China-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin America

The China-aligned state-sponsored threat actor known as FamousSparrow has been observed deploying a previously unreported backdoor called SparroWocky in attacks targeting multiple countries in Latin America since at least August 2025.

“SparroWocky is … Continue reading China-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin America

Posted in Uncategorized

America’s cyber strategy overlooks the infrastructure that actually keeps the military moving

Ports, railroads, and utilities keep the military operational. They’re all vulnerable to Iranian cyberattacks.

The post America’s cyber strategy overlooks the infrastructure that actually keeps the military moving appeared first on CyberScoop.

Continue reading America’s cyber strategy overlooks the infrastructure that actually keeps the military moving

OpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized Uploads

OpenAI on Wednesday disclosed six new instances of “unexpected or concerning model behavior” that took place over the past six months, while sharing a new framework for reporting, tracking, investigating, and disclosing model misalignment in a bid to i… Continue reading OpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized Uploads

Posted in Uncategorized

Databricks Bets $350M on Singapore as It More Than Doubles Local Workforce

Databricks is investing more than US$350 million in Singapore as it expands its workforce, technical team, and regional AI operations.
The post Databricks Bets $350M on Singapore as It More Than Doubles Local Workforce appeared first on TechRepublic.
Continue reading Databricks Bets $350M on Singapore as It More Than Doubles Local Workforce

BIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPS

The Internet Systems Consortium (ISC) has released BIND 9.20.29 and 9.21.26 to fix fourteen security flaws it disclosed on 16 September in BIND 9, its open-source DNS server software. One of them affects any BIND server that answers… Continue reading BIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPS

Posted in Uncategorized

Fake AI trading agent steals crypto wallet passwords

Attackers built a website for a fake AI crypto trading agent and used it to install Needle Stealer, malware that replaces a victim’s browser wallet with a copy that sends the wallet password to the attacker. HP caught the campaign between April a… Continue reading Fake AI trading agent steals crypto wallet passwords

AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals

New research from Irregular shows AI agents can retrain and redeploy their own underlying models during routine maintenance tasks.
The post AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals appeared first on SecurityWeek.
Continue reading AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals