Offensive Security Certified Professional (OSCP): Understanding the Technical Challenge

The Offensive Security Certified Professional (OSCP) certification stands as one of the most demanding technical assessments in cybersecurity, as of today. Unlike other certifications that test theoretical knowledge with multiple-choice questions, the OSCP tests practical, hands-on exploitation skills in realistic scenarios. The OSCP targets those with foundational knowledge in IT…

Source

TechSplicer – ​Read More

Australian IT Pros Urged to Guard Against Chinese Cybersecurity Threats

Australian IT pros are urged to strengthen defenses as Chinese cyber threats target critical infrastructure and sensitive data.

Security | TechRepublic – ​Read More

Generative AI Security Tools Go Open Source

Businesses deploying large language models and other GenAI systems have a growing collection of open source tools for testing AI security.

darkreading – ​Read More

With ‘TPUXtract,’ Attackers Can Steal Orgs’ AI Models

A new side-channel attack method is a computationally practical way to infer the structure of a convolutional neural network — meaning that cyberattackers or rival companies can plagiarize AI models and take their data for themselves.

darkreading – ​Read More

Canadian Eyecare Firm Care1 Exposes 2.2TB of Patient Records

Another day, another healthcare database misconfiguration exposing sensitive patient information.

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Test Your Cyber Skills With the SANS Holiday Hack Challenge

Open to players of all skill levels, the “Snow-mageddon” cybersecurity competition is set in the world of Santa, elves, and Christmas mayhem.

darkreading – ​Read More

390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC Exploits

A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management system (CMS) is estimated to have enabled the exfiltration of over 390,000 credentials.
The malicious activity is part of a broader attack campaign undertaken by a threat actor, dubbed MUT-1244 (where MUT refers to “mysterious unattributed threat”) by Datadog Security Labs, that

The Hacker News – ​Read More

South Carolina credit union says 240,000 impacted by recent cyberattack

The credit union filed breach notification documents with regulators in Maine and Texas on Friday acknowledging that it recently detected suspicious activity on its network.

The Record from Recorded Future News – ​Read More