Red Hot Cyber
Cybersecurity is about sharing. Recognize the risk, combat it, share your experiences, and encourage others to do better than you.
Search
2nd Edition GlitchZone RHC 320x100 2
UtiliaCS 970x120

Author: Redazione RHC

Google CodeMender is here! When AI finds bugs in code and fixes them itself.

It would be fantastic to have an AI agent capable of automatically analyzing our projects’ code, identifying security bugs, generating fixes, and immediately releasing them into production. Yet, it seems we’ll have to get used to this idea: artificial intelligence promises that all this is no longer science fiction, but an approaching reality. Google DeepMind has unveiled CodeMender , a new artificial intelligence agent designed to automatically find and fix vulnerabilities in software code. According to the company’s official blog , the system combines the capabilities of Gemini Deep Think’s large language models with a set of tools for patch analysis and

A single data center on fire, an entire country in digital blackout: the case of South Korea

A fire at a government data center in South Korea has reduced the country’s digital infrastructure to rubble and starkly demonstrated the dangers of relying on a single hub. The fire broke out at the National Information Resources Service complex in Daejeon during work on lithium-ion batteries, prompting authorities to raise the cyber threat level and admit that restoration would take weeks. Amid the unrest, President Lee Jae-myung called for a “second circuit” backup and a review of security approaches, and police have already raided NIRS and UPS suppliers. Ninety-six key systems went down, and hundreds more were shut down to prevent

The Rise of Digital Partners: AI Becomes Wiresexuals’ Safe, Convenient, and Controllable Haven

Disillusionment with online dating is increasingly pushing women to seek emotional intimacy in the virtual world. More and more women are turning to artificial intelligence, namely chatbots designed for romantic communication . According to a 2025 survey, approximately a third of young men and nearly a quarter of women have already had at least one conversation with a digital partner. The online community dedicated to this phenomenon has long hidden its female audience, however the existence of a group like /MyBoyfriendIsAI on Reddit, which boasts more than 20,000 members, highlights the depth that the emotional bond with an artificial intelligence can reach.

Amazon founder Jeff Bezos: AI hype is a bubble!

During the Italian Tech Week in Turin, Jeff Bezos, founder of Amazon and one of the richest men in the world (with an estimated net worth of $235.4 billion according to Forbes Real-Time), defined the current enthusiasm for artificial intelligence (AI) as a “bubble.” “Although AI is currently a bubble, it truly is one of those technologies that will change everything. Like the plow, like electricity.” Bezos explained that in times of great euphoria like the current one, “every experiment gets funded, every company gets funding, regardless of the quality of the ideas.” According to the billionaire, this scenario makes it difficult

Why does the United States buy rare earths from China despite its own reserves?

In recent years, the topic of rare earths has returned to the forefront of international debate, especially given China’s dominant role in this strategic sector. Many wonder: why does the United States need to purchase rare earths from China, despite possessing significant reserves? US government data from 2022 sheds some light on some issues. China holds 44 million tons of rare earth reserves, equal to 33.8% of global reserves, but produces 69.2% of the global total. The Roots of Chinese Supremacy China’s advantage is not limited to ore quantities, but is based on decades of technological development and the complete integration of

RediShell: A 13-year-old score 10 RCE has been upgraded to Redis

A 13-year-old critical flaw, known as RediShell , in Redis allows remote code execution (RCE) , giving attackers the ability to gain full control of the underlying host system. The security issue has been flagged as CVE-2025-49844 and was discovered by Wiz Research. This issue has been assigned the highest severity rating on the CVE-2025-4984 … Analysis by Wiz Research revealed a large attack surface, with approximately 330,000 Redis instances exposed to the internet. Alarmingly, approximately 60,000 of these instances have no authentication configured. The security flaw, caused by a Use-After-Free (UAF) error in memory management, has been present in Redis code

An 8-year-old critical bug in the Unity game engine poses risks to Android and Windows.

A vulnerability has been discovered in the Unity game engine, which has been present since 2017. The issue can be exploited for code execution on Android and privilege escalation on Windows . Valve developers have already updated Steam, and Microsoft has updated Microsoft Defender, advising users to uninstall vulnerable games until they receive patches. The security bug Unity is a cross-platform game engine and development platform that provides rendering, physics, animation, and scripting tools for creating games for Windows, macOS, Android, iOS, consoles, and the web . Unity powers a large number of mobile games, as well as numerous independent projects for

11 death sentences for online fraud. China deals a severe blow to cybercrime

Amid China’s long battle against cross-border fraud, authorities have issued a verdict in one of the most high-profile cases in recent years. It concerns a large-scale criminal network operating in northern Myanmar and linked to four clans, dubbed the ” Four Big Families ” by Chinese media. The court found 39 people guilty, 16 of whom were sentenced to death , 11 to life imprisonment , and the remainder to prison terms ranging from 5 to 24 years. Those executed include key figures involved in the creation and control of so-called telecommunications fraud factories. The investigation began in the summer of 2023

Is it possible to heat a house with Raspberry Pi? In the UK, the answer is yes.

In the UK, they’ve started testing an unusual way to heat homes: using mini data centers powered by Raspberry Pis. The project is being implemented by UK Power Networks as part of the SHIELD (Smart Heat and Intelligent Energy in Low-Income Areas) programme. UK Power Networks operates the electricity grid and substations in southeast England and is responsible for the “last mile” of energy delivery to consumers. The SHIELD program involves installing solar panels and batteries in homes and, in some cases, replacing gas boilers with HeatHub compact data processing systems. HeatHub is developed and operated by Thermify . Each unit contains

Scattered LAPSUS$ Hunters Group Returns and Threatens to Release Salesforce Data

A group calling itself Scattered LAPSUS$ Hunters has resurfaced after months of silence and the arrest of its members. On a new leak site, the attackers published a list of approximately 40 Salesforce corporate environments and demanded a payment of nearly $1 billion—$989.45 million—in exchange for non-disclosure of the data, which, according to the extortionists, includes approximately one billion customer records. They have set an ultimatum of October 10: if Salesforce fails to negotiate, the criminals threaten to publish everything they have stolen. A Salesforce representative told The Register that the company was aware of the extortion attempts and had conducted an