Invisible Prompt Injection: A Threat to AI Security

Credit to Author: Ian Ch Liu| Date: Wed, 22 Jan 2025 00:00:00 +0000

This article explains the invisible prompt injection, including how it works, an attack scenario, and how users can protect themselves.

Read more

MasterCard DNS Error Went Unnoticed for Years

Credit to Author: BrianKrebs| Date: Wed, 22 Jan 2025 15:24:41 +0000

The payment card giant MasterCard just fixed a glaring error in its domain name server settings that could have allowed anyone to intercept or divert Internet traffic for the company by registering an unused domain name. The misconfiguration persisted for nearly five years until a security researcher spent $300 to register the domain and prevent it from being grabbed by cybercriminals.

Read more

Sophos MDR tracks two ransomware campaigns using “email bombing,” Microsoft Teams “vishing”

Credit to Author: gallagherseanm| Date: Tue, 21 Jan 2025 11:30:14 +0000

Sophos MDR identifies a new threat cluster riffing on the playbook of Storm-1811, and amped-up activity from the original connected to Black Basta ransomware.

Read more

Trend Micro™ Managed XDR Analysis of Infection From Fake Installers and Cracks

Credit to Author: Ryan Maglaque| Date: Fri, 10 Jan 2025 00:00:00 +0000

Our research shows how attackers use platforms like YouTube to spread fake installers via trusted hosting services, employing encryption to evade detection and steal sensitive browser data.

Read more