Insider Threat Watchdog Sentenced After Spy Leak Plea
DIA insider-threat IT specialist pleads guilty to leaking top-secret intel to an undercover FBI agent.
30 results for “dia”
DIA insider-threat IT specialist pleads guilty to leaking top-secret intel to an undercover FBI agent.
A single website visit can hijack NemoClaw's local Ollama model server via DNS rebinding, according to new research.
New Rowhammer attack defeats ECC on NVIDIA GPUs, enabling DoS and root-level privilege escalation.
Adobe and Nvidia address dozens of vulnerabilities, including critical flaws in AI infrastructure and GPU attack mitigations.
Meta settles teen-harm suit for $18B, promising sweeping Instagram and Facebook changes that may prove nearly impossible to enforce.
A NemoClaw weakness lets a webpage hijack local Ollama and inject persistent instructions into models.
Enterprises face growing open-source vulnerability backlogs as AI tools accelerate code output.
GitLab's CVE-2026-19478 is under active exploitation, days after disclosure, urging immediate patching.
Citrix warns of two NetScaler flaws, including an auth bypass, urging immediate patches.
The Linux Foundation's Akrites initiative plans to launch its vulnerability disclosure and remediation platform in September.
TikTok is developing a feature to let users send money via DMs, code hidden in its iPhone app suggests, according to a Bloomberg report.
Enterprise apps see 4.31x more critical vulnerabilities as AI accelerates creation and strains remediation.
Rumors of significant hardware cost increases emerge as Nvidia offers limited MSRP access for high-end cards at QuakeCon.
Reddit begins testing a new audio and video experience for select posts, similar to TikTok-style narrated stories.
Aurora and Kodiak get permits to test autonomous trucks on California highways, ending a state ban.
Bluesky's new CEO and COO will argue open protocols can reboot social media at TechCrunch Disrupt 2026.
India's Yulu raises $93M to expand e-bike fleet as quick-commerce demand surges.
Appeals court denies platforms' Section 230 bid, allowing thousands of addiction lawsuits to proceed.
A high-severity vulnerability in Azure SQL Managed Instance allows unauthorized network-based privilege escalation, requiring immediate attention.
A critical command injection vulnerability in Progress LoadMaster is under active exploitation, prompting urgent CISA remediation requirements.
A critical authorization vulnerability in the Azure SRE Agent allows attackers to escalate privileges over a network, warranting immediate attention.
A critical authorization vulnerability in Microsoft Power Apps allows remote attackers to elevate privileges, necessitating immediate attention from administrators.
A Canadian national has admitted to his role in a massive 2024 campaign that compromised over 165 major corporate Snowflake accounts.
A code injection vulnerability in IBM Langflow has been added to CISA's catalog, requiring rapid remediation for federal agencies.
CISA has added an authentication bypass vulnerability in N-able N-central to its Known Exploited Vulnerabilities catalog, requiring immediate action.
Obsidian Security secures $85 million in Series D funding to grow its platform for governing AI agents within enterprise environments.
A critical input validation vulnerability in IBM Langflow OSS allows for potential system compromise, requiring immediate attention from administrators.
A certificate validation flaw in Apache Thrift c_glib bindings exposes systems to interception, requiring an immediate update to version 0.24.0.
A critical vulnerability in Apache Thrift c_glib bindings allows for potential memory exposure and system instability, requiring an immediate update.
A severe heap-based buffer overflow in Apache Thrift C++ bindings allows remote attackers to compromise systems; users must update to version 0.24.0 immediately.