PoeLLM malware infects exposed AI servers in cryptomining attacks
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads. [.
20 articles
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads. [.
Ernst & Young (EY) has warned that a data breach exposed personal and financial information belonging to clients of Goldman Sachs’ wealth management division...
More than 3,400 servers have been compromised by malware that hides its infrastructure coordinates in a poem. The post PoeLLM malware has assembled a sweepin...
How a recent Supreme Court decision on geofencing influenced a federal judge to toss a sheriff's Flock camera evidence in a drug trafficking case.
Attackers hijacked three top-level domains and used their control to mint counterfeit TLS certificates for Google and other large organizations, as first rep...
Dutch offensive security startup Hadrian Security announced it raised $40 million in new funding to expand its business internationally.
UK education software provider Bromcom alerted its customers to a personal data breach impacting its single sign-on (SSO) technology, potentially exposing em...
Real readiness happens when people, processes, and AI technology work in tandem.
A former core infrastructure engineer was sentenced to 32 months in prison for executing a ransomware-style attack that locked thousands of devices on his em...
The National Security Agency is undergoing a significant reorganization, a move former NSA Director Paul Nakasone described as "probably necessary" given the...
LibreOffice, the open-source document editor, announced that it will not be incorporating artificial intelligence features into its software for the foreseea...
Cisco Talos has identified two new campaigns utilizing ClickFix attacks, a method where victims are tricked into copying and executing malicious code on thei...
Japanese media group Nikkei revealed that two employee cloud accounts were accessed without authorization, with one of these accounts subsequently used to se...
One day after Atlassian released patches fixing a critical arbitrary file access vulnerability (CVE-2026-21589) in its self-managed Data Center products, and...
Southern Company is notifying customers that their utility account information was accessed by hackers. The post Georgia Power, Alabama Power Data Breach Hit...
OTCC urged CISA to mandate baseline security requirements for federal operational technology
The UK's Report Fraud service has launched a public awareness campaign advocating for the adoption of passkeys, following a significant rise in financial los...
SDx Central reports that the concept of data sovereignty, once a niche legal term, has evolved into a multifaceted administrative necessity for enterprises g...