WINDOWS VARIANT OF SPRYOCKS MALWARE TARGETS GOVERNMENT ORGANIZATIONS
■ AI-SUMMARIZED FROM 2 SOURCES ▸ TIMELINE
A Windows version of the SprySOCKS Linux malware has been deployed in attacks against government organizations across at least four countries. The cross-platform threat represents an expansion of the malware's targeting capabilities.
■ MORE FROM THE SECURITY DESK
Chinese startup Z.AI has open sourced its ZCode coding assistant and disabled certain features following user complaints that the tool was uploading codebases to overseas servers without permission.
The Open Observatory of Network Interference (OONI) is expanding its crowdsourced effort to map global internet censorship. The project invites users to contribute measurements to what it describes as the largest open dataset on network interference.
A new technique allows attackers to exfiltrate neural network weights from machine learning models, potentially exposing proprietary AI systems. Security researchers demonstrated the vulnerability across multiple model architectures.
A malicious npm campaign demonstrates how threat actors are evading supply chain protections by embedding malware in package runtime behavior instead of installation scripts. The 'indexed-btree' package exemplifies this evolving attack technique.