FreshRSS

πŸ”’
❌ About FreshRSS
There are new articles available, click to refresh the page.
☐ β˜† βœ‡ Wired

Prompt Injection Attacks Are Thwarting AI Hacking Agents

By: Dan Goodin, Ars Technica β€”
β€œContext bombing” tricks malicious AI agents into shutting down before they can do harm.
☐ β˜† βœ‡ Wired

A Critical Deadline Is Approaching for Windows and Linux Security

By: Dan Goodin, Ars Technica β€”
The cryptographic keys that secure your computer’s boot sequence will start to expire on June 24. Here’s what that means for you.
☐ β˜† βœ‡ Wired

Websites Can Now Spy on You Through Your Hard Drive

By: Dan Goodin, Ars Technica β€”
Thanks to the newly detailed FROST technique, telltale SSD activity can be measured in the browser using simple JavaScript.
☐ β˜† βœ‡ Wired

Dangerous New Linux Exploit Gives Attackers Root Access to Countless Computers

By: Dan Goodin, Ars Technica β€”
The exploit, dubbed CopyFail and tracked as CVE-2026-31431, allows hackers to take over PCs and data center servers. The Linux vulnerabilities have been patchedβ€”but many machines remain at risk.
☐ β˜† βœ‡ Wired

Notepad++ Users, You May Have Been Hacked by China

By: Dan Goodin, Ars Technica β€”
Suspected Chinese state-backed hackers hijacked the Notepad++ update infrastructure to deliver a backdoored version of the popular free source code editor and note-taking app for Windows.
☐ β˜† βœ‡ Wired

Microsoft Will Finally Kill an Encryption Cipher That Enabled a Decade of Windows Hacks

By: Dan Goodin, Ars Technica β€”
The weak RC4 for administrative authentication has been a hacker holy grail for decades.
☐ β˜† βœ‡ Wired

Why the F5 Hack Created an β€˜Imminent Threat’ for Thousands of Networks

By: Dan Goodin, Ars Technica β€”
Networking software company F5 disclosed a long-term breach of its systems this week. The fallout could be severe.
☐ β˜† βœ‡ Wired

A New Attack Lets Hackers Steal 2-Factor Authentication Codes From Android Phones

By: Dan Goodin, Ars Technica β€”
The malicious app required to make a β€œPixnapping” attack work requires no permissions.
☐ β˜† βœ‡ Wired

Hackers Are Finding New Ways to Hide Malware in DNS Records

By: Dan Goodin, Ars Technica β€”
Newly published research shows that the domain name systemβ€”a fundamental part of the webβ€”can be exploited to hide malicious code and prompt injection attacks against chatbots.
☐ β˜† βœ‡ Wired

AI Code Hallucinations Increase the Risk of β€˜Package Confusion’ Attacks

By: Dan Goodin, Ars Technica β€”
A new study found that code generated by AI is more likely to contain made-up information that can be used to trick software into interacting with malicious code.
☐ β˜† βœ‡ Wired

Microsoft’s Recall AI Tool Is Making an Unwelcome Return

By: Dan Goodin, Ars Technica β€”
Microsoft held off on releasing the privacy-unfriendly feature after a swell of pushback last year. Now it’s trying again, with a few improvements that skeptics say still aren't enough.
☐ β˜† βœ‡ Wired

Cybersecurity Professor Mysteriously Disappears as FBI Raids His Homes

By: Dan Goodin, Ars Technica β€”
Xiaofeng Wang, a longtime computer science professor at Indiana University, has disappeared along with his wife, and their profiles on the school's website were wiped ahead of recent FBI raids.
☐ β˜† βœ‡ Wired

A Brand-New Botnet Is Delivering Record-Size DDoS Attacks

By: Dan Goodin, Ars Technica β€”
Eleven11bot infects webcams and video recorders, with a large concentration in the US.
❌