Menu

Monthly Archives: February 2025

* bsc#1237084 Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5

* bsc#1236560 Cross-References: * CVE-2024-45339

GenAI is my copilot? Developers play whack-a-hallucination
Why enterprises fail at finops
Ivanti endpoint manager can become endpoint ravager, thanks to quartet of critical flaws
Thailand ready to welcome 7,000 trafficked scam call center victims back from Myanmar
Deno update brings OpenTelemetry integration
Linux royalty backs adoption of Rust for kernel code, says its rise is inevitable

https://security-tracker.debian.org/tracker/DSA-5869-1

Microsoft expands Copilot bug bounty targets, adds payouts for even moderate messes
Oops, some of our customers’ Power Pages-hosted sites were exploited, says Microsoft
Apollo GraphQL ships connectors for REST APIs
No, you’re not fired – but beware of job termination scams

Some employment scams take an unexpected turn as cybercriminals shift from “hiring” to “firing” staff

US minerals company says crooks broke into email and helped themselves to $500K
Critical flaws in Mongoose library expose MongoDB to data thieves, code execution
Two arrested after pensioner scammed out of six-figure crypto nest egg

The following vulnerabilities have been discovered in the package mosquitto, MQTT message broker.

Microsoft’s first step to scalable quantum computing
Ghost ransomware crew continues to haunt IT depts with scarily bad infosec
Medusa ransomware gang demands $2M from UK private health services provider
US Army soldier linked to Snowflake extortion rampage admits breaking the law

The 6.12.15 stable kernel update contains a number of important fixes across the tree. The 6.12.14 stable kernel update contains a number of important fixes across the tree.

Fix regression of Match directive processing

Includes CVE fixes.

Update gnutls to the latest upstream release, including a fix for CVE-2024-12243.

Security fix for CVE-2025-0938

Smashing Security podcast #405: A crypto con exchange, and soaring ticket scams
Microsoft updates VS Code C# Dev Kit extension
Trump’s DoD CISO pick previously faced security clearance suspension
Check out this free automated tool that hunts for exposed AWS secrets in public repos
Oracle extends support for on-prem Oracle Database 19c
Katharine Hayhoe: The most important climate equation | Starmus highlights

The atmospheric scientist makes a compelling case for a head-to-heart-to-hands connection as a catalyst for climate action

Hundreds of Dutch medical records bought for pocket change at flea market

* bsc#1237091 Cross-References: * CVE-2025-1244

* bsc#1237037 * bsc#1237038 Cross-References: * CVE-2025-24970

* bsc#1237096 Cross-References: * CVE-2024-31068 * CVE-2024-36293

Several security issues were fixed in libsndfile.

London celebrity talent agency reports itself to ICO following Rhysida attack claims
How to use asyncio: Python’s built-in async library
Intro to Elixir: A fresh take on functional programming
Generative AI vs. the software developer
Healthcare outfit that served military personnel settles allegations it faked infosec compliance for $11 million
Palo Alto firewalls under attack as miscreants chain flaws for root access
Snake Keylogger slithers into Windows, evades detection with AutoIt-compiled payload

https://security-tracker.debian.org/tracker/DSA-5867-1

Large language models: The foundations of generative AI
US newspaper publisher uses linguistic gymnastics to avoid saying its outage was due to ransomware
FreSSH bugs undiscovered for years threaten OpenSSH security
The AI Fix #38: AI proves time travel is impossible (but still can’t draw fingers)
Time to make C the COBOL of this century

* bsc#1237091 Cross-References: * CVE-2025-1244

A vulnerability was discovered in pam-pkcs11, a PAM module which allows to use PKCS#11 based smart cards in the PAM authentication stack, which may allow to bypass the authentication in some scenarios.

Got a Microsoft Teams invite? Storm-2372 gang exploit device codes in global phishing attacks

The Qualys Threat Research Unit (TRU) discovered that the OpenSSH client is vulnerable to a machine-in-the-middle attack if the VerifyHostKeyDNS option is enabled (disabled by default).

Several security issues were fixed in Docker.

Mistral turns focus toward regional LLMs with Saba release

The Qualys Threat Research Unit (TRU) discovered that the OpenSSH client is vulnerable to a machine-in-the-middle attack if the VerifyHostKeyDNS option is enabled (disabled by default).

Key strategies for MLops success in 2025
3 reasons to consider a data security posture management platform
Serverless was never a cure-all

* bsc#1237096 Cross-References: * CVE-2024-31068 * CVE-2024-36293

Indian authorities seize loot from collapsed BitConnect crypto scam

https://security-tracker.debian.org/tracker/DSA-5868-1

Gaming or gambling? Lifting the lid on in-game loot boxes

The virtual treasure chests and other casino-like rewards inside your children’s games may pose risks you shouldn’t play down

What is penetration testing? | Unlocked 403 cybersecurity podcast (ep. 10)

Ever wondered what it’s like to hack for a living – legally? Learn about the art and thrill of ethical hacking and how white-hat hackers help organizations tighten up their security.

Neil Lawrence: What makes us unique in the age of AI | Starmus highlights

As AI advances at a rapid clip, reshaping industries, automating tasks, and redefining what machines can achieve, one question looms large: what remains uniquely human?

