OpenAI’s API is now providing access to GPT-4, their latest text-generation model. It is available to the public, allowing users to experience its benefits. As part of its upgrade, the company also made GPT 3.5, DALL-E, and Whisper available. “Whisper” is the designation for OpenAI’s speech-to-text model, whereas “DALL-E 2” …
Read More »Apple Issues an Emergency Patch to Address a Zero-Day Flaw
Apple released Rapid Security Response updates for its Safari web browser, iOS, iPadOS, and macOS to address a zero-day vulnerability that was being actively exploited. By exploiting the WebKit vulnerability known as CVE-2023-37450, malicious actors may execute arbitrary code while handling specially designed web content. The iPhone maker said it …
Read More »Over 700 fake “Threads” domain in online
Meta launched the Threads app earlier this month as a competitor to Twitter, and it has already been downloaded over 100 million times. In just 24 hours, over 700 fake domain names have been created as scammers are attempting to make a profit by copying the popular social media site. …
Read More »Two apps, 1.5 millions downloaded, Transfers Data to China
Two file management apps on the Google Play Store have been discovered to be spyware, putting the privacy and security of up to 1.5 million Android users at risk. These apps engage in deceptive behavior and secretly send sensitive user data to malicious servers in China. Pradeo, a leading mobile …
Read More »Google Patches 46 Android Vulnerabilities, Including 3 Actively Exploited
Google has released its monthly security updates for the Android operating system, addressing 46 new software vulnerabilities. Three of these vulnerabilities have been identified as actively exploited in targeted attacks. One vulnerability, tracked as CVE-2023-26083, is a memory leak flaw affecting the Arm Mali GPU driver for Bifrost, Avalon, and …
Read More »Cisco Switch Bug Could Put Encrypted Traffic at Risk
A vulnerability in the Cisco ACI Multi-Site CloudSec encryption feature of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an unauthenticated, remote attacker to read or modify intersite encrypted traffic. This vulnerability is due to an issue with the implementation of the ciphers that are used by …
Read More »Microsoft Teams exploiting tool on GitHub, What Microsoft say?
A new tool is available on GitHub that gives attackers a way to leverage a recently disclosed vulnerability in Microsoft Teams and automatically deliver malicious files to targeted Teams users in an organization. The tool, dubbed “TeamsPhisher,” works in environments where an organization allows communications between its internal Teams users …
Read More »Policy changed, Google now use your data for AI training
Google has made changes to its privacy policy, allowing the use of public data to enhance its artificial intelligence products, including Bard. As of July 1st, the updated policy states that Google utilizes information to improve services, develop new products, and advance technologies that benefit users and the general public. …
Read More »Decrypter released for Akira ransomware
Akira ransomware first appeared in 2017. It targeted video folders and encrypted the files without leaving any ransom notes. The encrypted files had the extension “.akira”. Researchers have been working on decrypting the files affected by Akira ransomware, and they have finally made a breakthrough. Researchers at Avast have found …
Read More »Hackers disrupt Russian satellite communications provider
A group of hackers claiming affiliation with the Wagner Group has taken down Dozor-Teleport, a Russian satellite communications provider used by energy companies and the country’s defense and security services. The attack, which began on Wednesday at 10 p.m. EST, has resulted in the disconnection of Dozor-Teleport from the internet …
Read More »
InfoSecBulletin Cybersecurity for mankind