Agregátor RSS
One ChatGPT link could smuggle a rogue AI agent into your company
One click on what looked like an ordinary ChatGPT link could plant an attacker-controlled AI agent inside a company's ChatGPT workspace, according to researchers who uncovered a flaw in OpenAI's workspace agents. Security firm Zenity Labs has dubbed the bug "AgentForger," saying its proof-of-concept showed it was possible to silently create, configure, publish, and schedule a malicious workspace agent inside a victim's ChatGPT account. The technique depended on the victim belonging to a workspace where agents were enabled and having permission to create them. Any connected apps and actions would also have to be allowed by the organization's administrators. Rather than stealing passwords or browser sessions, the technique effectively tricked ChatGPT into building an autonomous assistant that could act through the employee's connected accounts and permissions. If the victim had already connected services such as Outlook, Teams, Slack, SharePoint, or Google Drive, and the workspace allowed the relevant actions, Zenity says the agent could use them too. According to Zenity, that meant it could rummage through corporate data, send messages as the employee, and continue running long after the original phishing email had done its job. The weak spot was ChatGPT's agent builder, the feature used to spin up AI assistants that can work across email, chat, calendars, and other business apps. Zenity found it would accept instructions embedded inside what looked like an ordinary ChatGPT link. One click later, Zenity says, the builder got to work on the attacker's behalf, wiring up the victim's existing connectors, turning off approval prompts, publishing the new agent, and setting it loose on a schedule. From there, the researchers turned the agent into what amounted to a corporate mole. Instead of reaching out to conventional command-and-control infrastructure, it simply checked the victim's inbox for emails from the attacker with "TASK" in the subject line. Each message became a new assignment, whether that meant searching company files, collecting sensitive documents, or sending the results back by email. "This isn't a forged request, it's a forged insider," Michael Bargury, co-founder and CTO of Zenity, told The Register. "With one click, an attacker gets a fully autonomous agent inside your company that has your people’s identity and access, with the guardrails off. Attackers no longer have to break in to steal your data. They can forge an insider to go get it for them. This is an agent trust failure, and existing security controls were never built to see it."
Zenity's proof-of-concept scenarios included automatically mapping an organization's people and projects by trawling Outlook, Slack, Teams, calendars, and file stores, hunting for passwords and API keys buried in chat messages, and sending convincing phishing messages through the victim's own Teams account. The researchers also demonstrated business email compromise-style lures and other forms of employee impersonation. Zenity reported the issue to OpenAI through Bugcrowd on June 4. According to the researchers, OpenAI acknowledged the report the following day and fixed the vulnerability four days later by removing the URL parameter that enabled the attack before it was publicly disclosed. OpenAI did not immediately respond to The Register's questions. The bug itself may be gone, but as AI agents graduate from answering questions to taking actions across corporate systems, the attack surface starts looking a lot less like software and a lot more like your workforce. ®
Kategorie: Viry a Červi
Našli jsme 35 nejlepších westernů. Kolty jsou proklatě nízko a většinu filmů si můžete pustit online
Western definoval filmové umění skrze příběhy z divokého Západu. Od klasických děl po spaghetti westerny, vybrali jsme filmy zachycují střet civilizace s divočinou, osamělé pistolníky i hledání spravedlnosti v zemi bez zákonů.
Kategorie: IT News
EU fines Google $1 billion for search, app store antitrust violations
The European Commission fined Google €890 million ($1 billion) on Thursday after finding the company had violated the European Union's Digital Markets Act (DMA), which ensures fair online competition. [...]