How AI-driven identify fraud is causing havoc

Deepfake fraud, synthetic identities, and AI-powered scams make identity theft harder to detect and prevent – here’s how to fight back

Patch or perish: How organizations can master vulnerability management

Don’t wait for a costly breach to provide a painful reminder of the importance of timely software patching

How scammers are exploiting DeepSeek’s rise

As is their wont, cybercriminals waste no time launching attacks that aim to cash in on the frenzy around the latest big thing – plus, what else to know before using DeepSeek

This month in security with Tony Anscombe – January 2025 edition

DeepSeek’s bursting onto the AI scene, apparent shifts in US cybersecurity policies, and a massive student data breach all signal another eventful year in cybersecurity and data privacy

Untrustworthy AI: How to deal with data poisoning

You should think twice before trusting your AI assistant, as database poisoning can markedly alter its output – even dangerously so

Roeland Nusselder: AI will eat all our energy, unless we make it tiny | Starmus highlights

Left unchecked, AI’s energy and carbon footprint could become a significant concern. Can our AI systems be far less energy-hungry without sacrificing performance?

Brian Greene: Until the end of time | Starmus highlights

The renowned physicist explores how time and entropy shape the evolution of the universe, the nature of existence, and the eventual fate of everything, including humanity

Going (for) broke: 6 common online betting scams and how to avoid them

Don’t roll the dice on your online safety – watch out for bogus sports betting apps and other traps commonly set by scammers

The evolving landscape of data privacy: Key trends to shape 2025

Incoming laws, combined with broader developments on the threat landscape, will create further complexity and urgency for security and compliance teams

Under lock and key: Protecting corporate data from cyberthreats in 2025

Data breaches can cause a loss of revenue and market value as a result of diminished customer trust and reputational damage

UEFI Secure Boot: Not so secure

ESET researchers uncover a vulnerability in a UEFI application that could enable attackers to deploy malicious bootkits on unpatched systems

PlushDaemon compromises supply chain of Korean VPN service

ESET researchers have discovered a supply-chain attack against a VPN provider in South Korea by a new China-aligned APT group we have named PlushDaemon

Under the cloak of UEFI Secure Boot: Introducing CVE-2024-7344

The story of a signed UEFI application allowing a UEFI Secure Boot bypass

Cybersecurity and AI: What does 2025 have in store?

In the hands of malicious actors, AI tools can enhance the scale and severity of all manner of scams, disinformation campaigns and other threats

Protecting children online: Where Florida’s new law falls short

Some of the state’s new child safety law can be easily circumvented. Should it have gone further?

Crypto is soaring, but so are threats: Here’s how to keep your wallet safe

As detections of cryptostealers surge across Windows, Android and macOS, it’s time for a refresher on how to keep your bitcoin or other crypto safe

State-aligned actors are increasingly deploying ransomware – and that’s bad news for everyone

The blurring of lines between cybercrime and state-sponsored attacks underscores the increasingly fluid and multifaceted nature of today’s cyberthreats

AI moves to your PC with its own special hardware

Seeking to keep sensitive data private and accelerate AI workloads? Look no further than AI PCs powered by Intel Core Ultra processors with a built-in NPU.

Gary Marcus: Taming Silicon Valley | Starmus highlights

The prominent AI researcher explores the societal impact of artificial intelligence and outlines his vision for a future in which AI upholds human rights, dignity, and fairness

This month in security with Tony Anscombe – December 2024 edition

From attacks leveraging new new zero-day exploits to a major law enforcement crackdown, December 2024 was packed with impactful cybersecurity news

Chris Hadfield: The sky is falling – what to do about space junk? | Starmus highlights

The first Canadian to walk in space dives deep into the origins of space debris, how it’s become a growing problem, and how we can clean up the orbital mess

Unwrapping Christmas scams | Unlocked 403 cybersecurity podcast (special edition)

ESET’s Jake Moore reveals why the holiday season is a prime time for scams, how fraudsters prey on victims, and how AI is supercharging online fraud

ESET Research Podcast: Telekopye, again

Take a peek into the murky world of cybercrime where groups of scammers who go by the nickname of ‘Neanderthals’ wield the Telekopye toolkit to ensnare unsuspecting victims they call ‘Mammoths’

ESET Threat Report H2 2024: Key findings

ESET Chief Security Evangelist Tony Anscombe looks at some of the report’s standout findings and their implications for staying secure in 2025

Cybersecurity is never out-of-office: Protecting your business anytime, anywhere

While you’re enjoying the holiday season, cybercriminals could be gearing up for their next big attack – make sure your company’s defenses are ready, no matter the time of year

Black Hat Europe 2024: Hacking a car – or rather, its infotainment system

Our ‘computers on wheels’ are more connected than ever, but the features that enhance our convenience often come with privacy risks in tow

Black Hat Europe 2024: Why a CVSS score of 7.5 may be a ‘perfect’ 10 in your organization

Aggregate vulnerability scores don’t tell the whole story – the relationship between a flaw’s public severity rating and the specific risks it poses for your company is more complex than it seems

Black Hat Europe 2024: Can AI systems be socially engineered?

Could attackers use seemingly innocuous prompts to manipulate an AI system and even make it their unwitting ally?

ESET Threat Report H2 2024

A view of the H2 2024 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts

How cyber-secure is your business? | Unlocked 403 cybersecurity podcast (ep. 8)

As cybersecurity is a make-or-break proposition for businesses of all sizes, can your organization’s security strategy keep pace with today’s rapidly evolving threats?