Security
Headlines
HeadlinesLatestCVEs

Tag

#microsoft

CVE-2023-29328

Microsoft Teams Remote Code Execution Vulnerability

CVE
#vulnerability#microsoft#rce
CVE-2023-29330

Microsoft Teams Remote Code Execution Vulnerability

CVE-2023-21709

Microsoft Exchange Server Elevation of Privilege Vulnerability

CVE-2023-35388

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2023-35368

Microsoft Exchange Remote Code Execution Vulnerability

CVE-2023-38182

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2023-38185

Microsoft Exchange Server Remote Code Execution Vulnerability

Meet the Brains Behind the Malware-Friendly AI Chat Service ‘WormGPT’

WormGPT, a private new chatbot service advertised as a way to use Artificial Intelligence (AI) to help write malicious software without all the pesky prohibitions on such activity enforced by ChatGPT and Google Bard, has started adding restrictions on how the service can be used. Faced with customers trying to use WormGPT to create ransomware and phishing scams, the 23-year-old Portuguese programmer who created the project now says his service is slowly morphing into “a more controlled environment.” The large language models (LLMs) made by ChatGPT parent OpenAI or Google or Microsoft all have various safety measures designed to prevent people from abusing them for nefarious purposes — such as creating malware or hate speech. In contrast, WormGPT has promoted itself as a new LLM that was created specifically for cybercrime activities.

CVE-2023-37646: Bitberry Software produces a growing range of products for Windows PCs, and has been doing so since 2000

An issue in the CAB file extraction function of Bitberry File Opener v23.0 allows attackers to execute a directory traversal.

CVE-2023-36546: DLL Hijacking – Finding CVE-2023-36546 in PEStudio 9.52

An issue in PEStudio v.9.52 allows a remote attacker to execute arbitrary code via a crafted DLL file to the PESstudio exeutable.