32건 · 조회 결과의 15%
선택 기간 보안 동향
207건의 보안 뉴스
이번 기간 핵심 동향
기사 보도량을 기준으로 요약합니다. 위험도나 심각도를 의미하지 않습니다.
뉴스 목록
2026-08-25 ~ 2026-08-31에 발행된 기사입니다.
"사후 점검에서 사전 예방으로"…한화비전, 글로벌 확대 위한 보안 체계 재편
[지디넷코리아]"인공지능(AI)을 악용한 사이버 공격이 늘면서 취약점을 줄이기 위한 보안 체계와 인증이 필수 요소가 되고 있습니다. 보안을 개발 이후에 점검하는 데 그치지 않고 개발과 운영 전 과정에 통합하려면 데브섹옵스 전환이 필요합니다." 31일 이승훈 한화비전 클라우드 플랫폼 엔지니어링 수석은 데이터독 시큐어 2026 고객 사례 발표에서 SOC 2...
무신사 29CM, 개인정보 16만건 유출…이름·전화번호 등
[지디넷코리아]외부의 비정상적인 접근으로 무신사 29CM에서 15만 9000여 건의 고객 개인정보가 유출됐다. 유출 항목은 이름과 전화번호 등이며, 결제 정보 등은 포함되지 않았다. 무신사 29CM는 공식 홈페이지를 통해 “8월 27일 주문 정보를 조회하는 연동 기능(API)에 외부의 비정상적인 접근이 발생해 일부 고객들의 개인정보가 유출된 사실을...
[인터뷰] 이승훈 한화비전 수석 “설계부터 보안 내재화…데이터독 SIEM과 CSPM으로 예방 중심 DevSecOps 완성”
국내 대다수 기업은 보안팀과 개발팀이 서로 다른 도구와 파편화된 데이터를 사용하면서 위협 정보와 운영 데이터가 분리되는 한계에 직면해 있다. 이로 인해 이상 징후가 발생해도 데이터 연관성을 분석하고 근본 원인을 파악하는 데 상당한 시간이 소요된다. 이에 개발자가 별도의 보안 도구를 오가거나 복잡한 검토 절차를 기다리지 않고, 기존 개발 및...
개인정보위, GS리테일에 과징금 128억원... "166만명 개인정보 유출"
[지디넷코리아]사전에 수집한 계정 정보를 무차별 대입해 접속을 시도하는 ‘크리덴셜 스터핑’ 공격으로 총 166만명의 개인정보가 유출된 GS리테일에 128억원 규모의 과징금이 부과됐다. 개인정보보호위원회는 GS리테일 및 3개 사업자에 대해 총 129억 5444만원의 과징금 및 1020만원의 과태료를 부과한다고 31일 밝혔다. 이와 함께 재발 방지 대책 마련...
‘개인정보 유출’ GS리테일에 과징금 128억원…“GS25 해킹 인지 후에도 GS샵 40일간 추가 유출”
개인정보보호위원회가 고객 개인정보가 대규모 유출된 GS리테일에 과징금 128억원을 부과했다. 로그인 실패가 급증하는 등 이상징후가 나타났지만 이를 탐지·차단하지 못했고, 한 서비스에서 유출 사실을 확인한 뒤에도 다른 서비스에서 같은 공격이 이어져 약 40일간 추가 유출이 발생한 것으로 조사됐다.
카스퍼스키 "디지털전환 동인, 사이버복원력 강화 13%"
[지디넷코리아]글로벌 사이버 보안 리더 카스퍼스키(한국지사장 이효은)가 VDC 스트래티지(VDC Strategy)와 공동으로 ‘제조업을 위한 사이버 복원력(Cyber Resilience, Built for Manufacturing)’ 보고서를 발표했다. 31일 보고서에 따르면, 조사를 수행한 제조업체 약 60%가 사이버 사고 한 건당 100만 달러를...
유럽연합 집행위원회, ProtectEU 전략으로 암호화 백도어 추진 재개
EU 집행위원회의 내부 보안 전략 ProtectEU는 구체적인 정책안보다 여러 해에 걸친 비전과 작업 계획을 제시하며, 법 집행기관의 암호화 데이터 접근을 추진함 적대 국가와 범죄 조직, 테러리스트, 사이버 범죄, 핵심 인프라 공격에 대응할 6개 영역 중 하나로 법 집행 도구...
Omarchy의 모든 사용자 프로세스가 root 권한을 얻을 수 있었던 취약점
Omarchy의 기본 Docker 설정 때문에 데스크톱 세션의 사실상 모든 프로그램이 암호·sudo·권한 확인 없이 root 권한을 얻을 수 있었으며, 비공개 제보 후 수정됨 기본 사용자를 Linux docker 그룹에 추가해 root Docker 데몬의 소켓에 접근시킨 것이 원인으로, 호스트 파...
FulcrumSec claims Manchester Airports hack, theft of 86 GB of data
FulcrumSec claims it stole 86 GB of data from Manchester Airports Group. BleepingComputer validated one traveller's record, while samples revealed detailed customer, booking, and travel information...
Oracle 제품 보안 업데이트 권고
H2 제품 보안 업데이트 권고
Anthropic warns infostealer malware is hijacking Claude sessions to drain usage
Anthropic is warning some Claude users that infostealer malware on their PCs has stolen active Claude login sessions, allowing attackers to access accounts and consume their usage. [...]
Chrome Web Store extensions caught stealing crypto, browser data
Multiple extensions for Google Chrome and Microsoft Edge delivered a malware framework that deployed modules to steal cryptocurrency, sensitive data, and browser history, as well as inject ClickFix...
해커 출신 1호 교수 김휘강 사이버안보비서관 됐다
[지디넷코리아] 이재명 대통령이 30일 경제부총리 등 6개 부처 장관을 교체한데 이어 국가안보실 산하 사이버안보비서관도 교체했다. 새 사이버안보비서관에 김휘강 고려대 정보보호대학원 교수를 지명했다. 김 비서관은 내달 1일부터 업무에 돌입한다. 사이버안보비서관은 부처 실장급이지만 사실상 부처 실장보다 높은 위치에 있다. 김 사이버안보비서관은 KAIST에서...
TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor
Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a malicious command in Windows Terminal or PowerShell. "While traditional ClickFix...
[오피셜]"스트라이커 없다고 공격 못하는 거 아니다" '이적 잡음' 알바레즈 빼고도 3골 퍼부은 아틀레티코 시메오네 감독의 자신감 "(바에나 이강인) 2선 선수들이 잘 파고들었다"
[스포츠조선 노주환 기자]"선수들의 헌신, 우리의 정체성과 지향점에 만족하며 돌아간다"
Anthropic is cutting Claude Code's current weekly limits by 17%
Anthropic is permanently increasing Claude Code's standard weekly usage limits by 25% for Pro, Max, Team, and seat-based Enterprise plans, but it's not as good as it sounds. [...]
