The Breach News

Suspected AI-Generated PowerShell Script Used by Attacker to Map Active Directory

Cybersecurity Alert: Intrusion Using AI-Generated PowerShell Script Targeting Active Directory Cybersecurity researchers have uncovered a significant intrusion involving an unknown threat actor who employed a sophisticated PowerShell script for Active Directory (AD) enumeration. The script, described as “vibe-coded,” was designed to identify key components within the AD environment, including the…

Read MoreSuspected AI-Generated PowerShell Script Used by Attacker to Map Active Directory

Hugging Face Reports Breach in Production Infrastructure by Autonomous AI Agent System

Hugging Face, a prominent open-source platform recognized as a key player in the machine learning community, has reported an incident involving unauthorized access to portions of its production infrastructure. The company attributes this breach to an automated AI agent that managed the operation independently from beginning to end. During the…

Read MoreHugging Face Reports Breach in Production Infrastructure by Autonomous AI Agent System

Serious Vulnerabilities Discovered in Windows NTLM Security Protocol – Urgent Patch Recommended

Microsoft Issues Urgent Patch Addressing Critical NTLM Vulnerabilities In a significant update released during this month’s Patch Tuesday, Microsoft has addressed critical vulnerabilities impacting the NT LAN Manager (NTLM) security protocol, which affects all versions of Windows operating systems in enterprises since 2007. This security breach raises alarms among system…

Read MoreSerious Vulnerabilities Discovered in Windows NTLM Security Protocol – Urgent Patch Recommended

New Agent Data Injection Attack Can Cause AI Agents to Misclick or Execute Attacker Commands

Emerging Threat: Agent Data Injection Exploits AI Trust Mechanisms Recent research has unveiled a new cybersecurity threat known as Agent Data Injection (ADI), which cleverly manipulates AI agents by corrupting the trusted data they rely on. On July 6, researchers from Seoul National University, the University of Illinois Urbana-Champaign, and…

Read MoreNew Agent Data Injection Attack Can Cause AI Agents to Misclick or Execute Attacker Commands

More than 70,000 Memcached Servers Remain Exposed to Remote Hacking Threats

Last year, Cisco’s Talos intelligence unit identified three critical remote code execution (RCE) vulnerabilities within Memcached, a widely-used open-source distributed caching system. This discovery raised significant alarm as it impacted major platforms, including Facebook, Twitter, YouTube, and Reddit, putting them at risk of unauthorized access. Memcached is instrumental for dynamic…

Read MoreMore than 70,000 Memcached Servers Remain Exposed to Remote Hacking Threats

World’s Largest AI Model Repository, Hugging Face, Breached by Autonomous AI Agent

Hugging Face Suffers Breach from Autonomous AI Agent Hugging Face, a notable player in the open-source artificial intelligence sector, recently disclosed a sophisticated cyber-attack involving an autonomous AI agent. This incident highlighted vulnerabilities in their production infrastructure, prompting immediate investigation and response. According to the company’s statement, it became aware…

Read MoreWorld’s Largest AI Model Repository, Hugging Face, Breached by Autonomous AI Agent

Vulnerability Allows Remote Exploitation, Endangering Millions of Internet-Connected Devices

A significant vulnerability has been identified in a widely used open-source software library, posing a substantial risk to millions of Internet of Things (IoT) devices. Known as CVE-2017-9765, this flaw was uncovered by security experts at the IoT-focused firm Senrio and affects the gSOAP toolkit, which is instrumental in developing…

Read MoreVulnerability Allows Remote Exploitation, Endangering Millions of Internet-Connected Devices

Serious Code Injection Vulnerability in Gnome File Manager Exposes Linux Users to Potential Hacking Risks

Security Flaw Discovered in GNOME File Manager’s Thumbnail Handler A significant security vulnerability has been revealed in the thumbnail handler of the GNOME Files file manager, a widely used application on Linux platforms. This flaw, identified by German security researcher Nils Dagsson Moskopp, poses a serious risk as it allows…

Read MoreSerious Code Injection Vulnerability in Gnome File Manager Exposes Linux Users to Potential Hacking Risks