Hi there, this is your daily βοΈ Cyberpresso.
In today's Cyberpresso:
π§ Zero-click flaw lets hackers steal email
π¨π³ Chinese spies hit governments with malware
π Proposed bill would let US shut off rogue AI
π€ ChatGPT flaw enables rogue AI agent
π Swiss train maker refuses $12.3M ransom
Plus: π‘ 4 strategies & tactics, π 7 other news you might like, π§° 6 tools, and π 5 papers.
π§ Zero-click flaw lets hackers steal email LINK
π¨π³ Chinese spies hit governments with malware LINK
π Proposed bill would let US shut off rogue AI LINK
π€ ChatGPT flaw enables rogue AI agent LINK
π Swiss train maker refuses $12.3M ransom LINK
π‘ Strategies & Tactics
> New Kimi K3 AI Agent Uncovers Redis Remote Code Execution Flaws in Just 27 Minutes: An AI agent found serious Redis code-execution bugs in 27 minutes, showing AI can now compress vulnerability discovery from weeks to minutes for both attackers and defenders.
> Microsoft Adds Prompt Injection Protection to Defender for Office 365: Defender for Office 365 now scans incoming email for hidden text that tricks AI assistants into obeying attacker commands, blocking these prompt injection attacks before Copilot processes them.
> Opening the Black Box: Agentless Threat Detection for Virtual Appliances: Extends malware-detection-style visibility to internet-facing firewall appliances without installing agents, by reading their internal logs to catch attackers exploiting these blind spots.
> PyPI hardens package security with new upload restrictions: PyPI now blocks new file uploads to releases older than two weeks, so a stolen publishing token can't secretly poison long-trusted packages.
Other news you might like
- KARR Bluetooth Vulnerability Lets Nearby Attackers Unlock and Immobilize Over 2 Million CarsLINK
- Zilliqa Ledger app vulnerability lets attackers recover signerβs private keysLINK
- Hackers abuse Notepad++ plugins to stealthily install malwareLINK
- Next.js Patches Nine Security Flaws Enabling SSRF, Authentication Bypass, and DoS AttacksLINK
- Exim Vulnerability Lets Attackers Access Files Outside the Mail SpoolLINK
- Critical FreeRDP Clipboard Flaw Could Let Malicious RDP Servers Execute CodeLINK
π§° Trending tools
Cactus Hybrid: post-trains Gemma 4 E2B with a lightweight probe layer to output confidence scores, routing uncertain queries to cloud models automatically.LINK
Astra Autonomous Pentest: an automated pentesting platform that runs 15,000+ security and compliance tests, combining automation with manual expertise to find exploitable vulnerabilities continuously.LINK
Palmier Pro: an open-source macOS video editor with built-in AI generation and a local MCP server that lets AI agents manage projects, edit timelines, and generate media.LINK
OpenBox: a trust platform for agentic AI that adds runtime governance, cryptographic verification, and compliance via one SDK across LangChain, LangGraph, Temporal, n8n, and Mastra.LINK
BestDefense.io: continuously pentests every deploy, validates which vulnerabilities are truly exploitable, and auto-generates fixes so compliance teams patch real risks faster.LINK
Sequirly: browser extension that scans prompts and file uploads before they reach ChatGPT, Claude, or Gemini, flagging API keys and personal data.LINK
π Trending papers & reports
Post-quantum encryption codes now decode in fixed time, closing a security gap that let attackers guess secret keys by measuring processing delays, while keeping ciphertexts and keys four times smaller than a comparable standard, though still four times slower.LINK
Anonymous validator committees let blockchain and payment systems use small groups to approve transactions while hiding which participants were chosen, blocking attackers from targeting them for bribery or shutdown.LINK
AI agent memory can be quietly poisoned so the corrupted belief sits dormant and only triggers harmful action later, meaning standard content filters can't catch attacks that unfold over time.LINK
Federated graph defense uses AI language understanding to spot poisoned data secretly planted across companies' shared networks, blocking hidden backdoor attacks without damaging the legitimate data connections.LINK
Reusable jailbreak prompts can trick AI systems that read images and text into giving attacker-chosen answers across completely different pictures, working over 30% better and 70% faster than prior attacks, meaning one exploit now threatens many products at once.LINK
See you tomorrow for a new dose of βοΈ Cyberpresso!