BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Vercel’s v0 AI Tool Weaponized by Cybercriminals to Rapidly Create Fake Login Pages at Scale
/in General NewsUnknown threat actors have been observed weaponizing v0, a generative artificial intelligence (AI) tool from Vercel, to design fake sign-in pages that impersonate their legitimate counterparts.
“This observation signals a new evolution in the weaponization of Generative AI by threat actors who have demonstrated an ability to generate a functional phishing site from simple text prompts,” Okta
The Hacker News – Read More
Silver Fox Suspected in Taiwanese Campaign Using DeepSeek Lure
/in General NewsThe attack uses sideloading to deliver a variant of the popular Gh0stRAT malware and lures victims by posing — among other things — as a purported installer for DeepSeek’s LLM.
darkreading – Read More
ICEBlock, an app for anonymously reporting ICE sightings, goes viral overnight after Bondi criticism
/in General NewsThe citizen app for anonymously reporting ICE agents and raids went viral after criticism from the U.S. Attorney General.
Security News | TechCrunch – Read More
Like SEO, LLMs May Soon Fall Prey to Phishing Scams
/in General NewsJust as attackers have used SEO techniques to poison search engine results, they could rinse and repeat with artificial intelligence and the responses LLMs generate from user prompts.
darkreading – Read More
LevelBlue Acquires Trustwave, Forms World’s Largest Independent MSSP
/in General NewsAs the largest managed security services provider, the combined entity will offer cyber consulting, managed detection and response, and incident response services.
darkreading – Read More
Scope, Scale of Spurious North Korean IT Workers Emerges
/in General NewsMicrosoft warns thousands of North Korean workers have infiltrated tech, manufacturing, and transportation sectors to steal money and data.
darkreading – Read More
We’ve All Been Wrong: Phishing Training Doesn’t Work
/in General NewsTeaching employees to detect malicious emails isn’t really having an impact. What other options do organizations have?
darkreading – Read More
Ransomware Reshaped How Cyber Insurers Perform Security Assessments
/in General NewsCyber insurance companies were forced to adapt once ransomware skyrocketed and highlighted crucial security weaknesses among organizations in all sectors.
darkreading – Read More
Lock down your AT&T account to prevent SIM swapping attacks – here’s how
/in General NewsThe new Wireless Account Lock prevents someone from moving your phone number to a different device.
Latest stories for ZDNET in Security – Read More
DoJ Disrupts North Korean IT Worker Scheme Across Multiple US States
/in General NewsThe US also conducted searches of 29 “laptop farms” across 16 states and seized 29 financial accounts used to launder funds.
darkreading – Read More