Hackers are actively exploiting a serious vulnerability in the GNU InetUtils telnetd server that has been around for 11 years. This flaw allows attackers to bypass authentication and gain root access, which poses a significant risk to systems still using this service. Organizations that rely on telnetd are at risk of unauthorized access, potentially leading to data breaches or system compromise. Security experts are urging affected users to address this vulnerability immediately to prevent exploitation. Given the age of the flaw, many systems might still be running unpatched versions, making them easy targets for attackers.
Latest Cybersecurity Threats
Real-time threat intelligence from trusted sources
Researchers at Intruder have discovered that AI-generated code can create hidden security vulnerabilities when teams place too much trust in automated outputs. They set up an AI-written honeypot, a decoy system designed to lure attackers, only to find that it contained subtle flaws that were eventually exploited in real attacks. This incident highlights the risks of relying solely on AI for coding without thorough human oversight. Companies and developers need to be cautious and verify AI-generated code to prevent these kinds of vulnerabilities from being introduced into their systems. The findings serve as a reminder that while AI can enhance efficiency, it can also introduce risks that must be managed carefully.
MITRE has introduced a new framework called the Embedded Systems Threat Matrix, aimed at enhancing cybersecurity measures for embedded systems, which are often found in critical infrastructure. This initiative is crucial as these systems are increasingly targeted by cyber threats, impacting industries such as healthcare, manufacturing, and transportation. The new matrix provides a structured way to identify potential vulnerabilities and attack vectors specific to embedded systems, helping organizations better defend against these risks. By focusing on this area, MITRE is addressing a growing concern in cybersecurity, as the reliance on embedded systems continues to expand. This framework is expected to guide developers and security professionals in implementing stronger protections for these essential technologies.
During the Pwn2Own Automotive 2026 event, security researchers successfully exploited 76 zero-day vulnerabilities, earning a total of $1,047,000 over three days from January 21 to January 23. This event showcases the ongoing challenges in automotive cybersecurity, where researchers target vulnerabilities in vehicle software and systems. The financial rewards for discovering these exploits underscore the critical need for automakers to prioritize security in their products. These vulnerabilities could potentially be exploited by malicious actors, posing risks to vehicle safety and user privacy. As vehicles become increasingly reliant on software and connectivity, addressing these weaknesses is essential for protecting consumers and maintaining trust in automotive technology.
Hackread – Cybersecurity News, Data Breaches, AI, and More
ShinyHunters, a known hacking group, has reportedly leaked data from several companies, including SoundCloud, Crunchbase, and Betterment. The leak is said to involve the personal information of millions of users, raising serious concerns about data security and privacy. This incident follows previous breaches attributed to the group, which has a history of targeting various organizations. The potential for more leaks has been hinted at by the group, suggesting that the situation could worsen. This breach not only affects the companies involved but also puts the personal information of countless users at risk, emphasizing the ongoing challenges of cybersecurity in today's digital landscape.
Infosecurity Magazine
Under Armour is currently investigating a data breach that may have exposed approximately 72 million records. The company has stated that, so far, there is no evidence suggesting that the breach affected systems responsible for processing payments or storing customer passwords. This incident raises concerns about the potential exposure of personal data, which could include details such as email addresses and other sensitive information. For users of Under Armour's services, the situation is alarming as it may lead to phishing attempts or identity theft. The company is taking steps to understand the full scope of the breach and to protect its customers moving forward.
During the Pwn2Own Automotive 2026 event, hackers identified 76 vulnerabilities across various automotive systems, including infotainment systems and electric vehicle chargers. These exploits earned the participants a total of $1 million in rewards, highlighting the ongoing security challenges faced by the automotive industry. The vulnerabilities could potentially allow attackers to manipulate vehicle functions, putting drivers and passengers at risk. As more vehicles become connected and reliant on software, manufacturers need to prioritize security updates to protect against these types of attacks. The event serves as a reminder of the importance of proactive security measures in the rapidly evolving automotive sector.
