A server-side request forgery vulnerability in OpenAI's chatbot infrastructure can allow attackers to direct users to malicious URLs, leading to a range of threat activity.
Mar. 20, 2025
Weekly Edition
The latest news and insights for cybersecurity professionals
- The Latest News and Features -
A server-side request forgery vulnerability in OpenAI's chatbot infrastructure can allow attackers to direct users to malicious URLs, leading to a range of threat activity.‎‎
Feed image
The researchers who discovered the initial assault warned that the simple, staged attack is just the beginning for advanced exploit sequences that will test cyber defenses in new and more difficult ways.‎‎
Feed image
Trend Micro uncovered a method that nation-state threat actors are using to target victims via the Windows .Ink shortcut file extension.‎‎
Feed image
The program underwent a series of changes in the past year, including richer maximum rewards in a variety of bug categories.‎‎
Feed image
In a cyber twist, attackers behind two of the campaigns are using the apps to redirect users to phishing and malware distribution sites.‎‎
Feed image
President Trump has long complained about perceived threats to election security. Now his DHS has kneecapped the agencies designed to support it. Experts are worried about what comes next.‎‎
Feed image
Just like with any regular computer, researchers figured out how to crack into, force restart, and upload malware to an aftermarket in-vehicle infotainment system.‎‎
Feed image
The Mora_001 group uses similar post-exploitation patterns and ransomware customization originated by LockBit.‎‎
DR GLOBAL
Feed image
Global politics and a growing economy draw the wrong kind of attention to India, with denial-of-service and application attacks both on the rise.‎
THE EDGE
Feed image
Inflation, cryptocurrency market volatility, and the ability to invest in defenses all influence the impact and severity of a ransomware attack, according to incident response efforts and ransomware negotiators.‎
DR TECHNOLOGY
Feed image
Starting this fall, HP's 8000 Series enterprise and commercial printers, which include Color LaserJet Enterprise MFP 8801, Mono MFP 8601, and LaserJet Pro Mono SFP 8501, will feature new quantum ASICs and endpoint controllers to protect them from future quantum attacks.‎
VIRTUAL EVENT
Join us today at 11 Eastern for this all-day virtual event, designed to update cybersecurity teams on some of the most promising emerging cybersecurity technologies and provide advice on using them.
- Commentary -
Opinions from thought leaders around the cybersecurity industry
The Salt Typhoon attacks underscored the need for unity, innovation, and resilience in the face of an increasingly sophisticated cyber-threat landscape.‎‎
Healthcare organizations must enhance their cybersecurity arsenal. Doing so can help them prevent financial, compliance, and reputational damage.‎‎
- Upcoming Events -
- More Resources -
- Elsewhere in Cyber This Week -
NCC GROUP
GARTNER
CYBERSECURITY DIVE
- Do You Find Today’s Newsletter Helpful? -
Yes
Not sure
No
You received this message because you are subscribed to Dark Reading's Weekly newsletter.
If a friend forwarded you this message, sign up here to get it in your inbox. Thoughts about this newsletter? Give us feedback.
Copyright © 2025 TechTarget, Inc. or its subsidiaries. All rights reserved.
Operated by TechTarget, Inc. and its subsidiaries,
275 Grove Street, Newton, Massachusetts, 02466 US