Hi there, this is your daily ☕️ Cyberpresso.
In today's Cyberpresso:
✈️ Airport breach exposes 8.7M customers
🖨️ PaperCut hit by active zero-day
🛠️ ServiceNow patches 3 critical flaws
💉 Prompt injection makes Claude Code run malware
🔗 Malware hides backup server on Ethereum
Plus: 💡 6 strategies & tactics, 🎁 7 other news you might like, 🧰 6 tools, and 📚 5 papers.
✈️ Airport breach exposes 8.7M customers LINK
🖨️ PaperCut hit by active zero-day LINK
🛠️ ServiceNow patches 3 critical flaws LINK
💉 Prompt injection makes Claude Code run malware LINK
🔗 Malware hides backup server on Ethereum LINK
💡 Strategies & Tactics
> Hackers Abuse Active Directory SPN Misconfigurations for Stealthy Kerberoasting Attacks: Attackers briefly attach service labels to ordinary Windows accounts, steal crackable login tickets offline, then erase the change to evade detection, so audit user accounts for these labels and disable weak encryption.
> Extend Amazon Bedrock Guardrails to Tool Interactions Using the Strands Agents SDK: checking tool inputs and outputs so external data and parameters can't slip through unvalidated.
> Cleartext Credential Recovery in ServiceNow: Attackers with admin-level ServiceNow roles can modify its credential-test scripts to dump stored passwords and keys in cleartext, exposing secrets ServiceNow normally hides.
> Inside 90 days of attacks on AI infrastructure: Attackers now target self-hosted AI tools like LiteLLM to steal model provider keys and hijack computing power, so treat internet-facing AI infrastructure as high-value production systems.
> How Clop accessed the enterprise blueprint with no credentials: Clop exploited a flaw in Windchill engineering software to plant a stealthy implant that steals stored credentials while hiding inside trusted application activity, showing why defenders must monitor what their own software can access and decrypt.
> AWS Shows How Hackers Can Turn Stolen Cloud Credentials Into Full-Scale Attacks: Correlate a single stolen identity's actions across cloud logs, comparing them to normal behavior, so a coordinated attack surfaces before scattered alerts miss it.
Other news you might like
- Unitree G1 Humanoid Robot Flaws Allow Unauthenticated Root RCE Over BluetoothLINK
- BlueDelta Targets Defense and Diplomatic Organizations With HOOKEDGE MalwareLINK
- Chinese Routers Sold Worldwide Contain BackdoorsLINK
- CISA Warns of Six Exploited Flaws in Microsoft, Linux, Red Hat and Citrix ProductsLINK
- OpenAI’s rogue AI model incident was worse than we thoughtLINK
- Go Loader Uses Anti-Sandbox Checks and SNOWLIGHT to Execute Fileless VShell RAT in MemoryLINK
- Critical Next.js Vulnerabilities Enables Remote Code Execution AttacksLINK
🧰 Trending tools
Perfai Security: autonomously tests AI-built apps for access-control, business-logic, and prompt-injection flaws, then opens pull requests with confirmed fixes around the clock.LINK
Halo: an API-first tool that combines NLP, visual, and audio authentication to detect deepfakes and synthetic media, helping fraud and trust teams stop synthetic media attacks.LINK
MonoCloud for Startups: combines authentication and Cedar-based authorization for users, APIs, and AI agents, letting you control, audit, and revoke access, free for a year.LINK
FireTail: discovers shadow AI, enforces governance policies from frameworks like OWASP, and centralizes logging to secure AI usage across all your environments.LINK
ORGN CDE: an enterprise AI IDE that generates code privately using confidential computing, provable encryption, and zero data retention for security-conscious teams.LINK
Playground: test your prompt injection skills against AI agents in a hands-on sandbox for exploring and understanding LLM security weaknessesLINK
📚 Trending papers & reports
Confidential AI on Blackwell chips can run private, encrypted large-model inference with only ~1-3% slowdown when configured right, versus the 30-40% penalty seen in default setups, making secure AI hosting nearly free.LINK
Smart meter privacy lets utilities compute total neighborhood electricity use for grid monitoring and forecasting without ever seeing any household's individual reading, even if some meters are hacked or collude.LINK
XRP Ledger defenses show that adding new trusted connections between nodes makes the network much harder for attackers to break by isolating the participants that hold it together.LINK
Medical device attack testing gives hospitals a first benchmark to check whether security tools can tell real health emergencies from device faults or hacks, revealing that today's detectors miss replay attacks and small tampering almost entirely.LINK
Web attack detection flags malicious traffic while highlighting exactly which parts of a request look suspicious, an approach that exposed mislabeled data in a popular public dataset that had been quietly blinding detection systems to real attacks.LINK
See you tomorrow for a new dose of ☕️ Cyberpresso!