Researchers devised an attack technique to extract ChatGPT training data
Security Affairs
by Pierluigi Paganini
13h ago
Researchers devised an attack technique that could have been used to trick ChatGPT into disclosing training data. A team of researchers from several universities and Google have demonstrated an attack technique against ChetGPT that allowed them to extract several megabytes of ChatGPT’s training data. The researchers were able to query the model at a cost of a couple of hundred dollars. “By matching against this dataset, we recover over ten thousand examples from ChatGPT’s training dataset at a query cost of $200 USD —and our scaling estimate suggests that one could extractover 10× more data wi ..read more
Visit website
Expert warns of Turtle macOS ransomware
Security Affairs
by Pierluigi Paganini
2d ago
The popular cybersecurity researcher Patrick Wardle dissected the new macOS ransomware Turtle used to target Apple devices. The popular cyber security researcher Patrick Wardle published a detailed analysis of the new macOS ransomware Turtle. Wardle pointed out that since Turtle was uploaded on Virus Total, it was labeled as malicious by 24 anti-malware solutions, suggesting it is not a sophisticated threat. However, the malicious code was generally detected as “Other:Malware-gen”, “Trojan.Generic”, or “Possible Threat”. In some cases, the anti-virus solution flagged the binary as Windows malw ..read more
Visit website
US govt sanctioned North Korea-linked APT Kimsuky
Security Affairs
by Pierluigi Paganini
2d ago
The US Department of the Treasury’s Office of Foreign Assets Control (OFAC) announced sanctions against North Korea-linked APT group Kimsuky. The US Department of the Treasury’s Office of Foreign Assets Control (OFAC) this week announced sanctions against the North Korea-linked APT group Kimsuky. Kimsuky cyberespionage group (aka ARCHIPELAGO, Black Banshee, Thallium, Velvet Chollima, APT43) was first spotted by Kaspersky researchers in 2013. The group works under the control of the Reconnaissance General Bureau (RGB) foreign intelligence service. At the end of Oct ..read more
Visit website
Black Basta Ransomware gang accumulated at least $107 million in Bitcoin ransom payments since early 2022
Security Affairs
by Pierluigi Paganini
2d ago
The Black Basta ransomware gang infected over 300 victims accumulating ransom payments exceeding $100 million since early 2022. The Black Basta ransomware group has been active since April 2022, like other ransomware operations, it implements a double-extortion attack model.   A joint research by Elliptic and Corvus Insurance revealed that the group accumulated at least $107 million in Bitcoin ransom payments since early 2022. According to the experts, the ransomware gang has infected over 329 victims, including ABB, Capita, Dish Network, and Rheinmetall.  The researchers analyzed bl ..read more
Visit website
CISA adds ownCloud and Google Chrome bugs to its Known Exploited Vulnerabilities catalog
Security Affairs
by Pierluigi Paganini
2d ago
US CISA added ownCloud and Google Chrome vulnerabilities to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added ownCloud and Google Chrome vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. The two issues are: CVE-2023-6345 Google Skia Integer Overflow Vulnerability CVE-2023-49103 ownCloud graphapi Information Disclosure Vulnerability CVE-2023-6345 – The CVE-2023-5217 is a high-severity integer overflow in Skia. Skia is an open-source 2D graphics library that provides common APIs ..read more
Visit website
Apple addressed 2 new iOS zero-day vulnerabilities
Security Affairs
by Pierluigi Paganini
3d ago
Apple released emergency security updates to fix two actively exploited zero-day flaws impacting iPhone, iPad, and Mac devices. Apple released emergency security updates to address two zero-day vulnerabilities impacting iPhone, iPad, and Mac devices. The flaws are actively exploited in attacks in the wild, both issues reside in the WebKit browser engine. The first vulnerability, tracked as CVE-2023-42916, is an out-of-bounds read. An attacker can trick a victim into visiting specially crafted web content to disclose sensitive information. “Apple is aware of a report that this issue may have be ..read more
Visit website
Critical Zoom Room bug allowed to gain access to Zoom Tenants
Security Affairs
by Pierluigi Paganini
3d ago
A critical vulnerability in Zoom Room allowed threat actors to take over meetings and steal sensitive data. Researchers at AppOms discovered a vulnerability in Zoom Room as part of the HackerOne live hacking event H1-4420. Zoom Rooms is a feature of the Zoom video conferencing platform designed to enhance collaboration in physical meeting spaces, such as conference rooms or huddle rooms. It provides a comprehensive solution for businesses and organizations that want to equip their meeting rooms with video conferencing capabilities. The experts discovered the vulnerability in June 202 ..read more
Visit website
Rhysida ransomware group hacked King Edward VII’s Hospital in London
Security Affairs
by Pierluigi Paganini
3d ago
The Rhysida ransomware group claimed to have hacked King Edward VII’s Hospital in London. King Edward VII’s Hospital is a private hospital located on Beaumont Street in the Marylebone district of central London. It is a leading provider of acute and specialist medical care, with a focus on musculoskeletal health, urology, women’s health, and digestive health. The hospital has a long and distinguished history, dating back to 1899 when it was founded by the Prince of Wales (later King Edward VII) to provide high-quality medical care for the working class. The Rhysida ransomware group claimed to ..read more
Visit website
Google addressed the sixth Chrome Zero-Day vulnerability in 2023
Security Affairs
by Pierluigi Paganini
4d ago
Google released security updates to address a new actively exploited zero-day vulnerability, tracked as CVE-2023-6345, in the Chrome browser. Google on Wednesday released security updates to address a new actively exploited zero-day, tracked as CVE-2023-6345, in the Chrome browser. The CVE-2023-5217 is a high-severity integer overflow in Skia. Skia is an open-source 2D graphics library that provides common APIs that work across a variety of hardware and software platforms. It serves as the graphics engine for Google Chrome and ChromeOS, Android, Flutter, and many other products. Skia’s primary ..read more
Visit website
Okta reveals additional attackers’ activities in October 2023 Breach
Security Affairs
by Pierluigi Paganini
4d ago
Cloud identity and access management solutions provider Okta revealed additional threat actor activity linked to the October 2023 breach. Okta provided additional details about the October 2023 breach and revealed additional threat actor malicious activities. In October, the Cloud identity and access management solutions provider said that threat actors broke into its support case management system and stole authentication data, including cookies and session tokens, that can be abused in future attacks to impersonate valid users. Okta asks customers to upload an&n ..read more
Visit website

Follow Security Affairs on FeedSpot

Continue with Google
Continue with Apple
OR