Hackers exploit Ray framework flaw to breach servers, hijack resources

March 26, 2024 at 02:58PM The “ShadowRay” hacking campaign exploits an unpatched vulnerability in the Ray open-source AI framework, targeting various industries. Anyscale revealed five related vulnerabilities, including a critical flaw that lacks authentication and is actively exploited. This leads to data breaches and misuse of computing power, emphasizing the need for secured environments and … Read more

Hacked WordPress sites use visitors’ browsers to hack other sites

March 6, 2024 at 05:40PM Hackers have been targeting WordPress sites with widescale attacks, initially using crypto wallet drainer scripts to steal cryptocurrency. More recently, they have switched to injecting malicious scripts that force visitors’ browsers to conduct bruteforce attacks on other websites. The threat actor’s goal seems to be building a larger portfolio of … Read more

2 Environmentalists Who Were Targeted by a Hacking Network Say the Public Is the Real Victim

November 17, 2023 at 12:27PM Environmentalists speaking at the sentencing of an Israeli man involved in a global computer hacking campaign argued that the public was the true victim. The hacking, targeting those fighting big oil companies over climate change, resulted in leaked documents and psychological distress for victims. The man was sentenced to over … Read more