# sumtrix.com > news ## Posts - [High-severity WinRAR 0-day exploited for weeks by 2 groups](https://sumtrix.com/cyber/high-severity-winrar-0-day-exploited-for-weeks-by-2-groups/): A critical zero-day vulnerability in the popular file compression tool WinRAR has been under active exploitation for weeks by at least two distinct threat groups, according to cybersecurity researchers. The flaw, tracked as CVE-2025-8088, is a high-severity path traversal vulnerability that could allow attackers to achieve remote code execution by tricking a user into opening a specially crafted archive. The vulnerability affects WinRAR versions up to 7.12. Security firm ESET, which first reported the issue, discovered that a Russia-aligned cyberespionage group known as RomCom (also called Storm-0978) was using the exploit in highly targeted spearphishing campaigns. These attacks, which began […] - [Connex Credit Union data breach impacts 172,000 members](https://sumtrix.com/cyber/connex-credit-union-data-breach-impacts-172000-members/): Connex Credit Union, one of Connecticut’s largest financial institutions, has disclosed a significant data breach affecting an estimated 172,000 individuals. The credit union, which serves over 70,000 members, confirmed that an unauthorized third party accessed and downloaded sensitive files from its network. The breach was first detected on June 3, 2025, after unusual activity was identified on the network. A subsequent forensic investigation revealed that hackers had access to the systems between June 2 and June 3. While Connex did not discover which specific individuals were impacted until July 27, affected members began receiving notification letters on or around August […] - [MedusaLocker ransomware group is looking for pentesters](https://sumtrix.com/cyber/medusalocker-ransomware-group-is-looking-for-pentesters/): The MedusaLocker ransomware group has begun actively recruiting professional penetration testers, or “pentesters,” on its dark web leak site, marking a significant and troubling evolution in cybercrime. This shift signals a move toward professionalizing malicious operations, as ransomware-as-a-service (RaaS) groups adopt more business-like structures to maximize profits and efficiency. A pentester is a cybersecurity professional typically hired by organizations to legally hack into their systems. Their job is to identify and exploit vulnerabilities before malicious actors can, providing crucial insights to help a company strengthen its defenses. MedusaLocker’s recruitment, however, inverts this traditional role. By hiring pentesters, the group is […] - [Xerox FreeFlow Flaws Enable SSRF and Remote Code Execution](https://sumtrix.com/cyber/xerox-freeflow-flaws-enable-ssrf-and-remote-code-execution/): Xerox has released an urgent security bulletin warning customers of two critical vulnerabilities in its FreeFlow Core software. These flaws, which could enable attackers to execute server-side request forgery (SSRF) and remote code execution (RCE) attacks, affect version 8.0.4 and have been classified as “IMPORTANT” severity. The company strongly urges all users to immediately update to the patched version, 8.0.5. The first vulnerability, identified as CVE-2025-8355, is an XML External Entity (XXE) processing flaw that can lead to SSRF attacks. An attacker could craft malicious XML input to force the server to make unintended requests to internal or external resources. […] - [SonicWall Pins Firewall Attack Spree on Year-Old Vulnerability](https://sumtrix.com/cyber/sonicwall-pins-firewall-attack-spree-on-year-old-vulnerability/): SonicWall has attributed a recent series of ransomware attacks on its Gen 7 firewalls not to a new zero-day vulnerability, but to a previously patched, year-old flaw. This assertion comes as a response to initial reports from third-party researchers who suspected a new, unpatched vulnerability was the cause of the attacks. The company’s investigation has concluded with “high confidence” that the attacks are linked to CVE-2024-40766, a critical improper access control vulnerability disclosed and patched in August 2024. The vulnerability, which has a CVSS score of 9.8, affects the SonicOS network security operating system. It allows unauthorized access to vulnerable […] - [North Korean Kimsuky Hackers Exposed in Alleged Data Breach](https://sumtrix.com/cyber/north-korean-kimsuky-hackers-exposed-in-alleged-data-breach/): A major cybersecurity event is unfolding as the notorious North Korean state-backed hacking group, Kimsuky, is allegedly facing a significant data breach of its own. A data trove, reportedly containing an astounding 8.9 GB of Kimsuky’s internal data, has been stolen and exposed by a group of hackers operating under the monikers “Saber” and “cyb0rg.” The breach, which has been reported by multiple cybersecurity news outlets, appears to be an act of retaliation against Kimsuky’s long history of politically motivated cyberattacks and financial cybercrime. The exposed data, which has been added to the Distributed Denial of Secrets site, is said […] - [Ghanaian Nationals Extradited for Roles in $100M Romance and Wire Fraud](https://sumtrix.com/cyber/ghanaian-nationals-extradited-for-roles-in-100m-romance-and-wire-fraud/): In a significant victory for international law enforcement, three Ghanaian nationals have been extradited to the United States to face charges for their alleged roles in a sophisticated criminal organization that stole and laundered over $100 million through romance scams and business email compromises. The U.S. Attorney’s Office for the Southern District of New York announced the unsealing of an indictment against the four high-ranking members of a Ghana-based criminal enterprise. Isaac Oduro Boateng, Inusah Ahmed, and Derrick van Yeboah arrived in the U.S. on August 7, 2025, to face justice. A fourth defendant, Patrick Kwame Asare, remains at large. […] - [Researchers Cracked the Encryption Used by DarkBit Ransomware](https://sumtrix.com/cyber/researchers-cracked-the-encryption-used-by-darkbit-ransomware/): A significant breakthrough in cybersecurity has been announced, as researchers at the firm Profero have successfully cracked the encryption used by the DarkBit ransomware group. This development could offer a lifeline to victims of attacks attributed to the group, which has been linked to politically motivated intrusions, most notably a high-profile attack on a research university in Israel in 2023. The DarkBit ransomware, known for its use in attacks targeting VMware ESXi servers, employed a complex encryption scheme involving AES-128-CBC with a unique key and a runtime-generated initialization vector (IV) protected by RSA-2048 encryption. This method had previously made it […] - [RSNA AI Challenge Models Can Independently Interpret Mammograms](https://sumtrix.com/ai/rsna-ai-challenge-models-can-independently-interpret-mammograms/): Algorithms submitted to a recent Radiological Society of North America (RSNA) AI Challenge have demonstrated a remarkable ability to independently interpret mammograms for breast cancer, with the top models performing on par with an average screening radiologist. This finding, published in the journal Radiology, represents a significant step toward integrating AI into the clinical breast cancer screening workflow. The RSNA Screening Mammography Breast Cancer Detection AI Challenge was a crowdsourced competition in which over 1,500 teams from around the globe developed and submitted AI models. The goal was to create algorithms that could improve the automation of cancer detection, thereby […] - [UAE: Dubai now inviting AI experts and companies to collaborate on building AI-driven government services](https://sumtrix.com/ai/uae-dubai-now-inviting-ai-experts-and-companies-to-collaborate-on-building-ai-driven-government-services-2/): Dubai is aggressively pushing its “Future of AI in Government Services Accelerator” program, inviting AI experts and companies from around the globe to collaborate on developing next-generation public services. The initiative, run by the Dubai Centre for Artificial Intelligence (DCAI) in partnership with the Dubai Future Foundation, is a significant part of the emirate’s strategy to become a world leader in AI-driven governance and innovation. The government is looking to partner with innovators to tackle a variety of public sector challenges. The program’s second cycle is now open for applications, offering a unique opportunity for both local and international startups […] - [OpenAI to give employees 'special' million-dollar bonuses amid AI talent wars](https://sumtrix.com/ai/openai-to-give-employees-special-million-dollar-bonuses-amid-ai-talent-wars/): In a bold move to secure its position at the forefront of the artificial intelligence race, OpenAI has announced a new compensation initiative, granting substantial retention bonuses to a select group of employees. Reports indicate that approximately 1,000 employees, about one-third of the company’s workforce, are set to receive payouts ranging from hundreds of thousands to several million dollars. The bonuses are being rolled out as the company faces aggressive poaching attempts from tech giants like Meta, which has been offering staggering compensation packages to lure away top AI talent. This strategic decision comes as the battle for elite AI […] - [Elon Musk's xAI makes Grok 4 free for all users, days after OpenAI's GPT-5 debut](https://sumtrix.com/ai/elon-musks-xai-makes-grok-4-free-for-all-users-days-after-openais-gpt-5-debut/): In a bold move that is already sending ripples through the artificial intelligence community, Elon Musk’s xAI announced today that its latest large language model, Grok 4, is now available for free to all users. This development comes just days after OpenAI unveiled its highly anticipated GPT-5, setting the stage for an intensified battle for dominance in the rapidly evolving AI space. Previously, access to Grok was limited to subscribers of X’s (formerly Twitter) premium tiers. The decision to remove this paywall opens up Grok 4’s advanced capabilities to a significantly wider audience, potentially democratizing access to cutting-edge AI technology. […] - [Sam Altman says the term 'AGI' is losing meaning amid high-stakes AI race](https://sumtrix.com/ai/sam-altman-says-the-term-agi-is-losing-meaning-amid-high-stakes-ai-race/): In a world racing toward a future defined by artificial intelligence, the very language used to describe its ultimate goal is becoming a point of contention. OpenAI CEO Sam Altman has added fuel to this fire, recently stating that the term “artificial general intelligence” or AGI is “not a super useful term,” as the high-stakes AI race makes its definition increasingly ambiguous. This shift in perspective from one of AI’s most prominent figures signals a changing dialogue in the industry, where the focus is moving from a single, binary milestone to a continuous, exponential increase in model capabilities. For years, […] - [After OpenAI, Anthropic offers AI chatbot Claude to US government for $1](https://sumtrix.com/ai/after-openai-anthropic-offers-ai-chatbot-claude-to-us-government-for-1/): An international competition hosted by the Radiological Society of North America (RSNA) has demonstrated that AI models can independently interpret mammograms with a level of performance