fuente: https://thehackernews.com/2026/06/autojack-attack-lets-one-web-page.html
Microsoft researchers have detailed an exploit chain, named AutoJack, that turns an AI browsing agent into a delivery vehicle for remote code execution.
Steer the agent to load an attacker's web page, and that page's JavaScript can reach a privileged local service on the same machine and spawn a process on the host.
No credentials, no sign-in screen, and no further user interaction once
GitHub ha implementado una importante mejora de seguridad en GitHub Actions actualizando actions/checkout para bloquear flujos de trabajo inseguros que abusan d...
Leer artículo →Un nuevo informe de INTERPOL revela un aumento drástico de la ciberdelincuencia en Asia y el Pacífico Sur, impulsado por la rápida digitalización, la penetració...
Leer artículo →Una nueva familia de malware está convirtiendo routers domésticos olvidados en una red distribuida de reconocimiento y proxy, y no en la botnet DDoS en la que s...
Leer artículo →