Hi there, this is your daily โ๏ธ Cyberpresso.
In today's Cyberpresso:
๐ค AI agent ran a cyberattack on its own
๐ก๏ธ Nvidia launches AI security alliance
๐ญ Ransomware gang steals product designs
๐ฆ GitLab flaw enables remote code execution
๐ฅ North Korea hackers steal crypto via Zoom
Plus: ๐ก 5 strategies & tactics, ๐ 7 other news you might like, ๐งฐ 6 tools, and ๐ 5 papers.
๐ค AI agent ran a cyberattack on its own LINK
๐ก๏ธ Nvidia launches AI security alliance LINK
๐ญ Ransomware gang steals product designs LINK
๐ฆ GitLab flaw enables remote code execution LINK
๐ฅ North Korea hackers steal crypto via Zoom LINK
๐ก Strategies & Tactics
> Certighost Active Directory CS Exploit Allows Low-Privileged Users to Compromise Domain: A Windows certificate flaw let ordinary users impersonate a domain controller and seize full network control, so patch AD CS immediately.
> Windows WalletService Flaw Lets Standard Users Gain SYSTEM Privileges: A Windows WalletService flaw lets any standard user trick the service into loading malicious code and gain full SYSTEM control, so patch immediately.
> Apple Biome Data Reveals Safari Activity, Wallet Transactions and Location Visits: Apple's Biome system, which powers Siri predictions, quietly stores detailed logs of browsing, purchases and locations, making it a rich new source for forensic investigators.
> Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available: Attackers are actively exploiting a remote-code-execution flaw in the old Fastjson 1.x library that has no patch, so organizations must upgrade or isolate it themselves.
> Claude Code Symlink Flaw Exfiltrates Sensitive Files Without User Approval: A symlink handling bug in Claude Code lets a malicious repository silently load files from outside the project into its startup context and send them to a model endpoint without user approval.
Other news you might like
- Opus 5 may have solved browser-based prompt injection, the biggest security flaw haunting AI agentsLINK
- North Korea arrests bank hacking ring tied to crypto laundering: ReportLINK
- Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accountsLINK
- Golden Chickens Launches Four Modular Malware Families to Steal Chrome Credentials and Hijack Browser SessionsLINK
- Iran-Linked Actors Breach Are Targeting US Water and Energy Control SystemsLINK
- Shared Claude chats were reportedly showing up in search enginesLINK
๐งฐ Trending tools
Spotlight by Backplanes: a CLI-installed session analyzer for Claude Code and Codex that surfaces agent actions, flags fixes, and tracks improvements across team workflows.LINK
Constellation Gate AI: routes AI agent traffic through a gateway that blocks prompt injection, scans for leaked secrets, and logs verifiable audit trails while cutting token costs 20-40%.LINK
CheapSecurity: a lightweight, self-hosted CCTV system designed to run on Linux single-board computers, enabling affordable home or office video surveillance setups.LINK
TailMux: lets you connect to multiple Tailscale tailnets simultaneously on macOS and Linux by running isolated embedded nodes per profile and routing by hostname, eliminating account switching or VMs.LINK
LaunchSafe: an autonomous pentesting platform that uses AI-driven exploit chains to continuously test and auto-remediate vulnerabilities, letting engineering teams ship fast securely.LINK
HOL Guard: a local firewall for AI coding agents that intercepts risky actions like data deletion or secret leaks before execution, adding minimal latency.LINK
๐ Trending papers & reports
Cryptographic model audits can be gamed so a system proves over 99% accuracy on the test data shown to auditors while performing below 30% accuracy on real customers, prompting a fix that closes this loophole.LINK
Encrypted rental compute lets independent hardware owners securely rent out GPU power for AI work, giving startups and researchers cheaper, fully protected alternatives to expensive centralized cloud clusters like 8xH100s.LINK
Cloud AI watermarking lets companies prove ownership of models they rent out for zero performance loss, without exposing training data or slowing service under heavy customer traffic.LINK
Python package verification shows most rebuilt software packages don't match published versions byte-for-byte, but a new tool called daleq4py confirms 60.2% and 78.9% of them are truly equivalent anyway, making supply-chain security checks far less prone to false alarms.LINK
Software ingredient lists that skip dependency links make over half of real SBOM files unreliable for spotting which vulnerabilities actually matter, but flagging that gap as "unknown" instead of "safe" lifted true-threat detection from 60% to 95%.LINK
See you tomorrow for a new dose of โ๏ธ Cyberpresso!