Welcome to LoopSec

We are a group that is focused on teaching others how to program and exposing any corruption we might run into. If you would like any assistence or would like to join us then please apply. Please sign in/sign up to view the full site.

 




The Hacker News
  • UNC3753 Used Vishing and Physical Intrusions in U.S. Data Theft Extortion Campaign
    Monday, 8. June 2026 09:39 o'clock
    Cybersecurity researchers have disclosed details of a financially motivated data theft extortion campaign that has targeted dozens of organizations across professional, legal, and financial services in the U.S. between January and May 2026. The activity has been attributed by Google Mandiant and Google Threat Intelligence Group (GTIG) to a threat actor dubbed UNC3753, which is also known as
  • VS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain Attacks
    Monday, 8. June 2026 08:08 o'clock
    Microsoft has announced that Visual Studio Code (VS Code) will apply a two-hour delay before extensions for the integrated development environment (IDE) are updated automatically to a newer version in an attempt to tackle software supply chain threats. "When automatic updates are enabled, new versions are auto-updated two hours after they are published, adding an extra layer of protection
  • New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration
    Saturday, 6. June 2026 15:36 o'clock
    OpenAI has begun rolling out a new Lockdown Mode to ChatGPT for eligible personal accounts to reduce the risk of data exfiltration arising from prompt injection attacks. The feature is primarily designed for people and organizations that handle sensitive data and require stricter protection guarantees. Lockdown Mode is available to logged-in users across Free, Go, Plus, and Pro, and
  • Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI
    Saturday, 6. June 2026 10:29 o'clock
    A researcher has reverse-engineered the iOS SDK that Bright Data embeds in consumer apps and documented how it turns devices, including always-on smart TVs, into exit nodes that relay web-scraping traffic for a data business Bright Data markets heavily to the AI industry. The company, the successor to Luminati, operates what it calls the largest residential proxy network in the world,
  • CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog
    Saturday, 6. June 2026 10:14 o'clock
    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity security flaw impacting SolarWinds Serv-U multi-protocol file server software to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2026-28318 (CVSS score: 7.5), is a denial-of-service (DoS) bug that causes the service to crash
  • AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs
    Saturday, 6. June 2026 09:28 o'clock
    Two things landed within days of each other this week. A security startup reported 21 previously unknown vulnerabilities in FFmpeg, the media library inside almost everything that touches video, all of them found by an autonomous AI agent. The same week, Google shipped Chrome 149 with patches for 429 security bugs, the most ever in a single release. Only the FFmpeg bugs were found by AI.
My Account



Not a member yet? Sign up now!