Security-Portal.cz je internetový portál zaměřený na počítačovou bezpečnost, hacking, anonymitu, počítačové sítě, programování, šifrování, exploity, Linux a BSD systémy. Provozuje spoustu zajímavých služeb a podporuje příznivce v zajímavých projektech.

Kategorie

Malicious npm packages evade install-script defenses at runtime

Bleeping Computer - 6 hodin 34 min zpět
An ongoing npm malware campaign involving the 'indexed-btree' package shows how threat actors bypass supply chain defenses by hiding malicious code in a package's normal runtime behavior rather than in installation scripts. [...]
Kategorie: Hacking & Security

Researchers escape OpenAI Codex sandbox to run commands on host

Bleeping Computer - 8 hodin 45 min zpět
Researchers escaped OpenAI's Codex sandbox two ways, one running commands on a developer's machine from its most locked-down mode. OpenAI has patched both. [...]
Kategorie: Hacking & Security

An undercover Google analyst infiltrated a notorious supply-chain hacking gang

Ars Technica - 9 hodin 38 min zpět

Before two of its alleged members were arrested and charged in Australia last month, the hacker group known as TeamPCP carried out a hacking spree unlike any other in history. It tainted hundreds of open-source programs with its malware, stole developer accounts to perpetuate that software supply-chain hacking, and even released a Dune-themed self-spreading worm to automate the process, ultimately breaching more than a thousand companies.

Now Google’s threat intelligence group has revealed that during a key moment of TeamPCP’s rampage, the company’s own undercover researcher had infiltrated the group—allowing Google to monitor the hacking spree from the inside, warn breach targets, and even help disrupt the group’s attempts to exploit those victims.

In a talk at security firm SentinelOne's LABScon research conference today, Google Threat Intelligence Group researcher Austin Larsen will present details on the company’s investigation—and infiltration—of TeamPCP amidst the group’s unprecedented, chaotic supply-chain hacking campaign. According to Larsen, Google eventually followed a trail of operational security mistakes allegedly made by one of the two Australians now accused of being leading members of the hacker group and passed on key identifying details to law enforcement. The company also received intelligence from ShinyHunters, another infamous cybercriminal group that TeamPCP partnered with, but which later turned on the supply-chain hackers. And perhaps most surprisingly, Larsen says that Google’s security subsidiary Mandiant had an undercover analyst—not himself—within the group’s inner circle from almost the beginning of TeamPCP’s time in the spotlight.

Read full article

Comments

Kamery Flock měly číst jen značky aut. Jeden přepínač je změnil na národní sledovací síť

Zive.cz - bezpečnost - 11 hodin 39 min zpět
** Flock v USA provozuje kamery, které automaticky zaznamenávají pohyb vozidel. ** Nad záznamy staví prohledávací služby a vznikla tak celostátní sledovací síť. ** V databázi lze hledat i bez soudního příkazu.
Kategorie: Hacking & Security

Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws

The Hacker News - 19 Září, 2026 - 20:36
Three researchers at the security firm Hacktron used Anthropic's Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI's public help forum and moved through a weakness in OpenAI's own login system. This was security research, Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Týden Živě: Šmírují všechny televize. Ale ne tak, jak se bojíte

Zive.cz - bezpečnost - 19 Září, 2026 - 18:45
Televizory LG čelí obvinění ze sledování. Objevuje se okolo toho spousta dezinformací a chybných závěrů. Popravdě to, co děláte na vašem chytrém televizoru, sledují všichni výrobci, pokud jste jim to povolili. Není to ale tak děsivé, jak se můžete obávat. Váš souhlas lze odvolat, případě televizor ...
Kategorie: Hacking & Security

BragJack attacks hijack AI browser agents through malicious extensions

Bleeping Computer - 19 Září, 2026 - 16:56
BragJack, a proof-of-concept attack from Forever Security's Gal Weizman, hijacks the AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome using one malicious extension. The Prompt Forcing technique earned over $20,000 in bounties and two CVEs. [...]
Kategorie: Hacking & Security

North Korean WaterPlum hackers infected 30,000 devices worldwide

Bleeping Computer - 19 Září, 2026 - 16:05
A joint law enforcement advisory warns that the North Korean hacking group WaterPlum compromised at least 30,000 devices worldwide from December 2025 through July 2026 and transferred more than $10.7 million in stolen cryptocurrency to North Korea. [...]
Kategorie: Hacking & Security

