Hi there, this is your daily βοΈ Cyberpresso.
In today's Cyberpresso:
π ChatGPT flaw leaked Gmail data
π Attackers already exploiting fixed Chrome flaw
π± AI worm could hijack WeChat accounts
π©Ή Microsoft patches 2 exploited security flaws
π‘οΈ Defender flaw exposes any file to attackers
Plus: π‘ 6 strategies & tactics, π 6 other news you might like, π§° 6 tools, and π 4 papers.
π ChatGPT flaw leaked Gmail data LINK
π Attackers already exploiting fixed Chrome flaw LINK
π± AI worm could hijack WeChat accounts LINK
π©Ή Microsoft patches 2 exploited security flaws LINK
π‘οΈ Defender flaw exposes any file to attackers LINK
π‘ Strategies & Tactics
> Token Analysis and Tracking System (TATS): A free tool captures and visualizes Microsoft OAuth token exchanges so researchers can spot security gaps like tokens issued before multi-factor authentication completes.
> AI-Infra-Guard: Open-source security scanner for AI systems: Tencent's free scanner checks AI services for known flaws and malicious agent skills, though its language-model judge produces up to 19 percent false positives.
> CISA tells operators to harden Siemens S7 PLCs. Hereβs how to do it without disrupting production: Verify each service's real dependencies before disabling it, so closing an attacker's path to Siemens controllers doesn't trigger the production outage it aimed to prevent.
> This Key Will Self-Destruct: An Open Standard for Revocable API Keys: Proposes an open standard that embeds a discoverable self-destruct into API keys, so anyone finding a leaked one can trigger revocation in minutes instead of days.
> When the prompt becomes the payload: A practical pen-testing guide for GenAI, LLM and RAG applications: Test AI applications as full attack chains, proving whether manipulated text can reach protected data or trigger unauthorized actions, not just fool the model.
> Improper OTP Implementation to Full Account Takeover: Returning a login verification code in an app's own API response lets anyone read it and hijack accounts, so servers should send codes only by email or text.
Other news you might like
- Feds accuse China of βsystematicβ distillation of U.S. AI modelsLINK
- Massive Redis Cryptojacking Campaign Hijacks Thousands of Linux ServersLINK
- cPanel EmailTrack SQL Injection Flaw Lets Attackers Execute Code as RootLINK
- 220 million traveler records exposed in Vietnam-linked APIS leakLINK
- Ivanti Patches Critical Flaws Across Enterprise Security ProductsLINK
- Hackers build AI frameworks for widescale credential theftLINK
π§° Trending tools
qsa.sh: runs external port and vulnerability scans of your public IP using naabu, nmap, and nuclei, streaming results to your terminal in seconds with nothing to install.LINK
HOL Guard: a local firewall for AI agents that blocks risky actions like deleting production data or leaking secrets, running offline in under 50msLINK
ReArk: an intelligent reverse engineering analysis tool that supports multiple platforms, including HarmonyOS and Android application formats.LINK
VolAnti: open-source acoustic detector that uses four MEMS microphones and signal-processing algorithms to detect fibre-optic FPV drones undetectable by radio methods.LINK
Homebutler: monitors servers and reports what changed over time rather than just showing current status, helping detect unexpected modifications.LINK
veloxml-deploy: deploys open-source LLMs on AWS infrastructure with scale-to-zero capability to reduce idle compute costs when self-hosting models.LINK
π Trending papers & reports
Chatbot safety testing moves beyond simple pass-fail scores to grade how AI responds to threats ranging from blunt harmful requests to disguised tricks, revealing that models with identical failure rates actually behave very differently.LINK
Automated attack agents show that giving a hacker more compute time steadily uncovers more ways to hijack tool-using AI assistants through hidden instructions, meaning security tests should measure the attacker's effort, not just a fixed vulnerability score.LINK
AI-written phishing emails get more dangerous with each layer of personal detail added, raising recipients' odds of clicking a malicious link by ~28% per level in a study of 180 workers.LINK
Private search engines can now protect both your query and which data you touched while running far faster, by keeping the heavy lifting inside secure high-memory GPU chips instead of costly cryptographic shuffling.LINK
See you tomorrow for a new dose of βοΈ Cyberpresso!