News
Microsoft patches single-click Copilot data stealing attack
3+ hour, 2+ min ago (379+ words) The first Patch Tuesday (Wednesday in the Antipodes) for the year included a fix for a single-click prompt injection attack affecting the consumer version of Microsoft's Copilot artificial intelligence (AI) that could've leaked user data. Data security vendor Varonis, which…...
Researchers unsure of purpose of new VoidLink Linux malware
8+ hour, 4+ min ago (245+ words) Check Point Software researchers have discovered what they say is a cloud-first malware framework aimed at Linux-based operating systems, with an unusually broad set of features, but they are not sure what its intended purpose is. Named VoidLink by Check…...
Local Technology Infrastructure Is Key to Australia’s Artificial Intelligence-Enabled Future
10+ hour, 42+ min ago (342+ words) Sovereignty is a performance strategy, not a policy tick Data sovereignty is often framed as a compliance issue. In practice, it is equally a performance strategy, especially in the age of AI. Keeping data and services on shore shortens the…...
CrowdStrike defeats shareholder lawsuit over huge software outage
14+ hour, 19+ min ago (366+ words) A US federal judge dismissed a lawsuit by "CrowdStrike shareholders "who said the cyber security company defrauded them by concealing its inadequate software testing and quality assurance procedures, before a July 2024 outage crashed more than 8 million Microsoft Windows-based computers worldwide....
Identity at the Centre: Why AI Is Accelerating a New Security Imperative
1+ day, 16+ hour ago (767+ words) Identity has officially outgrown its reputation as a back-end IT control. In fact, it's now a boardroom conversation, an enabler of transformation, and increasingly, the new attack surface." That's the message from Stephanie Barnett, Vice President of Presales and Interim…...
Google's Mandiant releases free Salesforce access control checker
2+ day, 7+ hour ago (256+ words) Called AuraInspector, the tool'automates detection of configuration errors that have been abused to expose sensitive customer data at dozens of high-profile organisations over the past two years, including credentials, health information and identity documents. It scans Salesforce Aura framework implementations…...
Defence's VMware contract climbs to $178m
2+ day, 13+ hour ago (254+ words) Defence has renewed its access to VMware under a three-year, $178 million deal that appears to represent a more than doubling in spending with the virtualisation vendor. The $178 million deal, executed on December 13 last year and published days before Christmas, runs…...
Cloudflare DNS reply change crashed Cisco SME switches
3+ day, 11+ hour ago (223+ words) A mysterious problem impacting users of Cisco small-to-medium business switches whose devices started rebooting regularly turned out to be caused by a change in how Cloudflare's popular domain name system (DNS) server responded to queries. Network switches worldwide entered reboot…...
India proposes forcing smartphone makers to give source code
3+ day, 17+ hour ago (631+ words) India proposes requiring smartphone makers to share source code with the "government and "make several software changes as part of a raft of security measures, prompting behind-the-scenes opposition from giants like Apple and Samsung. The tech companies have countered that…...
Researchers detail Bluetooth headphone attack that can hijack smartphones
1+ week, 2+ hour ago (373+ words) Vulnerabilities in a very popular Bluetooth system-on-a-chip (SoC) can be used to indirectly compromise smartphones, researchers at Germany's Enno Rey Netzwerke (ERNW) have found. Devices supporting Bluetooth Classic and Bluetooth Low Energy connections could be attacked if they're within physical…...