comparable to a human radiologist. The RSNA Screening Mammography Breast Cancer Detection AI Challenge, which took place in 2023, saw over 1,500 teams from around the world develop and submit algorithms to detect breast cancer in mammography images. A study published in the journal Radiology detailed the impressive results, highlighting a significant step forward for the clinical application of AI in medical imaging. The study, led by researchers from the University of Nottingham, evaluated […] - [Panzura CloudFS gets AI-driven behavioural analytics](https://sumtrix.com/cyber/panzura-cloudfs-gets-ai-driven-behavioural-analytics/): Panzura, a leader in hybrid cloud file and data management, has announced a significant upgrade to its CloudFS platform, integrating new AI-driven behavioral analytics. This enhancement is designed to proactively detect and mitigate cyberattacks, specifically ransomware and data exfiltration, by moving beyond traditional signature-based detection to a more intelligent, real-time defense. The core of this new functionality is the creation of a behavioral fingerprint for every user and non-human account on the system. The AI, powered by machine learning, studies and learns the normal patterns of file access, modification, and deletion for each user within their specific role and work […] - [Telstra addresses cyber crime in new ad starring Steve Buscemi](https://sumtrix.com/cyber/telstra-addresses-cyber-crime-in-new-ad-starring-steve-buscemi/): Australian telecommunications giant Telstra has launched a new advertising campaign aimed at raising awareness about the growing threat of cybercrime. The campaign features acclaimed actor Steve Buscemi in a series of humorous yet informative spots designed to resonate with a broad audience. The advertisements, which began airing nationally this week, see Buscemi portraying various guises of online scammers and offering easily digestible tips on how to identify and avoid common cyber threats. From dodgy investment schemes to phishing emails requesting personal information, Buscemi’s comedic timing and recognizable face serve to cut through the often-complex jargon surrounding cybersecurity. Telstra’s Chief Information […] - [CISA issues Emergency Directive to Mitigate Microsoft Exchange Vulnerability](https://sumtrix.com/cyber/cisa-issues-emergency-directive-to-mitigate-microsoft-exchange-vulnerability/): The Cybersecurity and Infrastructure Security Agency (CISA) has issued an Emergency Directive, ED-25-02, requiring all Federal Civilian Executive Branch (FCEB) agencies to take immediate action to mitigate a critical vulnerability in Microsoft Exchange hybrid environments. The flaw, tracked as CVE-2025-53786, allows an attacker with administrative access to an on-premises Exchange server to escalate privileges and gain control of the organization’s cloud-based environment. The vulnerability was publicly disclosed in a presentation by a security researcher at the Black Hat conference, coordinated with Microsoft’s release of a new CVE and guidance. While there is no known active exploitation of the flaw, CISA […] - [United Arab Emirates: DIFC updates Data Protection Law](https://sumtrix.com/cyber/united-arab-emirates-difc-updates-data-protection-law/): The Dubai International Financial Centre (DIFC) has enacted significant amendments to its Data Protection Law, DIFC Law No. 5 of 2020, aiming to enhance data subject rights and align with international standards like the GDPR. These changes, which came into effect in July 2025, introduce a private right of action for individuals, increase financial penalties for non-compliance, and clarify the law’s extraterritorial scope. The most impactful change is the introduction of a private right of action, allowing data subjects to directly sue organizations in the DIFC Courts for breaches of the law. Previously, individuals could only lodge a complaint with […] - [Breaches are up, budgets are too, so why isn't healthcare safer?](https://sumtrix.com/cyber/breaches-are-up-budgets-are-too-so-why-isnt-healthcare-safer/): In a perplexing trend, the healthcare industry is experiencing a surge in cyberattacks and data breaches, even as organizations commit more financial resources than ever to cybersecurity. Recent reports indicate that while the global healthcare cybersecurity market is expanding rapidly, so too is the number of compromised patient records, leading to a critical question: why isn’t healthcare becoming safer? Healthcare remains a prime target for cybercriminals. The protected health information (PHI) held by providers is incredibly valuable on the black market, often fetching a higher price than credit card numbers due to the wealth of personal and financial data it […] - [Cybersecurity Researcher Dr. Nikki Robinson & Microsoft's Bissell and to Headline SANS Network Security 2025](https://sumtrix.com/cyber/cybersecurity-researcher-dr-nikki-robinson-microsofts-bissell-and-to-headline-sans-network-security-2025/): The SANS Institute, a global leader in cybersecurity training and certification, has announced the full agenda for its highly anticipated SANS Network Security 2025 event. Scheduled for September 22-27 at Caesars Palace in Las Vegas, the conference will feature two prominent keynote speakers: esteemed cybersecurity researcher Dr. Nikki Robinson and Microsoft’s Corporate Vice President, C. Kelly Bissell. SANS Network Security 2025 will tackle the most pressing issues facing the cybersecurity landscape today, offering a combination of in-depth training, expert-led keynotes, and exclusive networking opportunities. The event’s curriculum is designed for cybersecurity practitioners at every level, with courses covering a wide […] - [Researchers Spot Surge in Erlang/OTP SSH RCE Exploits, 70% Target OT Firewalls](https://sumtrix.com/cyber/researchers-spot-surge-in-erlang-otp-ssh-rce-exploits-70-target-ot-firewalls/): A new report from cybersecurity researchers has revealed a worrying trend in the exploitation of a critical vulnerability in Erlang/Open Telecom Platform (OTP) SSH, with a staggering 70% of detected attacks targeting firewalls in operational technology (OT) networks. This surge in activity exploits a now-patched remote code execution (RCE) flaw, CVE-2025-32433, which received a maximum CVSS score of 10.0. The vulnerability, which was patched in April 2025, allows attackers with network access to an Erlang/OTP SSH server to execute arbitrary code without needing any credentials. This is because the flawed implementation fails to properly reject certain protocol messages sent before […] - [WinRAR zero-day exploited by RomCom hackers in targeted attacks](https://sumtrix.com/cyber/winrar-zero-day-exploited-by-romcom-hackers-in-targeted-attacks/): The notorious Russia-aligned hacking group RomCom has been exploiting a zero-day vulnerability in WinRAR, a popular file compression tool, to launch highly targeted cyber-espionage campaigns against financial, manufacturing, defense, and logistics companies in Europe and Canada. The vulnerability, tracked as CVE-2025-8088, is a path traversal flaw that allows attackers to hide malicious files within a seemingly harmless archive. When a user extracts the files, the malware is silently deployed to system directories, enabling the hackers to execute code and maintain persistence on the victim’s machine. The attacks rely on spear-phishing emails that lure targets with attachments disguised as legitimate documents, […] - [Artificial intelligence develops 'emotional' applications for the family home](https://sumtrix.com/ai/artificial-intelligence-develops-emotional-applications-for-the-family-home/): Artificial intelligence (AI) is stepping beyond task management and entertainment in Indian homes, with a surge in “emotional” applications designed to understand and respond to human feelings. From smart home systems that adapt lighting based on detected stress levels to companion robots that offer personalized comfort, a new wave of AI is aiming to integrate more deeply into the emotional fabric of family life. Several Indian tech startups and global giants are investing heavily in this burgeoning field. These applications utilize advanced machine learning algorithms to analyze vocal tones, facial expressions captured by smart cameras, and even physiological data from […] - [ChatGPT 5 hints AI surge finally slowing but don't get too happy humans we are still cooked](https://sumtrix.com/ai/chatgpt-5-hints-ai-surge-finally-slowing-but-dont-get-too-happy-humans-we-are-still-cooked/): The long-awaited release of ChatGPT 5 by OpenAI has arrived, bringing with it a mix of impressive refinements and a subtle but significant shift in the AI landscape. While the new model is undeniably smarter, faster, and more capable, the advancements appear to be more iterative than the revolutionary leap seen from GPT-3 to GPT-4. For some, this signals a potential deceleration in the blistering pace of AI progress, a moment to catch our collective breath. But for those who think this is a sign that the AI revolution is finally ebbing, a closer look reveals a more sobering reality: […] - [AI tools used by English councils downplay women's health issues, study finds](https://sumtrix.com/ai/ai-tools-used-by-english-councils-downplay-womens-health-issues-study-finds/): A recent study from the London School of Economics and Political Science (LSE) has revealed that artificial intelligence (AI) tools used by over half of English councils may be downplaying women’s health issues. The research found a concerning gender bias in how these AI systems, specifically large language models (LLMs), summarize case notes for adult social care. This bias could lead to unequal care provision for women. The study, which used real case notes from 617 social care users, inputted the same information into AI models, changing only the gender. The results showed that language used to describe male patients’ […] - [Sam Altman says college graduates today are the luckiest in history: Here is why AI works in their favour](https://sumtrix.com/ai/sam-altman-says-college-graduates-today-are-the-luckiest-in-history-here-is-why-ai-works-in-their-favour/): OpenAI CEO Sam Altman has a strikingly optimistic message for recent college graduates: despite widespread anxiety about AI’s impact on jobs, he believes they are the luckiest generation in history. Speaking on a recent podcast, Altman acknowledged that “some classes of jobs will totally go away,” but argued that young people are uniquely positioned to benefit from the AI-driven transformation of the job market. His perspective challenges the popular narrative of job displacement, instead framing AI as a powerful tool for unprecedented innovation and entrepreneurship. Altman’s optimism is rooted in the belief that AI democratizes powerful tools once exclusive to […] - [How AI may be shutting US computer science graduates out of entry-level jobs](https://sumtrix.com/ai/how-ai-may-be-shutting-us-computer-science-graduates-out-of-entry-level-jobs/): The once-promising path for U.S. computer science graduates is now fraught with challenges, as artificial intelligence (AI) increasingly automates tasks and reshapes the job market. Data from sources like Indeed shows a significant decline in junior-level job postings, a trend corroborated by a recent report from the