A recent campaign of cyber attacks made new and novel use of the Claude AI chatbot in scanning VPN endpoints and automating multiple portions of the attack cycle, representing another step forward in the deployment of LLMs for malicious purposes.
The supply chain attack method leverages commonly-used dependency managers and private or non-existent dependencies to install malicious code and backdoors in internal applications.
Ransomware attack on Garmin services left users unable to sync data on runs and rides, and affected pilots who were unable to download Garmin's aviation database or to access Garmin Pilot app for flight scheduling.
Meta has now lost that case in the EU's highest court, opening the door for other antitrust law investigations in the bloc to incorporate data privacy violations and frame them as part of a systemic abuse of market position.
Mysterious organization exposed tools and source code used by Iranian hackers, including personal information of some Iranian Ministry of Intelligence members responsible for state-sponsored cyber attacks.
In a blow to personal privacy, New Jersey's highest court has ruled that people do not have a Fifth Amendment right to refuse to give phone passcodes to police.
CloudSphere says configuring cloud access control was a major problem for most organizations and many companies were unaware that their cloud platforms had been illegally accessed.
An SMS phishing attack compromised cloud communications giant Twilio, leaking customer data and targeted content delivery network provider Cloudflare. Twilio says the data breach impacted at least 125 customers.
A recent audit of websites by the well-known Online Trust Alliance has revealed something that many consumers have long suspected. Financial institutions are the least trusted when it comes to cybersecurity. Although the results are no doubt coloured by the inherent fear that many consumers have when it comes to the security of their money, it should still be a worry for banks which have long struggled with issues around online trust.
Austrian GDPR Complaint Claims OpenAI Refuses to Correct Potentially Libelous ChatGPT Hallucinations
Filed by data privacy crusader Max Schrems and his group "noyb," the GDPR complaint asserts that OpenAI refuses to correct ChatGPT output about individuals and will simply try to filter or block requests tied to that name. The complaint also accuses OpenAI of failing to live up to their subject access request (SAR) responsibilities under EU rules.










