Scammers Are Using Grok to Spread Malicious Links on X
Scammers Are Using Grok to Spread Malicious Links on X Summary Bad actors on X are exploiting the platform’s AI assistant, Grok, to surface and repost hidden malicious links from…
Scammers Are Using Grok to Spread Malicious Links on X Summary Bad actors on X are exploiting the platform’s AI assistant, Grok, to surface and repost hidden malicious links from…
How Has IoT Security Changed Over the Past 5 Years? Summary Over the past five years IoT adoption has grown across industries, but security progress has been incremental rather than…
Critical SAP S/4HANA Vulnerability Under Attack, Patch Now Summary A critical code-injection flaw in SAP S/4HANA, tracked as CVE-2025-42957 (CVSS 9.9), is being exploited in the wild. The vulnerability allows…
Critical, make-me-super-user SAP S/4HANA bug under active exploitation Summary A critical code-injection vulnerability in SAP S/4HANA (CVE-2025-42957) has been assigned a 9.9 severity rating and is being actively exploited in…
The crazy, true story behind the first AI-powered ransomware Content summary A team of New York University engineers developed a proof-of-concept they call Ransomware 3.0 to test whether large language…
Shell to pay: Crims invade your PC with CastleRAT malware, now in C and Python Summary Security researchers at Recorded Future have uncovered two variants of a new Remote Access…
‘SEO fraud-as-a-service’ scheme hijacks Windows servers to promote gambling websites Summary Slovak cybersecurity firm ESET has tracked a previously unknown group it calls GhostRedirector that has compromised at least 65…
Cyberattack forces Jaguar Land Rover to tell staff to stay at home Summary A cyberattack on Jaguar Land Rover (JLR) disrupted global IT systems, forcing the company to tell factory…
Qantas penalises executives for July cyberattack Summary Qantas has reduced short-term bonuses for senior leaders by 15 percentage points after a July cyberattack that exposed data relating to around 5.7…
CISA orders federal agencies to patch Sitecore zero-day following hacking reports Summary Federal civilian agencies have been given until 25 September to patch a critical Sitecore vulnerability, CVE-2025-53690, after incident…