
Microsoft Warns of New AI-Generated Phishing Attacks
Microsoft has detected a new phishing campaign using AI-generated code to hide malicious payloads within SVG files and target organizations in the United States.
Microsoft has detected a new phishing campaign using AI-generated code to hide malicious payloads within SVG files and target organizations in the United States.
A global survey of over 3,800 cybersecurity experts reveals rising stress and persistent staff shortages, prompting increased adoption of AI for defense.
Researchers find it is easy to train AI for deception but nearly impossible to detect. This creates a security risk from "sleeper agent" AIs that hide malicious code.
Tech influencer Varun Mayya warns that advancing AI technology, like Alibaba's Wan 2.2 model, is making deepfakes indistinguishable from real videos.
The rapid adoption of AI coding tools is creating new cybersecurity vulnerabilities that attackers are exploiting with their own AI-driven methods.
Artificial intelligence presents both powerful defensive tools and new offensive threats for industrial cybersecurity, requiring a balanced and strategic approach.
Cybersecurity leaders are shifting focus from aggressive automation to ethical practices, as automated responses risk causing more harm than the threats they stop.
A North Korean hacking group uses fake job offers to install malware and steal identities, which are then used by fraudulent IT workers to secure remote jobs.
Large Language Models have a core architectural flaw that prevents them from separating instructions from data, making them vulnerable to prompt injection attacks.
A critical flaw named ForcedLeak in Salesforce's Agentforce AI platform allowed attackers to steal CRM data via prompt injection, researchers report.
Critical security flaws in Wondershare RepairIt software expose sensitive user photos, videos, and company AI models, creating significant supply chain risks.
Microsoft has detected and blocked a phishing campaign that used AI-generated code to hide its malicious payload within an SVG file using business terminology.