Aggregator
Meta AI is a ‘Privacy Disaster’ — OK Boomer
More Meta mess: Pundits accuse Zuckerberg’s latest app of having a “dark pattern,” tricking the over 50s into oversharing.
The post Meta AI is a ‘Privacy Disaster’ — OK Boomer appeared first on Security Boulevard.
Telegram Account Checker
CVE-2010-4613 | Hycus CMS 1.0.3 index.php site path traversal (EDB-15797 / BID-45527)
ИИ заглянул в прошлое — и нашёл, как человечество придумало колесо
CVE-2010-4963 | Hulihanapplications Hulihan BXR 0.6.8 order_by sql injection (EDB-34412 / SA40875)
HR’s 2025 Guide to Preventing Interview and Onboarding Fraud
In 2025, HR leaders are facing a new kind of threat: highly convincing fake applicants, AI-powered resume fraud, and deepfake interview proxies. What used to be fringe or far-fetched is now a weekly reality for talent teams.
From fake IT workers linked to nation-states to deepfake-driven interview fraud, the threats have never been more diverse, or more advanced. According to HYPR's 2025 State of Passwordless Identity Assurance report, 95% of organizations experienced a deepfake incident in the last year, and nearly 40% had a GenAI-related security breach.
This field-ready guide outlines 10 bottom-of-funnel actions to equip HR teams with real-world tactics, tools, and strategies to detect, prevent, and respond to identity fraud in recruiting and onboarding. Each step is designed to be immediately implementable and mapped to core tools HR professionals already use.
The post HR’s 2025 Guide to Preventing Interview and Onboarding Fraud appeared first on Security Boulevard.
Alleged Data Breach of Mako News and Entertainment Platform
China and Taiwan Accuse Each Other for Cyberattacks Against Critical Infrastructure
Cross-strait tensions have escalated into a new domain as China and Taiwan engage in unprecedented mutual accusations of cyberwarfare targeting critical infrastructure systems. The diplomatic dispute has intensified following Taiwan President Lai Ching-te’s first year in office, during which both governments have publicly traded allegations of sophisticated cyber operations against each other’s governmental, military, and […]
The post China and Taiwan Accuse Each Other for Cyberattacks Against Critical Infrastructure appeared first on Cyber Security News.
CVE-2025-22941 | Adtran 411 ONT L80.00.0011.M2 Web Interface command injection (EUVD-2025-8764)
CVE-2024-57459 | CloudClassroom PHP Project 1.0 mydetailsstudent.php myds sql injection (EUVD-2024-54626)
ИИ знает, что ты снова влюбился. И кому продать эту информацию
CVE-2024-21733 | Apache Tomcat up to 8.5.63/9.0.43 Incomplete POST Request information exposure (ID 176951 / Nessus ID 214321)
CVE-2024-33900 | KeePassXC 2.7.7 missing encryption
CVE-2024-33901 | KeePassXC 2.7.7 kdbx Database sensitive information in memory
CVE-2024-32405 | Relate Learning And Teaching System prior 2024.1 Exam InlineMultiQuestion cross site scripting (ID 178101)
CVE-2024-50849 | WordServer 11.8.2 Rules cross site scripting
Zero-Click Flaw in Microsoft Copilot Illustrates AI Agent, RAG Risks
Aim Security researchers found a zero-click vulnerability in Microsoft 365 Copilot that could have been exploited to have AI tools like RAG and AI agents hand over sensitive corporate data to attackers simply by issuing a request for the information in a specially worded email. Microsoft fixed the security flaw.
The post Zero-Click Flaw in Microsoft Copilot Illustrates AI Agent, RAG Risks appeared first on Security Boulevard.