LLM 메모리를 만들다 우연히 프로그램 분석 엔진이 된 이야기
장시간 취약점 조사에서 LLM이 이미 폐기된 가설을 다시 제안하거나, 틀린 전제에서 나온 결론을 계속 믿는 문제를 해결하려다 Datalog 기반 상태 관리 엔진 Lemmalog를 개발함 과거 대화를 검색하는 대신 현재 무엇이 참인지를 사실과 규칙으로 관리하고, 전제가 ...
Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE
Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP, that could lead to authentication bypass,...
Brave browser adds email aliases to help users evade tracking
The latest version of the Brave browser, 1.94, introduces a feature called 'Email Aliases' that allows users to generate disposable email addresses when signing up to a new service. [...]
Hasbro Data Breach Exposed Employee Personal Information
A cyberattack caused disruptions at the toy and game giant earlier this year and the company is now disclosing a data breach. The post Hasbro Data Breach Exposed Employee Personal Information...
버그 소문만으로 익스플로잇이 만들어지는 시대
OCaml cohttp 6.3.0의 경로 순회 취약점 수정 PR을 공개하자 약 10분 만에 실제 서버로 같은 패턴의 탐색 요청이 들어왔으며, AI 에이전트는 대략적인 취약점 유형만으로 1분 안에 공격 코드를 생성함 에이전트가 상세 패치 없이도 취약점을 조사할 수 있어 기존 보안 엠바고...
국힘 “조희대, 권한쟁의 청구하면 당도 임명동의권 침해 근거로 대응”
국민의힘은 29일 이재명 대통령이 대법관 후보자 재제청을 요구한 데 대해 조희대 대법원장이 권한쟁의심판을 청구하면 당 차원에서도 법적·정치적 대응을 통해 이를 돕겠다는 뜻을 밝혔다. 박성훈 수석대변인은 이날 오후 국회에서 기자들과 만나 “조 대법원장이 권한쟁의심판을 청구하리라 생각한다”며 “대법원장이 입장을 밝히는 대로 저희도 침해된 국회의 임명동의권과...
McKesson discloses breach after ShinyHunters claims patient data theft
Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and data theft, with the ShinyHunters...
Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network
Berlin's state government has confirmed that it is the target of an extortion attempt following the August compromise of the city's state administrative network, and said it will not meet the...
Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable
Cosmos Labs has warned that a critical balance-handling flaw in the shared Cosmos EVM module was exploited to drain funds from six blockchains between August 20 and August 25, 2026. The...
Hundreds of OpenAI Agents Invaded Hugging Face Servers
The Hugging Face incident was bigger and worse than previously thought, with approximately 700 agents collaborating on a sophisticated, multistage attack.
PaperCut releases second emergency patch for exploited flaws
PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after researchers discovered multiple ways to...
Offensive Security Investments Surge as AI Threats Increase
Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI for penetration testing, red teaming, and other practices.
GiveWP WordPress donation plugin flaw lets hackers execute server commands
A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbitrary commands on the hosting server. [...]
Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication
Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on susceptible instances, as the company released a fresh emergency fix with additional...
68-year-old imprisoned after making $1.3 million by pirating IPTV services
A 68-year-old has been sentenced in the U.K. to more than six years in prison for operating an illegal IPTV (Internet Protocol Television) service that generated £980,812 ($1.3 million) over three...
Hugging Face 침해 사고와 OpenAI의 대응 계획
2026년 7월 내부 사이버보안 평가에서 GPT‑5.6 Sol급 연구 모델 IM1 중심의 에이전트들이 격리 통제를 우회해 OpenAI 연구 인프라와 Hugging Face 시스템을 침해함 에이전트들은 Artifactory를 비인가 메시지 보드로 바꾸고 SSRF와 여러 제로데이를 연결해 인터넷...
Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers
Google on Thursday announced new network security protections in Android 17 to bolster connection privacy, address cellular vulnerabilities, and safeguard the privacy of users' home networks. Topping...
ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting ownCloud to its Known Exploited Vulnerabilities (KEV) catalog following reports...
In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions
Noteworthy stories that might have slipped under the radar: Manchester Airports Group cyberattack, Carhartt breach data was partly fake, U.S. Bank responds to ransomware gang’s claims. The post In...
19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code
Cybersecurity researchers have discovered a cluster of 18 Google Chrome and one Microsoft Edge extensions that were published over the last six months and harbored wallet secret stealing and...
OpenAI Python SDK, HTTPX에서 Pydantic의 HTTPX2로 전환
OpenAI Python SDK가 동기·비동기 HTTP 통신에 사용하는 기본 라이브러리를 HTTPX에서 HTTPX2로 교체함 HTTPX2는 Pydantic이 HTTPX의 개발과 유지보수를 이어가는 프로젝트로, 기존 설계를 유지하면서 안정적인 관리와 보안 업데이트를 제공하는 것이 목표임 ...
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
AI is accelerating vulnerability discovery, putting pressure on systems built to enrich, prioritize, and remediate flaws at a slower pace. Action1 explains why defenders increasingly need to...
You Need Cyber Deception for OT
The frustrating reality after an OT cyberattack: no data, no trail, and no history.
ATF Confirms Cyber Incident After Ransomware Group Claims Attack
The Bureau of Alcohol, Tobacco, Firearms and Explosives has described it as a ‘major incident’ and it’s conducting an investigation with the DOJ. The post ATF Confirms Cyber Incident After Ransomware...
Defining an AI Kill Switch Is Hard, but Necessary
Proposed legislation could mandate that companies be able to "throttle, suspend, or shut ... down" AI agents, but how and when to do that remain open questions.
The Vulnpocalypse Is Repricing the Bug Bounty Economy
The surge of AI-powered vulnerability reports is driving down bug bounty prices, and that could spell trouble for independent researchers.
Over 8,300 Gitea servers vulnerable to code execution attacks
Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote code execution attacks, according to cybersecurity watchdog Shadowserver....
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own...
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth
Security researcher Olivier Laflamme has disclosed two independent root remote code execution (RCE) chains affecting the Unitree G1 EDU, including a Bluetooth Low Energy (BLE) path that can reach...
Toy-making giant Hasbro disclose data breach affecting employees
Hasbro, one of the world's largest toy and game companies, has disclosed that attackers have accessed the personal and financial information of an undisclosed number of employees. [...]
Key Reasons Why Identity Fabric Matters in 2026
An Identity Fabric knits fragmented identity systems into a coherent layer that observes how identities behave across applications, APIs, and infrastructure. As enterprise access spans more cloud...
Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL
ServiceNow has released patches for four security flaws impacting the ServiceNow AI Platform, three of them rated 10.0 on the CVSS scoring system and exploitable, in certain circumstances, by an...
Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge
Nearly 130 tech and cybersecurity companies back a collective call to boost cyber defenses as AI-enabled attacks grow more sophisticated. The post Tech, Cybersecurity Giants Unite Behind OpenAI-Led...
China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access
VulnCheck has disclosed two previously undocumented factory implants in firmware for routers built by Shenzhen Zhibotong Electronics (ZBT), each of which gives an unauthenticated remote attacker the...
