Archive for the Uncategorized Category

By Kevin Townsend

Researchers unveil OneFlip, a Rowhammer-based attack that flips a single bit in neural network weights to stealthily backdoor AI systems without degrading performance.

The post OneFlip: An Emerging Threat to AI that Could Make Vehicles Crash and Facial Recognition Fail appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

Google says the hackers systematically exported corporate data, focusing on secrets such as AWS and Snowflake keys.

The post Hundreds of Salesforce Customers Hit by Widespread Data Theft Campaign appeared first on SecurityWeek.

…read more

Source:: securityweek

CISA has released an advisory detailing the tactics, techniques, and procedures (TTPs) utilized by Chinese state-sponsored threat actors.

…read more

Source:: Security magazin

By Ionut Arghire

Tracked as CVE-2025-57819 (CVSS score of 10/10), the bug is described as an insufficient sanitization of user-supplied data.

The post Sangoma Patches Critical Zero-Day Exploited to Hack FreePBX Servers appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

SBOM adoption will drive software supply chain security, decreasing risks and costs, and improving transparency.

The post US, Allies Push for SBOMs to Bolster Cybersecurity appeared first on SecurityWeek.

…read more

Source:: securityweek

61% of organizations faced insider file breaches in the last two years.

…read more

Source:: Security magazin

By Eduard Kovacs

Tech giants have received a letter from the FTC urging them not to weaken security and privacy at the request of foreign governments.

The post FTC Calls on Tech Firms to Resist Foreign Anti-Encryption Demands appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

Google researchers say China-linked UNC6384 combined social engineering, signed malware, and adversary-in-the-middle attacks to evade detection.

The post China-Linked Hackers Hijack Web Traffic to Deliver Backdoor appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

Google says the same OAuth token compromise that enabled Salesforce data theft also let hackers access a small number of Workspace accounts via the Salesloft Drift integration.

The post Google Confirms Workspace Accounts Also Hit in Salesforce–Salesloft Drift Data Theft Campaign appeared first on SecurityWeek.

…read more

Source:: securityweek

Protecting patients while safeguarding pharmaceuticals, managing visitor access while ensuring staff safety, and maintaining compliance while operating efficiently — all these challenges demand a level of coordination that traditional security approaches simply cannot provide.

…read more

Source:: Security magazin