WebNews
Please enter a web search for web results.
NewsWeb
NVIDIA Confirms Ge Force Data Breach Exposed Users" Personal Data
1+ day, 16+ hour ago (362+ words) GFN Cloud Internet Services, operating as the regional NVIDIA Ge Force NOW cloud gaming partner, GFN. AM has officially confirmed a significant data breach. The security incident exposed personal information of users registered on their streaming platform. While the company…...
TCLBANKER Malware Leverages Whats App and Outlook Worm Features in Active Attacks
1+ day, 6+ hour ago (608+ words) A sophisticated Brazilian banking trojan named'TCLBANKER, deployed through a trojanized Logitech installer and capable of hijacking victims" Whats App and Outlook accounts to spread itself to new targets. The campaign, tracked as'REF3076, delivers TCLBANKER through a malicious MSI installer bundled…...
Vidar Infostealer Campaign Steals Passwords, Cookies, Crypto Wallets, and Device Data
1+ day, 15+ hour ago (470+ words) A highly evasive multi-stage malware campaign deploying the Vidar Infostealer. First discovered in late 2018 and built on the Arkei stealer source code, Vidar is notorious for aggressively harvesting user credentials, browser session cookies, cryptocurrency wallets, and detailed system data. According…...
Cline Kanban Web Socket Vulnerability Enables Malicious Sites to Take Over AI Coding Agents
2+ day, 8+ hour ago (427+ words) Cline, a widely adopted open-source AI coding agent, has recently patched a severe vulnerability in its local Kanban server. Trusted by developers with deep access to source code, cloud credentials, and terminals, Cline automates complex coding tasks. However, researchers from…...
Zi Chat Bot Malware Abuses Zulip APIs for Stealthy C2 Operations
2+ day, 9+ hour ago (479+ words) A new cross'platform malware family, dubbed'Zi Chat Bot, that abuses the trusted Python Package Index (Py PI) ecosystem and the Zulip team chat platform to run a stealthy command'and'control (C2) channel. During routine threat hunting, analysts observed a series of malicious…...
Pam Backdoor Targets Linux Systems to Steal SSH Credentials
2+ day, 6+ hour ago (444+ words) A newly observed Linux backdoor technique, dubbed'Pam, is exploiting the flexibility of Pluggable Authentication Modules (PAM) to capture SSH credentials and maintain persistence on compromised systems stealthily. Since its introduction in 1991 by Linus Torvalds, Linux has been designed for simplicity,…...
Multiple Critical Flaws Fixed in Next. js and React Server Components
2+ day, 14+ hour ago (341+ words) Vercel has rolled out vital security updates for Next. js to address a wave of high-severity vulnerabilities affecting versions across the 13. x to 16. x branches. Published via Git Hub advisories by Tim Neutkens, these flaws expose web applications to severe…...
Claude and Space X Join Forces to Enhance Large-Scale Compute Capacity
3+ day, 8+ hour ago (423+ words) Anthropic has officially announced a massive strategic partnership with Space X to expand its computing capabilities significantly. This collaboration aims to provide the necessary infrastructure to scale up the Claude artificial intelligence ecosystem. By securing dedicated computing power, Anthropic is…...
Spring Vulnerabilities Open Door to Arbitrary File Access and GCP Secret Leaks
3+ day, 9+ hour ago (345+ words) Security researchers have identified four new vulnerabilities in the Spring Cloud Config Server, ranging from medium to critical severity. These newly disclosed flaws could allow attackers to access arbitrary files, leak Google Cloud Platform (GCP) secrets, and manipulate system directories....
Google Chrome 148 Released With Fixes for 127 Security Flaws
3+ day, 10+ hour ago (427+ words) Google has officially rolled out Chrome version 148 to the stable channel, delivering a massive security overhaul that addresses 127 vulnerabilities across Windows, Mac, and Linux. The update, now available as version 148. 0. 7778. 96 for Linux and 148. 0. 7778. 96 or 148. 0. 7778. 97 for Windows and Mac, patches several…...