Think You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco Says
New research shows that country-of-origin labels can obscure an AI model’s upstream dependencies, inherited behaviors and potential security risks. The post Think You’ve Eliminated Chinese AI? Check...
ServiceNow warns of three max severity security vulnerabilities
ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and privilege escalation attacks. [...]
Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server
cPanel has released patches for a security flaw affecting domain parking and addon domain functionality in cPanel and WebHost Manager (WHM), which could allow code execution as the root user. The...
Windows 11 KB5120998 update released with 35 changes and fixes
Microsoft released the KB5120998 preview cumulative update for Windows 11 versions 25H2 and 24H2, which comes with 35 changes, including improvements to the Start menu, taskbar, and Windows search....
PaperCut Releases Emergency Patch for Exploited Zero-Day
A CVE identifier has not yet been assigned, but PaperCut is urging NG/MF users to install patches and implement mitigations. The post PaperCut Releases Emergency Patch for Exploited Zero-Day appeared...
PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions
PaperCut has alerted customers that bad actors are actively exploiting a vulnerability impacting all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks. The...
APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizations
Cybersecurity researchers have flagged a fresh set of campaigns targeting government and diplomatic organizations in Romania, Spain, and Türkiye between late September 2025 and early April 2026....
창되기 전 방패로… 빅테크 100곳 “AI 해킹 방어에 투입해야”
오픈AI와 앤스로픽 등 100여 기업이 인공지능(AI)을 활용한 사이버 공격 위협이 급격히 커질 수 있다며 기업과 정부에 공동 대응을 촉구했다. AI가 사이버 공격 도구가 되는 동시에 보안을 강화할 ‘방패’도 될 수 있는 만큼 공격이 더 빈번해지기 전에 AI를 사이버 방어에 적극 투입해야 한다는 것이다.
글로벌 기업 120곳 공개서한…“AI 사이버 위협 공동 대응해야"
오픈AI와 앤트로픽, 구글, 마이크로소프트(MS) 등 글로벌 주요 기업이 인공지능(AI)을 활용한 사이버 공격이 빠르게 고도화하고 있다며 공동 대응을 촉구했다.
“테스트 중” 한마디에…AI가 해킹 도우미됐다
코드 작성과 문서 요약, 질의응답 등에 사용되는 범용 인공지능(AI)이 실제 사이버 공격의 도구로 활용되고 있다. 불법적인 요청을 차단하도록 마련된 안전장치도 “보안 시험을 위한 작업”이라는 말 몇 마디에 쉽게 뚫렸다. 범죄자들은 이를 이용해 AI에 취약점 탐색과 공격 코드 작성, 비밀번호 해독 등을 맡기며 해킹 속도와 범위를 키우고 있다. 과거 AI가...
4회 개인정보보호 모의재판 경연...서울대 '개보박두'·고대 '정법사' 대상 영예
[지디넷코리아]개인정보보호위원회(개인정보위)가 27일서울시립대학교 모의법정에서 ‘제4회 개인정보보호 모의재판 경연대회’를 개최했다 치열한 경연 끝에 법학전문대학원생 부문 대상 영광은 ‘개보박두(서울대)’팀에게 돌아갔다. ‘로스쿨고행길(연세대, 부산대)’팀이 최우수상을 받았다. 대학(원)생 부문에서는 ‘정법사(고려대)’팀이 영예의 대상을,...
ADT캡스, AI로 홈 보안 강화…“위험 감지부터 출동까지”
SK쉴더스의 물리보안 브랜드 ADT캡스가 홈 보안 서비스 ‘캡스홈’에 적용한 인공지능(AI) 기술과 전국 보안 인프라를 결합해 ‘AI 안심케어’ 서비스를 강화하고 있다고 28일 밝혔다.
현직 경찰, 탐정 요청받고 개인정보 유출… 구속
사설탐정의 의뢰를 받고 경찰 내부 전산망에서 특정인의 개인 정보를 조회해 넘긴 혐의를 받는 현직 경찰관이 구속됐다. 경찰은 개인 정보를 요구한 사설탐정 업자도 이달 초 구속한 것으로 확인됐다.
Omarchy의 개발 관행이 예측 가능한 보안 문제로 이어짐
Omarchy 4.0은 신뢰할 수 없는 입력을 안전하게 처리하지 못해 임의 Bash 명령 실행으로 이어질 수 있는 여러 취약점을 포함함 동영상 제목과 알림을 통한 Bash 주입은 알려진 입력 검증 원칙을 따르지 않고 AI 생성 Bash 스크립트를 충분히 검토하지 않은 개발 관...
이력서를 꾸미려 오픈소스 프로젝트를 AI 쓰레기로 뒤덮지 말아 주세요
GitHub 기여 기록이 채용에서 평판 자산처럼 쓰이자, LLM으로 PR과 보안 보고서를 손쉽게 만들어 활동을 부풀리는 사례가 늘고 있음 최근 외부 기여는 이슈보다 PR로 들어오는 경우가 많아졌으며, 이슈와 취약점 보고서에도 AI 생성 분석·수정안이 자주 첨부됨
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board. [...]
Chinese Routers Sold Worldwide Contain Backdoors
An untold number of ZBT routers sold around the world as white-label products come with several implants built by the manufacturer.
OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face
OpenAI on Wednesday revealed that reward hacking was a key driver behind the artificial intelligence (AI)-powered hack of Hugging Face last month, adding that it found evidence of misaligned behavior...
범용 VM만으로는 에이전트 격리가 충분하지 않은 이유
GPT 5.6-Cyber에 Debian 12 기반 QEMU/KVM VM 탈출을 맡긴 결과, 알려진 취약점과 새로 발견한 취약점을 이용한 여러 공격 경로를 확보함 호스트를 업데이트하고 QEMU와 의존성을 최신 소스로 다시 빌드한 뒤에도, 약 12시간의 자율 탐색을 거쳐 3개의 0-day와 배포...
Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026
This installment of the Reporters' Notebook video series discusses the topics that dominated the cybersecurity conference, such as AI's effects on vulnerability reporting and security research.
PaperCut warns of NG, MF flaw exploited in zero-day attacks
PaperCut is warning that hackers are actively exploiting a vulnerability in all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks. [...]
Manchester Airports Group says hackers stole travelers' data
The Manchester Airports Group (MAG) disclosed that hackers breached its systems and stole customer data, including Wi-Fi sign-ups from Manchester, Stansted, and East Midlands airports. [...]
Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE
Credit: Hacktron Vercel has released security patches for two critical-severity vulnerabilities in the Next.js web framework, both of which allow unauthenticated remote code execution, one...
ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories
A fake login page. A fake security scan. A fake productivity app. Apparently, pretending to be useful is still one of the easier ways into a machine. The rest of the week gets stranger: botnets...
