Sign in

Sam Bowne :donor:

@sambowne.infosec.exchange.ap.brid.gy
304 followers 3 following 9.2K posts

Instructor at CCSF, corporate trainer for Infosec Decoded. [bridged from infosec.exchange/@sambowne on the fediverse by fed.brid.gy ]

PostsRepliesMedia
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 28m
GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys thehackernews.com/2026/10/gobalance…
thehackernews.com
GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys
A bug in GoBalance, a tool many dark-web sites use to stay reachable during attacks, lets anyone work out the secret key that controls a site's .onion address using only public information, and then take that address over. Searchlight Cyber, which disclosed the flaw on October 8, says an attacker who recovers the key can redirect the site's visitors to a copy of the site they control.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 29m
Let's Encrypt cuts certificate lifetimes to 64 days starting February 2027 - Ars Technica arstechnica.com/gadgets/2026/10/let…
arstechnica.com
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 46m
ARTEX AI agent closed-source after Korean bank hack | The Straits Times www.straitstimes.com/asia/east-asia…
straitstimes.com
Chinese developer makes Artex AI agent closed-source after South Korean bank hack
Chinese developer makes ARTEX AI agent closed-source after South Korean bank hack claims and cyberattack probe Read more at straitstimes.com.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 47m
Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security - SecurityWeek www.securityweek.com/anthropic-fast…
event.on24.com
Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 1h
Formula Predicts When AI Chatbots Are at Risk of Turning Bad - SecurityWeek www.securityweek.com/formula-predic…
event.on24.com
Formula Predicts When AI Chatbots Are at Risk of Turning Bad
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 1h
'AgentCorruption' Puts AWS Environments at Risk With One Prompt www.darkreading.com/cloud-security/…
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 1h
CCSF chancellor placed on leave pending investigation www.sfchronicle.com/sf/article/ccsf…
sfchronicle.com
Client Challenge
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 22h
TP-Link Faces State Lawsuits and New Scrutiny Over ISP Router Flaws - SecurityWeek www.securityweek.com/tp-link-faces-…
event.on24.com
TP-Link Faces State Lawsuits and New Scrutiny Over ISP Router Flaws
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 22h
Microsoft Teams to get support for third-party deepfake detection tools www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
Microsoft Teams to get support for third-party deepfake detection tools
Microsoft will soon introduce support for third-party deepfake detection solutions and impersonation protection in Teams meetings.
001
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 22h
Samsung Galaxy S26 hacked three more times at Pwn2Own Ireland www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
Samsung Galaxy S26 hacked three more times at Pwn2Own Ireland
​​​On the second day of Pwn2Own Ireland 2026, security researchers collected $232,500 in cash awards after exploiting 45 unique zero-day vulnerabilities.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 22h
Tensorlake npm Package Compromised to Deliver Shai-Hulud Credential-Stealing Worm thehackernews.com/2026/10/tensorlak…
thehackernews.com
Tensorlake npm Package Compromised to Deliver Shai-Hulud Credential-Stealing Worm
The npm package known as "tensorlake," a TypeScript software development kit (SDK) for Tensorlake applications, sandboxes, and cloud services, was compromised as part of a ChainDrop / Shai-Hulud supply chain attack. The malicious version 0.5.144 "contains obfuscated malware that harvests credentials, exfiltrates secrets, establishes persistence, and executes remotely supplied code," Socket said
011
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 22h
ShinyHunters Extorted Boeing Spin-off Prior to Arrests – Krebs on Security krebsonsecurity.com/2026/10/shinyhu…
krebsonsecurity.com
ShinyHunters Extorted Boeing Spin-off Prior to Arrests
A teenager from Amman, Jordan suspected of leading the prolific data theft and extortion group ShinyHunters has been detained and is reportedly cooperating with the FBI to identify other members of the hacking gang. KrebsOnSecurity has learned that the suspect, who uses the hacker handle "Rey," was detained as ShinyHunters was in the process of extorting a business unit recently divested by the global aerospace company Boeing, which manufactures the fleet of planes used by the employer of Rey's father -- Royal Jordanian Airlines.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 22h
SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances thehackernews.com/2026/10/sonicwall…
thehackernews.com
SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances
