AUTO-UPDATED

Security Affairs newsletter Round 590 by Pierluigi Paganini – INTERNATIONAL EDITION

The latest Security Affairs newsletter, edition 590, highlights a surge in AI-driven cyberattacks, significant data breaches at Chess.com, and evolving malware threats targeting macOS and critical infrastructure.

Key Points

  • Security researcher Pierluigi Paganini reports that 7.3 million Chess.com user records have been leaked in a confirmed data breach.
  • New AI-powered threats include autonomous cyberattacks on gym websites and the integration of local LLMs into operations by the Kimsuky APT group.
  • Malware developments feature the AmnesiaStealer for macOS and a campaign involving 737 malicious Chrome VPN extensions used for traffic redirection.
  • State-sponsored actors, including those linked to China and North Korea, are increasingly utilizing fake job offers and zero-day exploits for espionage.
  • Critical infrastructure remains a primary target, with recent cyberattacks reported against water systems in New Jersey and Alabama.

Why it Matters

The integration of artificial intelligence into both offensive cyber operations and autonomous hacking tools represents a significant escalation in the global threat landscape. Organizations must adapt their security postures to defend against these sophisticated, AI-enhanced tactics that target both private enterprises and essential public services.
Securityaffairs.com Published by Pierluigi Paganini
Read original