Recent Advisories

Severity ID Title Vendor Product Date Type
NONE SCHNEIER:0C3FFF...

Jim Sanborn Is Auctioning Off the Solution to Part Four of the Kryptos Sculpture_SCHNEIER:0C3FFF8773BE44538D8879E377229F64

Well, this is interesting: > The auction, which will include other items related to cryptology, will be held Nov. 20. RR Auction, the company arra...

N/A N/A SCHNEIER
NONE SCHNEIER:ABBBED...

Subverting AIOps Systems Through Poisoned Input Data_SCHNEIER:ABBBED02DFFBF2186692EAABF531A9E9

In this input integrity attack against an AI system, researchers were able to fool AIOps tools: > AIOps refers to the use of LLM-based agents to g...

N/A N/A SCHNEIER
NONE SCHNEIER:657F95...

Zero-Day Exploit in WinRAR File_SCHNEIER:657F9597A40B5181C2B0F0DFF8879995

A zero-day vulnerability in WinRAR is being exploited by at least two Russian criminal groups: > The vulnerability seemed to have super Windows po...

N/A N/A SCHNEIER
NONE SCHNEIER:0C77CC...

Eavesdropping on Phone Conversations Through Vibrations_SCHNEIER:0C77CCF3D53B96DE5F1308CB3FA31928

Researchers have managed to eavesdrop on cell phone voice conversations by using radar to detect vibrations. It's more a proof of concept than anyt...

N/A N/A SCHNEIER
NONE SCHNEIER:001BD9...

Friday Squid Blogging: Squid-Shaped UFO Spotted Over Texas_SCHNEIER:001BD918F67B4ED113E9E87DDB225015

Here's the story. The commenters on X (formerly Twitter) are unimpressed. As usual, you can also use this squid post to talk about the security st...

N/A N/A SCHNEIER
NONE SCHNEIER:EDD1F7...

Trojans Embedded in .svg Files_SCHNEIER:EDD1F74BF10CFC7CA05E5D74E4029FB5

Porn sites are hiding code in .svg files: > Unpacking the attack took work because much of the JavaScript in the .svg images was heavily obscured ...

N/A N/A SCHNEIER
NONE SCHNEIER:26F15D...

LLM Coding Integrity Breach_SCHNEIER:26F15DD2221781BB284066C51C7AE804

Here's an interesting story about a failure being introduced by LLM-written code. Specifically, the LLM was doing some code refactoring, and when i...

N/A N/A SCHNEIER
NONE SCHNEIER:123CF0...

AI Applications in Cybersecurity_SCHNEIER:123CF0A068F95D72E433D383562F915D

There is a really great series of online events highlighting cool uses of AI in cybersecurity, titled Prompt||GTFO. Videos from the first three eve...

N/A N/A SCHNEIER
NONE SCHNEIER:DA6E6D...

SIGINT During World War II_SCHNEIER:DA6E6DDA4DBAFE4E3720878F511ED4EA

The NSA and GCHQ have jointly published a history of World War II SIGINT: "Secret Messengers: Disseminating SIGINT in the Second World War." This i...

N/A N/A SCHNEIER
NONE SCHNEIER:C05C46...

Automatic License Plate Readers Are Coming to Schools_SCHNEIER:C05C46BE0841E65712CCED81C46BF0E1

Fears around children is opening up a new market for automatic license place readers.

N/A N/A SCHNEIER