StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data

Cybersecurity researchers have flagged a global cybercrime operation that abuses thousands of hacked WordPress websites as infrastructure to disseminate malware, commandeer infected hosts, store stolen documents, screenshots, and activity logs created … Continue reading StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data

Posted in Uncategorized

Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, stating they are being exploited in the wild.

The shortcomings added to the KEV catal… Continue reading Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation

Posted in Uncategorized

Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data

A JavaServer Pages (JSP) web shell deployed following the exploitation of a critical security flaw in PTC Windchill and FlexPLM servers is specifically designed for the enterprise Product Lifecycle Management (PLM) software, according to new findings f… Continue reading Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data

Posted in Uncategorized

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available to the victim’s Copilot session.

Continue reading Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Posted in Uncategorized

Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000

A ransomware affiliate calling itself Ransom Busters has been spotted proactively sending emails to victim organizations and claims to delete stolen data from ransomware groups’ servers in exchange for a fee ranging from $20,000 to $60,000.

“In these … Continue reading Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000

Posted in Uncategorized

AI “Mind Viruses” Can Spread Between Agents Through Persistent Prompt Files

Security researchers at Anthropic and Switzerland’s EPFL have demonstrated that self-propagating payloads can spread from one artificial intelligence (AI) agent to the next through the editable system prompt files that autonomous agent harnesses use to… Continue reading AI “Mind Viruses” Can Spread Between Agents Through Persistent Prompt Files

Posted in Uncategorized

AI “Mind Viruses” Can Spread Between Agents Through Persistent Prompt Files

Security researchers at Anthropic and Switzerland’s EPFL have demonstrated that self-propagating payloads can spread from one artificial intelligence (AI) agent to the next through the editable system prompt files that autonomous agent harnesses use to… Continue reading AI “Mind Viruses” Can Spread Between Agents Through Persistent Prompt Files

Posted in Uncategorized