n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another Issuer
A valid token from issuer A carrying a sub that belongs to someone under issuer B logged you in as them. Their password never
Two Scattered Spider Hackers Sentenced to Jail in UK
Thalha Jubair and Owen Flowers were prosecuted over a 2024 cyberattack targeting Transport for London (TfL).
The post Two Scattered Spider Hackers Sentenced to Jail in UK appeared first on SecurityWeek.
AI Data Centers Are Being Built Faster Than They Can Be Secured
AI infrastructure introduces new security risks that traditional data center designs were never built to handle.
The post AI Data Centers Are Being Built Faster Than They Can Be Secured appeared first on SecurityWeek.
New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands
“The malware is full-featured, lightweight, and modular,” Elastic Security Labs researcher Cyril François said in a technical report. “While the number of C2 [command-and-control] domains is currently small, the daily
‘ClickLock Stealer’ Bypasses macOS Security With Social Engineering, Process Killing
The new macOS malware has targeted at least 100 users to steal their passwords and cryptocurrency.
The post ‘ClickLock Stealer’ Bypasses macOS Security With Social Engineering, Process Killing appeared first on SecurityWeek.
New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password
At the next login, Finder, the Dock, Spotlight, Terminal, Activity Monitor, and
Scattered Spider members behind TfL hack get five years in prison
Windows 11 24H2 Home and Pro reach end of support in 90 days
20+ Hijacked Government Websites Became an Attack Channel
The investigation revealed previously undocumented backdoor behavior, hidden infrastructure relationships, and multiple attack arms behind a campaign
