HexStrike AI, a new tool, aims to connect large language models (LLMs) with practical cybersecurity operations.The latest release, v6.0, provides AI agents like OpenAI’s GPT, Anthropic’s Claude, and GitHub’s Copilot with over 150 advanced security tools for independent penetration testing, vulnerability research, and bug bounty automation. This advanced framework serves …
Read More »Google Confirms Data Breach: Notifying Affected Users
Google confirmed that a recent data breach in one of its Salesforce CRM systems exposed information about potential Google Ads customers. “We’re writing to let you know about an event that affected a limited set of data in one of Google’s corporate Salesforce instances used to communicate with prospective Ads …
Read More »Multiple 0-days to Bypass BitLocker and Extract Data
Researchers revealed critical zero-day vulnerabilities that bypass Windows BitLocker encryption, enabling attackers with physical access to quickly extract data from encrypted devices. Research by Alon Leviev and Netanel Ben Simon from Microsoft’s STORM team reveals critical flaws in the Windows Recovery Environment (WinRE) that threaten BitLocker’s security. Four Critical Attack …
Read More »
CVE-2025-54948
Trend Micro alerts of Apex One zero-day exploited in attacks
Trend Micro warned customers to quickly secure their systems due to a remote code execution vulnerability in its Apex One endpoint security platform that is currently being exploited. Apex One is an endpoint security platform designed to automatically detect and respond to threats, including malicious tools, malware, and vulnerabilities. The …
Read More »CISA unveils open-sources Thorium platform for malware, forensic analysis
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) announced today that Thorium, an open-source platform for malware and forensic analysis, is now publicly available for government, public, and private sectors. Thorium is a scalable cybersecurity tool created with Sandia National Laboratories that automates tasks in cyberattack investigations. It can handle …
Read More »ChatGPT, Top 5 GenAI Tools Vulnerable to Man-in-the-Prompt Attack
A serious flaw in widely used AI tools, like ChatGPT and Google Gemini, exposes them to a new type of attack called “Man-in-the-Prompt.” Research shows that malicious browser extensions can misuse the Document Object Model (DOM) to inject prompts, steal sensitive data, and alter AI responses without needing special permissions. …
Read More »VPN Demand Surge Over 6,000% in the UK Following the Online Safety Act
VPN services are rapidly climbing the app charts in the UK following a new law that requires age verification for porn and adult sites, which took effect Friday. The Online Safety Act mandates adult platforms to verify users’ age and identity using facial recognition or banking details, leading many porn …
Read More »Cyber attack closes hundreds of pharmacies across Russia
Russia’s two largest pharmacy chains halted operations in several regions on Tuesday due to cyberattacks that affected their digital systems and took their networks offline. The closures of Neopharm and Stolichki have affected over 1,100 pharmacies in more than 80 cities in central Russia, making it difficult for customers to …
Read More »IIT-K to launch real time cyber attack alert app
A new real-time alert app for preventing cyber fraud is expected to launch next year, as reported by researchers at IIT Kanpur’s Cyber Security Centre. This app will detect cyber-attacks and send immediate alerts. It will be compatible with devices like smartwatches, phones, and laptops. Cyber fraud and attacks are …
Read More »Musk’s Starlink internet suffers over 2 hours rare global outage
SpaceX’s Starlink suffered one of its biggest international outages on Thursday when an internal software failure knocked tens of thousands of users offline, a rare disruption for Elon Musk’s powerful satellite internet system. Users in the U.S. and Europe began experiencing the outage at around 3 p.m. EDT (1900 GMT), …
Read More »
InfoSecBulletin Cybersecurity for mankind