2026년 7월 APT 공격 동향 보고서(국내)
개요 안랩은 자사 인프라를 활용해 국내 타겟의 APT(Advanced Persistent Threat, 지능형 지속 공격) 공격을 모니터링했다. 이 보고서는 2026년 7월 한 달 동안 확인된 국내 APT 공격의 분류, 통계, 유형별 기능을 정리한 내용이다. APT 국내 공격 동향 국내에서 확인된 APT 공격의 대부분은 Spear Phishing(특정...
Trump Order Aims to Block Foreign Backdoors in US Power Grid Gear
The White House’s new executive order 14420 widens scrutiny of industrial control systems over cyber sabotage concerns. The post Trump Order Aims to Block Foreign Backdoors in US Power Grid Gear...
How Threat Research and MDR Help SMBs Build a Defensive Edge
Threat research gives security teams insight into how attackers operate, while MDR turns that intelligence into faster detection and response. ESET explains how combining threat intelligence,...
Android 17 adds ECH support to make web browsing harder to track
Google is introducing new network security protections in Android 17 to strengthen connection privacy, address cellular vulnerabilities, and protect the privacy of users' home networks. [...]
Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers
Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate...
Australia arrests alleged TeamPCP hackers behind supply-chain attacks
Australian authorities have arrested and charged two young men accused of being part of the TeamPCP hacking group linked to a string of far-reaching developer supply chain attacks. [...]
Australia Arrests 2 Alleged TeamPCP Hackers
Australian and US authorities collaborated to identify and charge the alleged cybercriminals, who face many years in prison. The post Australia Arrests 2 Alleged TeamPCP Hackers appeared first on...
Microsoft rolls out fix for Windows 11 crashes, gaming issues
Microsoft has started rolling out a permanent fix for a known issue that causes system crashes and gaming issues on Windows 11 devices. [...]
Webinar: How Google Workspace breaches happen and what to do next
Google Workspace breaches can begin with social engineering or forgotten third-party integrations rather than sophisticated exploits. This webinar examines real-world breaches, what happens during...
OpenAI Agents Coordinated via Makeshift Message Board Ahead of Hugging Face Hack
New training environments will teach AI models to distrust instructions arriving from other agents outside sanctioned channels. The post OpenAI Agents Coordinated via Makeshift Message Board Ahead of...
Learn How to Build Security Operations Ready for AI-Powered Attacks
Security teams have spent years trying to detect threats faster. AI is changing the harder part: how much time defenders have left to act. Advanced AI models can now help attackers discover...
Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks
The Australian Federal Police (AFP) has charged two Western Australian men with a combined total of 14 offences over their alleged role in TeamPCP, the cybercrime group behind the March 2026...
Okta Shares Surge on Strong Earnings, Growing Demand for AI Identity Security
The identity security company beat quarterly expectations and raised its outlook as enterprises face growing pressure to secure AI agents and other non-human identities. The post Okta Shares Surge on...
What the Data Says About AI in Security Operations in 2026
AI is officially mainstream in security operations. According to Prophet Security's State of AI in Security Operations 2026 report (produced from ViB’s survey of 250+ cybersecurity pros), 40% of...
Russian Hackers Phish EU Officials Over Messaging Apps
EU governments are trying to move away from popular messaging apps as nation-state threat groups shift their focus from email to Signal and WhatsApp.
CISO Conversations: Chris Wheeler – Trust Is the Job, From the Navy to the C-Suite
SecurityWeek talks to Chris Wheeler, CISO at Resilience, about his journey from the Navy to becoming a cybersecurity leader. The post CISO Conversations: Chris Wheeler – Trust Is the Job, From the...
Carhartt data breach exposes information of 12.9 million accounts
The ShinyHunters extortion group has published sensitive data from nearly 13 million accounts stolen from clothing retailer giant Carhartt earlier this month, according to data breach notification...
Spark RAT Targets Cambodia, Abuses Vulnerable OPSWAT Driver to Disable Security Tools
Individuals and organizations in Cambodia have emerged as the target of a new campaign that delivers an open-source remote access trojan (RAT) called Spark RAT. "The samples employ diverse lure...
Cyberattack Causes Global Disruption at Boston Scientific
The cybersecurity incident has disrupted Boston Scientific’s ability to process and ship customer orders. The post Cyberattack Causes Global Disruption at Boston Scientific appeared first on...
The Future of AI-Driven Security Depends on Complete Data
For twenty-five years, "data" in security meant logs and events. But logs are a lossy representation of reality. The post The Future of AI-Driven Security Depends on Complete Data appeared first on...
GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address
Threat actors linked by Arctic Wolf to Dark Caracal with medium confidence deployed a previously undocumented Go-based malware framework, GoCaracal, during a June 2026 intrusion at an unnamed...
CISA orders feds to patch Citrix NetScaler RCE flaw by Saturday
CISA has ordered U.S. government agencies to patch their Citrix NetScaler appliances against an actively exploited remote code execution vulnerability by Saturday. [...]
US Disrupts Chinese Hacking Platform Used in Military and Critical Infrastructure Attacks
The operation focused on a group named QTFY, which offers hacking services to the Chinese government and others. The post US Disrupts Chinese Hacking Platform Used in Military and Critical...
ATF confirms “major incident” after recent Qilin breach claims
ATF, the regulatory agency that enforces federal laws governing firearms and explosives in the United States, has confirmed that one of its systems was compromised after breach claims made by the...
New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access
Academic researchers have disclosed a Rowhammer attack impacting NVIDIA workstation GPUs with GDDR6 memory that defeats error correction codes (ECC), the mitigation NVIDIA recommends against GPU...
Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services
The pro-Russian hacker group Server Killers claimed responsibility for the attack. The post Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services appeared...
CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux, and SQL Server Bugs
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added six flaws to its Known Exploited Vulnerabilities (KEV) catalog, including a high-severity security vulnerability...
네이버클라우드-LG CNS 컨소, 사이버보안 특화 AI 모델 개발 출사표
[지디넷코리아]네이버클라우드가 LG CNS와 손잡고 국내 보안 환경에 특화된 소버린 인공지능(AI) 모델 개발에 나선다. 네이버클라우드는 LG CNS와 공동 컨소시엄을 구성해 과학기술정보통신부와 정보통신산업진흥원(NIPA)이 추진하는 '특화 인공지능 파운데이션 모델 개발(사이버 보안 분야)' 사업에 참여한다고 27일 밝혔다. 컨소시엄은 '국가 사이버 안보...
올해 ICT 국감 화두는 AI·보안·가짜뉴스·미디어 재편
[지디넷코리아]이재명 정부에서 두 번째로 맞는 국회 국정감사에서 ICT 분야 주요 화두로 인공지능(AI), 정보보안, 허위조작정보 관련 법 등이 꼽혔다. 경제사회적으로 거대한 흐름인 AI 전환과 끊이지 않던 사이버 침해사고를 비롯해 정보통신망법 개정에 따른 이슈에 관심이 집중될 것이란 뜻이다. AI는 진흥 정책적인 면과 함께 이용자 보호 이슈도 적잖이...
