BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
New Chrome Vulnerability Enables Cross-Origin Data Leak via Loader Referrer Policy
/in General NewsGoogle on Wednesday released updates to address four security issues in its Chrome web browser, including one for which it said there exists an exploit in the wild.
The high-severity vulnerability, tracked as CVE-2025-4664 (CVSS score: 4.3), has been characterized as a case of insufficient policy enforcement in a component called Loader.
“Insufficient policy enforcement in Loader in Google
The Hacker News – Read More
Infosec Layoffs Aren’t the Bargain That Boards May Think
/in General NewsSalary savings come with hidden costs, including insider threats and depleted cybersecurity defenses, conveying advantages to skilled adversaries, experts argue.
darkreading – Read More
AI Agents May Have a Memory Problem
/in General NewsA new study by researchers at Princeton University and Sentient shows it’s surprisingly easy to trigger malicious behavior from AI agents by implanting fake “memories” into the data they rely on for making decisions.
darkreading – Read More
Ivanti EPMM Zero-Day Flaws Exploited in Chained Attack
/in General NewsThe security software maker said the vulnerabilities in Endpoint Manager Mobile have been exploited in the wild against “a very limited number of customers” — for now — and stem from open source libraries.
darkreading – Read More
Nova Scotia Power says customer banking details may have been stolen by hackers
/in General NewsAn network intrusion at Nova Scotia Power in March led to a breach of sensitive customer data, the Canadian utility said in an update about the incident.
The Record from Recorded Future News – Read More
The Internet’s Biggest-Ever Black Market Just Shut Down Amid a Telegram Purge
/in General NewsFollowing a WIRED inquiry, Telegram banned thousands of accounts used for crypto scam money laundering, including those of Haowang Guarantee, a black market that enabled over $27 billion in transactions.
Security Latest – Read More
Google Ships Android ‘Advanced Protection’ Mode to Thwart Surveillance Spyware
/in General NewsGoogle bundles multiple safeguards under a single Android toggle to protect high-risk users from advanced mobile malware implants.
The post Google Ships Android ‘Advanced Protection’ Mode to Thwart Surveillance Spyware appeared first on SecurityWeek.
SecurityWeek – Read More
RaaS Explained: How Cybercriminals Are Scaling Attacks Like Startups
/in General NewsThere is a lot of money in cyberattacks like ransomware, and unfortunately for organizations of all sizes, the…
Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – Read More
White House scraps plan to block data brokers from selling Americans’ sensitive data
/in General NewsThe decision to reverse course comes after an industry lobby group called for the rule change to be withdrawn.
Security News | TechCrunch – Read More
Google says hackers behind UK retail cyber campaign now also targeting US
/in General News“US retailers should take note” of recent cyberattacks on British companies, according to Google’s Threat Intelligence Group, as the financially motivated collective known as Scattered Spider appears to be connected.
The Record from Recorded Future News – Read More