Vulnerability in popular AI developer could ‘shut down essentially everything you own’ 

The flaw in Lightning.AI’s platform, which has been patched, would have given root access to an attacker and broad control over a victim’s cloud-based studio and connected systems. 

The post Vulnerability in popular AI developer could ‘shut down essentially everything you own’  appeared first on CyberScoop.

Continue reading Vulnerability in popular AI developer could ‘shut down essentially everything you own’ 

DeepSeek AI claims services are facing ‘large-scale malicious attacks’ 

As its low-cost AI model receives accolades, the Chinese company says ongoing attacks on its services are making it harder for new users to sign up. 

The post DeepSeek AI claims services are facing ‘large-scale malicious attacks’  appeared first on CyberScoop.

Continue reading DeepSeek AI claims services are facing ‘large-scale malicious attacks’ 

‘Severe’ bug in ChatGPT’s API could be used to DDoS websites

The vulnerability, described by a researcher as “bad programming,” allows an attacker to send unlimited connection requests through ChatGPT’s API.

The post ‘Severe’ bug in ChatGPT’s API could be used to DDoS websites appeared first on CyberScoop.

Continue reading ‘Severe’ bug in ChatGPT’s API could be used to DDoS websites

Treasury sanctions Chinese cybersecurity company, affiliate for Salt Typhoon hacks 

It’s the first formal attribution for the campaign that has swept up data from at least nine telecoms and the Treasury Department. 

The post Treasury sanctions Chinese cybersecurity company, affiliate for Salt Typhoon hacks  appeared first on CyberScoop.

Continue reading Treasury sanctions Chinese cybersecurity company, affiliate for Salt Typhoon hacks 

CISA director says threat hunters spotted Salt Typhoon on federal networks before telco compromises 

The incident helped the federal government to seize a virtual private server used by the group and more quickly “connect the dots,” Jen Easterly said.

The post CISA director says threat hunters spotted Salt Typhoon on federal networks before telco compromises  appeared first on CyberScoop.

Continue reading CISA director says threat hunters spotted Salt Typhoon on federal networks before telco compromises 

Posted in Uncategorized

Microsoft moves to disrupt hacking-as-a-service scheme that’s bypassing AI safety measures

The defendants used stolen API keys to gain access to devices and accounts with Microsoft’s Azure OpenAI service, which they then used to generate “thousands” of images that violated content restrictions.

The post Microsoft moves to disrupt hacking-as-a-service scheme that’s bypassing AI safety measures appeared first on CyberScoop.

Continue reading Microsoft moves to disrupt hacking-as-a-service scheme that’s bypassing AI safety measures

Industrial networking manufacturer Moxa reports ‘critical’ router bugs

Moxa says the flaws can be used to bypass user authentication, escalate privileges and gain root access to devices. 

The post Industrial networking manufacturer Moxa reports ‘critical’ router bugs appeared first on CyberScoop.

Continue reading Industrial networking manufacturer Moxa reports ‘critical’ router bugs