Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds ➔
👥 Community & Social
Sicherheitslücken (CVE)Missing Authorization in Custom Post Type UI Post Type Processing(30.09.2026 um 14:00 Uhr)
••
Sicherheitslücken (CVE)Missing Authorization in WP Fastest Cache Varnish Cache Actions(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Stored Cross-Site Scripting in Elementor Star Rating Widget(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Unauthenticated SQL Injection in The Events Calendar Custom Tables Query(30.09.2026 um 14:00 Uhr)
••
Sicherheitslücken (CVE)Stored Cross-Site Scripting in MetaSlider Slideshow Title(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Stored Cross-Site Scripting in Ocean Extra oceanwp_library Shortcode(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Incorrect Permissions in Spectra Popup Builder REST Endpoints(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Cross-Site Scripting in LiteSpeed Cache WebP Image Replacement(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Missing Authorization in Custom Post Type UI Post Type Processing(30.09.2026 um 14:00 Uhr)
••
Sicherheitslücken (CVE)Missing Authorization in WP Fastest Cache Varnish Cache Actions(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Stored Cross-Site Scripting in Elementor Star Rating Widget(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Unauthenticated SQL Injection in The Events Calendar Custom Tables Query(30.09.2026 um 14:00 Uhr)
••
Sicherheitslücken (CVE)Stored Cross-Site Scripting in MetaSlider Slideshow Title(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Stored Cross-Site Scripting in Ocean Extra oceanwp_library Shortcode(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Incorrect Permissions in Spectra Popup Builder REST Endpoints(30.09.2026 um 14:00 Uhr)
•
Sicherheitslücken (CVE)Cross-Site Scripting in LiteSpeed Cache WebP Image Replacement(30.09.2026 um 14:00 Uhr)
•
Intelligence View
⚡ tsecurity.de Intelligence

IBM Technology: Can you trust your chatbot? Inside three AI-powered cyberattacks

Video von IBM Technology auf YouTube: Visit Security Intelligence podcast page to get more cybersecurity content → https://ibm.biz/~2mSWCqIG9 Ask a chatbot for…

0
↗ Quelle (IBM Technology)
Reagiere als Erste:r — dein Feedback zählt!

YouTube Video

Visit Security Intelligence podcast page to get more cybersecurity content → https://ibm.biz/~2mSWCqIG9



Ask a chatbot for a customer service number, and you might get a scammer's.



That's the trick behind "Dark Sourcery," a campaign that games AI answer engines into citing phishing links and fake support lines. It's SEO poisoning updated for an AEO world, and it works because so few of us verify what AI tells us before charging ahead.



On episode 53 of Security Intelligence, Kimmie Farrington, Curtis Pitts and Dave McGinnis join hosts Matt Kosinski and Patrick Austin to break down three AI-enabled cyberattacks and what they mean for defenders.



First, the poisoned chatbots: How does Dark Sourcery work, and how do we rethink trust in the AI era?



Then, a threat actor spends months tearing through Ubiquiti, WordPress and Zyxel gear, stealing thousands of government documents. GreyNoise suspects it had an LLM helping write its tools.



Finally, an AI agent swarm breaches hundreds of PaperCut servers. It goes from an empty workspace to a real victim in about four hours, and then ignores its own rules of engagement.



All that and more on Security Intelligence.



00:00 - Intro

1:23 - Dark Sourcery

13:00 - LLM-assisted hacking spree

21:46 - Agent swarm attack



"The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. AI tools may be used to transcribe this episode and support selected stages of the production process. All AI-assisted content is reviewed by the production team before publication."



AI news moves fast. Sign up for a monthly newsletter for AI updates from IBM → https://ibm.biz/~qXXQPWg3T

#cyberattack #llm #cybersecurity



AI was used in the creation of the transcript and metadata for this video.
Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-80490 | Algorithm::AhoCorasick::XS versions through 0.04 for Perl read the hayst…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel • Rechts: nächster Artikel • unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger • Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick