Cyber Defense Advisors

Month: July 2023

Practice Your Security Prompting Skills

Gandalf is an interactive LLM game where the goal is to get the chatbot to reveal its password. There are eight levels of difficulty, as the chatbot gets increasingly restrictive instructions as to how it will answer. It’s a great teaching tool. I am stuck on Level 7. Feel free to give hints and discuss […]

Cyber News, Cyber Threat Trends

Practice Your Security Prompting Skills

Gandalf is an interactive LLM game where the goal is to get the chatbot to reveal its password. There are eight levels of difficulty, as the chatbot gets increasingly restrictive instructions as to how it will answer. It’s a great teaching tool. I am stuck on Level 7. Feel free to give hints and discuss […]

Cyber News, Cyber Threat Trends

Chinese APT41 Linked to WyrmSpy and DragonEgg Surveillanceware

Lookout attributed WyrmSpy and DragonEgg to APT41 due to overlapping Android signing certificates

Cyber News, Cyber Threat Trends

Chinese APT41 Linked to WyrmSpy and DragonEgg Surveillanceware

Lookout attributed WyrmSpy and DragonEgg to APT41 due to overlapping Android signing certificates

Cyber News, Cyber Threat Trends

How Cyber Threat Intelligence Practitioners Should Leverage Automation and AI

The Cyber Threat Intelligence Summit discussed how automation and generative AI could help CTI practitioners tackle the overload of data they have to process

Cyber News, Cyber Threat Trends

Industry Experts Urge CISA to Update Secure by Design Guidance

A letter authored by industry experts says that CISA should include specific details on how to implement security-by-design through threat modeling

Cyber News, Cyber Threat Trends

Industry Experts Urge CISA to Update Secure by Design Guidance

A letter authored by industry experts says that CISA should include specific details on how to implement security-by-design through threat modeling

Cyber News, Cyber Threat Trends

Scam Job Offers Target Uni Students

Threat actors exploit high cost of living

Cyber News, Cyber Threat Trends
  • by
  • July 19, 2023

Bad.Build Flaw in Google Cloud Build Raises Concerns of Privilege Escalation

Cybersecurity researchers have uncovered a privilege escalation vulnerability in Google Cloud that could enable malicious actors tamper with application images and infect users, leading to supply chain attacks. The issue, dubbed Bad.Build, is rooted in the Google Cloud Build service, according to cloud security firm Orca, which discovered and reported the issue. “By abusing the flaw and […]

Cyber News, Cyber Threat Trends