Review Week: Chrome 0-Day Fixed, NPM Supply Chain Attacks, LinkedIn Data Used for AI

AI Video & Visuals


Review week

Here's an overview of some of the most interesting news, articles, interviews and videos from last week.

Most enterprise AI usage is invisible to security teams
Most enterprise AI activities are carried out without the knowledge of the IT and security team. According to Lanai, 89% of AI use within an organization are invisible, creating risks in data privacy, compliance and governance.

Arkime: Open Source Network Analysis and Packet Capture System
Arkime is an open source system for large-scale network analysis and packet capture. In conjunction with existing security tools, it is easy to search and access by storing and indexing network traffic in standard PCAP format.

Build security that protects not only auditors but customers
In this help, in NET Security interview, Rapyd's CISO Nir Rothenberg explains the global differences between payment security maturity and lessons you can learn from key regions. He notes that good engineering usually leads to strong security and experiences movements to meet compliance requirements.

Creating a cross-border compliance strategy
In this help, Marco Goldberg, Managing Director of EQS Group, discusses how compliance and regulations are evolving around the world. He talks about how organizations can keep systems in practical and easy to use while maintaining the rules of the system.

How fake ICS networks reveal real cyberattacks
Researchers have introduced new methods of studying and defending against the threat of ICS. Their project, called Icslure, is a honeynet built to closely mimic the real industrial environment.

Behind the Scenes of Carl with Founder: Releases, Updates, Security
Now, in a Net Security interview, lead developer OD Curl, Daniel Stenberg, explains how widely used tools, from cloud services to IoT, remain secure across billions of devices. He tests, reviews and refines the code to minimize risk, and shares insights into Carl's decades of travel.

LLMS can boost cybersecurity decisions, but not for everyone
LLM is rapidly moving from experiments in cybersecurity to daily use. Teams use them to organize threat intelligence, guide incident response, and help analysts handle repetitive tasks. However, adding AI to your decision-making process brings new questions. When do these tools actually improve performance and create blind spots?

The phishing campaign is aimed at rust developers
Developers who publish Crates (binaries and libraries written in Rust) at Crates.io, Rust's main public package registry, are being targeted by emails reflecting their recent NPM phishing campaigns.

Ransomware attacker disables the EDR agent using accidentally saved recovery code
All target organizations are different, but ransomware attackers are highly adaptive and will evaluate and exploit the mistakes you make.

Self-replica worms hit over 180 npm packages with (mainly) automated supply chain attacks
A potentially monumental supply chain attack is ongoing thanks to payloads like self-replica worms that compromise packages published in the NPM registry.

Microsoft is disrupting the operation of the Raccoono365 Phishing-as-a-Service and is a suspect in the leader
Microsoft and CloudFlare have disrupted phishing operations as a service selling RACCOONO365 kits to steal Microsoft 365 account credentials.

Many networking devices are still vulnerable to pixie dust attacks
Despite being discovered and reported in 2014, the vulnerability that allows pixie dust attacks still affects consumers around the world and SoHo networking equipment, Netrise researchers have confirmed.

Google is actively utilizing the Chrome Zero-Day vulnerability (CVE-2025-10585)
Google released a security update for the Chrome Stable Channel to fix the zero-day vulnerability (CVE-2025-10585) reported by the Threat Analysis Group (TAG) on Tuesday.

Sonicwall says the attacker compromised backup files for some firewall configurations
SonicWall and its customers have had a tough year among attackers who leveraged the 0-day and N-Day vulnerabilities in their firewalls and used their mobile access appliances for security.

AI Video Surveillance may terminate privacy as we know
Video surveillance with AI raises big questions about privacy. On the one hand, it feels safer, while on the other hand, it can easily cross the line to intrude. The more technology sees and tracks our actions, the more difficult it becomes to know where privacy will stop and surveillance will begin.

Google introduces Vaultgemma, a discriminatory, private LLM built for secure data processing
Google has released Vaultgemma, a large language model designed to keep sensitive data private during training. This model uses discriminatory privacy techniques to prevent individual data points from being exposed, making it safer for processing sensitive information in sectors such as healthcare, finance, and government.

GitHub adds quarter protection for SSH access
Github adds a quarter encryption to ensure SSH connections. This is a move to show the company's preparation at a time when current encryption may no longer be secure.

AI made crypto fraud much more dangerous
In the first half of 2025, one of the worst waves of crypto hacks ever, with over $3.01 billion being stolen. AI was a large part of it, making it easier to run fraud and even low-skilled criminals involved in the action.

