Microsoft fixes Notepad flaw that could trick users into clicking malicious Markdown links
Microsoft fixes Notepad flaw that could trick users into clicking malicious Markdown links

Microsoft has fixed a serious security vulnerability affecting Markdown files in Notepad. In the company’s Tuesday patch notes, Microsoft says a bad actor could carry out a remote code execution attack by tricking users “into clicking a malicious link inside a Markdown file opened in Notepad,” as reported earlier by The Register. Clicking the link […]

CBP Signs Clearview AI Deal to Use Face Recognition for ‘Tactical Targeting’

US Border Patrol intelligence units will gain access to a face recognition tool built on billions of images scraped from the internet.

North Korean hackers use AI-generated video to deliver malware for macOS and Windows

UNC1069 has gotten super creative lately, using a mix of Business Telegram Compromise, deepfakes, and malware.

Beware, this fake site offers up a malicious 7-Zip installer laced with malware

Fake 7zip.com site sounds incredible, but don’t be fooled.

Thousands of Volvo customers possibly affected in major data breach – 17,000 affected, here’s what we know

The Conduent breach keeps getting worse, with Volvo North America now involved.

Singapore says its four largest phone companies were hit by Chinese hackers

UNC3886 thought to be behind attacks after allegedly exploiting zero-days in firewalls.

Google sent personal and financial information of student journalist to ICE

The tech giant handed over the personal information of a journalist and student who attended a pro-Palestinian protest in 2024. This is the latest example of ICE using its controversial subpoena powers to target people critical of the Trump administrat…

‘As adoption grows, confidence in safeguards must rise with it’: Microsoft reveals new tool which can track backdoors in LLMs – and it’s hoping this will restore trust in AI across the world

Microsoft introduced a scanner that detects poisoned open-weight language models by analyzing attention behavior, memorization leaks, and trigger flexibility.

SmarterTools network breached using auth-bypass attack against single unpatched virtual machine

Just one neglected server was enough to suffer a ransomware infection but this time, the damage was minimal.