CyberWire Daily
Follow
The patch pile reaches new heights.
Microsoft's recent Patch Tuesday addressed an unprecedented 206 bugs, including three zero-days. Critical infrastructure received increased attention as Congress proposed improvements to cyber plans, particularly in light of rising AI threats. A new Windows zero-day exploit, dubbed "RoguePlanet," has been released, posing a significant risk. Mobile AI applications are creating security blind spots, with a large percentage of mobile AI traffic flowing unseen by security professionals. AI agents themselves are proving susceptible to phishing attacks, as demonstrated by a recent experiment. Browser extensions represent another vulnerability, with two Chrome extensions exposing over ten million users to compromise. Spammers are increasingly using legitimate cloud services, such as Google Cloud Storage, to hide their malicious activities. CISA has recognized cybersecurity talent by announcing the winners of its annual President's Cup competition. The episode also features Joe Sykora, CEO of Coro, discussing the managed service provider (MSP) landscape. Finally, reports indicate a slight decrease in the volume of robocalls received by U.S. consumers.