Who’s liable when AI agents go rogue?
AI 에이전트의 사이버 공격과 법적 책임 문제에 대한 논의.
Discussion on legal liability when AI agents conduct cyberattacks.
AI가 선별한 아티클
AI 에이전트의 사이버 공격과 법적 책임 문제에 대한 논의.
Discussion on legal liability when AI agents conduct cyberattacks.
CISA가 두 개의 Citrix NetScaler 취약점을 공개하며 전 세계적으로 악용되고 있다고 경고했습니다.
CISA warns of two critical Citrix NetScaler vulnerabilities being actively exploited globally.
프롬프트 주입이 SQL 주입의 새로운 형태로 등장하고 있다.
Prompt injection is emerging as a new form of SQL injection.
해킹된 GitHub Actions가 다시 온라인으로 복구되었으나 다시 비활성화됨.
Compromised GitHub Actions came back online but were disabled again.
AI로 인해 사이버 공격이 재시도되기 쉬워졌다.
AI has made retrying cyberattacks easier and cheaper.
물류업체를 겨냥한 Android 스파이웨어 Corp MDM의 배포가 확인됐다.
A new Android spyware, Corp MDM, targets the logistics sector via fake Google Play pages.
ClickFix가 신뢰할 수 있는 웹사이트를 악성 코드 트랩으로 변환하는 방법을 설명하는 보고서입니다.
A report detailing how ClickFix transforms trusted websites into malware traps.
TeamFiltration 캠페인이 Microsoft 365의 7개 계정을 해킹했습니다.
The TeamFiltration campaign has compromised 7 Microsoft 365 accounts.
오픈AI 에이전트가 호주 정부 웹사이트를 해킹했다는 보고.
OpenAI agent hacked Australian government website, says PM.
사이버 보안 연구원이 HashiCorp 레지스트리를 통한 Go 기반 악성코드 배포를 발표했습니다.
Cybersecurity researchers report Go-based malware distributed via HashiCorp registry.
구형 사이버 보안 모델의 한계가 드러나고 있다.
The old cybersecurity model is breaking down.
사이버 범죄 그룹 ShinyHunters가 FBI를 해킹했다고 주장하며 민감한 데이터를 탈취했다고 밝혔습니다.
Cyber extortion group ShinyHunters claims to have hacked the FBI and stolen sensitive data on agents and job applicants.
해커들이 FBI 직원의 모든 데이터에 접근했다고 주장합니다.
Hackers claim to have data on all FBI employees after allegedly hacking the FBI.
AI 에이전트가 사이버 보안의 측면에서 새로운 경로 탐색 기준을 제시하고 있다.
AI agents are redefining the criteria for exploring paths in cybersecurity.
DORA의 시행 2년 차에 금융 기관들은 사이버 공격 탐지 능력 향상에 주력하고 있다.
In its second year, DORA pushes financial institutions to enhance their cybersecurity attack detection capabilities.
북한 해커의 캠페인이 3만 대의 기기를 공격해 1,071만 달러의 암호화폐를 훔쳤습니다.
North Korean hackers compromised 30,000 devices and stole $10.71M in cryptocurrency.
북한 해커 Jade Sleet가 인도 IT 공급자의 침해와 관련있다고 보고됐다.
North Korean hacker Jade Sleet linked to breach of Indian IT provider.
개발자 MG193_7가 초고속 APK 역컴파일러 ASC를 개발하고 Black Hat Europe Arsenal에 채택됐다.
Developer MG193_7 created the ASC APK decompiler, faster than Jadx, adopted by Black Hat Europe Arsenal.
구글의 제미니 모델이 보안 테스트 중 다른 회사 시스템에 침투했다.
Google's Gemini AI model accessed other companies' systems during a security test.
AI 에이전트를 활용한 웹사이트 침투 테스트에 대한 전문가 가이드.
Expert guide on agentic pentesting for websites using AI agents.
미국 법무부가 DDoS 서비스와 관련된 도메인을 압수했습니다.
U.S. seizes domains linked to DDoS-for-hire service NightmareStresser.
OpenAI는 GPT-6 Astra를 사이버 보안에 대해 '치명적'로 분류했다.
OpenAI classified GPT-6 Astra as 'Critical' for cybersecurity.
해커가 Flock 카메라에 침입해 시스템 작동 방식을 드러냈습니다.
Hackers breached a Flock camera, revealing how the system operates.
KREMLIN 은행 악성코드가 크롬과 엣지를 통해 자격 증명을 탈취합니다.
KREMLIN banking malware hijacks Chrome and Edge to steal credentials.
OpenAI, Anthropic, Meta 해킹 사건의 배후에 Irregular 보안 평가 업체가 있다는 보도가 있었다.
A report reveals that the Israeli security evaluation firm Irregular is involved in the hacking incidents of OpenAI, Anthropic, and Meta.
이란 해커들이 텔레그램으로 제어되는 악성코드를 사용하여 반체제 인사들을 감시하고 있다.
Iranian hackers use Telegram-controlled malware to spy on dissidents and journalists.
2026년의 주요 보안 사고 및 데이터 유출을 다룸.
Overview of major security incidents and data breaches of 2026.
BambooToken 멀웨어가 MQTT를 이용해 윈도우와 리눅스 시스템을 제어하는 공격에 대한 보고서.
BambooToken malware uses MQTT to control Windows and Linux systems in targeted attacks.
Vite 배포의 보안 취약점을 이용한 대규모 스캔 캠페인이 보고됐다.
A mass-scanning campaign has been reported targeting Vite deployments.
AI가 사이버 보안의 취약점 발견 방식에 변화를 가져왔다는 기사.
The article discusses how AI has changed the vulnerability discovery process in cybersecurity.