SonicWall has released hotfixes for four flaws in its SMA1000 appliances, the gateways that give remote workers access to a company's network and applications. The most serious could allow an attacker without a login to send requests through the appliance and reach internal functions. SonicWall rates it 10.0 on the CVSS scale and says it has no evidence that any of the four flaws is being
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 22h
Georgia Power, Alabama Power Data Breach Hits 400,000 Accounts - SecurityWeek www.securityweek.com/georgia-power-…
event.on24.com
Georgia Power, Alabama Power Data Breach Hits 400,000 Accounts
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
PoeLLM malware infects exposed AI servers in cryptomining attacks www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
PoeLLM malware infects exposed AI servers in cryptomining attacks
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
Microsoft Outlook to block MSIX attachments starting November www.bleepingcomputer.com/news/micro…
bleepingcomputer.com
Microsoft Outlook to block MSIX attachments starting November
Microsoft announced that it will add .msix and .msixbundle attachments to the list of blocked attachments in Outlook Web and the new Outlook Windows client starting next month.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
OpenAI Agent Escape Causes Wikimedia Service Outage www.darkreading.com/cyberattacks-da…
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
In the last few weeks, Gemini has become almost useless. Every command with a URL ends after the .com, and even telling it it is wrong 4 times does not fix it. OpenAI should pay Google for the free advertising.
100
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
Google rolls out improved SynthID AI content detector, now available globally - Ars Technica arstechnica.com/ai/2026/10/google-r…
arstechnica.com
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
Hadrian Raises $40 Million to Expand Autonomous Offensive Security Platform - SecurityWeek www.securityweek.com/hadrian-raises…
event.on24.com
Hadrian Raises $40 Million to Expand Autonomous Offensive Security Platform
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely thehackernews.com/2026/10/unpatched…
thehackernews.com
Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely
A critical vulnerability in LMCache, open-source software that speeds up large language model (LLM) servers such as vLLM, lets an attacker run code on the cache server without logging in, and no fixed version is available. The flaw is in LMCache's multiprocess mode, where the cache runs as a standalone server that LLM workers reach over the ZeroMQ messaging library. A single network
010
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
FakeGit malware campaign returns with 17,610 malicious GitHub repos www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
FakeGit malware campaign returns with 17,610 malicious GitHub repos
More than 17,000 fake repositories on GitHub are distributing the SmartLoader malware after the FakeGit campaign reactivated earlier this month to push the StealC infostealer.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
MonsterCloud Owner Accused of Billing Over $19M While Secretly Paying Ransoms to Decrypt Data thehackernews.com/2026/10/monstercl…
thehackernews.com
MonsterCloud Owner Accused of Billing Over $19M While Secretly Paying Ransoms to Decrypt Data
The U.S. Department of Justice (DoJ) on Wednesday announced charges against a 50-year-old U.S. and Israeli national for allegedly defrauding ransomware victims by secretly paying the attackers to obtain decryptors while claiming to use proprietary tools to recover their data. Zohar Pinhasi (aka Zack Silver and Zack Green) has been charged with two counts of wire fraud and one count of wire
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
FBI: Ongoing FortiBleed attacks lock out FortiGate VPN admins www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
FBI: Ongoing FortiBleed attacks lock out FortiGate VPN admins
The FBI is warning that FortiBleed attacks are still ongoing, targeting exposed Fortinet FortiGate firewalls and SSL VPN gateways and locking out legitimate administrators.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
16 Malicious Firefox Extensions Pose as Rabby and OKX Wallets to Steal Recovery Phrases thehackernews.com/2026/10/16-malici…
thehackernews.com
16 Malicious Firefox Extensions Pose as Rabby and OKX Wallets to Steal Recovery Phrases
Cybersecurity researchers have discovered a cluster of 16 malicious Mozilla Firefox extensions that are capable of stealing cryptocurrency wallet recovery phrases and private keys. "The extensions masquerade as wallet portals, desktop utilities, and browser tools, but their code intercepts recovery phrases and private keys during wallet import flows and attempts to send those secrets to
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