Burning Glass Institute, which found that automation now threatens over half of entry-level roles across multiple sectors. This shift is leaving many recent graduates in a difficult position, struggling to find a foothold in the very industry they were trained to enter. At the heart of the issue is the growing capability of […] - [UAE: Dubai now inviting AI experts and companies to collaborate on building AI-driven government services](https://sumtrix.com/ai/uae-dubai-now-inviting-ai-experts-and-companies-to-collaborate-on-building-ai-driven-government-services/): The Dubai Centre for Artificial Intelligence (DCAI) has officially opened applications for the second cycle of its “Future of AI in Government Services Accelerator,” inviting AI experts and companies from around the world to co-create the next generation of public services. This initiative, part of the city’s ambitious “Dubai Universal Blueprint for Artificial Intelligence,” aims to cement the emirate’s position as a global leader in AI-driven innovation. Running from October 6 to November 28, 2025, the intensive eight-week program provides a unique opportunity for selected innovators to work directly with over 20 Dubai government entities. Participants will receive fully sponsored […] - [EPRI, Epoch AI Joint Report Finds Surging Power Demand from AI Model Training](https://sumtrix.com/ai/epri-epoch-ai-joint-report-finds-surging-power-demand-from-ai-model-training/): A new report from the Electric Power Research Institute (EPRI) and research firm Epoch AI is sounding the alarm on the soaring electricity demand from artificial intelligence (AI), predicting a significant challenge for power grids in the coming years. The joint analysis, released today, forecasts that the power required to train a single cutting-edge AI model could exceed 4 gigawatts (GW) by 2030, enough to power millions of homes. This surge is driven by the AI industry’s push for larger, more complex models despite efficiency gains. The report notes that total U.S. power demand for AI, which includes both training […] - [Nvidia, AMD to pay US 15% of AI chip sales to China: reports](https://sumtrix.com/ai/nvidia-amd-to-pay-us-15-of-ai-chip-sales-to-china-reports/): An unexpected and unprecedented deal has been struck between the U.S. government and American chip giants Nvidia and Advanced Micro Devices (AMD), allowing them to resume sales of restricted AI chips to China. The agreement, as confirmed by U.S. officials and first reported by the Financial Times, mandates that both companies will pay 15% of the revenue from these sales to the U.S. government as a condition for securing export licenses. This unconventional arrangement comes after the Trump administration had previously halted the export of certain advanced AI chips, including Nvidia’s H20 and AMD’s MI308, to China, citing national security […] - [Pandora Cyberattack Exposes Customer Data Via Third-Party Vendor](https://sumtrix.com/cyber/pandora-cyberattack-exposes-customer-data-via-third-party-vendor/): Jewelry giant Pandora has confirmed it was the victim of a cyberattack that exposed customer data, the latest in a series of high-profile retail sector breaches. The company disclosed in a letter to affected customers that the breach occurred not through its core systems, but through a third-party platform it uses for customer engagement and services. While the company has not publicly named the vendor, multiple security reports suggest the breach is connected to an ongoing campaign by the cybercriminal group ShinyHunters, which has been targeting customer relationship management (CRM) platforms, including Salesforce, used by several other luxury brands. Pandora […] - [Malicious Go and npm Packages Deliver Cross-Platform Malware](https://sumtrix.com/cyber/malicious-go-and-npm-packages-deliver-cross-platform-malware/): The cybersecurity world is on high alert after researchers identified a series of malicious software packages targeting developers. These attacks, discovered in the Go and npm ecosystems, are particularly dangerous because they deliver cross-platform malware capable of affecting both Windows and Linux systems. This new wave of supply chain attacks highlights the ongoing vulnerabilities in open-source software and the sophisticated tactics of threat actors. Cross-Platform Malware Strikes Go Ecosystem Security researchers have uncovered a group of 11 malicious Go packages designed to silently download and execute additional payloads. At runtime, the packages spawn a shell to pull a second-stage payload […] - [Microsoft Discloses Exchange Server Flaw Enabling Silent Cloud Access in Hybrid Setups](https://sumtrix.com/cyber/microsoft-discloses-exchange-server-flaw-enabling-silent-cloud-access-in-hybrid-setups/): Microsoft has issued a high-severity security advisory for a flaw in its on-premises Exchange Server that could allow attackers to gain silent, elevated access to connected cloud environments in hybrid setups. The vulnerability, tracked as CVE-2025-53786 with a CVSS score of 8.0, affects organizations that use a hybrid configuration, where on-premises Exchange servers are linked to Exchange Online. The issue stems from a shared service principal—an identity used for authentication between the on-premises and cloud environments. An attacker who first gains administrative control of a local Exchange server can leverage this shared principal to forge authentication tokens or API calls […] - [Visa Debuts Program to Help Clients Assess Cyberthreats](https://sumtrix.com/cyber/visa-debuts-program-to-help-clients-assess-cyberthreats/): In a proactive move to address the escalating threat landscape, Visa has announced the launch of its new Cybersecurity Advisory Practice. This initiative, part of the company’s broader strategy to enhance its value-added services, aims to equip clients with the tools and insights necessary to identify, evaluate, and neutralize emerging cyber threats. The new practice will operate under the umbrella of Visa Consulting & Analytics (VCA), leveraging its global network of consultants, data scientists, and product experts. According to a company statement, the program is designed to provide scalable resources for businesses of all sizes, from small “mom-and-pop shops” to […] - [IRGC Hacker Groups Attacking Financial, Government, and Media Organizations](https://sumtrix.com/cyber/irgc-hacker-groups-attacking-financial-government-and-media-organizations/): Cybersecurity experts are sounding the alarm as a series of coordinated cyberattacks, attributed to hacker groups with strong ties to Iran’s Islamic Revolutionary Guard Corps (IRGC), have targeted a wide range of global institutions. The campaigns have demonstrated a clear and evolving strategy, moving beyond simple disruption to encompass data theft, propaganda, and psychological operations against financial, governmental, and media organizations. Recent incidents highlight the scope of the threat. In a high-profile attack, a group identified as “Banished Kitten,” also known as “Storm-0842,” was linked to a campaign that infiltrated the Telegram accounts of journalists at the London-based news outlet […] - [WhatsApp Takes Down 6.8 Million Accounts Linked to Malicious Activities](https://sumtrix.com/cyber/whatsapp-takes-down-6-8-million-accounts-linked-to-malicious-activities/): In a significant move to combat the rising tide of online fraud, WhatsApp has announced the takedown of over 6.8 million accounts linked to malicious activities during the first half of 2025. The crackdown, a joint effort with parent company Meta and OpenAI, specifically targeted sophisticated scam networks originating from criminal centers in Southeast Asia. This action highlights the growing collaboration between tech giants to address the misuse of their platforms for large-scale fraud. The malicious accounts were reportedly part of organized scam centers, often using forced labor, that leverage multiple platforms to execute their schemes. Scammers frequently initiate contact […] - [CISA Warns of 'ToolShell' Exploits Chain Attacks SharePoint Servers](https://sumtrix.com/cyber/cisa-warns-of-toolshell-exploits-chain-attacks-sharepoint-servers/): The Cybersecurity and Infrastructure Security Agency (CISA) has released a dire warning to organizations, urging immediate action against a widespread and actively exploited attack chain dubbed “ToolShell” that’s targeting on-premises Microsoft SharePoint servers. The sophisticated campaign, which has been attributed to at least three state-sponsored Chinese threat actors, leverages a chain of vulnerabilities to bypass authentication, achieve remote code execution, and establish persistent access to compromised networks. The ToolShell exploit chain is not a single flaw but a combination of vulnerabilities that allow attackers to gain full control of vulnerable servers without authentication. The attack leverages two critical vulnerabilities, CVE-2025-53770 […] - [Hackers Use 'Ghost Calls' to Abuse Web Conferencing Platforms for Covert C2](https://sumtrix.com/cyber/hackers-use-ghost-calls-to-abuse-web-conferencing-platforms-for-covert-c2/): Cybersecurity researchers have uncovered a new and highly stealthy technique being used by threat actors, dubbed “ghost calls,” to establish covert command-and-control (C2) communication channels. These attacks exploit the underlying architecture of popular web conferencing platforms, turning legitimate communication tools into an undetectable backdoor for malicious activity. This development poses a significant challenge for network defenders, as the malicious traffic blends in seamlessly with everyday business operations. The Mechanism of the Attack The term “ghost call” refers to a type of phantom, silent phone call that occurs without a human on the other end. In this new cyberattack method, hackers […] - [New call for concept notes on the socio-economic impacts of AI in Africa launched](https://sumtrix.com/ai/new-call-for-concept-notes-on-the-socio-economic-impacts-of-ai-in-africa-launched/): A new and significant call for concept notes has been launched, seeking to fund research on the socio-economic impacts of artificial intelligence (AI) in African low- and middle-income countries. This initiative, part of the larger Artificial Intelligence for Development (AI4D) program, is a collaboration between the International Development Research Centre (IDRC) and the United Kingdom’s Foreign, Commonwealth and Development Office (FCDO). The program aims to generate critical evidence and insights to help policymakers ensure that AI development and adoption in Africa is inclusive, equitable, and beneficial for all, especially vulnerable populations. The call addresses a crucial knowledge gap, as much […] - [Oracle helps customers with extreme performance and availability for "agentic AI applications"](https://sumtrix.com/ai/oracle-helps-customers-with-extreme-performance-and-availability-for-agentic-ai-applications/): Oracle is tackling the next frontier of artificial intelligence by offering a new solution designed to provide extreme performance and availability for “agentic AI applications.” These advanced AI systems, which operate autonomously to achieve goals with minimal human intervention, require a robust and reliable infrastructure to function effectively. Oracle’s new offering is aimed at