** Ravie Lakshmanan ** Mar 17, 2026 Threat Intelligence / Endpoint Security North Korean threat actors have been observed sending phishing to compromise targets and obtain access to a victim’s …
Homepage-Fragments
** Ravie Lakshmanan ** Mar 17, 2026 Vulnerability / Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a medium-severity security flaw impacting Wing FTP …
The ransomware operation known as LeakNet has adopted the ClickFix social engineering tactic delivered through compromised websites as an initial access method. The use of ClickFix, where users are …
AI is Everywhere, But CISOs are Still Securing It with Yesterday's Skills and Tools, Study Finds
** The Hacker News ** Mar 17, 2026 Artificial Intelligence / Security Leadership A majority of security leaders are struggling to defend AI systems with tools and skills that are not fit for the …
Cybersecurity researchers have disclosed details of a new method for exfiltrating sensitive data from artificial intelligence (AI) code execution environments using domain name system (DNS) queries. …
An encoder (optical system) maps objects to noiseless images, which noise corrupts into measurements. Our information estimator uses only these noisy measurements and a noise model to quantify how …
Understanding the behavior of complex machine learning systems, particularly Large Language Models (LLMs), is a critical challenge in modern artificial intelligence. Interpretability research aims to …
This article is the result of a collaboration with The Sunday Times. You can find their corresponding piece here . Mounir Lazzez, a former Ultimate Fighting Championship (UFC) athlete, sitting with …
** Ravie Lakshmanan ** Mar 14, 2026 Artificial Intelligence / Endpoint Security China’s National Computer Network Emergency Response Technical Team (CNCERT) has issued a warning about the …
Upcoming Speaking Engagements This is a current list of where and when I am scheduled to speak: I’m giving the Ross Anderson Lecture at the University of Cambridge’s Churchill College at 5:30 PM GMT …
Cybersecurity researchers have flagged a new iteration of the GlassWorm campaign that they say represents a “significant escalation” in how it propagates through the Open VSX registry. …
Introduction This diary describes a Remcos RAT infection that I generated in my lab on Thursday, 2026-03-11. This infection was from the SmartApeSG campaign that used a ClickFix-style fake CAPTCHA …
Disclaimer : This report has been prepared by the Threat Research Center to enhance cybersecurity awareness and support the strengthening of defense capabilities. It is based on independent research …
** Ravie Lakshmanan ** Mar 13, 2026 VPN Security / Malware Microsoft has disclosed details of a credential theft campaign that employs fake virtual private network (VPN) clients distributed through …
** Ravie Lakshmanan ** Mar 13, 2026 Encryption / Data Protection Meta has announced plans to discontinue support for end-to-end encryption (E2EE) for chats on Instagram after May 8, 2026. “If …
** Ravie Lakshmanan ** Mar 13, 2026 Ransomware / Cybercrime INTERPOL on Friday announced the takedown of 45,000 malicious IP addresses and servers used in connection with phishing, malware, and …
A suspected China-based cyber espionage operation has targeted Southeast Asian military organizations as part of a state-sponsored campaign that dates back to at least 2020. Palo Alto Networks Unit 42 …
Friday Squid Blogging: Increased Squid Population in the Falklands Some good news squid stocks seem to be recovering in the waters off the Falkland Islands. As usual, you can also use this squid post …
EAGLE is the state-of-the-art method for speculative decoding in large language model (LLM) inference, but its autoregressive drafting creates a hidden bottleneck: the more tokens that you speculate, …
Outgoing BBC director-general Tim Davie has said it “makes sense” for the corporation to host shows from other public service broadcasters and partner with third parties “like Youtube”. Speaking at a …
BBC Media City in Salford. Picture: Shutterstock/Nebelung Mirror publisher Reach has accused the BBC of damaging the local news ecosystem. The comments were included in Reach’s response to the Green …
Academia and the “AI Brain Drain” In 2025, Google, Amazon, Microsoft and Meta collectively spent US$380 billion on building artificial-intelligence tools. That number is expected to surge still higher …
Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container Isolation
** Ravie Lakshmanan ** Mar 13, 2026 Linux / Vulnerability Cybersecurity researchers have disclosed multiple security vulnerabilities within the Linux kernel’s AppArmor module that could be …
** Ravie Lakshmanan ** Mar 13, 2026 Browser Security / Vulnerability Google on Thursday released security updates for its Chrome web browser to address two high-severity vulnerabilities that it said …
On Wednesday, a phishing message made its way into our handler inbox that contained a fairly typical low-quality lure, but turned out to be quite interesting in the end nonetheless. That is because …