Recent Advisories

Severity ID Title Vendor Product Date Type
NONE SCHNEIER:2BFE30...

Indirect Prompt Injection Attacks Against LLM Assistants_SCHNEIER:2BFE3020536A1FBB9F63197CE4610F0B

Really good research on practical attacks against LLM agents. > "Invitation Is All You Need! Promptware Attacks Against LLM-Powered Assistants in ...

N/A N/A SCHNEIER
NONE SCHNEIER:F51B5D...

1965 Cryptanalysis Training Workbook Released by the NSA_SCHNEIER:F51B5DBCA8FB81D18C3E4873C3829080

In the early 1960s, National Security Agency cryptanalyst and cryptanalysis instructor Lambros D. Callimahos coined the term "Stethoscope" to descr...

N/A N/A SCHNEIER
NONE SCHNEIER:F7C23C...

Friday Squid Blogging: Catching Humboldt Squid_SCHNEIER:F7C23CB03A414E843C457437C4A0A71C

First-person account of someone accidentally catching several Humboldt squid on a fishing line. No photos, though. As usual, you can also use this...

N/A N/A SCHNEIER
NONE SCHNEIER:3CFCC6...

Baggage Tag Scam_SCHNEIER:3CFCC65F48DB368E6208D7AAF5EA8B83

I just heard about this: > There's a travel scam warning going around the internet right now: You should keep your baggage tags on your bags until...

N/A N/A SCHNEIER
NONE SCHNEIER:575689...

The UK May Be Dropping Its Backdoor Mandate_SCHNEIER:5756890397A352DCC289B4DEA8F4CCC3

The US Director of National Intelligence is reporting that the UK government is dropping its backdoor mandate against the Apple iPhone. For now, at...

N/A N/A SCHNEIER
NONE SCHNEIER:D4E96B...

We Are Still Unable to Secure LLMs from Malicious Inputs_SCHNEIER:D4E96BA0109D3019CA52034F79F8F9CA

Nice indirect prompt injection attack: > Bargury's attack starts with a poisoned document, which is shared to a potential victim's Google Drive. (...

N/A N/A SCHNEIER
NONE SCHNEIER:871E39...

Encryption Backdoor in Military/Police Radios_SCHNEIER:871E39BD7576695767EAA6945A053160

I wrote about this in 2023. Here's the story: > Three Dutch security analysts discovered the vulnerabilities­--five in total--­in a European radio...

N/A N/A SCHNEIER
NONE SCHNEIER:3D9FA6...

Poor Password Choices_SCHNEIER:3D9FA625B4F2B33ADC3DEA45594DB883

Look at this: McDonald's chose the password "123456" for a major corporate system.

N/A N/A SCHNEIER
NONE SCHNEIER:7DA025...

Friday Squid Blogging: Bobtail Squid_SCHNEIER:7DA025A7F900D9499235597356C4CE0A

Nice short article on the bobtail squid. As usual, you can also use this squid post to talk about the security stories in the news that I haven't ...

N/A N/A SCHNEIER
NONE SCHNEIER:628CF6...

I’m Spending the Year at the Munk School_SCHNEIER:628CF6404487FA572A14AB5BA05E940F

This academic year, I am taking a sabbatical from the Kennedy School and Harvard University. (It's not a real sabbatical--I'm just an adjunct--but ...

N/A N/A SCHNEIER