empowering businesses to leverage this powerful technology for mission-critical operations. Traditional AI, often limited to single-step tasks and reactive responses, is giving way to a more sophisticated model. Agentic AI, in contrast, can reason, plan, and execute multi-step workflows. This allows them to proactively gather data, […] - [Donald Trump's company partners with Perplexity to bring AI search to Truth Social](https://sumtrix.com/ai/donald-trumps-company-partners-with-perplexity-to-bring-ai-search-to-truth-social/): In a move signaling a significant push towards technological advancement for its social media platform, Truth Social, the Trump Media & Technology Group (TMTG) has announced a strategic partnership with Perplexity AI, a rising force in the field of artificial intelligence-powered search. The collaboration aims to integrate Perplexity’s cutting-edge AI search capabilities directly into the Truth Social platform, offering users an enhanced information discovery experience. The partnership comes at a time when AI-driven search engines are gaining considerable traction, promising more intuitive and comprehensive results compared to traditional search methods. By incorporating Perplexity’s technology, Truth Social users will reportedly be […] - [Ex-Google exec calls the idea that AI will create new jobs "100% crap"](https://sumtrix.com/ai/ex-google-exec-calls-the-idea-that-ai-will-create-new-jobs-100-crap/): In a recent and provocative appearance on “The Diary of a CEO” podcast, Mo Gawdat, the former chief business officer for Google X, delivered a stark warning about the future of artificial intelligence, dismissing the optimistic notion that AI will create more jobs than it destroys as “100% crap.” Gawdat, a seasoned veteran of the tech industry, painted a picture of a society on the cusp of significant upheaval, where even highly-skilled white-collar professionals—including CEOs, podcasters, and video editors—are not safe from displacement. Gawdat’s forecast is a direct challenge to the prevailing narrative from many tech leaders who argue that […] - [Google pledges $1 billion to transform how US students learn AI with free access to tools](https://sumtrix.com/ai/google-pledges-1-billion-to-transform-how-us-students-learn-ai-with-free-access-to-tools/): In a major move set to reshape the landscape of higher education, Google has announced a $1 billion, three-year initiative to provide US college students and nonprofit organizations with free access to advanced AI tools, training, and resources. The tech giant’s commitment aims to bridge the growing AI skills gap and prepare the next generation of workers for a job market increasingly reliant on artificial intelligence. Free Tools and Training for Students A key component of the initiative is the “Google AI for Education Accelerator,” which will offer every college student in America free access to Google’s most powerful AI […] - [Goldman Sachs economist warns that "AI will replace Gen Z tech workers at first"](https://sumtrix.com/ai/goldman-sachs-economist-warns-that-ai-will-replace-gen-z-tech-workers-at-first/): A senior economist at Goldman Sachs has issued a stark warning that Generation Z tech workers may be the first to face job displacement as artificial intelligence rapidly automates entry-level tasks. Joseph Briggs stated that while the overall labor market impact of AI is still in its early stages, the effects are already visible in the tech sector, which has seen a significant hiring pullback. This warning comes amid a troubling trend for young professionals. According to data cited by Briggs, the unemployment rate for tech workers aged 20 to 30 has risen by approximately 3 percentage points since the […] - [Google launches new AI coding agent "Jules" with GitHub integration](https://sumtrix.com/ai/google-launches-new-ai-coding-agent-jules-with-github-integration/): Google has announced the launch of its latest artificial intelligence innovation, “Jules,” a sophisticated coding agent designed to streamline the software development process. The highly anticipated tool boasts seamless integration with GitHub, a leading platform for code hosting and collaboration, promising to enhance developer productivity and accelerate project timelines. Jules operates as an intelligent assistant capable of understanding natural language prompts to generate code snippets, suggest improvements to existing code, debug errors, and even automate repetitive coding tasks. Its deep integration with GitHub allows developers to directly access and modify their repositories, submit pull requests, and receive code reviews, all […] - [OpenAI unveils ChatGPT-5, its "smartest, fastest and most useful model yet"](https://sumtrix.com/ai/openai-unveils-chatgpt-5-its-smartest-fastest-and-most-useful-model-yet/): OpenAI has officially released ChatGPT-5, its most advanced and anticipated AI model yet. In a live-streamed event dubbed the “OpenAI Summer Update,” the company’s leadership presented the new model as a significant leap forward, touting it as “smarter, faster, and more useful” than its predecessors. The new model is now rolling out to all users, with tiered access for free and paid subscribers. ChatGPT-5, powered by the new GPT-5 model, represents a paradigm shift in AI architecture. Instead of relying on a single, monolithic model, GPT-5 is a unified system that intelligently combines a fast, efficient model for everyday tasks […] - [Foreign adversaries are trying to weaponize open-source software, report finds](https://sumtrix.com/cyber/foreign-adversaries-are-trying-to-weaponize-open-source-software-report-finds/): A new report reveals that state-sponsored actors are actively and methodically attempting to weaponize open-source software (OSS), posing a significant threat to global digital infrastructure. The research, conducted by strategic intelligence firm Strider Technologies, details how individuals with direct affiliations to countries like China and Russia are subtly contributing malicious code to publicly available software, which is then used by millions of organizations and developers worldwide. The report, “Lying in Wait: Understanding the Contributors Behind Open Source Code,” found that foreign adversaries are exploiting the collaborative and open nature of OSS ecosystems. By building credibility over time and contributing seemingly […] - [D4rk4rmy Claims Hack of Monte Carlo Resort](https://sumtrix.com/cyber/d4rk4rmy-claims-hack-of-monte-carlo-resort/): The luxurious Monte Carlo Société des Bains de Mer (SBM) group, which operates some of Monaco’s most prestigious hotels and casinos, is reportedly the latest victim of a major cyberattack. A hacker group known as “D4rk4rmy” has claimed responsibility for the breach, which allegedly compromised sensitive data from the company’s systems. The claims surfaced on a cybercrime forum, where D4rk4rmy announced the successful exfiltration of data from the SBM’s network. While the full extent of the breach and the specific types of data compromised remain unconfirmed, such attacks typically target customer information, including names, addresses, phone numbers, and payment details. […] - [CrowdStrike Delivers a New Era of Operational Threat Intelligence, Personalized to Each Customer Environment](https://sumtrix.com/cyber/crowdstrike-delivers-a-new-era-of-operational-threat-intelligence-personalized-to-each-customer-environment/): At the Black Hat USA 2025 conference, cybersecurity leader CrowdStrike announced a significant leap forward in threat intelligence, introducing a new era of operational insights that are personalized to each customer’s unique environment. The latest release of CrowdStrike Falcon® Adversary Intelligence aims to replace fragmented, static intelligence feeds with a dynamic, real-time system that provides customized, actionable data directly within analyst workflows. CrowdStrike, known for its extensive tracking of over 265 sophisticated cyber adversary groups, is now leveraging its Falcon platform’s first-party telemetry to deliver a hyper-relevant defense. This new approach combines CrowdStrike’s deep understanding of adversary tactics, techniques, and […] - [Palo Alto Networks to Acquire CyberArk for $25B in Major Security Deal](https://sumtrix.com/cyber/palo-alto-networks-to-acquire-cyberark-for-25b-in-major-security-deal/): In a blockbuster move that is poised to reshape the cybersecurity landscape, Palo Alto Networks has announced a definitive agreement to acquire identity security leader CyberArk in a cash-and-stock transaction valued at approximately $25 billion. This monumental deal, which marks Palo Alto Networks’ formal entry into the identity security market, is one of the largest in the history of the cybersecurity industry. The acquisition is a strategic move for Palo Alto Networks, which aims to accelerate its “platformization” push and create a more comprehensive security offering for its customers. By integrating CyberArk’s privileged access management and identity security solutions into […] - [Chanel Hit by Salesforce Data Theft Attacks](https://sumtrix.com/cyber/chanel-hit-by-salesforce-data-theft-attacks/): Luxury fashion house Chanel is the latest high-profile company to fall victim to a widespread data theft campaign targeting users of the Salesforce platform. The breach, which was discovered on July 25, compromised the personal contact information of U.S. customers who had interacted with the brand’s customer service department. According to reports, the attack is part of a larger series of cyber intrusions believed to be the work of the ShinyHunters extortion group. This criminal organization has been leveraging sophisticated social engineering tactics, including voice phishing, to trick employees into granting them access to their company’s Salesforce environments. Once inside, […] - [Fake TikTok Domains Spread Malware, Steal Crypto via AI-Driven Scam Campaign](https://sumtrix.com/cyber/fake-tiktok-domains-spread-malware-steal-crypto-via-ai-driven-scam-campaign/): In a new and alarming wave of cybercrime, a sophisticated scam campaign is leveraging AI-driven techniques and a network of fake TikTok domains to spread malware and steal cryptocurrency from unsuspecting users. Cybersecurity researchers have identified a complex operation that meticulously mimics the popular social media platform to trick victims into downloading malicious software, often disguised as updates or new features. The campaign, dubbed “TikTok-a-like,” begins with phishing emails or malicious advertisements that direct users to fake domains. These URLs, which bear a striking resemblance to the official TikTok website, are designed to evade detection by standard security filters. Once […] - [Android's August 2025 Update Patches Exploited Qualcomm Vulnerability](https://sumtrix.com/cyber/androids-august-2025-update-patches-exploited-qualcomm-vulnerability/): Google’s August 2025 Android security update is now rolling out, bringing with it critical fixes, including a patch for a Qualcomm vulnerability that has been actively exploited in the wild. The update, a significant one despite having a shorter list of resolved issues compared to previous months, addresses a total of six vulnerabilities, with the most severe being a remote code execution (RCE) flaw in the System component. The