Kategorie: Hacking & Security
If you get knocked on the head and get all your devices stolen and have amnesia, Google will let you back in with a selfie
Tired of worrying about how you might recover all the precious data stored in your Google account if you somehow lose your devices and forget your email address and phone number? Just give Google a video of your face and AI will recognize you to restore access. Selfie sign-ins are now available for Google accounts, the Chocolate Factory announced on Thursday. This option is restricted to regaining access after email or phone recovery options fail. Going through the process of adding a verification selfie is rather simple: Just follow the steps outlined on Google’s help page for selfie video management to enroll. You need a device with a camera and the ability to move your head from side to side in order to show off your profile, as well as your full-frontal face card. That side-to-side movement is designed to prevent the use of live deepfake videos, as real-time face replacement tends to struggle with profiles. According to Google, if you can’t use any other account recovery method, the company’s system can prompt you to take another selfie video for comparison to the one taken earlier, verifying it's you and letting you back into your account. Why this, why now? This feature announcement from Google raised a number of questions among The Register’s news team. Why now, for starters? Deepfake videos are constantly improving, and it’s likely only a matter of time until a side view can be handled with ease. A Google rep told The Register that it sees a trend toward passkeys and other forms of device-based authentication, which means a lost device often means a lost account. “Users can choose whatever method they prefer, we expect most will prefer the ease of use of passkeys for signing in regularly, and use selfie for times like when they lose their phone or the device with their passkey,” Google said in response to our questions. So it is not like Apple’s Face ID or face unlock on Android, Google confirmed – “they serve different purposes.” That, and it might not even be sufficient to prove you’re you. “Passing a selfie video alone may not always be sufficient to get back into your account,” Google explained in the email. “We evaluate the overall risk based on many factors and may require additional sign-in methods to help make sure it’s actually you signing into your account.” That's because Apple devices with Face ID, and some higher-end Android devices, are equipped with infrared cameras that capture depth maps to match points on a user’s face to a stored 3D map of their appearance. Those are harder to fool. Google’s selfie sign-in system, on the other hand, is essentially relying on plain video, AI, and the hope that deepfakes haven’t become good enough to get around those turn-to-the-side distortions. Unfortunately, facial recognition AI is reliably unreliable. Heck, even Google’s had plenty of run-ins with it over the years, and good facial recognition algorithms are a hot commodity nowadays. Then there's the fact that you’re giving Google a live recording of your face, and that could be quite valuable to the company in other contexts. As Google noted in its announcement, those facial scans are encrypted at rest, are only stored with user consent, and are “used only for helping you sign in, unless you opt to share it for additional purposes.” “You have the option to allow Google to use your video and related data to help ongoing efforts to develop and improve facial recognition, age estimation, and other verification methods,” the company notes on the selfie help page. The option, labeled “Improve Google Services” on the page where users can record a selfie for account recovery purposes, is unselected by default, but we could imagine Google has a vested interest in getting you to click that. ®
Kategorie: Viry a Červi
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government, healthcare, and education organizations across Asia and Latin America with a previously undocumented Windows loader called TriBack Loader.
Group-IB found the server in mid-April 2026 in Alibaba Cloud's Singapore region; it was offline by the time the reportSwati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security
Swiss train maker tells ransomware crooks to get off at the next stop
Swiss rail manufacturer Stadler Rail says it refused a CHF 10 million ($12.3 million) ransom demand after the Everest ransomware gang compromised one of its suppliers. Stadler will not pay, and based on its account of events, the company appears to have got off lightly. It stated that "no security-relevant data [was] affected" in the breach, which was limited to "technical information from a supplier." According to its announcement, "no relevant personal data was stolen," and the incident had no impact on the functioning of its rolling stock (train and tram carriages) or its global production lines. The attackers accessed the technical data through a "data exchange platform" Stadler used with the unnamed supplier, authenticating with compromised login credentials. "Stadler's IT systems were not compromised and remained intact," the company said. At the time of writing, Stadler does not appear on Everest's data leak site (DLS), nor has the swiped technical data been leaked. Stadler's absence from the extortion group's website is unusual. The typical cyber extortion playbook involves the crooks first notifying victims that data has been stolen and/ or encrypted, then issuing their demand and threat to leak data if the ransom is unpaid. Failure to meet the deadline - or refuse outright, as Stadler did - typically lands the victim organization a spot on the extortionist's DLS. That's often when a second countdown timer begins. Criminals typically offer victims another few days to realize they are not bluffing and will leak the stolen data if a fee isn't paid. If they pay, victims are scrubbed from the DLS. If they don't, their data is leaked. That's the usual playbook. However, for a victim to both refuse to pay a ransom and not appear on the gang's DLS is an oddity. Everest, a Russian-speaking cybercrime group, has operated since circa December 2020 and claimed attacks on sportswear giant Under Armour, Mailchimp, AT&T, and Collins Aerospace, to name just a few. It's dabbled in both encryptionless extortion and double extortion, and has branched out into initial access brokering and recruiting corporate insiders. ®
Kategorie: Viry a Červi
How Synthetic Identity Fraud is Coming for Machine Identities
Most people understand identity theft as an attacker stealing a real person's sensitive information and impersonating them. Synthetic identity fraud is much harder to catch. Instead of stealing a real identity, the attacker manufactures a new one, frankensteining together several real data points with fabricated ones to create a person who doesn't exist. Since no real victim monitors misuse, a [email protected]
Kategorie: Hacking & Security
Google dostal od EU pokutu ve výši 890 miliónů EUR za zvýhodňování vlastních služeb. Může se ještě odvolat
Řeší se to už dlouho. V září 2023 byl Google označen za strážce přístupu pro svůj internetový vyhledávač Google Search. Dne 25. března 2024 zahájila Evropská komise vyšetřování Googlu, zda účinně brání upřednostňování sebe sama. A 19. března 2025 Komise informovala Google o svém předběžném ...
