Archives: News
News articles and updates
LiteLLM CVE-2026-42271 Flaw Actively Exploited for Unauthenticated RCE
A critical security flaw in LiteLLM's AI gateway is being exploited in the wild to achieve unauthenticated remote code execution, researchers confirmed Tuesday.
Meta Adds Off-Site Business Data to Feed and AI Personalization
Meta is now using purchases, loyalty records, and other business data collected off its platforms to personalize feeds and train AI models, raising new privacy questions.
Anthropic Releases Claude Fable 5 With Built-In Cyber Safeguards
Anthropic on Wednesday released Claude Fable 5, its most capable AI model to date, which includes native protections against prompt injection and data exfiltration attacks.
OpenAI Adds Lockdown Mode to ChatGPT Enterprise to Enhance Data Security
OpenAI introduced 'Lockdown Mode' for ChatGPT Enterprise, limiting external tools to prevent data exfiltration. This feature enhances security for corporate users handling sensitive information.
AI Agent Finds 21 FFmpeg Zero-Days; Chrome Patches Record 429 Bugs
An AI agent uncovered 21 zero-day vulnerabilities in the FFmpeg multimedia library. Meanwhile, Google issued a Chrome update with fixes for a record 429 bugs.
I use these 10 secret Netflix codes to find hidden movies – here's how to enter them
A Netflix user has detailed a method using 10 specific codes to access hidden movies on the platform, sparking interest among subscribers seeking more content options. The user explained the process involves entering numeric codes directly into the Netflix URL on a web browser. This technique reportedly bypasses standard category browsing to reveal niche selections...
MuddyWater Deploys DLL Side-Loading in 9-Country Espionage Campaign
Iranian hackers MuddyWater target governments and critical sectors using DLL side-loading in a new cyberespionage campaign.
AI Chatbots Direct Users to Cryptojacking Malware Sites
AI chatbots are reportedly directing users to websites that install cryptojacking malware, exploiting retrieval-augmented generation systems. This leads to compromised system performance and increased energy consumption for unsuspecting individuals.
JINX-0164 Malware Targets Crypto Firms via Fake Recruiters
A new macOS malware campaign, JINX-0164, is attacking cryptocurrency companies using fake recruiter lures. The operation distributes custom backdoors to compromise systems and exfiltrate sensitive data.
Threat Actors Exploit FortiClient EMS Flaw to Deploy Credential Stealer
Threat actors are exploiting a critical FortiClient EMS vulnerability to deploy credential-stealing malware, prompting urgent patching recommendations.