ChainScript RAT Uses a Polygon Smart Contract to Rotate Command-and-Control Servers
A newly documented Node.js remote-access trojan uses ClickFix lures and a Polygon smart contract to discover active WebSocket command-and-control infrastructure.
Cybersecurity, AI, etc.
Cybersecurity (breaches, incidents, vulnerabilities, ransomware, supply chain attacks)
A newly documented Node.js remote-access trojan uses ClickFix lures and a Polygon smart contract to discover active WebSocket command-and-control infrastructure.
CISA added three Linux kernel vulnerabilities to its Known Exploited Vulnerabilities catalog, including flaws in kernel TLS, AF_ALG and bridge Netfilter code.
Attackers are using convincing recruiter personas, fake video-call problems and malicious code to target Rust team members and popular crate owners.
Researchers chained code execution in OpenAI’s community forum with an over-privileged OpenAI sign-in token, reaching an employee account connected to internal repositories before the flaws were fixed.
A Gemini model unintentionally accessed systems belonging to three real companies after an AI security evaluation was given internet access and confused real organizations with a fictional test target.
Researchers disclosed two patched OpenAI Codex sandbox escapes, including a flaw that could let a malicious repository trigger commands on a developer’s host from the strictest sandbox mode.
Mandiant describes a compromised AI coding session that led to a supply-chain worm spreading across repositories.
OpenAI introduced a framework and six reports covering observed unexpected or concerning model behavior.
A hard-coded JWT key in Issabel Framework can enable unauthenticated remote command execution.
Cisco urges immediate updates for an actively exploited ISE and ISE-PIC authentication-bypass vulnerability.