Information Security News Blog

Windows Plug and Play device installation spoofing vulnerability demonstration 0

Weaponizing Windows USB Auto-Install with Plug and Pwn

Simply connecting a mundane device to a computer can initiate a devastating sequence. Specifically, Windows itself might inadvertently download malicious components and execute them with maximum administrative rights. Security experts Alejandro Hernando and Borja...

N-central vulnerability exploitation and Cloudflare Tunnel backdoor deployment 0

Critical N-central Vulnerability Exploited in MSP Attacks

Administrative Bypass and Platform Exploitation Adversaries discovered a mechanism to access N-central without credentials, securing administrative privileges and leveraging native platform features to breach downstream client computers. Following the attack discovery, the vendor issued...

AI cyber threat trends chart showing LLMjacking and supply chain attacks 0

AI Cyber Threat Trends Surge in 2025

Exploiting AI Infrastructure An attacker dispatched nearly 200,000 requests to a language model in just two minutes. Specifically, they leveraged a stolen access key to execute this massive flood. Consequently, such strikes rapidly transform...