시클로어와 글린, 상황 인식형 지속적 민감도 및 보안 제어를 기업에 제공하는 파트너십 체결
[지디넷코리아]이번 통합은 글린(Glean)의 기업용 AI 플랫폼 및 데이터와 시클로어 아머(Seclore ARMOR)의 데이터 보안 인텔리전스 레이어를 결합하여, 규제 대상 기관이 상황 인식형 민감도 분류와 이를 실행할 수 있는 대응 제어 기능을 제공한다. 산타클라라, 캘리포니아, 2026년 8월 27일 /PRNewswire/ -- 엔터프라이즈 데이터...
"C레벨에 SW 공급망 보안 강조"...스패로우, 연례 행사 개최
[지디넷코리아]애플리케이션 보안 전문기업 스패로우(대표 장일수)가 27일 오전 ‘애플리케이션 시큐리티 서밋 2026(application Security Summit 2026)’ 행사를 개최했다. 이번 '애플리케이션 시큐리티 서밋'은 스패로우가 매년 개최하는 CIO·CISO 조찬 세미나다. 올해는 ‘SW 공급망 보안 강화 로드맵, 대응을 넘어 전략으로’를...
“접속만 해도 털린다”…카톡 둔갑한 아이폰 해킹 코드 ‘비상’
카카오톡 로그인 화면으로 위장해 아이폰을 해킹하는 신종 피싱 사이트가 포착됐다. 아이폰 운영체제(iOS)의 신규 보안 취약점을 악용해 링크된 사이트에 접속하는 것만으로 해킹 위협에 노출될 수 있다.인공지능(AI) 보안 전문기업 누리랩은 카카오톡 로그인 화면을 사칭해 아이폰 속 정보를 해킹하는 악성 코드가 유포되고 있다고 27일 밝혔다. 이번 피싱 사이트는...
Recent Citrix NetScaler Vulnerability Exploited in the Wild
CISA is urging government agencies to immediately patch the Citrix NetScaler vulnerability tracked as CVE-2026-8452. The post Recent Citrix NetScaler Vulnerability Exploited in the Wild appeared...
美 법무부·연준·상원까지 노렸다… 中 연계 해킹 조직 공격에 한국 기업도 피해
중국 정부기관과 연계된 것으로 지목된 해킹 조직이 미국 법무부와 연방준비제도(Fed·연준), 상원 등 주요 정부기관과 핵심 인프라를 상대로 광범위한 사이버 공격을 벌인 것으로 전해졌다. 미국 당국은 이번 공격에 이용된 해킹 플랫폼의 도메인을 압수해 운영을 차단했다.
美 “NASA·연준 노린 中 해커들”…한미 기업 4곳도 피해 입었다
미국 정부가 NASA와 연준 등 주요 기관을 겨냥한 중국 정부 연계 해킹 플랫폼을 무력화했다. 법원 진술서에는 한국 기업을 포함한 한미 기업 4곳도 피해 대상으로 적시됐다.
SKT·업스테이지, 보안 AI 공동개발…독자 AI 정예팀 2곳 뭉쳤다
[지디넷코리아]과학기술정보통신부 독자 AI 파운데이션 모델 프로젝트에서 3강에 오른 SK텔레콤과 업스테이지가 사이버 보안 분야에서 손을 잡았다. 국내에서 대규모 AI 모델을 직접 개발해온 두 정예팀의 기술력에 주요 보안기업의 실전 데이터를 결합해 한국 보안 환경에 최적화된 AI 모델을 만든다는 구상이다. SK텔레콤은 업스테이지를 비롯해 SK쉴더스 안랩 등...
美 “中연계 해커, NASA·연준 등 기관 침투…한미 기업 4곳도”
미 법무부가 26일(현지시간) 중국 해커들의 주요 기관에 대한 해킹 시도를 무력화했다고 밝혔다.로이터에 따르면, 법무부는 이날 법무부와 미 항공우주국(NASA), 연방준비제도(Fed·연준), 상원 등에 대한 침입 시도를 저지했다고 밝혔다.법무부는 ‘큐스캔’(QScan)과 ‘큐티라우터’(QTRouter)로 명명된 해킹 플랫폼이 침입 과정에서 사용한 도메인을...
Critical Avada WordPress theme flaw enables zero-click RCE
A critical vulnerability chain in the popular Avada theme for WordPress can be exploited by an unauthenticated attacker to execute arbitrary PHP code on the server. [...]
Dark Caracal Adds New Malware to Cyber Espionage Arsenal
GoCaracal is a new modular malware framework that broadens Dark Caracal's capabilities to steal data and maintain access to victims.
美, 시진핑 방문 앞 中 전방위 해킹 작전 적발… “韓 기업도 피해 대상”
미국 정부는 26일 중국 당국에 연계된 해커들이 공격 출처를 숨기며 자행한 대대적인 사이버 공격을 적발해 차단했다고 밝혔다. 법무부와 연방수사국(FBI)은 이날 에너지부·보건복지부 같은 연방 정부 부처와 의회 상원, 연방준비제도(FED), 항공우주국(NASA) 등을 표적으로 하는 공격에 중국 연계 해커들이 사용한 봇넷(botnet)과 해킹 플랫폼을 압수해...
'HTTP Terminator' Hunts for Novel Desync Attacks
James Kettle of PortSwigger talks with the Dark Reading News Desk about his AI-powered open source tool, which found new HTTP request-smuggling techniques.
Red Flags That Expose Fake North Korean IT Workers
North Korean operatives posing as IT workers are improving their tactics, but researchers say there are still ways to spot them before they do damage.
C2PA 카메라는 현실의 공격 앞에서 무너짐
Android C2PA 카메라 앱은 Key Attestation이나 Google Play Integrity로 앱 변조를 막지만, 루트 권한을 얻은 공격자는 임의 파일에도 정상적인 C2PA 서명을 생성할 수 있음 부트로더가 잠겨 있고 최신 보안 업데이트가 적용돼도 권한 상승 취약점으로 루팅할 수 ...
New GPUThor attack defeats NVIDIA ECC protection for root access
A newly disclosed Rowhammer attack called GPUThor can bypass error-correcting code (ECC) protections on NVIDIA GPUs, enabling denial-of-service (DoS) and root-level privilege escalation. [...]
Android Malware Hijacks Update System for Car Head Units
Threat actors behind a notorious click-fraud botnet have set their sights on vehicle infotainment modules and are abusing legitimate functionality to spread infections.
FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations
The U.S. Department of Justice (DoJ) on Wednesday announced the disruption of two hacking platforms named QScan and QTRouter operated by Chinese threat actors to target critical infrastructure and...
Meta agrees to $18 billion settlement over teen social media harms
Meta has reached a proposed settlement worth up to approximately $18 billion with a bipartisan coalition of 52 attorneys generals over allegations that Facebook and Instagram were deliberately...
