BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Customer, Employee Data Exposed in Nippon Steel Breach
/in General NewsInformation from the company’s NS Solutions subsidiary has yet to show up on any Dark Web sites, but it doesn’t rule out the possibility that the data may have been stolen.
darkreading – Read More
McDonald’s AI Hiring Tool McHire Leaked Data of 64 Million Job Seekers
/in General NewsMajor security flaw in McDonald’s AI hiring tool McHire exposed 64M job applications. Discover how an IDOR vulnerability…
Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – Read More
$8.8 trillion protected: How one CISO went from ‘that’s BS’ to bulletproof in 90 days
/in General NewsClearwater Analytics CISO Sam Evans dodged a bullet by blocking shadow AI from exposing data integral to $8.8 trillion under management.Read More
Security News | VentureBeat – Read More
DHS Tells Police That Common Protest Activities Are ‘Violent Tactics’
/in General NewsDHS is urging law enforcement to treat even skateboarding and livestreaming as signs of violent intent during a protest, turning everyday behavior into a pretext for police action.
Security Latest – Read More
eSIM Bug in Millions of Phones Enables Spying, Takeover
/in General NewseSIMs around the world may be fundamentally vulnerable to physical and network attacks because of a 6-year-old Oracle vulnerability in technology that underlies billions of cards.
darkreading – Read More
Ingram Micro Up and Running After Ransomware Attack
/in General NewsCustomers were the first to notice the disruption on the distributor’s website when they couldn’t place orders online.
darkreading – Read More
4 Arrested in UK Over M&S, Co-op, Harrods Hacks
/in General NewsThe UK’s National Crime Agency arrested four people, who some experts believe are connected to the notorious cybercriminal collective known as Scattered Spider.
darkreading – Read More
Agentic AI’s Risky MCP Backbone Opens Brand-New Attack Vectors
/in General NewsCritical security vulnerabilities affect different parts of the Model Context Protocol (MCP) ecosystem, which many organizations are rapidly adopting in order to integrate AI models with external data sources.
darkreading – Read More
Former Mexican president investigated over allegedly taking bribes from spyware industry
/in General NewsThe investigation comes in response to an account in the Israeli business publication TheMarker, which reported that the contracts included a deal to buy Pegasus — the powerful spyware manufactured by Israel-based NSO Group.
The Record from Recorded Future News – Read More
Critical mcp-remote Vulnerability Enables Remote Code Execution, Impacting 437,000+ Downloads
/in General NewsCybersecurity researchers have discovered a critical vulnerability in the open-source mcp-remote project that could result in the execution of arbitrary operating system (OS) commands.
The vulnerability, tracked as CVE-2025-6514, carries a CVSS score of 9.6 out of 10.0.
“The vulnerability allows attackers to trigger arbitrary OS command execution on the machine running mcp-remote when it
The Hacker News – Read More