April 24, 2025 at 09:21PM

■■□□□ CVE-2025-1021: Synology Network File System vulnerability, let eead any file, a bug in the NFS share. https://www.synology.com/en-global/security/advisory/Synology_SA_25_03 Synology Network File System Vulnerability Let Read Any File

April 24, 2025 at 08:19PM

■■■□□ 35 jailbreak techniques for Bypassing Guard-Rail: Summon a demon and bind it: A grounded theory of LLM red teaming. https://journals.plos.org/plosone/article?id=10.1371/journal.pone.0314658 LLM red teamers: People are hacking AI chatbots just for fun and now researchers have catalogued 35 “jailbreak” techniques

April 23, 2025 at 12:43PM

■■■■□ SuperCard X Android Malware Enables Contactless ATM and PoS Fraud via NFC Relay Attacks. SuperCard X Android Malware A new Android malware-as-a-service (MaaS) platform named SuperCard X can facilitate near-field communication (NFC) relay attacks, enabling cybercriminals to conduct fraud cashouts. https://thehackernews.com/2025/04/supercard-x-android-malware-enables.html

April 23, 2025 at 02:15AM

■■■■□  Active! Mail RCE flaw exploited in attacks on Japanese orgs. An Active! Mail zero-day remote code execution vulnerability is actively exploited in attacks on large organizations in Japan. https://www.bleepingcomputer.com/news/security/active-mail-rce-flaw-exploited-in-attacks-on-japanese-orgs/