Canonical’s web infrastructure is under a sustained, cross-border attack and we are working to address it.
We will provide more information in our official channels as soon as we are able to.
New Robinhood phishing chain that's kinda beautiful:
1. Attacker creates an RH account using the Gmail dot trick of your email (same inbox, different address)
2. Sets device name to HTML
3. RH's "unrecognized activity" email renders the device name unsanitized (html injection)
The result is a real email from [email protected], DKIM pass, SPF pass, DMARC pass, with a phishing CTA
Just because it's real, doesn't mean it's safe... $HOOD
AI Cybersecurity isn’t just about tools — it’s about SKILLS(.md) 🧠
Inspired by current events and the growing wave of reports from security researchers uncovering malicious vulnerabilities, let's take a closer look at @openclaw 's https://t.co/lMNUmpIZgM ! Thread 👇
At this point, the malware lifecycle looks like:
1️⃣ Skill → external CLI requirement
2️⃣ Website → obfuscated setup instructions
3️⃣ Base64 → shell execution
4️⃣ Curl → remote payload fetch
Another day in the office for an AI agent...
This is huge :)
"The attack allows an attacker to observe encrypted traffic between a user and LLM, extract packet size and timing sequences, and use trained classifiers to infer whether the conversation topic matches a sensitive target category."
https://t.co/YuVUYJMv8d
El artículo de la primera detección lo puedes encontrar en: https://t.co/BZvCFCdCRP. PRO Tip: Cuidado con las extensiones que instalas de VSCode. #CiberSeguridad#Malware#CryptoMining#SleepyDuck [4/4]
¡Alerta DEVS! 🦆 SleepyDuck, el RAT que se propaga a través de extensiones VSX para devs de Solidity, ha pivotado en sus operaciones. Tras la reciente exposición, ahora prioriza la minería de Monero en sus víctimas. [1/4]
¿Quieres verlo on-chain?: Nuevo contrato inteligente "sleepyduck" desplegado el 9 de noviembre. Configura pools de minería en https://t.co/a5oKAXJHaC (EU, US, Asia, etc.): https://t.co/3xDnytc21O [3/4]