LinkedIn uses AI data by default and opt out now!
LinkedIn is making major changes to its User Agreement and Privacy Policy, which will take effect on November 3, 2025. Among the most notable updates, the company uses member data by default to improve its generated AI model unless the user opts out manually.

Shifting supply chain and rules Testing CPS security strategies
As business environments continue to change, cyberphysical systems become more difficult to protect. Economic pressures, supply chain changes, and new regulations are creating more openness to attackers while complicating the way organizations manage security.

What does a secure 6G network look like?
Official 6G standards are expected to be announced by the end of 2029. The industry is heading for a consensus on how to build a 6G network, but it is also necessary to predict how it will be compromised and build it with a secure design approach.

Why is ignored assets a hidden threat? Does attackers love to find them?
In this help, Tim Chase, a technology evangelist at ORCA Security, explores one of the most overlooked cybersecurity risks: neglected assets.

Bot vs. human? Why is the intention a game changer?
In this helpnet security video, Jérôme Segura, Vice President of Threat Research at DataDome, explains why it should be a new focus for cybersecurity teams, not just identifying bots.

Real-world impact of EU Dora regulations on global business
In this Helpnet Security Video, Vanta's Director of Governance, Risk and Compliance, Matt Cooper will discuss the EU's Digital Operations Resilience Act (DORA) and its effects six months after it has come into effect. DORA is the first EU-wide framework for managing ICT risk in the financial sector, designed to enhance digital resilience and reduce systematic risk.

Static feed leaves intelligence teams that respond to unrelated or slow data

The board and executives are not seeking another feed of indicators. They want to know if their organization is being targeted, how they are exposed, and what steps need to be taken. A new report from Flashpoint argues that most current intelligence models are unable to keep up with these demands, and that the Primary Resource Collection (PSC) should become the standard approach.

OT security requires continuous operation rather than a one-time fix
According to a new Forrester study, cyberattacks continue to collide with OT systems run by critical infrastructure operators. In a survey of 262 OT security decision-makers, 91% reported at least one violation or system failure caused by cyber attacks over the past 18 months.

Old file types, new tricks: Attackers turn everyday files into weapons
Attackers find new ways to blend with everyday business tools, hiding activities within formats and processes that workers and IT teams often trust. The latest Quarterly Threat Insights report from HP Wolf Security shows how attackers continue to adapt, making it difficult to maintain defenses.

Rayhunter: EFF releases open source tools to detect cell spies
The Electronic Frontier Foundation (EFF) has released Rayhunter, a new open source tool designed to detect cell site simulators (CSS). These devices, also known as IMSI catchers or Stingrays, mimic cell towers and connect and connect your phone so that you can collect data.

Global Employment Risk: Things to Know About Identity Fraud and Screening Trends
Hiring new employees always carries some risk, but that risk is increasing in new ways, and identity fraud is becoming more common in the hiring process. Hireright's 2025 Global Benchmark Report provides a detailed look at how organizations around the world handle background screening.

Shadow AI is breaking corporate security from within
Cybersecurity leaders know that the attack surface has grown over the years, but the latest information security report from IO 2025 shows how quickly new risks are converging. Using responses from more than 3,000 security experts in the UK and the US, the report points out that this year three areas of AI, compliance and supply chain security will shape board-level conversations.

Invisible aspects of malware and how to find them
Security teams rely on threat reports to understand what's out there and keep your organization safe. However, new reports show that these reports reveal only part of the story. The hidden malware variations quietly slip past defenses, leaving the team with false sense of security.

Researchers believe Gameardon and Turla threat groups are working together
ESET research has found evidence of collaboration between the Gummerderson and Tara threat groups. Both groups are linked to the FSB, the leading intelligence agency in Russia, and are found to work in tandem to target well-known Ukrainian organizations.

Product Showcase: Exaforce – Complete Lifecycle AI SOC Platform
By combining agent automation with advanced data exploration capabilities and unique multi-model AI dedicated to security operations, ExaForce offers an Agent AI SOC platform that detects what others have missed, automates investigations, adjusts responses, and saves costs in one place, with the exception of false positives. Available as a SaaS platform or a fully managed MDR service.

Product Showcase: Clean Link reveals what's hidden behind the QR code
Clean Links is a handy app that shows you exactly where the link goes before you click. Remove trackers, expand shortened URLs, and save time and frustration while avoiding fraud.

Currently available cybersecurity jobs: September 16, 2025
We searched the market to deliver role selections across different skill levels within the cybersecurity field. Check out this weekly cybersecurity job available now.

This week's new Infosec products: September 19, 2025
Check out the most interesting products of the past week. It features absolute security, catchpoint, nagomi security, neon cyber and Qusecure releases.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *