Security Bulletin
3 Jul 2025
Biztonsági szemle
Qantas Airlines Breached, Impacting 6M Customers
Passengers' personal information was likely accessed via a third-party platform used at a call center, but didn't include passport or credit card info.
2 Jul 2025
Biztonsági szemle
Browser Extensions Pose Heightened, but Manageable, Security Risks
Attackers can abuse malicious extensions to access critical data, including credentials, but organizations can reduce the risks by raising awareness and enforcing strict policy controls.
2 Jul 2025
Biztonsági szemle
Incorrect links output by LLMs could lead to phishing, researchers say
AI models may fail to recognize social engineering content in training data and searches.
2 Jul 2025
Biztonsági szemle
Initial Access Broker Self-Patches Zero Days as Turf Control
A likely China-nexus threat actor has been exploiting unpatched Ivanti vulnerabilities to gain initial access to victim networks and then patching the systems to block others from breaking in to the same network.
2 Jul 2025
Biztonsági szemle
OWASP unpacks GenAI security’s biggest risks to LLMs
Explore the Top 10 vulnerabilities and mitigation strategies shaping the future of secure generative AI development — starting with prompt injection.
2 Jul 2025
Biztonsági szemle
US Treasury Sanctions BPH Provider Aeza Group
In the past, the bulletproof group has been affiliated with many well-known ransomware and malware groups, such as BianLian and Lumma Stealer.
2 Jul 2025
Biztonsági szemle
AI Tackles Binary Code Challenges to Fortify Supply Chain Security
Analyzing binary code helps vendors and organizations detect security threats and zero-day vulnerabilities in the software supply chain, but it doesn't come without challenges. It looks like AI has come to the rescue.
2 Jul 2025
Biztonsági szemle
Qantas confirms cyberattack on third-party call center app
While not confirmed, security pros say the attack resembles recent attacks on airlines and retailers by Scattered Spider.
2 Jul 2025
Biztonsági szemle
Russian APT 'Gamaredon' Hits Ukraine With Fierce Phishing
A Russian APT known as "Gamaredon" is using spear-phishing attacks and network-drive weaponization to target government entities in Ukraine.
2 Jul 2025
Biztonsági szemle
Deepfakes have reshaped corporate security and culture
The industry needs to adopt new AI-based tools and educate the workforce on how to recognize Deepfakes.
2 Jul 2025
Biztonsági szemle
ClickFix Spin-Off Attack Bypasses Key Browser Safeguards
A new threat vector exploits how modern browsers save HTML files, bypassing Mark of the Web and giving attackers another social-engineering attack for delivering malware.
2 Jul 2025
Biztonsági szemle
1 Year Later: Lessons Learned From the CrowdStrike Outage
The ever-growing volume of vulnerabilities and threats requires organizations to remain resilient and anti-fragile — that is, to be able to proactively respond to issues and continuously improve.
Pagination
- Previous page ‹‹
- Page 105
- Next page ››