Pentagon Bans China-Based Engineers Over Hacking Concerns

The US Department of Defense has banned technology vendors from using China-based personnel to maintain its cloud systems, following revelations that sensitive government data had been exposed to potential foreign interference.

The new directive comes after a ProPublica investigation uncovered how Microsoft relied on engineers based in China for nearly a decade to service Pentagon networks. Experts warn that this practice could have given Beijing unprecedented access to critical defense information.

Read More

SonicWall Urges Urgent Credential Reset After Backup File Exposure

SonicWall has issued an urgent advisory encouraging customers to reset all login credentials after researchers discovered that configuration backup files from MySonicWall were inadvertently exposed on public storage.

These files contained encrypted passwords, pre-shared keys, and TLS certificates used by SonicOS appliances, creating the potential for threat actors to decrypt credentials and gain unauthorized access to organizational networks.

Read More

ChatGPT Tricked Into Solving CAPTCHAs: Security Risks for AI and Enterprise Systems

Cornell University researchers have revealed that ChatGPT agents can be manipulated to bypass CAPTCHA protections and internal safety rules, raising serious concerns about the security of large language models (LLMs) in enterprise environments.

By using a technique known as prompt injection, the team demonstrated that even advanced anti-bot systems and AI guardrails can be circumvented when contextual manipulation is involved.

Read More