NVIDIA NemoClaw Flaw Lets Malicious Webpages Poison Local AI Models via Ollama
Oasis Security has disclosed a vulnerability in NVIDIA's NemoClaw, an open-source reference stack for running AI agents, that could allow an attacker-controlled…
Latest cybersecurity news, breaches, vulnerability disclosures and industry developments.
Oasis Security has disclosed a vulnerability in NVIDIA's NemoClaw, an open-source reference stack for running AI agents, that could allow an attacker-controlled…
Meta has announced new WhatsApp account security features, including support for multiple passkeys per account on both iOS and Android, enhancing phishing-resistant…
Cybersecurity researchers at OX Security have uncovered a campaign that abuses 24 npm packages as free phishing infrastructure. The packages host HTML…
A large-scale phishing campaign dubbed Mirage2FA has impacted over 4,500 organizations in the US and EU, abusing Microsoft 365 login flows to…
New research from Akamai reveals that a small fraction of enterprise employees—the top 5% of AI power users—are creating a disproportionate security…
Cybersecurity researchers have uncovered a cyber espionage campaign targeting Myanmar government and IT sectors, dubbed Operation QUICSILVER. The campaign, first observed in…
The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400 million to settle a 2024 lawsuit accusing…
Check Point Research has disclosed a technique that abuses Microsoft Defender's own legitimately signed boot-time remediation driver, BTR.sys, to perform arbitrary kernel-level…
The U.S. government has issued a joint advisory warning of an active threat targeting critical infrastructure organizations using AI-generated exploit scripts. The…
Adversa AI has disclosed a novel attack technique dubbed "Cryptographic Context Injection" that can cause xAI's Grok chatbot to exfiltrate a user's…