highlight of the August bulletin is the patch for a “use-after-free” vulnerability in the Qualcomm Adreno GPU driver, tracked as CVE-2025-27038. This flaw, which was disclosed by Qualcomm in June, has […] - [APT37 Hackers Use JPEGs to Hack Windows](https://sumtrix.com/cyber/apt37-hackers-use-jpegs-to-hack-windows/): A North Korean state-sponsored hacking group, known as APT37, is deploying a sophisticated and stealthy new tactic to infect Windows computers by hiding malicious code within seemingly harmless JPEG image files. This new campaign, dubbed “Operation ToyBox Story,” leverages a technique called steganography to embed its malware payload, allowing it to bypass traditional security defenses. According to a report from the Genians Security Center, the attacks begin with a spear-phishing email campaign. The hackers, also referred to as ScarCruft and Reaper, craft these emails to appear legitimate, often impersonating national security think tanks or individuals with expertise on North Korean […] - [SEC Launches AI Task Force to Drive Innovation and Efficiency](https://sumtrix.com/ai/sec-launches-ai-task-force-to-drive-innovation-and-efficiency/): The Securities and Exchange Commission (SEC) has announced the creation of a new task force dedicated to the responsible integration of artificial intelligence (AI) across the agency’s operations. The initiative, announced by SEC Chairman Paul S. Atkins, is designed to enhance innovation, efficiency, and accuracy in the SEC’s mission to protect investors and maintain fair markets. Named the SEC AI Task Force, the group will be led by the agency’s newly appointed Chief AI Officer, Valerie Szczepanik. With a long history at the SEC, including her role as Director of the Strategic Hub for Innovation and Financial Technology, Szczepanik is […] - [AI Transforms The Finance Function](https://sumtrix.com/ai/ai-transforms-the-finance-function/): In boardrooms and back offices across the globe, a quiet revolution is underway. Artificial intelligence (AI) is no longer a futuristic concept but a powerful, practical tool fundamentally reshaping the finance function, from automating mundane tasks to providing strategic foresight. For years, the finance department has been defined by meticulous data entry, complex reconciliations, and backward-looking reporting. AI is now liberating finance professionals from these manual burdens. Machine learning algorithms can automate processes like invoice management, transaction matching, and expense categorization with speed and accuracy far beyond human capability. This not only dramatically reduces the risk of human error but […] - [Will your job survive AI? Ex-Google X exec Mo Gawdat warns of what’s coming next](https://sumtrix.com/ai/will-your-job-survive-ai-ex-google-x-exec-mo-gawdat-warns-of-whats-coming-next/): Former Google X executive and author Mo Gawdat has issued a stark warning about the future of work, predicting that artificial intelligence will lead to a widespread “white-collar bloodbath” and fundamentally redefine the global economy. In a recent interview, Gawdat, who previously served as Google X’s chief business officer, challenged the common belief that new jobs created by technology will simply replace those lost to automation. “Absolute crap,” he stated, arguing that AI is uniquely positioned to replace human cognitive work, a departure from past technological revolutions that primarily automated manual labor. Gawdat, a serial entrepreneur who co-founded over 15 […] - [When AI thinks for itself, we could be locked out and lose control, warns ‘Godfather of AI’](https://sumtrix.com/ai/when-ai-thinks-for-itself-we-could-be-locked-out-and-lose-control-warns-godfather-of-ai/): Geoffrey Hinton, the British-Canadian cognitive psychologist and computer scientist widely regarded as the “Godfather of AI,” has issued a stark new warning: as artificial intelligence systems become more advanced, they may develop a form of communication that is incomprehensible to their human creators, leading to a potential loss of control. In a recent podcast appearance, Hinton, a 2024 Nobel laureate in Physics for his foundational work on neural networks, explained that current AI systems, like large language models, use “chain of thought” reasoning in human languages, which allows us to follow their logical processes. However, he cautioned that the next […] - [Google Agrees to Curb Power Use for AI Data Centers to Ease Strain on U.S. Grid When Demand Surges](https://sumtrix.com/ai/google-agrees-to-curb-power-use-for-ai-data-centers-to-ease-strain-on-u-s-grid-when-demand-surges/): In a significant move to address the mounting pressure on the nation’s power grid, Google has announced it will reduce the power consumption of its AI data centers during periods of peak electricity demand. The tech giant has entered into formal agreements with two major U.S. utilities, Indiana Michigan Power and the Tennessee Valley Authority, to temporarily scale back its energy-intensive machine learning workloads when the grid is under stress. The rapid and accelerating growth of artificial intelligence has created an unprecedented surge in electricity demand, with data centers now accounting for a substantial and rising portion of U.S. electricity […] - [Remarks by Director Kratsios at the APEC Digital and AI Ministerial Meeting](https://sumtrix.com/ai/remarks-by-director-kratsios-at-the-apec-digital-and-ai-ministerial-meeting/): The United States is positioning itself as the premier partner for artificial intelligence development in the Asia-Pacific region, with Director Michael Kratsios of the White House Office of Science and Technology Policy urging APEC economies to adopt American technology and avoid what he termed the “European model of fear and overregulation.” Kratsios made the remarks at the inaugural APEC Digital and AI Ministerial Meeting in Incheon. Speaking to a global forum on the sidelines of the meeting, Kratsios emphasized that the U.S. is ready to “accelerate American AI exports” through a comprehensive “AI stack” that includes hardware, cloud services, data […] - [South Korea, US Hold Talks to Strengthen AI Cooperation Ahead of Summit](https://sumtrix.com/ai/south-korea-us-hold-talks-to-strengthen-ai-cooperation-ahead-of-summit/): South Korea and the United States have initiated high-level discussions aimed at bolstering their collaboration in the field of artificial intelligence (AI), setting the stage for a strategic focus on technology at an upcoming bilateral summit. The talks, held in Seoul, brought together key officials to explore opportunities for expanding cooperation and developing a joint initiative on strategic technologies. The meeting took place on the sidelines of the Asia-Pacific Economic Cooperation (APEC) 2025 Digital and AI Ministerial Meeting. South Korean Science Minister Bae Kyung-hoon met with the Director of the White House Office of Science and Technology Policy, Michael Kratsios, […] - [Thomson Reuters Launches CoCounsel Legal, Transforming Legal Work with Agentic AI and Deep Research](https://sumtrix.com/ai/thomson-reuters-launches-cocounsel-legal-transforming-legal-work-with-agentic-ai-and-deep-research/): Thomson Reuters today announced the launch of CoCounsel Legal, a new AI solution that promises to fundamentally change how legal professionals approach their work. Unlike traditional AI tools that act as “copilots,” CoCounsel Legal is built on a foundation of agentic AI, designed to execute multi-step tasks autonomously and with transparent reasoning. This next-generation platform combines legal research, workflow automation, intelligent document management, and AI assistance into a single, unified solution. The cornerstone of CoCounsel Legal is “Deep Research,” which Thomson Reuters is calling the legal industry’s first professional-grade agentic AI research capability. Grounded in authoritative Westlaw and Practical Law […] - [ATM network breached and attacked through 4G Raspberry Pi](https://sumtrix.com/cyber/atm-network-breached-and-attacked-through-4g-raspberry-pi/): A sophisticated and alarming cyber-physical attack has been uncovered, where a financially motivated threat group successfully breached a bank’s ATM network by physically installing a 4G-equipped Raspberry Pi device. The incident, brought to light by cybersecurity firm Group-IB, highlights a dangerous new evolution in cybercrime that combines physical access with advanced anti-forensics techniques. The attackers, a group known as UNC2891, managed to place the small, credit-card-sized computer on a network switch that was shared with an ATM. The device, equipped with a 4G modem, created a persistent backdoor into the bank’s internal network, completely bypassing traditional perimeter firewalls and digital […] - [Everest Ransomware Claims Mailchimp as New Victim in Relatively Small Breach](https://sumtrix.com/cyber/everest-ransomware-claims-mailchimp-as-new-victim-in-relatively-small-breach/): In a developing story, the infamous Everest ransomware group has added a new name to its list of victims: email marketing giant Mailchimp. The cybercrime collective announced the breach on its dark web leak page, claiming to have exfiltrated a 767 MB database. While the group alleges the data contains internal company documents and a variety of personal and customer information, a closer analysis suggests a more contained, albeit still serious, incident. According to a review of the sample data provided by Everest, the leaked information appears to be structured business data rather than highly sensitive internal Mailchimp systems. The […] - [WhatsApp 0-Click RCE Exploit Worth $1 Million at Pwn2Own Ireland 2025](https://sumtrix.com/cyber/whatsapp-0-click-rce-exploit-worth-1-million-at-pwn2own-ireland-2025/): The cybersecurity world is abuzz following an unprecedented announcement from Trend Micro’s Zero Day Initiative (ZDI) for the upcoming Pwn2Own Ireland 2025 competition. In a move that highlights the critical importance of securing global messaging platforms, ZDI has announced a record-breaking $1 million bounty for a successful 0-click Remote Code Execution (RCE) exploit targeting WhatsApp. Co-sponsored by Meta, this massive payout is the largest single prize in the contest’s history. The Pwn2Own competition, a premier event for ethical hackers, challenges researchers to find and exploit vulnerabilities in widely used software and hardware. The “0-click RCE” exploit is a highly sought-after […] - [Threat Actors Exploit Proofpoint and Intermedia Link Wrapping to Conceal Phishing Payloads](https://sumtrix.com/cyber/threat-actors-exploit-proofpoint-and-intermedia-link-wrapping-to-conceal-phishing-payloads/): In a troubling new development, threat actors are actively exploiting the very security features designed to protect email users, specifically the link-wrapping services provided by major cybersecurity vendors like Proofpoint and Intermedia. This sophisticated attack vector allows malicious links to bypass traditional email filters and land directly in user inboxes, cloaked in the guise of a trusted and pre-scanned URL. Link wrapping is a common security measure where an email security gateway rewrites a URL to route it through a vendor’s scanning service at the moment a user clicks. The intention is to inspect the link in real-time and block […] - [Attackers