Owner of Empire cybercrime market gets 40 years in prison www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
Owner of Empire cybercrime market gets 40 years in prison
The co-creator of Empire Market, one of the largest dark web marketplaces before its shutdown, has been sentenced to 40 years in prison for facilitating $430 million in illegal transactions from 2018 to 2020.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
Hackers hijack Google domains after breaching ccTLD registries www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
Hackers hijack Google domains after breaching ccTLD registries
Hackers obtained unauthorized HTTPS certificates for several Google domains and hijacked domains in the country-code top-level domains (ccTLDs) for Ghana, American Samoa, and Sierra Leone after compromising third-party operators and modifying authoritative DNS records.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
CCSF AI Interview Coach ccsf-ai-interview-coach.ai.studio
ccsf-ai-interview-coach.ai.studio
CCSF AI Interview Coach
Personalized mock interviews using real-time voice, tailored to your resume and specific job descriptions for better career preparation.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 08/10/2026
Huntress CTF 2026: AI Arena ctf.huntress.com/events/92371a95-2a…
ctf.huntress.com
Huntress CTF 2026: AI Arena
AI Arena
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Targeting the Systems Behind the Mission: OT Threats to US Critical Infrastructure and Military Operations blog.polyswarm.io/targeting-the-sys…
blog.polyswarm.io
Targeting the Systems Behind the Mission: OT Threats to US Critical Infrastructure and Military Operations
US critical infrastructure faces an increasingly consequential operational technology (OT) threat as state-sponsored and other cyber actors conduct activity ranging from long-term pre-positioning in critical infrastructure networks to direct exploitation of programmable logic controllers (PLCs) capable of affecting physical processes.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
The Lucifer: How to Spot a Compromised MikroTik Router ifritnoises.org/articles/the-lucifer
ifritnoises.org
The Lucifer: How to Spot a Compromised MikroTik Router
How attackers turn a MikroTik router's own features against the network, and how to detect it in the configuration
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Daybreak | OpenAI for cybersecurity | OpenAI openai.com/daybreak
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
SonicWall warns of max severity SSRF flaw in SMA1000 gateways www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
SonicWall warns of max severity SSRF flaw in SMA1000 gateways
SonicWall has released hotfixes to address a maximum-severity server-side request forgery (SSRF) flaw in SMA1000 series appliances.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Using LineageOS For Phones And DIY Smart TVs Is Pretty Nifty | Hackaday hackaday.com/2026/10/06/using-linea…
hackaday.com
Using LineageOS for Phones and DIY Smart TVs is Pretty Nifty
Although Android is essentially just another Linux distribution, most people only experience it in the form of the rather restrictive and proprietary versions found on smartphones, tablets and smart TVs. …read more
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Cisco NX-OS Software NX-API Remote Code Execution Vulnerability sec.cloudapps.cisco.com/security/ce…
sec.cloudapps.cisco.com
Cisco NX-OS Software NX-API Remote Code Execution Vulnerability
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation of data that is sent to the NX-API. An attacker could exploit this vulnerability by sending a crafted HTTP request to the NX-API of an affected device. A successful exploit could allow the attacker to execute arbitrary code with root privileges and could cause process crashes, which could result in a reload of the device and a DoS condition. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-napi-rce-r2shwu2j This advisory is part of a group of advisories. For a complete list of the advisories and links to them, see Cisco Advance Notification for Publication of October 7, 2026, Security Advisories. For further documentation of improvements and fixes in Cisco NX-OS Software, see Cisco NX-OS Software Security Hardening Release: October 2026.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
US states sue popular kitmaker TP-Link over China risks www.theregister.com/security/2026/1…
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
3 lessons from frontier AI vulnerability research | Microsoft Security Blog www.microsoft.com/en-us/security/bl…
microsoft.com
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
OpenSSH 10.6 Fixes Security Flaws Including SSH Plaintext Recovery Attack gbhackers.com/openssh-10-6-fixes-se…
gbhackers.com
OpenSSH 10.6 Fixes Security Flaws Including SSH Plaintext Recovery Attack