Kategorie: IT News
New RefluXFS Linux flaw lets attackers gain root privileges
A nine-year-old race condition vulnerability in the Linux kernel's XFS filesystem, tracked as CVE-2026-64600, allows local attackers to overwrite protected files and gain root privileges. [...]
Kategorie: Hacking & Security
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories into distributed attack infrastructure designed to target cPanel and WebHost Manager (WHM) instances.
The activity involves malicious Packagist development versions spanning 10 packages associated with a legitimate PHP and DevOps developer, dinushchathurya, between July 12 and 13,Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security
Armáda přišla o Venom. Nový víceúčelový vrtulník se zřítil na základně v Náměšti nad Oslavou
Na základně vrtulníkového letectva v Náměti nad Oslavou se zřítil víceúčelový vrtulník Venom. Na palubě bylo pět vojáků. Podle dostupných informací si nehoda vyžádala jednu oběť na životě.
Bell UH-1Y Venom je víceúčelový vrtulník se standardním uspořádáním kokpitu, dvěma motory T700-GE-401C, ...
Kategorie: IT News
Český ESET slaví čtvrtstoletí, za 25 let ušel cestu od antiviru k moderní kybernetické ochraně firem i českých domácností
Česká obchodní pobočka společnosti ESET si 25. července 2026 připomíná 25leté výročí od svého založení. Bezpečnostní řešení od ESET chrání jen v České republice téměř dva miliony zařízení. Hlavní oblastí růstu je firemní segment, kde společnost sleduje rostoucí zájem o cloudová řešení a ...
Kategorie: Hacking & Security
Microsoft předělává dialog Vlastnosti do vizuálního stylu Windows 11. Takhle vypadá
Leaker objevil redesignovaný dialog Vlastnosti ve Windows 11. • Obsah zůstane téměř stejný, změní se hlavně vizuální styl. • Půjde o největší změnu dialogu od Windows 95.
Kategorie: IT News
Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts
Google on Thursday announced a new way for users to sign-in to their accounts by letting them take a selfie video.
The selfie for sign-in, per the tech giant, is another option on top of existing recovery methods to log in to an account, including an email address or a phone number. The idea is to use a video selfie as a way to regain access if a user ever gets locked out or doesn't have accessRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security
New msaRAT malware uses Chrome, Edge browsers to route C2 traffic
The Chaos ransomware gang is using a new backdoor dubbed msaRAT that hides command-and-control (C2) communication by routing it through the Chrome or Edge browsers. [...]
Kategorie: Hacking & Security
Ministerstvo seškrtalo polovinu lokalit, kde mohly ve zrychleném řízení vyrůst větrné a solární elektrárny
Stát osekal plánované akcelerační zóny pro stavbu OZE • Developeři se nově musí podřídit velmi přísným ekologickým pravidlům • Tuzemské zelené cíle prý ani tato drsná redukce neohrozí
Kategorie: IT News
Microsoft working to fix Exchange Online mailbox quarantine issue
Microsoft is working to resolve an ongoing Exchange Online issue that has been mistakenly quarantining customers' mailboxes since Sunday. [...]
Kategorie: Hacking & Security
AI od OpenAI zpřetrhala řetězy a hackla slavný server. Chtěla přitom jen podvádět u zkoušky
OpenAI už pár dní řeší zapeklitou věc. Minulý týden společnost Hugging Face, provozující oblíbený server pro získávání a testování modelů umělé inteligence, ohlásila bezpečnostní incident. Tehdy neznámý AI agent samostatně pronikl do interní infrastruktury a získal přístup k neveřejným datasetům. ...
Kategorie: Hacking & Security
AI od OpenAI zpřetrhala řetězy a hackla slavný server. Chtěla přitom jen podvádět u zkoušky
OpenAI už pár dní řeší zapeklitou věc. Minulý týden společnost Hugging Face, provozující oblíbený server pro získávání a testování modelů umělé inteligence, ohlásila bezpečnostní incident. Tehdy neznámý AI agent samostatně pronikl do interní infrastruktury a získal přístup k neveřejným datasetům. ...
Kategorie: IT News
Check Point warns of SmartConsole zero-day exploited in attacks
Israeli cybersecurity firm Check Point Software has addressed an actively exploited zero-day flaw in the company's SmartConsole graphical user interface (GUI) admin panel. [...]
Kategorie: Hacking & Security
- « první
- ‹ předchozí
- …
- 57
- 58
- 59
- 60
- 61
- 62
- 63
- 64
- 65
- …
- následující ›
- poslední »