actively exploit critical zero-day in Alone WordPress Theme](https://sumtrix.com/cyber/attackers-actively-exploit-critical-zero-day-in-alone-wordpress-theme/): Threat actors are actively exploiting a critical zero-day vulnerability in the “Alone – Charity Multipurpose Non-profit WordPress Theme” to compromise websites and achieve full site takeovers. The vulnerability, identified as CVE-2025-5394, has been assigned a critical CVSS score of 9.8, underscoring the severity of the flaw. According to security researchers, the vulnerability lies within a missing capability check in the alone_import_pack_install_plugin() function. This allows an unauthenticated attacker to upload arbitrary ZIP files to a vulnerable site by masquerading them as legitimate plugins. These malicious archives, often containing web shells or backdoors, can then be used to achieve remote code execution […] - [Feds still trying to crack Volt Typhoon hackers' intentions, goals](https://sumtrix.com/cyber/feds-still-trying-to-crack-volt-typhoon-hackers-intentions-goals/): Federal cybersecurity officials are still grappling with a critical question surrounding the persistent threat posed by the Chinese state-sponsored hacking group known as Volt Typhoon: What are their ultimate intentions? The group, which has successfully infiltrated critical infrastructure sectors across the United States and its territories, including telecommunications, energy, and water systems, has been a major focus of federal agencies like the Cybersecurity and Infrastructure Security Agency (CISA) and the FBI. However, even with successful operations to dismantle portions of the group’s network, a clear understanding of their end-game remains elusive. According to a CISA official, federal analysts are still […] - [Kremlin goons caught abusing local ISPs to spy on diplomats](https://sumtrix.com/cyber/kremlin-goons-caught-abusing-local-isps-to-spy-on-diplomats/): A sophisticated cyber-espionage campaign orchestrated by a state-sponsored Russian hacking group is targeting foreign embassies in Moscow, according to new research from Microsoft. The report reveals a new and alarming tactic: the group, known as “Secret Blizzard” or “Turla” and believed to be linked to Russia’s Federal Security Service (FSB), is actively abusing its control over local Internet Service Providers (ISPs) to intercept and compromise diplomatic communications. The campaign, which has been active since at least 2024, represents a significant escalation in state-sponsored hacking. Microsoft’s analysis is the first to confirm with high confidence that Turla is conducting espionage at […] - [China Accuses US of Cyberattacks Using Microsoft Email Server Flaws](https://sumtrix.com/cyber/china-accuses-us-of-cyberattacks-using-microsoft-email-server-flaws/): In a dramatic escalation of the ongoing cyber-espionage war, China has publicly accused the United States of exploiting vulnerabilities in Microsoft Exchange email servers to carry out cyberattacks against its defense sector. The allegations, made by the Cyber Security Association of China (CSAC), a little-known body backed by the country’s internet watchdog, claim that US-linked actors used these flaws to steal military data and maintain long-term control over a key defense contractor’s servers for nearly a year. The CSAC’s statement, which did not name specific companies or perpetrators, marks a significant shift in Beijing’s approach. While the US has frequently […] - [Fractal Debuts 'Cogentiq,' a Next-Generation Agentic AI Platform for Business Workflows](https://sumtrix.com/ai/fractal-debuts-cogentiq-a-next-generation-agentic-ai-platform-for-business-workflows/): Fractal, a leading global provider of artificial intelligence solutions, has officially launched “Cogentiq,” a new agentic AI platform designed to transform business workflows by moving beyond passive analytics to autonomous, intelligent action. The platform aims to bridge the gap between the promise of AI and its tangible, measurable impact on enterprise performance. Cogentiq introduces a paradigm shift in how companies utilize AI. While traditional AI tools provide insights from data, they often require human intervention to translate those insights into action. Cogentiq’s agentic framework enables AI to actively “think, plan, and act” within real-world business scenarios, automating complex, multi-step workflows […] - [Atombeat and BioDuro Partner to Launch an AI-Powered Platform for Accelerated Peptide Drug Discovery](https://sumtrix.com/ai/atombeat-and-bioduro-partner-to-launch-an-ai-powered-platform-for-accelerated-peptide-drug-discovery/): In a move set to transform the landscape of pharmaceutical research, Atombeat Inc., a leader in artificial intelligence for drug discovery, and BioDuro, a globally trusted Contract Research, Development, and Manufacturing Organization (CRDMO), have announced a strategic partnership. The collaboration will see the launch of a new, integrated platform designed to dramatically accelerate the discovery and development of peptide drugs. This innovative platform seamlessly integrates Atombeat’s cutting-edge AI-driven computational design with BioDuro’s extensive expertise in discovery chemistry, biology, and high-throughput synthesis. The partnership creates a powerful end-to-end workflow, from initial molecular design to the selection of a preclinical candidate, significantly […] - [IBM Report Highlights AI's Dual Role in Data Breaches, Speeding Up Impact and Costs](https://sumtrix.com/ai/ibm-report-highlights-ais-dual-role-in-data-breaches-speeding-up-impact-and-costs/): A new report from IBM highlights the complex and contradictory role of artificial intelligence in today’s cybersecurity landscape, revealing that AI is simultaneously a major force for both attackers and defenders. The annual “Cost of a Data Breach Report” found that while AI-powered attacks are making breaches faster and more costly, extensive use of AI for security purposes is dramatically reducing breach lifecycles and expenses. The report, which analyzed breaches between March 2024 and February 2025, notes that attackers are increasingly leveraging AI tools. A significant portion of breaches studied involved the use of AI for activities like phishing and […] - [AWS Introduces AI-Based Software Development Methodology](https://sumtrix.com/ai/aws-introduces-ai-based-software-development-methodology/): Amazon Web Services (AWS) today announced a groundbreaking shift in software engineering with the introduction of its new AI-Driven Development Lifecycle (AI-DLC) methodology. Unveiled at the AWS DevSphere 2025 event, this new framework positions generative AI as a central collaborator in the development process, aiming to dramatically accelerate timelines and enhance quality. The AI-DLC is an open and accessible methodology designed to integrate AI capabilities seamlessly across every stage of software development, from initial concept to deployment. Unlike traditional models where AI is an ancillary tool for tasks like code completion, the AI-DLC empowers AI to be a true partner, […] - [Google Cloud Sets Guinness World Record for 'Largest AI Agent Training Event'](https://sumtrix.com/ai/google-cloud-sets-guinness-world-record-for-largest-ai-agent-training-event/): In a monumental achievement for the global tech community, Google Cloud has officially secured a GUINNESS WORLD RECORDS™ title for the “Largest AI Agent Training Event.” The record was set during the “Agentic AI Day,” a historic hackathon held in Bengaluru, India, in collaboration with Hack2skill. The event saw an unprecedented number of participants, solidifying Google Cloud’s position at the forefront of AI innovation and education. The record-breaking event, which took place on July 27, 2025, brought together over 2,000 developers, forming more than 700 teams. These brilliant minds engaged in an intense 30-hour innovation sprint, tackling real-world challenges with […] - [NTT Develops AI Technology to Visualize Expert Knowledge from Dialogue Data](https://sumtrix.com/ai/ntt-develops-ai-technology-to-visualize-expert-knowledge-from-dialogue-data/): In a significant leap for knowledge transfer and operational efficiency, NTT has announced the development of a groundbreaking AI technology that can visualize expert decision-making processes from unstructured dialogue data. This innovation, a world-first according to the company, promises to revolutionize how organizations train staff and automate complex tasks. The new technology addresses a critical challenge faced by many businesses, particularly in fields like security incident response and call center operations: the difficulty of transferring tacit, expert knowledge. Highly skilled employees often rely on unique thought processes and unformalized experience, making their expertise challenging to document and pass on to […] - [Fujitsu Starts Development of Plus-10,000 Qubit Superconducting Quantum Computer](https://sumtrix.com/ai/fujitsu-starts-development-of-plus-10000-qubit-superconducting-quantum-computer/): In a significant leap forward for quantum computing, Fujitsu has officially commenced research and development for a superconducting quantum computer with a capacity exceeding 10,000 qubits. The ambitious project aims for completion by fiscal year 2030 and represents a major stride toward realizing the practical application of quantum technology. The new machine, which will leverage Fujitsu’s proprietary “STAR architecture” for early-stage fault-tolerant quantum computing (early-FTQC), is designed to operate with 250 logical qubits. This represents a substantial increase in computational power, moving beyond the current noisy intermediate-scale quantum (NISQ) era. Superconducting quantum computers operate at near absolute zero temperatures to […] - [Apple Ramps Up AI Investment, Acquiring Half a Dozen Companies This Year and Open to More](https://sumtrix.com/ai/apple-ramps-up-ai-investment-acquiring-half-a-dozen-companies-this-year-and-open-to-more/): A sophisticated and stealthy operation by the financially motivated threat group UNC2891 has exposed a critical vulnerability in ATM security, leveraging a physical Raspberry Pi device to breach a bank’s internal network. This highly unconventional cyber-physical attack allowed the group to bypass traditional perimeter defenses, aiming to manipulate Hardware Security Modules (HSMs) and facilitate fraudulent cash withdrawals. According to reports from cybersecurity firm Group-IB, the attack involved UNC2891 gaining physical access to an ATM and discreetly connecting a 4G-equipped Raspberry Pi to the same network switch used by the machine. This gave the attackers remote access to the bank’s internal […] - [UNC2891 Hackers Breach ATM Network via Physical Raspberry Pi Attack](https://sumtrix.com/cyber/unc2891-hackers-breach-atm-network-via-physical-raspberry-pi-attack/): A sophisticated and stealthy operation by the financially motivated threat group UNC2891 has exposed a critical vulnerability in ATM security, leveraging a physical Raspberry Pi device to breach a bank’s internal network. This highly unconventional cyber-physical attack allowed the group to bypass traditional perimeter defenses, aiming to manipulate Hardware Security Modules (HSMs) and facilitate fraudulent cash withdrawals. According to reports from