OpenSSH released version 10.6 on October 6, 2026, to address security vulnerabilities that affect encrypted sessions, file transfers, authentication, and forwarding controls.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details thehackernews.com/2026/10/atlassian…
thehackernews.com
Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details
Threat actors have begun to exploit a newly disclosed critical security flaw impacting Atlassian Data Center products that could allow access to sensitive files under certain conditions. The arbitrary file access flaw, tracked as CVE-2026-21589 (CVSS score: 9.3) affects multiple products, including Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
ASOS confirms data breach after “HACKED” in-app notifications www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
ASOS confirms data breach after “HACKED” in-app notifications
UK fashion retailer ASOS confirmed a data breach Tuesday after hackers sent unauthorized push notifications through its mobile app while claiming to have stolen customer data from the company's Snowflake environment.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Personal Information for Over 1 Million People Stolen in a Cyberattack on Arizona’s Court System - SecurityWeek www.securityweek.com/personal-infor…
event.on24.com
Personal Information for Over 1 Million People Stolen in a Cyberattack on Arizona’s Court System
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Anthropic Introduces 3-Tier Cyber Verification Program for AI Access - SecurityWeek www.securityweek.com/anthropic-intr…
event.on24.com
Anthropic Introduces 3-Tier Cyber Verification Program for AI Access
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
AI Agents Are Hacking Online Retailers for $25 a Company gambit.security/blog-posts/autonomo…
020
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 07/10/2026
Anthropic raises alarm over elite hacking ability of Chinese firm Z.ai’s GLM-5.3 | South China Morning Post www.scmp.com/tech/big-tech/article/…
010
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 06/10/2026
South Korea probes bank breaches amid suspected AI-powered attacks www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
South Korea probes bank breaches amid suspected AI-powered attacks
South Korea's Financial Services Commission (FSC) held an emergency meeting following a series of cyberattacks targeting financial institutions in the country.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 06/10/2026
FBI Removes Accenture Contractor After Patch Failure Led to ShinyHunters Breach thehackernews.com/2026/10/fbi-remov…
thehackernews.com
FBI Removes Accenture Contractor After Patch Failure Led to ShinyHunters Breach
The U.S. Federal Bureau of Investigation (FBI) has removed an Accenture contractor for their alleged role in a ShinyHunters-breach that led to the theft of personal details of thousands of bureau employees. That's according to a report from Reuters, citing two sources familiar with the matter. "To date, our review has determined that the incident occurred as the result of a security failure ​
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 06/10/2026
Social Engineering Detection Moves Into the Live Conversation - SecurityWeek www.securityweek.com/social-enginee…
event.on24.com
Social Engineering Detection Moves Into the Live Conversation
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 06/10/2026
Wikimedia: Rogue OpenAI agents behind unauthorized Wikipedia edits www.bleepingcomputer.com/news/secur…
bleepingcomputer.com
Wikimedia: Rogue OpenAI agents behind unauthorized Wikipedia edits
The Wikimedia Foundation says rogue OpenAI agents made unauthorized Wikipedia edits and may have been partially responsible for a May outage.
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 06/10/2026
Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes thehackernews.com/2026/10/microsoft…
thehackernews.com
Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes
Microsoft has released out-of-band security updates to address a high-severity flaw in Microsoft Exchange Server that could allow an attacker to escalate privileges under certain conditions. The vulnerability, tracked as CVE-2026-96940, is rated 8.8 on the CVSS scoring system. "Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a
000
Sam Bowne :donor: @sambowne.infosec.exchange.ap.brid.gy · 06/10/2026
LibreOffice and OpenOffice Flaws Let Malicious Spreadsheets Run Code Without Macro Warnings thehackernews.com/2026/10/libreoffi…
thehackernews.com
LibreOffice and OpenOffice Flaws Let Malicious Spreadsheets Run Code Without Macro Warnings
A malicious spreadsheet can make LibreOffice and Apache OpenOffice run an attacker's code as soon as the file is opened, security researchers have shown. There is no warning first, of the kind either program shows before it runs a macro. The attack works only when the program's Java support is enabled. So far, it has only been shown as a proof of concept, and there are no reports of its use in
000