Information Security News Blog

N-central vulnerability exploitation and Cloudflare Tunnel backdoor deployment 0

Critical N-central Vulnerability Exploited in MSP Attacks

Administrative Bypass and Platform Exploitation Adversaries discovered a mechanism to access N-central without credentials, securing administrative privileges and leveraging native platform features to breach downstream client computers. Following the attack discovery, the vendor issued...

AI cyber threat trends chart showing LLMjacking and supply chain attacks 0

AI Cyber Threat Trends Surge in 2025

Exploiting AI Infrastructure An attacker dispatched nearly 200,000 requests to a language model in just two minutes. Specifically, they leveraged a stolen access key to execute this massive flood. Consequently, such strikes rapidly transform...

Google Password Manager passkeys security bypass techniques diagram 0

Google Password Manager Passkey Bypasses Uncovered

The Transition to Passwordless Security Passwords are gradually giving way to passkeys as the primary means of digital authentication. Nevertheless, account security remains heavily dependent on how web browsers store and validate associated cryptographic...

Fake AI CVE reports and AI hallucinated SQLite vulnerabilities 0

Fake AI CVE Reports Expose System Flaws

The Emergence of Fabricated Vulnerabilities Vulnerability databases recently received reports of critical SQLite flaws. These fictitious vulnerabilities boasted severity scores reaching a staggering 9.8. However, rigorous source code inspections failed to corroborate a single...

Apple vulnerability reports and AI cybersecurity flaws visualization 0

AI Floods Apple Vulnerability Reports

The Surge of AI Submissions Artificial intelligence networks have flooded Apple with vulnerability reports. Consequently, the company has restricted new submissions. Some incoming materials reveal dangerous discoveries. However, poorly verified or completely fabricated problems...

Shai-Hulud npm worm architecture and JavaScript supply chain attack payload 0

Shai-Hulud npm Worm Compromises Supply Chain

The Initial JavaScript Breach A single installation of a routine JavaScript library could expose a company’s cloud infrastructure, repositories, and internal services to attackers. The Shai-Hulud npm worm infiltrated highly popular packages. Users download...