cybersecurity firm Group-IB, the attack involved UNC2891 gaining physical access to an ATM and discreetly connecting a 4G-equipped Raspberry Pi to the same network switch used by the machine. This gave the attackers remote access to the bank’s internal […] - [Free Decryptor Released for FunkSec Ransomware](https://sumtrix.com/cyber/free-decryptor-released-for-funksec-ransomware/): Cybersecurity researchers at Avast, a Gen Digital brand, have today released a free decryptor for the FunkSec ransomware, providing a ray of hope for organizations and individuals whose data has been encrypted by the relatively new threat. The decryptor’s release comes after the FunkSec group, which emerged in late 2024 and was known for leveraging AI in its operations, appears to have ceased activity. FunkSec ransomware, identified by the “.funksec” file extension appended to encrypted files and a ransom note typically named “README-{random}.md,” has impacted at least 172 victims globally, according to data from Ransomware.live. The United States, India, and […] - [Chinese Firms Tied to State-Sponsored Hacking Group Silk Typhoon Patent Cyber Espionage Tools](https://sumtrix.com/cyber/chinese-firms-tied-to-state-sponsored-hacking-group-silk-typhoon-patent-cyber-espionage-tools/): A concerning new report reveals that Chinese companies with established links to the state-sponsored hacking group known as Silk Typhoon (also identified as Hafnium) have filed over a dozen patents for advanced cyber espionage tools. This discovery, building on recent U.S. Department of Justice indictments, casts a stark light on China’s sophisticated cyber contracting ecosystem and its offensive capabilities. The patents, unearthed by cybersecurity researchers, cover a wide array of intrusion and forensics tools. These include capabilities for collecting encrypted data from endpoints, conducting forensic analysis on Apple devices, and even remote access to routers and smart home devices. The […] - [SafePay Ransomware Threatens Ingram Micro with 3.5TB Data Release](https://sumtrix.com/cyber/safepay-ransomware-threatens-ingram-micro-with-3-5tb-data-release/): Global technology distributor Ingram Micro is facing an escalating crisis as the SafePay ransomware group has threatened to release 3.5 terabytes of allegedly stolen data by August 1st. This ominous development comes weeks after Ingram Micro was hit by a significant cyberattack earlier in July, which caused widespread disruption to its global operations. The SafePay group, a relatively new but increasingly active player in the cybercrime landscape, listed Ingram Micro as a victim on its dark web leak site on July 29th. This move is a common “double extortion” tactic employed by ransomware gangs, aiming to pressure victims into paying […] - [AI-Driven Cyber Attacks and Supply Chain Vulnerabilities Escalate Risk Landscape, Aon Report Finds](https://sumtrix.com/cyber/ai-driven-cyber-attacks-and-supply-chain-vulnerabilities-escalate-risk-landscape-aon-report-finds/): The global cyber risk landscape is undergoing a dramatic shift, with artificial intelligence (AI) rapidly becoming a double-edged sword, significantly escalating the threat of cyberattacks while simultaneously exposing critical vulnerabilities within technology supply chains. This stark warning comes from Aon plc’s 2025 Cyber Risk Report, which highlights that traditional defenses are struggling to keep pace with the speed and sophistication of AI-driven threats. The report, drawing on extensive data from over 3,000 clients globally and analyzing more than 1,400 cyber events, reveals that AI is no longer a futuristic concern but a present-day reality for cybercriminals. “AI is no longer […] - [New GLOBAL GROUP Ransomware Hits Miami-based Media Giant Albavisión](https://sumtrix.com/cyber/new-global-group-ransomware-hits-miami-based-media-giant-albavision/): Multinational Spanish-language media conglomerate Albavisión has become the latest high-profile victim of a sophisticated ransomware attack, allegedly perpetrated by the nascent “GLOBAL GROUP” ransomware-as-a-service (RaaS) operation. The Miami-based media giant is reported to have suffered a significant data breach, with attackers claiming to have exfiltrated over 400 GB of sensitive data. The incident, which came to light on July 29th, marks Albavisión as the 29th reported victim of GLOBAL GROUP since its emergence just last month. The cybercriminal syndicate has issued an undisclosed ransom demand, giving Albavisión two weeks to comply before threatening to leak the stolen information on the […] - [Hackers Exploit Critical WordPress Theme Flaw to Hijack Sites](https://sumtrix.com/cyber/hackers-exploit-critical-wordpress-theme-flaw-to-hijack-sites/): A severe security vulnerability in a widely used WordPress theme, “Alone – Charity Multipurpose Non-profit WordPress Theme,” is being actively exploited by threat actors, leading to widespread website hijacks. The critical flaw, identified as CVE-2025-5394 with a CVSS score of 9.8, allows unauthenticated attackers to remotely install malicious plugins and achieve full control over vulnerable sites. Security researchers at Wordfence credit Thái An with discovering and reporting the bug. The vulnerability stems from a missing capability check in the theme’s alone_import_pack_install_plugin() function, which permits unauthorized users to deploy arbitrary plugins from remote sources via AJAX requests. This oversight essentially provides […] - [Choicejacking Attack Steals Phone Data via Public Chargers](https://sumtrix.com/cyber/choicejacking-attack-steals-phone-data-via-public-chargers/): A concerning new cyberattack, dubbed “Choicejacking,” is making headlines, raising alarms about the security of public phone charging stations. Unlike previous “juice jacking” attacks that relied on malware, Choicejacking exploits vulnerabilities in device communication protocols to surreptitiously gain access to sensitive phone data, often without the user’s explicit consent. Security researchers from Austria’s Graz University of Technology have demonstrated how malicious charging stations can manipulate smartphones into enabling data transfer or debug modes in mere milliseconds. This bypasses the typical “Trust this computer?” or “Charge only” prompts that users have come to rely on as a safeguard. Once a device […] - [Google unveils Veo 3 Fast, an upgraded AI model for faster video generation](https://sumtrix.com/ai/google-unveils-veo-3-fast-an-upgraded-ai-model-for-faster-video-generation/): Google today announced the general availability of Veo 3 Fast, an upgraded version of its highly acclaimed AI video generation model, Veo 3. Designed for unparalleled speed and rapid iteration, Veo 3 Fast is set to transform how businesses and creators generate high-quality video content, making it a game-changer for industries requiring quick turnarounds like advertising, marketing, and training. Veo 3 Fast, now accessible on Google Cloud’s Vertex AI platform, builds upon the foundational capabilities of Veo 3, which was first unveiled in May 2025. While Veo 3 impressed with its ability to generate 1080p videos with native audio, including […] - [Microsoft study reveals which jobs are most (and least) affected by AI: Is yours on the list?](https://sumtrix.com/ai/microsoft-study-reveals-which-jobs-are-most-and-least-affected-by-ai-is-yours-on-the-list/): A comprehensive study from Microsoft Research, based on an analysis of over 200,000 interactions with its Bing Copilot, has shed significant light on which professions are most and least susceptible to the transformative power of generative Artificial Intelligence. The findings indicate a clear trend: jobs heavily reliant on language, content creation, and repetitive communication tasks are seeing the greatest AI applicability, while roles demanding physical presence, dexterity, and emotional intelligence remain largely insulated. The study, titled “Working with AI: Measuring the Occupational Implications of Generative AI,” introduces an “AI applicability score” to quantify how much certain occupations overlap with current […] - [Supermicro Open Storage Summit Showcases the Impact of AI Workloads on Storage: Starts August 12](https://sumtrix.com/ai/supermicro-open-storage-summit-showcases-the-impact-of-ai-workloads-on-storage-starts-august-12/): Super Micro Computer, Inc. (SMCI), a leader in total IT solutions, has announced its sixth annual Open Storage Summit, a free virtual conference set to commence on August 12 and run through August 28, 2025. This expanded event will delve into the critical impact of AI workloads on modern storage infrastructure, featuring an impressive lineup of 40 expert speakers from 23 participating companies across nine in-depth sessions. The 2025 summit marks a significant expansion from last year’s seven sessions, underscoring the rapidly evolving landscape of data storage driven by the proliferation of Artificial Intelligence. A central theme will be the […] - [Latest Mouser Series Navigates the Balance of AI and Human Expertise in Engineering](https://sumtrix.com/ai/latest-mouser-series-navigates-the-balance-of-ai-and-human-expertise-in-engineering/): Mouser Electronics, Inc., a leading global authorized distributor of electronic components, has launched its latest installment of the “Empowering Innovation Together” (EIT) technology series, focusing on “AI-powered engineering.” This new series delves into the crucial balance between leveraging Artificial Intelligence (AI) capabilities and human expertise in the rapidly evolving engineering landscape. The “AI-powered engineering” series highlights how AI tools are revolutionizing the engineering workflow, enabling unprecedented precision and efficiency in complex design processes. By automating time-consuming analysis and rapidly surfacing design insights, AI empowers engineers to dedicate their invaluable human intellect to higher-level challenges, pushing technical boundaries, and crafting truly […] - [AI@Work: WCC brings together industry powerhouses to explore AI and the future of business](https://sumtrix.com/ai/aiwork-wcc-brings-together-industry-powerhouses-to-explore-ai-and-the-future-of-business/): Washtenaw Community College (WCC) is set to host a landmark event, “AI@Work: The Innovation Imperative,” bringing together an impressive array of industry leaders, policymakers, and innovators to delve into the transformative power of Artificial Intelligence in the modern workplace. Scheduled for Wednesday, September 24th, at WCC’s Morris Lawrence Building, the inaugural conference aims to provide actionable insights into AI’s evolving role in business decision-making, workforce development, and operational performance. The conference underscores WCC’s commitment to fostering regional economic vitality by serving as a crucial convening force in the burgeoning AI ecosystem. Attendees can anticipate a deep dive into how AI […] - [2U Launches Six New IBM Microcredentials for the AI and Data-Driven Workforce](https://sumtrix.com/ai/2u-launches-six-new-ibm-microcredentials-for-the-ai-and-data-driven-workforce/): In a significant move to address the escalating demand for specialized skills in the rapidly evolving artificial intelligence and data landscape, 2U, a global leader in education technology, today announced an expanded partnership with IBM to