Treasury sanctions Chinese cybersecurity company, affiliate for Salt Typhoon hacks 

It’s the first formal attribution for the campaign that has swept up data from at least nine telecoms and the Treasury Department. 

The post Treasury sanctions Chinese cybersecurity company, affiliate for Salt Typhoon hacks  appeared first on CyberScoop.

Continue reading Treasury sanctions Chinese cybersecurity company, affiliate for Salt Typhoon hacks 

CISA director says threat hunters spotted Salt Typhoon on federal networks before telco compromises 

The incident helped the federal government to seize a virtual private server used by the group and more quickly “connect the dots,” Jen Easterly said.

The post CISA director says threat hunters spotted Salt Typhoon on federal networks before telco compromises  appeared first on CyberScoop.

Continue reading CISA director says threat hunters spotted Salt Typhoon on federal networks before telco compromises 

Posted in Uncategorized

Microsoft moves to disrupt hacking-as-a-service scheme that’s bypassing AI safety measures

The defendants used stolen API keys to gain access to devices and accounts with Microsoft’s Azure OpenAI service, which they then used to generate “thousands” of images that violated content restrictions.

The post Microsoft moves to disrupt hacking-as-a-service scheme that’s bypassing AI safety measures appeared first on CyberScoop.

Continue reading Microsoft moves to disrupt hacking-as-a-service scheme that’s bypassing AI safety measures

Industrial networking manufacturer Moxa reports ‘critical’ router bugs

Moxa says the flaws can be used to bypass user authentication, escalate privileges and gain root access to devices. 

The post Industrial networking manufacturer Moxa reports ‘critical’ router bugs appeared first on CyberScoop.

Continue reading Industrial networking manufacturer Moxa reports ‘critical’ router bugs

Exit interview: FCC’s Jessica Rosenworcel discusses her legacy on cybersecurity, AI and regulation

The outgoing chair weighs in on how the FCC has addressed newer technologies, efforts to respond to Chinese intrusions into U.S. telecom networks, and regulating AI in political ads.

The post Exit interview: FCC’s Jessica Rosenworcel discusses her legacy on cybersecurity, AI and regulation appeared first on CyberScoop.

Continue reading Exit interview: FCC’s Jessica Rosenworcel discusses her legacy on cybersecurity, AI and regulation

US sanctions Russian, Iranian groups for election interference

The two entities are accused of partnering with intelligence agencies using artificial intelligence to conduct information operations against U.S. audiences.

The post US sanctions Russian, Iranian groups for election interference appeared first on CyberScoop.

Continue reading US sanctions Russian, Iranian groups for election interference

Treasury workstations hacked by China-linked threat actors

According to a letter sent to Senate leaders and obtained by CyberScoop, the compromises occurred through third-party software provider BeyondTrust, which provides identity and access management security solutions.

The post Treasury workstations hacked by China-linked threat actors appeared first on CyberScoop.

Continue reading Treasury workstations hacked by China-linked threat actors

Thousands of industrial routers vulnerable to command injection flaw 

The vulnerability, found in versions of Four-Faith routers, appears to have been exploited in the wild and has been connected to attempted infections of Mirai.

The post Thousands of industrial routers vulnerable to command injection flaw  appeared first on CyberScoop.

Continue reading Thousands of industrial routers vulnerable to command injection flaw