A vulnerability in Google's Gemini CLI allowed attackers to silently execute malicious commands and exfiltrate data from developers' computers using allowlisted programs. The flaw was discovered and reported to Google …
Category:
Cyber Security
- Cyber SecurityTechnology
Scattered Spider is running a VMware ESXi hacking spree
by Wire Techby Wire TechScattered Spider hackers have been aggressively targeting virtualized environments by attacking VMware ESXi hypervisors at U.S. companies in the retail, airline, transportation, and insurance sectors. According to the Google Threat …
- Cyber SecurityTechnology
Allianz Life confirms data breach impacts majority of 1.4 million customers
by Wire Techby Wire TechInsurance company Allianz Life has confirmed that the personal information for the “majority” of its 1.4 million customers was exposed in a data breach that occurred earlier this month. “On …
- Cyber SecurityTechnology
Post SMTP plugin flaw exposes 200K WordPress sites to hijacking attacks
by Wire Techby Wire TechMore than 200,000 WordPress websites are using a vulnerable version of the Post SMTP plugin that allows hackers to take control of the administrator account. Post SMTP is a popular …
- Cyber Security
U.S. Sanctions Firm Behind N. Korean IT Scheme; Arizona Woman Jailed for Running Laptop Farm
by Wire Techby Wire TechU.S. Sanctions Firm Behind N. Korean IT Scheme; Arizona Woman Jailed for Running Laptop Farm The U.S. Department of the Treasury's Office of Foreign Assets Control (OFAC) sanctioned a North …
- Cyber Security
Patchwork Targets Turkish Defense Firms with Spear-Phishing Using Malicious LNK Files
by Wire Techby Wire TechPatchwork Targets Turkish Defense Firms with Spear-Phishing Using Malicious LNK Files The threat actor known as Patchwork has been attributed to a new spear-phishing campaign targeting Turkish defense contractors with …
- Cyber Security
Cyber Espionage Campaign Hits Russian Aerospace Sector Using EAGLET Backdoor
by Wire Techby Wire TechCyber Espionage Campaign Hits Russian Aerospace Sector Using EAGLET Backdoor Russian aerospace and defense industries have become the target of a cyber espionage campaign that delivers a backdoor called EAGLET …
- Cyber SecurityTechnology
Amazon AI coding agent hacked to inject data wiping commands
by Wire Techby Wire TechA hacker planted data wiping code in a version of Amazon's generative AI-powered assistant, the Q Developer Extension for Visual Studio Code. Amazon Q is a free extension that uses …
- Cyber Security
Soco404 and Koske Malware Target Cloud Services with Cross-Platform Cryptomining Attacks
by Wire Techby Wire TechSoco404 and Koske Malware Target Cloud Services with Cross-Platform Cryptomining Attacks Threat hunters have disclosed two different malware campaigns that have targeted vulnerabilities and misconfigurations across cloud environments to deliver …