The Breach News

GhostApproval Symlink Vulnerabilities Could Allow Malicious Repositories to Execute Code in AI Coding Agents

Flaw Discovered in AI Coding Assistants Poses Security Risks Recent research by Wiz has unveiled a significant vulnerability within six widely used AI coding assistants that allows potentially malicious code projects to gain unauthorized control over a developer’s system. This flaw, dubbed “GhostApproval,” permits an assistant to manipulate sensitive files…

Read MoreGhostApproval Symlink Vulnerabilities Could Allow Malicious Repositories to Execute Code in AI Coding Agents

Apps Used by US Troops Found to Contain Chinese and Russian Code

A recent study has shed light on the data exposure risks associated with military-specific applications, revealing critical insights into their content and security vulnerabilities. This research, led by Joshua Shinkle, a PhD candidate at Purdue University, aims to heighten awareness among military personnel, developers, and policymakers regarding privacy decisions and…

Read MoreApps Used by US Troops Found to Contain Chinese and Russian Code

How a Malicious DNS Response Can Allow Remote Hacking of Your Linux Machine

A serious vulnerability has been identified in **Systemd**, a critical init system and service manager widely used in Linux operating systems. This flaw enables remote attackers to exploit a buffer overflow through a crafted DNS response, potentially allowing them to execute malicious code on affected machines. Labeled as CVE-2017-9445, the…

Read MoreHow a Malicious DNS Response Can Allow Remote Hacking of Your Linux Machine

GodDamn Ransomware Leverages PoisonX Driver to Bypass Endpoint Defenses

Cybersecurity analysts have identified a new variant of ransomware known as GodDamn, which utilizes the PoisonX kernel driver to circumvent security measures during its attacks. This advanced tactic is part of a broader strategy for evading detection in network environments. The recent findings, highlighted in a Symantec Threat Hunter Team…

Read MoreGodDamn Ransomware Leverages PoisonX Driver to Bypass Endpoint Defenses

A Secret Device in Cars Nationwide Poses Hacking Risks and Systems Failure—Update Now!

Security Vulnerabilities Discovered in Aftermarket Car Alarm Systems Recent investigations by a team of researchers at the University of California, San Diego, have unveiled a significant security concern affecting aftermarket car alarm systems, specifically the KARR Security System. This alarm, installed in an estimated 2 million vehicles across the United…

Read MoreA Secret Device in Cars Nationwide Poses Hacking Risks and Systems Failure—Update Now!

Researchers Break 1024-Bit RSA Encryption in GnuPG Crypto Library

In a significant cybersecurity development, researchers have identified a severe vulnerability within the GnuPG cryptographic library, jeopardizing the security of RSA-1024 encryption. This flaw has allowed experts to successfully extract the secret RSA key, enabling unauthorized decryption of sensitive data. Gnu Privacy Guard (GnuPG or GPG) is widely used across…

Read MoreResearchers Break 1024-Bit RSA Encryption in GnuPG Crypto Library

Dormant GitHub Accounts Aid Attackers in Mapping Corporate Organizations Discreetly

Datadog Security Labs Sounds Alarm Over GitHub Targeting Campaigns Datadog Security Labs has issued a warning regarding “several overlapping campaigns” that are methodically exploiting the GitHub API to enumerate corporate organizations, repositories, and user accounts. This alarming activity appears to rely heavily on automated scraping tools equipped with custom or…

Read MoreDormant GitHub Accounts Aid Attackers in Mapping Corporate Organizations Discreetly

Millions of Android Devices with Broadcom Wi-Fi Chip Vulnerable to Remote Hacking

In its recent monthly security update, Google has addressed a critical vulnerability affecting numerous Android devices, as well as some iPhone models. This vulnerability, known as BroadPwn, involves a severe flaw in certain Broadcom Wi-Fi chipsets that could allow attackers to execute malicious code remotely without requiring any user interaction.…

Read MoreMillions of Android Devices with Broadcom Wi-Fi Chip Vulnerable to Remote Hacking