MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth Attacks

MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth Attacks

The malware loader known as MintsLoader has been used to deliver a PowerShell-based remote access trojan called GhostWeaver.
“MintsLoader operates through a multi-stage infection chain involving obfuscated JavaScript and PowerShell scripts,” Recorded Future’s Insikt Group said in a report shared with The Hacker News.
“The malware employs sandbox and virtual machine evasion techniques, a domain

Read More
Microsoft Sets Passkeys Default for New Accounts; 15 Billion Users Gain Passwordless Support

Microsoft Sets Passkeys Default for New Accounts; 15 Billion Users Gain Passwordless Support

A year after Microsoft announced passkeys support for consumer accounts, the tech giant has announced a big change that pushes individuals signing up for new accounts to use the phishing-resistant authentication method by default.
“Brand new Microsoft accounts will now be ‘passwordless by default,'” Microsoft’s Joy Chik and Vasu Jakkal said. “New users will have several passwordless options for

Read More
AI’s Behavioral Extremes

AI’s Behavioral Extremes

In this week’s episode: We explore the One Million Chessboards project, a massive collaborative web experiment where users can move pieces across a million shared chessboards in real-time. Anthropic’s model welfare research program, AI ethics, and the need for interpretability. OpenAI’s recent struggle with ChatGPT’s personality crisis as they roll back an update that made the AI too sycophantic. Meta’s troubling chatbot sex problem: Social Media, LLMS, sex, and Zuckerberg — what could go wrong?

Read More
X