Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

Tensions hit cricket leagues on both sides of the border – Sport

May 10, 2025

In coffee-producing Uganda, an emerging sisterhood wants more women involved

May 10, 2025

People moving into the South change the famous US dialect

May 10, 2025
Facebook X (Twitter) Instagram
Trending
  • Tensions hit cricket leagues on both sides of the border – Sport
  • In coffee-producing Uganda, an emerging sisterhood wants more women involved
  • People moving into the South change the famous US dialect
  • Newark Mayor Ras Baraka arrested during ICE detention centre protest | Migration News
  • Columbia suspends over 65 students following pro-Palestinian protest in library
  • US reports second air traffic control outage at New Jersey airport | Donald Trump News
  • Mexico is suing Google over ‘Gulf of America’ label, Sheinbaum says | US-Mexico Border News
  • Google I/O 2025: What to expect, including updates to Gemini and Android 16
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Saturday, May 10
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » In Other News: India-Pakistan Cyberattacks, Radware Vulnerabilities, xAI Leak
Cybersecurity

In Other News: India-Pakistan Cyberattacks, Radware Vulnerabilities, xAI Leak

adminBy adminMay 9, 2025No Comments4 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 6


SecurityWeek’s cybersecurity news roundup provides a concise compilation of noteworthy stories that might have slipped under the radar.

We provide a valuable summary of stories that may not warrant an entire article, but are nonetheless important for a comprehensive understanding of the cybersecurity landscape.

Each week, we curate and present a collection of noteworthy developments, ranging from the latest vulnerability discoveries and emerging attack techniques to significant policy changes and industry reports. 

Here are this week’s stories:

Radware cloud WAF vulnerabilities

CERT/CC reports that Radware’s Cloud Web Application Firewall (WAF) could have been bypassed using specially crafted HTTP requests. An attacker could have exploited the flaws to bypass filtering and send malicious inputs to the underlying web application. CERT/CC said the vulnerabilities have been patched, but Radware has not acknowledged the findings when they were initially disclosed by a researcher. Radware has also not responded to SecurityWeek’s request for comment. 

xAI key leak exposed LLMs used by Tesla and SpaceX

An employee at xAI, Elon Musk’s AI company, inadvertently leaked an API key on GitHub. The key, which was accessible for roughly two months, could have been leveraged to query private xAI LLMs created specifically for other companies belonging to Musk, including Tesla, SpaceX, and X, Brian Krebs reported.

Advertisement. Scroll to continue reading.

FBI warns of malicious proxy services exploiting EOL routers

The FBI issued an alert this week to warn individuals and organizations that threat actors are abusing routers that have reached end of life (EOL) for malicious proxy services. The agency said routers made before 2010 likely no longer receive security patches and can be compromised by threat actors. The devices are then used to create proxy services that enable attackers to hide their identity and location. 

Insecure messaging application used by national security advisor

Mike Waltz, who was removed recently by President Trump from his post as national security advisor following his role in the Signalgate incident, was caught using an insecure chat application that is based on Signal. The app is named TeleMessage and it was recently hacked, with the attacker reportedly gaining access to unprotected chat logs. The developer launched an investigation into what it described as a “potential security incident” and temporarily suspended TeleMessage services.

PowerSchool hackers extorting school boards

Data stolen in a December 2024 attack on PowerSchool is now used to extort school boards across Canada and the US. Involving the platform’s SIS environment, the incident impacted millions, but PowerSchool paid a ransom to ensure stolen personal information was not shared publicly. According to the Toronto District School Board (TDSB), however, a threat actor still has the data and is now attempting to extort TDSB and other North American school boards into paying another ransom.

Serious vulnerability found in audio-over-IP product

A serious vulnerability has been found in the Digigram PYKO-OUT audio-over-IP (AoIP) product, specifically that in its default configuration it can be accessed remotely without requiring any login information or a password. CERT/CC published an advisory and the researcher who found the flaw, Souvik Kandar, described his findings in a blog post. Kandar told Securityweek that he found more than two dozen internet-exposed devices that are vulnerable to attacks.

Airline used by the Trump administration for deportations hacked

GlobalX, one of the airlines used by the Trump administration to deport people, has been targeted by hackers. 404 Media reported that the airline was hacked by Anonymous-affiliated hacktivists who managed to obtain flight records and passenger lists from the company’s systems.

Nomad cryptocurrency bridge hacker arrested 

Alexander Gurevich, a Russian-Israeli citizen accused of being behind the 2022 hack targeting the Nomad cryptocurrency bridge, which resulted in losses totaling nearly $200 million, has been arrested in Israel. He could be extradited to the US, where he faces money laundering charges. 

Class action lawsuit against Delta over CrowdStrike incident

A US federal judge has ruled that a class action lawsuit against Delta Air Lines by passengers impacted by the CrowdStrike-caused outage last year can proceed. The plaintiffs are unhappy with the compensation offered by Delta, which last year filed a lawsuit against CrowdStrike over the impact of the incident. CrowdStrike blamed Delta for the slow recovery of impacted systems. 

India-Pakistan cyberattacks

There has been a surge in cyberattacks between India and Pakistan following the recent escalation in the conflict between the two countries. CyberKnow has been tracking 45 hacktivist groups — 10 from India and 35 from Pakistan — that have mainly launched DDoS attacks and conducted website defacements. 

Related: In Other News: NullPoint Source Code Leak, $17,500 for iPhone Flaw, BreachForums Down

Related: In Other News: Prison for Disney Hacker, MITRE ATT&CK v17, Massive DDoS Botnet



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack

May 9, 2025

160,000 Impacted by Valsoft Data Breach

May 9, 2025

Malicious NPM Packages Target Cursor AI’s macOS Users

May 9, 2025

Rising Tides: Kelley Misata on Bringing Cybersecurity to Nonprofits

May 9, 2025

SAP Zero-Day Targeted Since January, Many Sectors Impacted 

May 9, 2025

Company and Personal Data Compromised in Recent Insight Partners Hack 

May 9, 2025
Add A Comment
Leave A Reply Cancel Reply

Don't Miss
Billionaires

Skechers’ Greenbergs Set To Pocket Up To $1.1 Billion From Sale To 3G

May 6, 2025

Skechers founders Robert Greenberg (left) and Michael Greenberg (right) started the brand more than 30…

Trump Organization Admits President Still Controls His Business

May 6, 2025

Forbes Richest Person In Every State 2025

April 30, 2025

These Billionaire Signers Of The Giving Pledge Signers On Why The Philanthropy Group Still Matters

April 29, 2025
Our Picks

Tensions hit cricket leagues on both sides of the border – Sport

May 10, 2025

In coffee-producing Uganda, an emerging sisterhood wants more women involved

May 10, 2025

People moving into the South change the famous US dialect

May 10, 2025

Newark Mayor Ras Baraka arrested during ICE detention centre protest | Migration News

May 9, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

Google I/O 2025: What to expect, including updates to Gemini and Android 16

May 9, 2025

SoundCloud changes policies to allow AI training on user content

May 9, 2025

DeepSeek: Everything you need to know about the AI chatbot app

May 9, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.