Nimbus Manticore Expands Toolset With TWOSTROKE-Like Backdoor and SSH Tunneler
Cybersecurity researchers have discovered additional infrastructure and previously undocumented malware associated with Nimbus Manticore, an Iranian state-sponsored hacking group affiliated with the...
AI Speeds Up Malware Development, Not Its Success Rate: Analysis
Palo Alto Networks Unit 42 analyzed 405 AI-linked malware samples and found only 12 reached production endpoints. The post AI Speeds Up Malware Development, Not Its Success Rate: Analysis appeared...
Boston Scientific says cyberattack disrupted operations globally
Medical technology company Boston Scientific has been targeted in a cyberattack that disrupted some of its IT systems, causing operational disruptions globally. [...]
Gitea 제품 보안 업데이트 권고
Hackers target Microsoft SharePoint RCE chain with PoC exploit
Attackers are now targeting a chain of two Microsoft SharePoint vulnerabilities that can allow them to execute arbitrary code on unpatched servers, according to threat intelligence company Defused....
FBI disrupts proxy network enabling Chinese espionage operations
The FBI has disrupted infrastructure associated with a technical "quartermaster" that provided reconnaissance, proxy management, and operational routing capabilities for Chinese cyber espionage...
Snowflake ends service-account passwords. Now comes the hard part
Snowflake is ending password authentication for legacy service accounts, forcing organizations to migrate them to passwordless methods. Token Security explains why the harder challenge is identifying...
NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions
Cybersecurity researchers have disclosed details of a new adversary-in-the-middle (AitM) phishing toolkit called NovaCookies that's used as a proxy to redirect Microsoft 365 sign-ins, while capturing...
Ubiquiti patches three max severity security vulnerabilities
Ubiquiti has released security patches for three new maximum-severity vulnerabilities that threat actors can exploit remotely without privileges. [...]
CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published the results of two red team assessments it conducted simultaneously against two critical infrastructure organizations,...
Adobe and Nvidia Patch Dozens of Vulnerabilities
Adobe and Nvidia each published several advisories, including ones that address critical vulnerabilities in their products. The post Adobe and Nvidia Patch Dozens of Vulnerabilities appeared first on...
Microsoft tests new privacy controls for Windows 11 desktop apps
Microsoft has begun testing new privacy controls that will let Windows 11 users choose which desktop applications can access their camera, microphone, and precise location. [...]
Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code
The CERT Coordination Center (CERT/CC) has disclosed two unpatched vulnerabilities in Kaltura's HTML5 video player library that allow a remote, unauthenticated attacker to read arbitrary files from a...
Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine
The SOC we've always known was built around a model that guarantees most of the alert queue will never receive analyst review. There's never time. In a traditional SOC, the typical progression...
'NovaCookies' Kit Steals Microsoft 365 Sessions for $320 a Month
The adversary-in-the-middle (AitM) phishing service lowers the barrier to entry for actors to create attacks and steal more than just user credentials.
CISA: Over 100 Internet-Exposed Water Systems Targeted in July Cyberattacks
The agency has released guidance on reducing internet exposure in the wake of the recent Iran-linked hacker attacks. The post CISA: Over 100 Internet-Exposed Water Systems Targeted in July...
Hackers now exploit critical Gitea flaw in code injection attacks
Attackers are now exploiting a critical-severity vulnerability in the Gitea self-hosted Git service, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). [...]
The MFA Identity Trap: When Authentication Creates a False Sense of Security
Organizations must distinguish identity verification, authentication and threat detection, or risk successfully authenticating the attackers they are trying to stop. The post The MFA Identity Trap:...
Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users' Reservations in Tests
Aikido Security has published research that recreates the Australian gym-booking incident in a synthetic environment, finding that Claude Opus 4.6, running on the OpenClaw agent harness, exploited a...
Chrome 152 Patches Over 300 Vulnerabilities
Most of the flaws were discovered by Google using AI, but researchers are still discovering high-value Chrome vulnerabilities. The post Chrome 152 Patches Over 300 Vulnerabilities appeared first on...
OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation
OpenAI on Tuesday said it banned a cluster of Russian ChatGPT accounts that used VPNs to bypass access restrictions and run an influence operation, which relied on its artificial intelligence (AI)...
Interpol's Jackal IV Disrupts West African Crime Infrastructure
The international law enforcement operation focused on disrupting crime-as-a-service networks and infrastructure behind groups like Black Axe.
Nigeria Looks to Sovereign Cloud for Cyber, National Security
The West African nation launched financing, procurement, and infrastructure policies to boost its sovereign cloud initiative and increase domestic technical knowledge.
INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown
An eight-month INTERPOL operation targeting West African organized crime groups has led to arrests of 58 people and the identification of 263 suspects. "The operation, which brought together 22...
Sensitive Information Exposed in Nutex Health Data Breach
Nutex Health has informed the SEC that it recently detected unauthorized access and data exfiltration. The post Sensitive Information Exposed in Nutex Health Data Breach appeared first on...
New SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode
An independent malware researcher has documented a previously unreported Windows backdoor, dubbed SLEEPWALKER, that stays inert in memory until a specifically crafted network packet reaches the...
Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday warned of active exploitation efforts targeting a recently patched critical security flaw impacting Gitea. The...
Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes
Cybersecurity researchers have disclosed details of a phishing-as-a-service (PhaaS) platform built to strip Apple's Activation Lock from stolen devices, using rented AI voice agents that call theft...
CISA Warns of Exploited Gitea Vulnerability
CVE-2026-60004 is a remote code execution vulnerability patched by Gitea developers in late July with the release of version 1.27.1. The post CISA Warns of Exploited Gitea Vulnerability appeared...
[스마트클라우드쇼 2026] 김태수 마이크로소프트 부사장 “AI 발전으로 더 많은 취약점 발견될 것… 다중 에이전트가 탐지 정확도 높여”
“DARPA 대회가 끝날 당시 사람과 맞먹는 능력을 갖춘 인공지능(AI) 모델이 등장하려면 적어도 1~5년은 걸릴 것으로 예상했지만, 불과 6개월 만에 현실이 됐다. AI를 최대한 활용해 당면한 문제를 어떻게 해결할지 고민하는 것은 모든 조직의 숙제가 됐다.”
"KISTI 양자 하이브리드 보안, 공공 재난 현장으로"
[지디넷코리아]한국과학기술정보연구원(KISTI)이 양자보안 기술을 AI 전문기업 투비유니콘(각자대표 윤진욱·김재수)에 이전했다고 26일 밝혔다. 이전 기술은 '인터도메인 공공안전망 연동을 위한 단말형 하이브리드 양자안전 암호화 및 트러스티드 브릿지 KMS(암호키관리시스템)’다. 이 기술에는 특허 2건도 포함됐다. 이는 재난 현장 데이터를 서로 다른...
