720-891-1663

CISA Funding for Critical Infrastructure Threat Hunting Cancelled

The program’s director at Lawrence Livermore National Laboratory (LLNL) told Congress today that government funding for a program that hunts for threats on America’s critical infrastructure networks expired on Sunday, shutting down all work on the program. CyberSentry is a public-private partnership, managed by CISA, that looks for malicious activity on IT and operational technology […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Hackers Are Weaponizing Open-Source SW

Hackers can and are contributing to open-source projects, but their contributions are not benign. Open-source – including AI code generators , are the main stay of software development. Saves time and money. In the second quarter of 2025, data exfiltration remained the top priority for attackers looking to quietly compromise developer environments from the inside out. In […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News Bites for July 18, 2025

DOGE Staffer Leaked Private xAI API Key This does not appear to be malicious but both careless and of questionable judgement. Marko Elez, a special government employee who recently worked on systems at Treasury, Social Security and Homeland, published code to his GitHub. The code contained a private API key that exposed dozens of models […]

Continue reading → [DISPLAY_ACURAX_ICONS]

A Billion Here (in Crypto Theft), a Billion There – After a While, it Adds Up

To quote a former senator, it does add up. this year it is adding up quickly. Blockchain analysis group Chainalysis says that hackers stole more than $2 billion in crypto in the first 6 months of 2025. $1.5 billion of that comes the hack of Bybit – by hackers connected to North Korea. That $2.17 […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Google, Amazon, Others Make Money From Scummy “Nudify” Apps

Okay, so you may want to take a shower after reading this, but it is important. Nudify apps do just that. You upload a picture of someone, say a high school girl you want to bully. Enter your (stolen) credit card. Click a few buttons and you download a deepfake nude image of the picture […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Profits Over Safety – American Rail Industry

CISA disclosed a vulnerability that can be exploited to tamper with both passenger and freight train brakes. The railroad industry has known about the weakness for 20 years but even though the government approached them multiple times, they declined to fix it. Basically, there is a box at the end of the train called a […]

Continue reading → [DISPLAY_ACURAX_ICONS]