introduce six new technical microcredentials on its global online learning platform, edX. These programs are meticulously designed to empower working professionals with the in-demand expertise needed to thrive in today’s AI-driven economy. The new microcredentials offer practical, job-aligned training across critical areas of data science, artificial intelligence, and software engineering. Blending live instruction, self-paced learning, and peer engagement with personalized support from instructors and […] - [WeRide Accelerates Global Growth, Robotaxi Revenue Grew 836.7%](https://sumtrix.com/ai/weride-accelerates-global-growth-robotaxi-revenue-grew-836-7/): WeRide Inc., a global leader in autonomous driving technology, has announced a phenomenal second quarter of 2025, marked by an unprecedented 836.7% year-over-year surge in its robotaxi revenue. This remarkable growth underscores the company’s aggressive global expansion and the increasing commercial viability of its autonomous driving solutions. WeRide’s total revenue for Q2 2025 climbed 60.8% year-over-year to RMB 127.2 million (US17.8million). And now accounts for a significant 36.1% of total revenue, signals a pivotal shift in the company’s commercialization strategy. The autonomous driving pioneer has been rapidly expanding its footprint, now operating in over 10 cities across six countries. Recent […] - [Accenture Invests in YearOne to Accelerate Digital Product Development](https://sumtrix.com/ai/accenture-invests-in-yearone-to-accelerate-digital-product-development/): Global professional services giant Accenture (NYSE: ACN) today announced a strategic investment in YearOne, a company revolutionizing software development with its advanced, data-driven software engineering intelligence platform. This move, spearheaded by Accenture Ventures, is set to significantly accelerate the lifecycle of digital product development for businesses worldwide, leveraging AI-powered insights, coaching, and performance optimization. YearOne’s innovative platform offers real-time visibility across workflows, individuals, and teams by seamlessly integrating data from existing tools into a unified system of intelligence. This capability allows organizations to identify hidden patterns, delivery bottlenecks, and productivity gaps, providing tailored recommendations and intelligent interventions that empower high-performance […] - [Railway Cybersecurity Industry Outlook Report 2025-2034: AI and Machine Learning Revolutionizing Real-Time Threat Detection](https://sumtrix.com/cyber/railway-cybersecurity-industry-outlook-report-2025-2034-ai-and-machine-learning-revolutionizing-real-time-threat-detection/): A groundbreaking “Railway Cybersecurity Industry Outlook Report 2025-2034” highlights the transformative role of Artificial Intelligence (AI) and Machine Learning (ML) in fortifying railway networks against escalating cyber threats. The report forecasts significant growth in the railway cybersecurity market, driven by the increasing digitalization of the sector and the urgent need for real-time threat detection. As railway systems become more interconnected with smart technologies, IoT devices, and automated operations, they present an expanding attack surface for cybercriminals. The report underscores that traditional security measures are no longer sufficient, necessitating the adoption of advanced solutions. This is where AI and ML are […] - [New Choicejacking Attack Steals Data from Phones via Public Chargers](https://sumtrix.com/cyber/new-choicejacking-attack-steals-data-from-phones-via-public-chargers/): A sophisticated new cyberattack, dubbed “Choicejacking,” is raising alarms among cybersecurity experts, threatening to compromise sensitive data on smartphones through seemingly innocuous public charging stations. Unlike previous “juice jacking” threats, this novel technique bypasses existing safeguards on both Android and iOS devices, highlighting a critical vulnerability in how we power our mobile lives. Researchers at Austria’s Graz University of Technology have demonstrated how malicious chargers can exploit communication protocols to simulate user input, tricking devices into granting data transfer permissions without the owner’s explicit consent. This allows attackers to gain unauthorized access to photos, documents, app data, and in some […] - [Auto-Color Backdoor Malware Exploits SAP Vulnerability](https://sumtrix.com/cyber/auto-color-backdoor-malware-exploits-sap-vulnerability/): Global cybersecurity agencies are sounding the alarm over a new wave of attacks leveraging a sophisticated Linux-based backdoor known as “Auto-Color,” which is now actively exploiting a critical vulnerability in SAP NetWeaver. This marks a significant escalation, as the advanced remote access Trojan (RAT), previously observed targeting universities and government institutions, is now impacting enterprise resource planning (ERP) systems. The vulnerability, tracked as CVE-2025-31324, is an unauthenticated file upload flaw in SAP NetWeaver’s Visual Composer. This critical flaw allows attackers to upload arbitrary files, including malicious executables, to vulnerable servers, potentially leading to full system compromise and remote code execution. […] - [Cybercriminals Attack Seychelles – Offshore Banking as a Target](https://sumtrix.com/cyber/cybercriminals-attack-seychelles-offshore-banking-as-a-target/): The idyllic reputation of Seychelles as a pristine offshore financial hub has been shaken by a recent and significant cyberattack targeting the Seychelles Commercial Bank (SCB). Threat actors, operating under the alias “ByteToBreach,” successfully exfiltrated a substantial 2.2 gigabytes of sensitive customer and government data, raising serious concerns about the cybersecurity posture of the nation’s critical financial infrastructure. The breach, which reportedly exploited a vulnerability in Oracle WebLogic Server, saw cybercriminals gaining access to a treasure trove of information, including customer names, email addresses, phone numbers, account types, and even account balances. Alarming reports also indicate the presence of data […] - [Palo Alto Networks Announces Agreement to Acquire CyberArk, the Identity Security Leader](https://sumtrix.com/cyber/palo-alto-networks-announces-agreement-to-acquire-cyberark-the-identity-security-leader/): In a seismic shift set to redefine the cybersecurity landscape, Palo Alto Networks (NASDAQ: PANW) today announced a definitive agreement to acquire CyberArk (NASDAQ: CYBR), the global leader in identity security, in a cash and stock transaction valued at approximately $25 billion. This landmark deal, the largest in Palo Alto Networks’ history, marks its formal entry into the critical identity security market and significantly accelerates its comprehensive platform strategy, particularly in the burgeoning AI era. Under the terms of the agreement, CyberArk shareholders will receive $45.00 in cash and 2.2005 shares of Palo Alto Networks common stock for each CyberArk […] - [US Tops Hit List as 396 SharePoint Systems Compromised Globally](https://sumtrix.com/cyber/us-tops-hit-list-as-396-sharepoint-systems-compromised-globally/): A widespread cyber-espionage campaign exploiting critical vulnerabilities in Microsoft SharePoint servers has compromised at least 396 organizations globally, with the United States emerging as the primary target. The attacks, linked to state-sponsored Chinese hacking groups, have sent shockwaves through government agencies, critical infrastructure, and private enterprises worldwide, underscoring the escalating threat to on-premises software systems. Initial reports from Dutch cybersecurity firm Eye Security, which first identified the ongoing attacks, indicated around 100 victims. However, follow-up scans have revealed the true scale of the breach, with the number of compromised systems nearly quadrupling in just over a week. Researchers warn that […] ## Pages - [The Rapid Evolution of Cyber Threats](https://sumtrix.com/the-rapid-evolution-of-cyber-threats/) - [Live CVE Feed](https://sumtrix.com/live-cve-feed/): Vulnerabilities by Type & Year Vulnerabilities by type & year Overflow Memory corruption SQL injection XSS Directory traversal File inclusion CSRF XXE SSRF Open redirect Input validation Execute code Bypass Gain privilege Denial of service Information leak Total CVE Dashboard New/Updated CVEs 98 CVEs created, 611 CVEs updated since yesterday 1214 CVEs created, 2990 CVEs updated in the last 7 days 4757 CVEs created, 91622 CVEs updated in the last 30 days Known exploited vulnerabilities Since yesterday Last 7 days Last 30 days 0 4 16 Recent EPSS score changes >5% >10% >50% 0 0 0 Live CVE Feed Curated […] - [Contact](https://sumtrix.com/contact/): 123-456-7890 123 Main Street, New York, NY 10001 Mon-Fri 9:00AM – 5:00PM Facebook-f Twitter Address: 123 Main Street, New York, NY 10001 Hours: Mon-Fri 9:00AM – 5:00PM Phone: 123-456-7890 Email: contact@mysite.com Visit Us Address: 123 Main Street New York, NY 10001 - [Advertise](https://sumtrix.com/advertise/): Advertise with Us – Reach Your Audience Like Never Before! Welcome to sumtrix, a leading online platform dedicated to delivering high-quality content across a wide range of topics. Whether you’re looking to promote your brand, product, or service, advertising with us offers an unparalleled opportunity to connect with a diverse and engaged audience. Why Advertise on [Your Website Name]? Our Advertising Options Who Can Benefit? No matter your industry, [Your Website Name] provides a platform for businesses of all kinds to thrive. Here are just a few examples: Let’s Work Together! At [Your Website Name], we’re committed to helping your […] - [about](https://sumtrix.com/about/): Welcome to sumtrix, your ultimate source for up-to-date and comprehensive news across all fields! Whether you’re interested in the latest global headlines, business updates, cutting-edge technology, health tips, or entertainment buzz, we’ve got you covered. Our dedicated team of journalists and experts works around the clock to bring you accurate, reliable, and unbiased news from every corner of the world. From in-depth investigative reports to quick updates on trending topics, [Your News Website Name] is designed to keep you informed and engaged. We believe knowledge is power, and our mission is to empower you with the information you need to […] - [Privacy Policy](https://sumtrix.com/privacy-policy/): Who we are Suggested text: Our website address is: http://sumtrix.com. Comments Suggested text: When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection. An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment. Media Suggested […] - [Home](https://sumtrix.com/): edit post GRC & Compliance Meta Launches LlamaFirewall Framework to Stop AI Jailbreaks, Injections, and Insecure Code by Ryan Peterson May 17, 2025 edit post GRC & Compliance Indian Court Orders Action to Block Proton Mail Over AI Deepfake Abuse Allegations by Ryan Peterson May 17, 2025 edit post GRC & Compliance WhatsApp Launches Private Processing to Enable AI Features While Protecting Message Privacy by Ryan Peterson May 17, 2025 Optimal Column This module works best for column 12 ( current column width 4 ). This warning will only show if you login as Admin. edit post Blogs Has AI […] [comment]: # (Generated by Hostinger Tools Plugin)