IT Security Weekend Catch Up – August 10, 2025

Comments

10.08.2025 | 12:00

IT Security Weekend Catch Up – August 10, 2025
avatar

badcyber

comments

IT Security Weekend Catch Up – August 10, 2025

Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!

For the less technical

  1. Your public ChatGPT queries are getting indexed by Google and other search engines
  2. Leaked ChatGPT conversations show people asking the bot to do some dirty work
  3. Wikipedia editors adopt ‘speedy deletion’ policy for AI slop articles
  4. Proton’s Lumo AI chatbot: not end-to-end encrypted, not open source
  5. noyb survey: only 7% of users want Meta to use their personal data for AI
  6. Google Project Zero: Policy and disclosure - 2025 edition
  7. Cisco discloses data breach impacting Cisco.com user accounts
  8. How we found an RSF military camp in the Libyan desert
  9. Censorship Whac-A-Mole: Google search exploited to scrub articles on San Francisco tech exec
  10. Hackers went looking for a backdoor in high-security safes—and now can open them in seconds
  11. Encryption made for police and military radios may be easily cracked

For the more technical

  1. Android Security Bulletin - August 2025
  2. Insecure credential storage in Check Point SmartConsole aka CVE-2024-24915
  3. ReVault! When your SoC turns against you
  4. Struts devmode in 2025? Critical pre-auth vulnerabilities in Adobe Experience Manager Forms
  5. Keeper is the only password manager that protects against infostealers
  6. Kali Linux & containerization (Apple's container)
  7. Perplexity is using stealth, undeclared crawlers to evade website no-crawl directives
  8. GPT-5 under fire: Red teaming OpenAI’s latest model reveals surprising weaknesses
  9. CVE-2025-54136 - MCPoison Cursor IDE: Persistent code execution via MCP trust bypass
  10. When public prompts turn into local shells: ‘CurXecute’ – RCE in Cursor via MCP auto‑start
  11. How hidden prompt injections can hijack AI code assistants like Cursor
  12. Threat actor uses AI to create a better crypto wallet drainer
  13. GreedyBear: 650 attack tools, one coordinated campaign
  14. Arctic Wolf observes July 2025 uptick in Akira ransomware activity targeting SonicWall SSL VPN
  15. Huntress threat advisory: Active exploitation of SonicWall VPNs
  16. PlayPraetor's evolving threat: How Chinese-speaking actors globally scale an Android RAT
  17. Auto-Color backdoor: How Darktrace thwarted a stealthy Linux intrusion
  18. Plague: A newly discovered PAM-based backdoor for Linux
  19. Reverse engineering a Lumma infection
  20. Let’s be objective: A deep dive into 0bj3ctivityStealer's features
  21. XWorm V6: Advanced evasion and AMSI bypass capabilities revealed
  22. In-depth analysis of an obfuscated web shell script
  23. UNC2891 bank heist: Physical ATM backdoor & Linux forensic evasion evasion
  24. APT36: A phishing campaign targeting Indian government entities

Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.


Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy! For the less technical Your public ChatGPT queries are getting indexed by Google and other search engines Leaked ChatGPT 2025-08-10T12:00:36+02:00

Comments