Emergency patch issued for Ivanti Connect Secure VPN flaw under attack – Go Health Pro

Emergency patch issued for Ivanti Connect Secure VPN flaw under attack – Go Health Pro

An unpatched vulnerability in the Ivanti Connect Secure VPN has been under active attack. Researchers with Google’s Mandiant Cloud security team said that one or more threat actors are currently exploiting CVE-2025-0282 for remote takeover attacks on targeted networks. The flaw, originally exploited as a zero-day vulnerability, has since been given an emergency patch and … Read more

New AI Jailbreak Method ‘Bad Likert Judge’ Boosts Attack Success Rates by Over 60% – Go Health Pro

New AI Jailbreak Method ‘Bad Likert Judge’ Boosts Attack Success Rates by Over 60% – Go Health Pro

Jan 03, 2025Ravie LakshmananMachine Learning / Vulnerability Cybersecurity researchers have shed light on a new jailbreak technique that could be used to get past a large language model’s (LLM) safety guardrails and produce potentially harmful or malicious responses. The multi-turn (aka many-shot) attack strategy has been codenamed Bad Likert Judge by Palo Alto Networks Unit … Read more

Chrome extensions compromised in Christmas Day supply chain attack – Go Health Pro

Chrome extensions compromised in Christmas Day supply chain attack – Go Health Pro

In a supply chain attack that was first detected on Dec. 25, several Chrome extensions were compromised after a Cyberhaven employee was tricked by a phishing email that stole the worker’s credentials to the Google Chrome Web Store. A Dec. 27 blog post by Cyberhaven explained the attacker used these credentials on Dec. 24 to … Read more

Rspack npm Packages Compromised with Crypto Mining Malware in Supply Chain Attack – Go Health Pro

Rspack npm Packages Compromised with Crypto Mining Malware in Supply Chain Attack – Go Health Pro

Dec 20, 2024Ravie LakshmananMalware / Supply Chain Attack The developers of Rspack have revealed that two of their npm packages, @rspack/core and @rspack/cli, were compromised in a software supply chain attack that allowed a malicious actor to publish malicious versions to the official package registry with cryptocurrency mining malware. Following the discovery, versions 1.1.7 of … Read more

Rhode Island public benefits data breached in Brain Cipher ransomware attack – Go Health Pro

Rhode Island public benefits data breached in Brain Cipher ransomware attack – Go Health Pro

Deloitte and Rhode Island officials confirmed that a ransomware attack by Brain Cipher impacted public benefits data from the state’s RIBridges system. The Brain Cipher ransomware group initially listed Deloitte UK as a victim on its dark web leak site in early December, prompting Deloitte to respond saying only one client system outside of Deloitte’s … Read more

x