Aggregator
Chinese State Hackers Breach US Treasury Department
Weekly Update 432
There's a certain irony to the Bluesky situation where people are pushing back when I include links to X. Now, where have we seen this sort of behaviour before? 🤔 When I'm relying on content that only appears on that platform to add context to a
EnergyWeaponUser and IntelBroker Claimed to have Leaked Data of IBookPark
Security
Protecting Highly Sensitive Health Data for Research
Volkswagen Subsidiary Exposed Data of 800,000 Cars Online
A security snafu at a Volkswagen subsidiary exposed vehicle information and ownership details on approximately 800,000 cars, including precise location data and owners' personal profiles. A whistleblower found a vulnerability in the cloud storage accounts of Volkswagen subsidiary Cariad.
Four-Faith Routers Exploited Using New Flaw
Hackers are exploiting a high-severity command injection vulnerability in Chinese-manufactured Four-Faith industrial routers. Typical customers of Four-Faith use the routers for remote monitoring, control systems, supervisory control and data acquisition networks.
A Year of AI Pragmatism and Paradigm Shifts
The AI landscape is set to transform in 2025 with pragmatic approaches to implementation replacing the experimental fervor. This shift will span industries and developer ecosystems. Technologies will ride on the transformative power of AI and the responsibility that comes with it.
Palo Alto Firewalls Backdoored by Suspected Chinese Hackers
A suspected Chinese hacking campaign that began in November is exploiting a vulnerability in Palo Alto firewalls to install a custom malware backdoor for espionage. UNC5325 activity aligns with the Chinese hacking strategy of targeting edge devices.
Best of 2024: 30,000 Dealerships Down — ‘Ransomware’ Outage Outrage no. 2 at CDK Global
Spend more on security! Car and truck dealers fall back on pen and paper as huge SaaS provider gets hacked (again).
The post Best of 2024: 30,000 Dealerships Down — ‘Ransomware’ Outage Outrage no. 2 at CDK Global appeared first on Security Boulevard.
Best of 2024: 30,000 Dealerships Down — ‘Ransomware’ Outage Outrage no. 2 at CDK Global
California’s Pioneering AI Legislation: Shaping the Future of Artificial Intelligence
California has passed revolutionary legislation to regulate artificial intelligence, requiring companies to disclose training data and label AI-generated content. Starting 2026, these laws will transform how AI companies operate and how consumers interact with AI-generated materials.
The post California’s Pioneering AI Legislation: Shaping the Future of Artificial Intelligence appeared first on Security Boulevard.
News alert: SquareX exposes OAuth attack on Chrome extensions — days before a major breach
Palo Alto, Calif., Dec. 30, 2024, CyberNewswire — SquareX, an industry-first Browser Detection and Response (BDR) solution, leads the way in browser security. About a week ago, SquareX reported large-scale attacks targeting Chrome Extension developers aimed at taking over … (more…)
The post News alert: SquareX exposes OAuth attack on Chrome extensions — days before a major breach first appeared on The Last Watchdog.
The post News alert: SquareX exposes OAuth attack on Chrome extensions — days before a major breach appeared first on Security Boulevard.
Germany charges three suspected Russian spies accused of surveilling military sites
DEF CON 32 – Warflying in a Cessna
Authors/Presenters: Matt Thomassen, Sean McKeever
Our sincere appreciation to DEF CON, and the Authors/Presenters for publishing their erudite DEF CON 32 content. Originating from the conference’s events located at the Las Vegas Convention Center; and via the organizations YouTube channel.
The post DEF CON 32 – Warflying in a Cessna appeared first on Security Boulevard.