Mythos 5.1, Claude gained the ability to control computers, […] The…
-
GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests
OpenAI on Thursday officially unveiled GPT”‘6 Astra, which it described as the “world’s most intelligent and aligned model.”The development comes days after the artificial intelligence (AI) company said the model had reached the “Critical” cybersecurity capability threshold under its Preparedness Framework.”Astra is state-of-the-art on computer use, browsing, software engineering, First seen on thehackernews.com Jump to…
-
Hijacked ScreenConnect Installs Are Spreading Malware Like a Worm, Huntress Warns
Cybersecurity firm Huntress has uncovered a wave of malicious installations of ScreenConnect, a widely used remote-support tool, that spread between machines without any further action from a victim or an attacker, a self-propagating attack chain researchers likened to a computer worm. In a blog post published this week, Huntress said its Security Operations Center (SOC)…
-
New $7 SweepLED Gadget Detects Hidden Cameras With 94% Accuracy in 5 Seconds
Researchers have developed SweepLED, a smartphone-based hidden-camera detection system that uses a low-cost LED accessory and computer vision to identify concealed lenses in under five seconds. The system is detailed in the research paper titled >>Hide-and-Sweep: Detecting Concealed Cameras via LED Illumination Sweeps.<< It is designed to help users identify covert cameras hidden in common…
-
Claude AI Can Now Control macOS and Windows Computers to Click, Type and Open Apps
Anthropic has enhanced Claude’s desktop automation capabilities, enabling the AI assistant to operate directly on macOS and Windows computers through Claude Cowork and Claude Code. When this feature is enabled, Claude can navigate a visible screen, click controls, type text, launch applications, open files, and work within browser-based or local tools if no dedicated connector…
-
Anthropic Tightens Claude Security After Agents Access Live Systems
Anthropic adds real-time monitoring, hardened sandboxes, and stricter training controls after Claude agents accessed live computer systems during tests. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/artificial-intelligence/news-anthropic-claude-agents-live-systems-security/
-
Sality, one of the longest-running botnets, finally gets disrupted
U.S. and European authorities disrupted the long-running botnet Sality, turning the malware’s peer-to-peer architecture against itself to cut thousands of infected computers off from operators. First seen on therecord.media Jump to article: therecord.media/sality-botnet-cyber-doj
-
Hackers abuse Faronics Deploy admin tool to install ScreenConnect
Phishing actors are abusing the legitimate Faronics Deploy endpoint-management platform to gain remote administrative control over victim computers and install the ScreenConnect remote support software. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-abuse-faronics-deploy-admin-tool-to-install-screenconnect/
-
China-linked Fire Ant Hides Inside Trusted Infrastructure
Fire Ant hijacked Cisco routers, stole credentials and altered logs to hide its tracks, using trusted infrastructure to reach high-value networks. Chinese-linked cyber espionage group Fire Ant has spent the past year quietly graduating from hacking individual computers to hacking the infrastructure that connects them. Sygnia’s new report traces how the group expanded from compromising…
-
Peers propose report into Computer Misuse Act reform
After previous proposals were brushed aside, Computer Misuse Act reform may be back on the agenda under a new amendment to the Cyber Security and Resilience Bill. First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366649543/Peers-propose-report-into-Computer-Misuse-Act-reform
-
Scammers Impersonate Microsoft to Push Fake Security Scans and Refund Fraud
A cluster of fraudulent websites impersonating Microsoft is using fake “security scans” to pressure victims into uninstalling antivirus products, disclosing personal and banking information, and granting remote access to their computers. The sites, branded as SysScan, claim to assess whether an antivirus product is functioning properly. Their conclusion is predetermined: the victim’s computer is allegedly…
-
Why Financial Services Is the Canary in the Code Mine
<div cla Organizations have long known that attackers publish malicious packages to public open source registries. The more consequential question is if those packages are actually reaching enterprise development environments. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/why-financial-services-is-the-canary-in-the-code-mine/
-
Is AI a Tool or a Rogue? Ninth Circuit Says >>Tool<< For Now
When an AI agent goes onto a website and does something the website owner expressly does not want it to do, who has “accessed” the computer? The person sitting at the keyboard? The company that built and operates the AI? Both? And does it matter that the website’s Terms of Service say that bots, scrapers..…
-
HOL Guard: Open-source antivirus for AI agents
HOL Guard is a free, open-source tool that sits between an AI assistant and the computer it runs on. When the assistant tries something risky, the tool pauses it and asks you … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/25/hol-guard-open-source-antivirus-ai-agents/
-
Bipartisan Senate bill aims to prepare energy sector for Q-Day
Under the bill, FERC would consider cyber threats from quantum computers and post-quantum cryptography in its reliability standards for the energy sector. First seen on cyberscoop.com Jump to article: cyberscoop.com/quantum-guard-act-electric-grid-cybersecurity/

