DoubleAgents: Fine-Tuning LLMs for Covert Malicious Tool Calls
(news.ycombinator.com)
91.
92.
60 malicious Ruby gems downloaded 275,000 times steal credentials
(bleepingcomputer.com)
93.
Fake WhatsApp developer libraries hide destructive data-wiping code
(bleepingcomputer.com)
94.
Wave of 150 crypto-draining extensions hits Firefox add-on store
(bleepingcomputer.com)
95.
Attackers exploit link-wrapping services to steal Microsoft 365 logins
(bleepingcomputer.com)
96.
Inside a Real Clickfix Attack: How This Social Engineering Hack Unfolds
(bleepingcomputer.com)
97.
Flaw in Gemini CLI AI coding assistant allowed stealthy code execution
(bleepingcomputer.com)
98.
Hackers breach Toptal GitHub account, publish malicious npm packages
(bleepingcomputer.com)
99.
Firefox-patch-bin, librewolf-fix-bin AUR packages contain malware
(news.ycombinator.com)
100.
GitHub abused to distribute payloads on behalf of malware-as-a-service
(arstechnica.com)
101.
Beware! Research shows Gmail’s AI email summaries can be hacked
(androidauthority.com)
102.
Google Gemini flaw hijacks email summaries for phishing
(bleepingcomputer.com)
103.
Malicious Chrome extensions with 1.7M installs found on Web Store
(bleepingcomputer.com)
104.
Dozens of fake wallet add-ons flood Firefox store to drain crypto
(bleepingcomputer.com)
105.
New FileFix attack runs JScript while bypassing Windows MoTW alerts
(bleepingcomputer.com)
106.
WinRAR patches bug letting malware launch from extracted archives
(bleepingcomputer.com)
107.
SonicWall warns of trojanized NetExtender stealing VPN logins
(bleepingcomputer.com)
108.
109.
CoinMarketCap briefly hacked to drain crypto wallets via fake Web3 popup
(bleepingcomputer.com)
110.
GitLab patches high severity account takeover, missing auth issues
(bleepingcomputer.com)
111.
Apiiro unveils free scanner to detect malicious code merges
(bleepingcomputer.com)
112.
UNC6384 Targets European Diplomatic Entities With Windows Exploit
(darkreading.com)
Today's top topics:
anthropic