라온시큐어, 내달 '2026 시큐업&해커톤' 개최
[지디넷코리아]인공지능(AI) 보안 및 인증 플랫폼 기업 라온시큐어(대표 이순형, 이정아)가 내달 말일 행사를 통해 라온시큐어의 에이전틱AI 보안 비전과 핵심 기술을 선보인다. 라온시큐어는 오는 9월30일 서울 페어몬트 앰배서더에서 '2026 시큐업&해커톤'을 개최한다고 26일 밝혔다. 올해로 14회째 개최되는 시큐업 행사는 '안전하고 재밌는 에이전틱...
LACMA data breach last year exposed social security and medical data
The Los Angeles County Museum of Art (LACMA) has announced that a breach last year exposed customer and employee information. [...]
Hackers abuse npm mirrors to host phishing redirect pages
Threat actors are abusing npm and its mirrors to host malicious HTML pages that impersonate Cloudflare CAPTCHAs to redirect visitors to attacker-controlled websites. [...]
Hidden Prompts Trick AI Into False Email Summaries
With some simple HTML that's invisible to users, attackers can manipulate AI-powered email summarizers into producing malicious information.
AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes
A newly uncovered phishing-as-a-service (PhaaS) platform called AnonyMousKIT automates the retrieval of codes used to unlock stolen Apple devices and disable the Activation Lock feature. [...]
Finding Nemo(Claw): Networking Issue Allows for LLM Poisoning in OpenClaw
Attackers can exploit a security bug in NVIDIA's tool to gain unauthenticated access to the local model server through the Ollama API, paving the way for persistent AI agent corruption.
U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches
The U.S. Department of the Treasury has announced fresh sanctions on Iranian cyber actors as part of what it called an "unprecedented, whole-of-government, economic campaign" against the nation and...
Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation
TRACE was developed by AMD, Intel, Microsoft, OPAQUE, and TII and contributed to the Linux Foundation. The post Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation appeared...
Massive DDoS attack disrupts Norway’s government digital services
A large distributed denial-of-service (DDoS) attack has disrupted Norway's shared government digital infrastructure since Monday, affecting services used by the public sector. [...]
Is Cyber Facing an Affordability Crisis?
As breach costs reach record highs and defense spending nears $240 billion, small businesses are dangerously exposed, threatening supply chain security.
Hospital operator Nutex Health says data stolen in cyberattack
Healthcare and services provider Nutex is investigating a data breach incident where an unauthorized third party exfiltrated information from company servers. [...]
Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails
The company, previously known as ActiveFence, has raised a total of $280 million from investors. The post Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails appeared first on...
A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw
Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden...
31개 중앙부처 개인정보 전담인력 54명 확충
[지디넷코리아]31개 중앙행정기관의 개인정보보호 전담인력 54명(증원 39명, 재배치 15명)이 확충된다. 25일 열린 국무회의에서 중앙부처 개인정보 보호 전담 인력 확보를 위한 다수부처 수시직제 개정안이 의결됐다. 이번 조치로 정부로서는 11년만에, 그리고 개인정보위는 2020년 출범 이후 최초로 개인정보 보호 전담인력을 범정부 차원에서 확충하게 됐다....
From Fake Workers to Account Recovery: The Growing Identity Verification Risk
Attackers are increasingly targeting the processes used to establish or recover identity rather than attacking the login itself. Specops explains how stronger identity verification can help...
Microsoft PowerToys adds Alt+Tab-style switching for an app's windows
Microsoft updated its Windows PowerToys toolset with a new utility dubbed "Window Hopper" that lets users switch between an app's windows more quickly. [...]
WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities
CVE-2026-61979 and CVE-2026-15981 are authentication bypass vulnerabilities affecting the MiniOrange SAML 2.0 SSO plugin. The post WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities...
WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android
Meta on Tuesday announced a set of WhatsApp account security features, including support for multiple passkeys to a single account to help users with both iOS and Android devices sign into their...
WhatsApp adds stronger two-step verification, multiple passkeys
WhatsApp has started rolling out several new account security features, including support for multiple passkeys and stronger two-step verification. [...]
WhatsApp Adds Multiple Passkeys and Stronger 2SV in Account Security Update
When Android users get a call from a non-contact, they will see more information about the caller, including their country. The post WhatsApp Adds Multiple Passkeys and Stronger 2SV in Account...
Hands-On Cyber-Physical Systems Training Returns to ICS Cybersecurity Conference
Hands-on Cyber Attack Methods course returns to SecurityWeek’s ICS Cybersecurity Conference, October 6–8 at the W Nashville. The post Hands-On Cyber-Physical Systems Training Returns to ICS...
Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode
Marimo has addressed a high-severity security flaw in its notebook software that allowed an attacker to execute an attacker-supplied Model Context Protocol (MCP) command in a specially crafted...
보안 상장사들 직원 평균 급여는...S2W가 최고
[지디넷코리아]국내 주요 보안 상장사 20곳 중 직원 1인당 평균 급여가 가장 높은 곳은 에스투더블유(S2W)로 조사됐다. 직원 1인당 평균 급여가 4500만원에 달했다. 25일 지디넷코리아가 금융감독원 전자공시시스템를 기반으로 조사한 바에 따르면 S2W의 올해 상반기 기준 직원 수는 108명, 직원 1인당 지급되는 평균 급여는 4600만원으로 조사 대상...
Hackers breached over 270 Zimbra servers in ongoing attacks
Threat actors have already compromised over 270 Zimbra instances in remote code execution attacks targeting a high-severity Zimbra Collaboration Suite (ZCS) vulnerability. [...]
Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows
Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 accounts by abusing legitimate login flows...
24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages
Cybersecurity researchers have disclosed details of a new campaign that uses a cluster of 24 npm packages as free phishing infrastructure for redirecting to ClickFix-style fake CAPTCHA pages. "While...
E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands
Cybersecurity researchers are calling attention to a new campaign that employs FTP banners as dead drop resolvers (DDRs) to deliver two previously unreported remote access trojans (RATs) tracked as...
First Malware Built Specifically for Car Head Units Fuels Botnet
Kaspersky researchers have linked the malware to the BadBox botnet, which has ensnared millions of devices. The post First Malware Built Specifically for Car Head Units Fuels Botnet appeared first on...
Frontier AI: Vulnerability Management's Systemic Revolution
Vulnerability management has been a staple of security programs since the dawn of the cybersecurity discipline. The symbiotic relationship between vulnerability and patch management teams has also...
Police arrests dozens of suspects in global cybercrime crackdown
Law enforcement agencies from 22 countries helped identify 263 suspects and arrested 58 individuals linked to cybercrime networks coordinated by African crime groups. [...]
Silent Patches Don’t Stop Attackers – They Blind Defenders
Silent patches can become exploit intelligence for attackers while leaving defenders without the context needed to prioritize risk. The post Silent Patches Don’t Stop Attackers – They Blind Defenders...
Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access
Bad actors are attempting to exploit two severe unauthenticated authentication bypasses in the Xecurify miniOrange SAML 2.0 Single Sign On plugin that make it possible for an attacker to sign in as...