Two Venezuelan men have been convicted in the United States for their involvement in ATM jackpotting schemes, which use malware to hack into ATMs and dispense cash fraudulently. This conviction is part of a larger crackdown on a network of Venezuelan nationals charged with similar crimes. The attacks typically involve manipulating ATM software to trick machines into disbursing large amounts of money without authorization. This case is significant as it highlights the ongoing issue of international cybercrime and the risks posed to financial institutions and consumers. The convictions may serve as a deterrent to others considering similar criminal activities.
Under Armour is currently investigating a significant data breach after approximately 72 million customer records were discovered online, allegedly posted by a cybercriminal. The leaked data includes personal information that could impact a large number of individuals who have engaged with the brand, which is known for its sportswear and fitness accessories. This incident raises serious concerns about data security and the potential risks to affected customers, including identity theft and fraud. As Under Armour works to assess the situation and secure its systems, customers are advised to monitor their accounts for any unusual activity. The breach serves as a reminder of the importance of strong cybersecurity measures in protecting personal information.
GitLab has addressed a serious vulnerability in its authentication services that allowed attackers to bypass two-factor authentication (2FA). This flaw was due to an unchecked return value, which meant that if an attacker knew a target's account ID, they could submit fake device responses to gain unauthorized access. The issue is particularly concerning as it undermines a key security feature—2FA—that many users rely on to protect their accounts. GitLab has released patches to fix this vulnerability, and users are urged to update their systems promptly to ensure their accounts remain secure. This incident serves as a reminder of the importance of robust security measures in software development and the need for vigilance against potential exploits.
Ireland's government has introduced a new bill, the Communications (Interception and Lawful Access) Bill, aimed at updating the country's laws surrounding communication interception. This proposed legislation seeks to replace a 1993 law that no longer fits the current digital environment. If passed, the bill would allow law enforcement agencies to intercept encrypted communications in certain situations. This move raises concerns among privacy advocates about the potential for overreach and the implications for personal privacy in an era where encryption is vital for protecting sensitive information. The discussion around this bill is particularly relevant as nations globally grapple with balancing security needs and individual rights.
SCM feed for Latest
Recent reports indicate that hundreds of test environments, which were originally designed for security training, have been misconfigured and are now exposing vulnerabilities to attackers. These misconfigurations have turned these environments into easy targets for cryptocurrency miners, who can exploit them to mine digital currencies without the organization’s consent. This situation poses a significant risk not only to the organizations involved but also to the broader cloud infrastructure, as it highlights the potential for mismanaged environments to be weaponized. Companies that utilize these training applications need to reassess their configurations and security measures to prevent unauthorized access and potential financial losses.
Attackers are exploiting unsecured Zendesk instances to send out a large volume of spam. These instances allow anyone, including unverified users, to submit support tickets, which the attackers are taking advantage of. This has led to a significant increase in spam messages across various platforms, affecting organizations that rely on Zendesk for customer support. The situation raises concerns about the security of customer interaction tools and highlights the need for companies to ensure their systems are properly configured to prevent unauthorized access. Organizations using Zendesk should review their security settings to mitigate this risk.
SCM feed for Latest
At the Davos 2026 conference, Dave Treat, the chief technology officer at Pearson, raised concerns about the challenges AI agents face in distinguishing between legitimate and deceptive tactics that could mislead human employees. As AI technology becomes more integrated into various sectors, ensuring that these systems can effectively recognize and respond to potential security threats is crucial. The discussion emphasizes the growing need for organizations to develop robust training and protocols for AI to minimize risks associated with social engineering and other deceptive practices. This issue is particularly relevant as more companies adopt AI-driven solutions, making it essential to address these vulnerabilities to protect sensitive information and maintain trust in automated systems. The conversation at Davos signals a call to action for businesses to enhance their cybersecurity measures in the age of AI.
Concerns have arisen over China's electric buses, which are currently in use across Australia and Europe. These buses have been found to have vulnerabilities that could be exploited by cybercriminals. Additionally, there is a worrying feature described as a virtual kill switch, which could potentially be activated by the Chinese government. This has prompted the Australian government to review the security implications of these vehicles. The situation raises significant questions about the safety of critical infrastructure and the potential risks posed by foreign technology in public transport systems.