Hi there, this is your daily ☕️ Cyberpresso.
In today's Cyberpresso:
🎭 Fake Zoom updates give hackers control
🍏 New macOS malware hijacks Chrome
📡 TP-Link flaws let hackers hijack networks
🔓 3 software flaws under active attack
🧩 Fake extensions steal developer data
Plus: 💡 6 strategies & tactics, 🎁 7 other news you might like, 🧰 6 tools, and 📚 5 papers.
🎭 Fake Zoom updates give hackers control LINK
🍏 New macOS malware hijacks Chrome LINK
📡 TP-Link flaws let hackers hijack networks LINK
🔓 3 software flaws under active attack LINK
🧩 Fake extensions steal developer data LINK
💡 Strategies & Tactics
> A few notes on AWS Nitro Enclaves: KMS integration: Explains how connecting AWS Nitro Enclaves to its Key Management Service creates new attack risks, and catalogs safeguards like hardcoding key IDs and validating encryption context.
> Securing Agentic AI Workflows in n8n: From Leaked API Keys to Encryption Key Compromise: A leaked n8n API key can chain into full encryption-key compromise, exposing every stored credential, so isolate instances by team, patch critical bugs fast, and keep admin access private.
> OWASP Subtractive Security Top 10 Project Released to Identify and Reduce Cyber Risks: OWASP's new framework prioritizes removing unnecessary access, services, and privileges to eliminate attacker paths entirely, treating detection as only a last resort.
> Public PoC Released for CUPS Vulnerability Allows Attackers to Gain Root Privileges: Public exploit code for a macOS printing flaw lets local users write files as root, so administrators should patch immediately before attackers weaponize it.
> 7-Zip Mark-of-the-Web Bypass Lets Malicious Files Evade Windows SmartScreen: 7-Zip's default setting strips the "downloaded from internet" tag off extracted files, so Windows SmartScreen skips its safety warning on malicious programs.
> 1-Click RCE Flaw in Cursor, VS Code, and Google Antigravity Exposes 50M Developers to Cyberattacks: A single click on a malicious link in AI code editors let attackers silently seize developers' machines because these tools share VS Code's vulnerable codebase.
Other news you might like
- Anthropic's Mythos created fake identities to fool humans in new cyber incidentLINK
- Massive supply-chain attack compromises 440 packages under four hoursLINK
- Prolific ransomware group behind SonicWall zero-day attacksLINK
- Bitcoin bridge Boltz suspends services as AI hacks outpace patchesLINK
- DarkSword Server Combines iPhone Exploits With Fake Apple ID Login PageLINK
- How legitimate cloud platforms enable phishers to bypass MFALINK
🧰 Trending tools
Perfai Security: automatically scans and fixes access control vulnerabilities in apps built with Replit, Lovable, Claude Code, and Cursor, making them production-ready in minutes.LINK
Constellation Gate AI: routes AI agent traffic through a gateway that blocks prompt injection, scans for secrets, logs audit trails, and cuts token costs 20-40% via compression and caching.LINK
Lunen.ai: an AI automation tool that logs every action taken, flags risky steps for approval, and gives security teams a full audit trail.LINK
HOL Guard: a firewall for AI agents that intercepts and blocks high-risk actions like deleting production data or exposing secrets before they execute.LINK
qsa.sh: runs a one-command external security scan of your server's public IP, using naabu, nmap, and nuclei to detect open ports, service versions, and known CVEs in about 30 seconds, no signup or storage required.LINK
Cynative Security Research Agent: an open-source AI CLI that answers plain-language security questions across cloud, code, and runtime, using read-only sandboxed scripts to prevent accidental infrastructure changes.LINK
📚 Trending papers & reports
Zero-knowledge fairness proofs let banks cryptographically prove a lending model's bias score and calibration to regulators on 32,768 real mortgage records, within 0.0029 accuracy, without revealing weights or customer data.LINK
Malware detection safeguards that flag when threats evolve can be undermined by the same tampering tricks used to fool the classifiers, but attackers must adjust their approach since these safeguards react differently than the classifiers they protect.LINK
AI recommendation systems built from chatting user and item agents become more vulnerable to manipulation as their interaction network grows denser, showing platforms must balance connectivity with security when automating recommendations.LINK
Speed shortcuts in AI chatbots, which skip unused parts of the model to run faster, leave a pattern that attackers can secretly watch and reverse to reconstruct users' prompts and answers with over 0.95 accuracy, even inside supposedly secure cloud hardware.LINK
Deepfake video detection gets a tougher test set of ~97,500 AI-generated clips, revealing that simple photo-based fake detectors, once their frame-by-frame guesses are combined smartly, beat top video-specific detectors, hitting 93.80% accuracy versus 79.99%.LINK
See you tomorrow for a new dose of ☕️ Cyberpresso!