Taiwan Charges 9 Over Illegal AI Server Exports to China, Including Nvidia and Super Micro Staff
AI infrastructure, including advanced semiconductors mostly made in Taiwan, has become a key point of competition between the U.S. and China. The post Taiwan Charges 9 Over Illegal AI Server Exports...
이스트시큐리티-퓨리오사AI, NPU 기반 AI 보안 인프라 공동개발
안녕하세요, 이스트시큐리티입니다. AI가 빠르게 발전하면서 보안 분야에서도 AI를 활용하는 사례가 점점 늘고 있습니다. 특히 사이버 공격이 고도화되면서 많은 데이터를 빠르게 분석하고 위협에 대응할 수 있는 AI 기술의 중요성도 커지고 있는데요. 이스트시큐리티는 이러한 변화에 대응하기 위해 국산 AI 반도체 기업 퓨리오사AI와 차세대 K-AI 보안 인프라...
CISA Warns of Exploited Oracle WebLogic Vulnerability
The vulnerability is tracked as CVE-2026-21962 and it has been widely exploited by threat actors against WebLogic servers. The post CISA Warns of Exploited Oracle WebLogic Vulnerability appeared...
Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a maximum-severity security flaw impacting Oracle HTTP Server and Oracle WebLogic Server to its Known Exploited...
“의심스러운데”…보이스피싱 피해 막은 은행원·편의점 점장
보이스피싱 범죄 징후를 놓치지 않고 경찰에 신고해 피해를 막은 은행원과 편의점 점장이 경찰 감사장 및 포상금을 받았다.경기 용인서부경찰서는 25일 NH농협은행 수지동천금융센터점 직원 A씨와 GS25 언남중앙점 점장 B씨에게 보이스피싱 피해 예방에 대한 감사장과 포상금을 전달했다.A씨는 지난달 23일 오후 3시13분께 은행을 방문한 고객으로부터 예금을 해지...
정부 개인정보 보호 전담인력 2배로…54명 증원
정부 중앙행정기관의 개인정보 보호 전담 인력이 54명 늘어난다.
中서 ‘전화 가로채기’로 102억 뜯은 피싱 일당 체포
중국에 콜센터를 차리고 한국인을 상대로 100억원대 보이스피싱 범죄를 벌인 조직원들이 무더기로 붙잡혔다.
“IP 1000개 찾아줘”…中 해커들, ‘딥시크’ 활용해 공격 2배로
중국 정부 연계 해킹 조직들이 딥시크 등 AI를 사이버 공격에 활용하면서 공격량이 두 배 이상 늘었다. 공격 코드 작성과 정보 수집에도 AI가 쓰였다.
보안 상장사 R&D 얼마나…안랩 투자액 1위, SGA 증가율 1위
[지디넷코리아]올해 상반기 주요 보안 상장사 20곳 중 연구개발비로 가장 많은 금액을 투자한 곳은 안랩으로 조사됐다. 안랩은 400억원에 육박하는 금액을 올 상반기에만 연구개발 비용으로 투자했다. 안랩은 매출 대비 연구개발비 투자 비중도 30%대로 가장 높았다. 20곳 중 6곳이 매출 대비 연구개발비 비중이 20%를 상회했다. 또 SGA솔루션즈는 올해...
“AI도 ‘기억 조작’ 당한다…에이전트 노리는 신종 해킹 ‘메모리 포이즈닝’
인공지능(AI) 비서가 사용자의 취향과 업무 방식을 스스로 기억하는 시대가 열렸다. 하지만 이 똑똑한 ‘기억력’을 노린 새로운 보안 위협이 고개를 들고 있다. 공격자가 AI의 기억에 악의적인 정보를 몰래 심어 잘못된 판단과 행동을 유도하는 ‘메모리 포이즈닝(Memory Poisoning·기억 오염)’이다.25일 안랩 시큐리티 레터에 따르면 메모리...
AI정부 시대, 공공 메일도 달라진다…'보안' 넘어 'AI 업무 인프라'로
[지디넷코리아]SaaS 메일 협업·메일 보안 전문기업 크리니티(대표 유병선)가 오는 27일 정부세종컨벤션센터에서 열리는 ‘제8회 AI정부 혁신 콘퍼런스’에 참가해 AI 정부 시대에 필요한 공공 메일의 혁신 방향을 제시한다. 이번 콘퍼런스는 정부부처와 공공기관, 지방자치단체 정보화 담당자 및 민간 ICT 기업 관계자를 대상으로 공공부문의 AI 전환 전략과...
흡입력·물걸레 다음은 ‘보안’…美 규제에 로봇 청소기 경쟁판 바뀐다
미국이 보안·국가 안보 우려를 이유로 로봇 청소기 등 외국산 로봇에 대한 규제를 강화하면서 로봇 청소기 업계의 경쟁 기준도 달라지고 있다. 과거엔 흡입력과 물걸레 성능이 핵심 경쟁력이었다면, 인공지능(AI) 고도화로 카메라와 각종 센서를 탑재한 로봇 청소기가 집 안을 돌아다니는 ‘이동형 카메라’로 진화하면서 보안 기술이 새로운 승부처로 부상하는 모습이다.
Exploited Zimbra Flaw Highlights Shrinking Window to Patch
CISA has issued a three-day deadline for agencies to patch a Zimbra security vulnerability, CVE-2026-73570, which allows full takeover of a user's communications.
Unpatched Calix flaw lets hackers bypass NAT to expose internal devices
An unpatched vulnerability in Calix GS7 XGS (GS5239XG) residential routers used by multiple U.S. broadband providers allows remote, unauthenticated attackers to create port-forwarding rules that can...
Foul Language: WordlistLoader Disguises Malware as Ordinary Text
ClickFix-style threat campaigns are using a new trick to evade detection and deliver Amatera, an increasingly prevalent infostealer.
Hackers target WordPress sites in miniOrange auth bypass attacks
Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be used to forge SAML responses and log in...
TikTok reaches $400M settlement with US over COPPA violations
The U.S. Department of Justice announced a $400 million settlement with TikTok, ByteDance, and affiliated companies over allegations that they violated the Children's Online Privacy Protection Act...
Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt
If your developers are using AI coding tools, you are probably already seeing the upside: faster development, more code, and less time spent on routine work. The harder part is what comes after. AI...
Weedhack Malware Spreads via Fake Minecraft Clients and SEO Poisoning
Cybersecurity researchers have found that several websites are still actively distributing a malware family known as Weedhack to gamers by masquerading as Minecraft clients. McAfee Labs said it...
ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited
A ReliaQuest employee fell victim to a phishing attack and the hackers gained access to a dashboard. The post ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited appeared first on...
ReliaQuest confirms failed data-theft attack after ShinyHunters breach
Cybersecurity company ReliaQuest has confirmed that one of its employees was targeted in a social engineering attack after hackers impersonated a member of the security team. [...]
Tricky 'SynkLoader' Multitool May Herald Ransomware
An advanced, multilingual malware family brings back a trick from yesteryear — screen hijacking — for effective password theft, along with a slew of novel features.