Recent Advisories

Severity ID Title Vendor Product Date Type
NONE SCHNEIER:ABBBED...

Subverting AIOps Systems Through Poisoned Input Data_SCHNEIER:ABBBED02DFFBF2186692EAABF531A9E9

In this input integrity attack against an AI system, researchers were able to fool AIOps tools: > AIOps refers to the use of LLM-based agents to g...

N/A N/A SCHNEIER
NONE SCHNEIER:657F95...

Zero-Day Exploit in WinRAR File_SCHNEIER:657F9597A40B5181C2B0F0DFF8879995

A zero-day vulnerability in WinRAR is being exploited by at least two Russian criminal groups: > The vulnerability seemed to have super Windows po...

N/A N/A SCHNEIER
NONE SCHNEIER:0C77CC...

Eavesdropping on Phone Conversations Through Vibrations_SCHNEIER:0C77CCF3D53B96DE5F1308CB3FA31928

Researchers have managed to eavesdrop on cell phone voice conversations by using radar to detect vibrations. It's more a proof of concept than anyt...

N/A N/A SCHNEIER
NONE SCHNEIER:001BD9...

Friday Squid Blogging: Squid-Shaped UFO Spotted Over Texas_SCHNEIER:001BD918F67B4ED113E9E87DDB225015

Here's the story. The commenters on X (formerly Twitter) are unimpressed. As usual, you can also use this squid post to talk about the security st...

N/A N/A SCHNEIER
NONE SCHNEIER:EDD1F7...

Trojans Embedded in .svg Files_SCHNEIER:EDD1F74BF10CFC7CA05E5D74E4029FB5

Porn sites are hiding code in .svg files: > Unpacking the attack took work because much of the JavaScript in the .svg images was heavily obscured ...

N/A N/A SCHNEIER
NONE SCHNEIER:26F15D...

LLM Coding Integrity Breach_SCHNEIER:26F15DD2221781BB284066C51C7AE804

Here's an interesting story about a failure being introduced by LLM-written code. Specifically, the LLM was doing some code refactoring, and when i...

N/A N/A SCHNEIER
NONE SCHNEIER:123CF0...

AI Applications in Cybersecurity_SCHNEIER:123CF0A068F95D72E433D383562F915D

There is a really great series of online events highlighting cool uses of AI in cybersecurity, titled Prompt||GTFO. Videos from the first three eve...

N/A N/A SCHNEIER
NONE SCHNEIER:DA6E6D...

SIGINT During World War II_SCHNEIER:DA6E6DDA4DBAFE4E3720878F511ED4EA

The NSA and GCHQ have jointly published a history of World War II SIGINT: "Secret Messengers: Disseminating SIGINT in the Second World War." This i...

N/A N/A SCHNEIER
NONE SCHNEIER:C05C46...

Automatic License Plate Readers Are Coming to Schools_SCHNEIER:C05C46BE0841E65712CCED81C46BF0E1

Fears around children is opening up a new market for automatic license place readers.

N/A N/A SCHNEIER
NONE SCHNEIER:C587BC...

Friday Squid Blogging: New Vulnerability in Squid HTTP Proxy Server_SCHNEIER:C587BC76E8A61F62D3F4790CCB779AFF

In a rare squid/security combined post, a new vulnerability was discovered in the Squid HTTP proxy server.

N/A N/A SCHNEIER