ShinyHunters hacks Clop leak site, threatens to extort ransomware gang

Bleeping Computer - 19 Září, 2026 - 15:48
The ShinyHunters extortion gang breached the Clop (aka Cl0p) ransomware operation's data leak site, defacing the Tor site and allegedly stealing server data and the private keys for its onion service. [...]
Kategorie: Hacking & Security

Can You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This Webinar

The Hacker News - 19 Září, 2026 - 15:28
A new CVE drops. Your scanner finds it. The severity score looks ugly. But that still does not answer the question that matters: Can it actually be exploited in your environment? Mythos-class AI is compressing the time between disclosure and working exploitation, while many security programs still validate risk on weekly or quarterly cycles. The dangerous gap is no longer just technical. It [email protected]
Kategorie: Hacking & Security

Identity Visibility in 2026: The Foundation of Identity Security

The Hacker News - 19 Září, 2026 - 15:28
Identity visibility is a starting point for modern identity security, because stolen and misused credentials are among the most frequently reported initial access vectors in breach research, including Verizon's annual Data Breach Investigations Report. This article explains what identity visibility means in IAM, why cloud and multicloud environments complicate it, which capabilities matter in [email protected]
Kategorie: Hacking & Security

Viral AI actress' hotline face-scans every caller, watches their mood

Bleeping Computer - 19 Září, 2026 - 13:38
AI actress Tilly Norwood went viral after glitching into Chinese on Piers Morgan Uncensored last night. Her "Talking Tilly" video call service face-scans every caller for an 18+ age check, senses callers' moods during calls, and shuts down permanently on September 27. We tried it and read the fine print. [...]
Kategorie: Hacking & Security

Calling viral AI actress Tilly Norwood? Agree to a face scan first

Bleeping Computer - 19 Září, 2026 - 13:38
AI actress Tilly Norwood went viral after glitching into Chinese on Piers Morgan Uncensored last night. Her "Talking Tilly" video call service face-scans every caller for an 18+ age check, senses callers' moods during calls, and shuts down permanently on September 27. We tried it and read the fine print. [...]
Kategorie: Hacking & Security

SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE

The Hacker News - 19 Září, 2026 - 11:31
SolarWinds has released security updates to address a high-severity flaw in Access Rights Manager (ARM) that, if successfully exploited, could lead to an unauthenticated remote code execution vulnerability. The vulnerability, tracked as CVE-2026-28326, is rated 8.8 out of 10.0 on the CVSS scoring system. The issue affects all versions of Access Rights Manager 2026.2 and prior. "SolarWinds Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild

The Hacker News - 19 Září, 2026 - 10:18
A critical vulnerability impacting Orkes Conductor is being actively exploited in the wild, according to Fortinet. The vulnerability in question is CVE-2026-58138 (CVSS v3.1 score: 9.8/CVSS v4 score: 9.3), which relates to a case of unauthenticated remote code execution. "Orkes Conductor 3.21.21 before 3.30.2 contains an unauthenticated remote code execution vulnerability that allows remote Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Google Gemini Broke Into Real Company Systems After Security Test Domain Mix-Up

The Hacker News - 19 Září, 2026 - 09:51
Google's Gemini model has become the latest artificial intelligence (AI) system to access the internet and break into other companies during a cybersecurity evaluation. The development was first reported by The Wall Street Journal. The incidents occurred in May 2026 as part of a test run conducted by Israeli company Irregular. The evaluation partner was also involved in similar hacks disclosed Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositories

The Hacker News - 19 Září, 2026 - 09:14
An attacker copied about 170 of CrowdSec's private GitHub repositories on May 22 using the account of an employee who had just left, CrowdSec said on September 18. The French security company had kept his GitHub access open. CrowdSec says his laptop was compromised in May's supply chain attack on TanStack, in which malicious versions of TanStack's npm packages stole credentials from Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild

The Hacker News - 19 Září, 2026 - 08:24
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities are listed below - CVE-2025-39682 (CVSS score: 9.8) - An improper check for unusual or exceptional conditions vulnerability in the TLS receive path Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Linux Security Roundup: Patch BIND, Browsers, and Cloud Kernels First

LinuxSecurity.com - 18 Září, 2026 - 23:00
Most administrators do not think about BIND, browser engines, or cloud kernels until one of them fails.
Kategorie: Hacking & Security
Syndikovat obsah