Cyber Dispatch™️


Гео и язык канала: Весь мир, Английский
Категория: Telegram


The definitive source for critical cybersecurity news. When a major threat breaks, we dispatch.
#CyberDispatch

Связанные каналы

Гео и язык канала
Весь мир, Английский
Категория
Telegram
Статистика
Фильтр публикаций


OpenAI CEO Sam Altman on AI

We believe that the world should accept some bad things happening for the benefits of this technology and people having the agency.


Citrix has patched a new NetScaler zero-day exploited in targeted attacks.

CVE-2026-88779 affects certain SAML-configured deployments & can cause denial-of-service, with repeated triggering potentially leaving services unavailable.


Attackers are targeting a Rejetto HFS flaw that enables forged admin sessions and remote code execution.

CVE-2026-61500 affects HFS 3.0.0–3.2.0. VulnCheck detected exploitation attempts against vulnerable U.S. hosts after a public PoC was released.


Everything has been pushed to GitHub alongside 22 firmware images covering fat PS2s from the Japan-only SCPH-15000 of 2000 to the 39000-series models of 2002. They also cover the Namco System 246 and 256 arcade boards that used the same chip. These early machines were some of the final unread parts of the PS2 after the 2003 "Dragon" MechaCon was dumped in 2021.


More than 25 years after the fat PlayStation 2 launched, a dev known as DiscoStarslayer has managed to pull firmware out of the stubborn SPC970 MechaCon chip responsible for authorizing discs and handling most of the console's security.

In a Bluesky post, the dev credited Libby, the collaborator who found an exploit that made the extraction possible. According to the dump tool's docs, that exploit told the chip that an incoming batch of settings data would be empty, and sent more data than it had room for. Before this, in an effort covering some four years, there had been struggles with a slower method of stripping the chip's packaging and reading its contents, which produced only rough dumps.


Google froze its open source bug bounty program due to a ‘significant rise’ in AI submissions.


Huawei and Qualcomm Announce Broad Patent License Agreement.


New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline.


The Pentagon is informing more than 2 million current and former military members that their personnel records storing sensitive personal information were stolen over a monthslong compromise of one of its networks. The breach is the second one in recent months to expose sensitive government information.

The records, according to one notification letter posted to Reddit, included Social Security numbers, names, addresses, sex, race, and occupational specialty. This last category could be particularly valuable to foreign adversaries because it could help their intelligence agencies in identifying high-value military personnel. Starting last October, hackers gained access to a system operated by the Defense Manpower Data Center, which collates Department of Defense personnel records. The Pentagon says that the breach compromised the records of 2.8 million living individuals.


Hacks of 2 federal agencies in a month have spilled a bonanza of sensitive data.


Artificial intelligence is becoming an increasingly powerful tool in modern warfare.
In Gaza, Israel has used the technology in surveillance to identify, monitor and analyse Palestinians


Google Supports AI Education in U.S. Universities — The Google Foundation is funding pilot programs to expand AI skills, faculty training, career guidance, and AI curricula across 30 American universities.


Trump Reportedly Consulted Grok About Maduro’s Arrest — Reports claim Donald Trump asked Grok to predict Venezuelan public reaction to the possible removal and arrest of Nicolás Maduro.


India Warns Cyberattacks Could Trigger a Global Economic Crisis — India’s central bank governor cautioned that a major cyberattack, war, or technical failure could disrupt financial systems and damage the world economy.


U.K. Orders Universities to Halt Cooperation With Chinese Research Institute — The government acted after intelligence warnings that the institute’s projects could support Chinese intelligence and military capabilities.


Google Introduces Mandatory Android Developer Identity Verification — Developers will have to verify their identities before broadly distributing apps, while unverified sideloaded apps may face a 24-hour installation delay.


OpenAI Fires Three Researchers Over Confidentiality Violations — The employees were dismissed after an internal investigation found that they improperly shared sensitive company information with an independent AI-safety organization.


Taiwanese Foreign Minister to Visit Arizona — The visit aims to strengthen economic and semiconductor cooperation with U.S. officials and technology companies.


GitLab Patches Critical AI Gateway Vulnerability — GitLab fixed a 9.9-severity flaw that could have allowed authorized users to execute arbitrary commands on self-hosted servers.


Apple Strengthens Mac Security Against AI Risks — Apple plans stricter controls for Full Disk Access to prevent third-party software and AI agents from freely accessing sensitive user data.

Показано 20 последних публикаций.