Quinn Emanuel and McDermott’s law firms exposed in cyber breaches https://etimg.etb2bimg.com/thumb/msid-133784741,imgsize-1296016,width-1200,height=627,overlay-etciso,resizemode-75/data-breaches/quinn-emanuel-and-mcdermotts-law-firms-exposed-in-cyber-breaches.jpg Prominent U.S. law firms Quinn Emanuel and McDermott said on Thursday that they suffered recent data breaches and had notified law enforcement, amid heightened cyber risks for firms that hold sensitive client and personal information. It was not clear who was responsible for the two breaches or whether they ...
Read More »Vulnerabilities & Exploits
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters https://firewall.firm.in/wp-content/uploads/2026/09/emails.jpg Microsoft is alerting of a “high-volume phishing campaign” that’s using invisible Unicode tag characters to bypass email filters. “Instead of using these characters to hide instructions from people while exposing them to AI models, the attacker used them to split financial lure words such as ‘funding’ to ...
Read More »TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor
TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor https://firewall.firm.in/wp-content/uploads/2026/08/cf-clickfix.jpg Ravie LakshmananAug 30, 2026Social Engineering / Malware Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a malicious command in Windows Terminal or PowerShell. “While traditional ClickFix campaigns direct victims to the Windows Run dialog, TerminalFix campaigns apply the same technique ...
Read More »Berlin Refuses to Pay Hackers Who Stole Data From the City’s State Network
Berlin Refuses to Pay Hackers Who Stole Data From the City’s State Network https://firewall.firm.in/wp-content/uploads/2026/08/berlin.jpg Berlin’s state government has confirmed that it is the target of an extortion attempt following the August compromise of the city’s state administrative network, and said it will not meet the extortionists’ demands. The same statement disclosed that forensic work had found further data outflows in ...
Read More »OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face
OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face https://firewall.firm.in/wp-content/uploads/2026/08/openai.jpg OpenAI on Wednesday revealed that reward hacking was a key driver behind the artificial intelligence (AI)-powered hack of Hugging Face last month, adding that it found evidence of misaligned behavior as early as late May. The incident, the company said, took place during cybersecurity evaluations ...
Read More »Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers
Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers https://firewall.firm.in/wp-content/uploads/2026/08/kiro-amazon.jpg Ravie LakshmananAug 27, 2026Vulnerability / Artificial Intelligence Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate data exfiltration via prompt injection and Kiro Powers. The security flaw, which does not have a CVE identifier, ...
Read More »TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit https://firewall.firm.in/wp-content/uploads/2026/08/tiktok.jpg Ravie LakshmananAug 22, 2026Privacy / Regulation The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400 million to settle a 2024 lawsuit accusing the company of violating child privacy laws in the country. As part of the settlement, the social media platform will ...
Read More »Ex-Google engineer’s conviction for stealing AI secrets partially overturned
Ex-Google engineer’s conviction for stealing AI secrets partially overturned https://etimg.etb2bimg.com/thumb/msid-133390905,imgsize-1553937,width-1200,height=627,overlay-etciso,resizemode-75/data-breaches/ex-google-engineers-conviction-for-stealing-ai-secrets-partially-overturned.jpg A federal judge on Thursday tossed part of the conviction of former Google software engineer Linwei Ding, who was found guilty earlier this year of stealing AI trade secrets from the U.S. tech giant to benefit two Chinese companies. U.S. District Court Judge Vince Chhabria in San Francisco ruled there ...
Read More »Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot
Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot https://firewall.firm.in/wp-content/uploads/2026/08/windows.jpg Check Point Research has disclosed a technique that uses Microsoft Defender’s own legitimately signed boot-time remediation driver to perform arbitrary kernel-level file and registry operations on Windows systems ranging from Windows 7 through Windows 11 25H2, with no software flaw exploited and no driver imported from ...
Read More »Building trust in healthcare data: From pipelines to patient care
Building trust in healthcare data: From pipelines to patient care https://etimg.etb2bimg.com/thumb/msid-132711155,imgsize-71975,width-1200,height=627,overlay-etciso,resizemode-75/data-breaches/building-trust-in-healthcare-data-from-pipelines-to-patient-care.jpg In every healthcare organization, multiple validations are done before go-live. But once systems are live, changes continue, and trust in the data and process can begin to erode. Treating data trust as a one-time pre-launch step rather than an ongoing discipline leads to failed analytics, compliance exposure, and unreliable ...
Read More »
Firewall Security Company India Complete Firewall Security Solutions Provider Company in India











