company · 7 records
CrowdStrike

Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven Stealer
A threat actor created the PhantomRaven information stealer using LLMs to facilitate fraudulent bug bounty submissions.

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems
The financially motivated threat group Breeze Comet, formerly UNC5669, is conducting fraudulent transactions by compromising Brazilian payment and financial systems.

Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads
Authorities disrupted the long-standing Sality P2P botnet by manipulating its peer-to-peer network and seizing associated domains.

Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
Google, Anthropic, and OpenAI have released new AI cybersecurity models and safety initiatives to aid defense while addressing risks of model misuse and unauthorized actions.

Researcher discloses zero day privilege escalation vulnerability in CrowdStrike Falcon Sensor
Researcher Chaotic Eclipse disclosed a zero-day privilege escalation vulnerability in CrowdStrike Falcon Sensor dubbed FalconFlank, while also detailing prior disclosures affecting Kaspersky endpoint security and Microsoft Defender.

Estee Lauder discloses data breach following cyber attack on internal systems
Estée Lauder notified employees of a data breach after hackers exploited an Oracle E-Business Suite vulnerability to access personal and sensitive HR information.

NVIDIA launches security alliance and open source framework for AI systems
NVIDIA formed the 37-member Open Secure AI Alliance and released the open-source NOOA framework to enhance AI security following reported agent-related security incidents.