Cisco Patches Catalyst SD-WAN Zero-Day Exploited by Highly Sophisticated Hackers

Already added to CISA’s KEV catalog, the flaw allows attackers to bypass authentication and gain administrative privileges.
The post Cisco Patches Catalyst SD-WAN Zero-Day Exploited by Highly Sophisticated Hackers appeared first on SecurityWeek.
Continue reading Cisco Patches Catalyst SD-WAN Zero-Day Exploited by Highly Sophisticated Hackers

Ex-US Defense Contractor Executive Jailed for Selling Exploits to Russia

Peter Williams was sentenced to 87 months in prison for selling cyber exploits to a Russian broker.
The post Ex-US Defense Contractor Executive Jailed for Selling Exploits to Russia appeared first on SecurityWeek.
Continue reading Ex-US Defense Contractor Executive Jailed for Selling Exploits to Russia

GitHub Issues Abused in Copilot Attack Leading to Repository Takeover

Attackers can inject malicious instructions in a GitHub Issue that are automatically processed by Copilot when launching a Codespace from that issue.
The post GitHub Issues Abused in Copilot Attack Leading to Repository Takeover appeared first on Secur… Continue reading GitHub Issues Abused in Copilot Attack Leading to Repository Takeover