Red Hot Cyber
Cybersecurity is about sharing. Recognize the risk, combat it, share your experiences, and encourage others to do better than you.
Search
Fortinet 320x100px
Redhotcyber Banner Sito 970x120px Uscita 101125

Category: Cybercrime and Darknet

Anthropic launches Claude Code! Now code writes itself.

Anthropic has launched a web version of Claude Code , its rapidly growing AI assistant for programmers, which can now be used directly from your browser. Starting Monday, the new platform is available to subscribers to the Pro, Max, and Max+ plans, which cost between $20 and $200 per month. The web version is accessible from the claude.ai website, by selecting the “Code” tab, or via the iOS mobile app. Previously, Claude Code existed only as a CLI tool launched from the terminal, but the company is now focusing on enabling developers to build and manage their AI agents in a familiar

131 WhatsApp Web Chrome Extensions Used for Mass Spam Discovered

Researchers discovered 131 extensions for automating WhatsApp Web in the official Chrome store. All were being used to send mass spam to Brazilian users. According to Socket analysts, all these extensions share the same code base, design patterns, and infrastructure. Together, they have approximately 20,905 active users. “This isn’t classic malware; it’s a high-risk, automated spam campaign that violates the platform’s rules,” explains Kirill Boychenko, Socket specialist. “The code is injected directly into the WhatsApp web page, working with WhatsApp scripts to automate mass mailings and schedule them, thus bypassing spam protection.” The ultimate goal of this campaign is to send mass

Google launches Gemini 3.0 Pro: new multimodal language model

Google has quietly launched Gemini 3.0 Pro , the latest development in its multimodal language model. The stated goal: to improve contextual reasoning, the quality of results, and integration with Google tools (Workspace, Chrome, Android). Evolution compared to Gemini 2.5 Pro Version 2.5 Pro had already set a standard in multimodal reasoning and handling long contexts, especially across documents in Workspace. Gemini 3.0 Pro builds on these foundations, but introduces faster inference, greater factual consistency, and better understanding of mixed inputs (graphs, PDFs, screenshots). According to internal tests on AI Studio and Vertex AI, the new model reduces errors (“hallucinations”), produces more

Oracle Critical Patch Update October 2025: 374 vulnerabilities fixed

Oracle has released its new quarterly security update, the October 2025 Critical Patch Update , which addresses 374 vulnerabilities identified in numerous Oracle products. This is one of the largest patches in recent years, with fixes spanning databases, middleware, enterprise applications, and communications systems. As always, Oracle recommends that customers apply patches without delay, as many of the fixed vulnerabilities can be exploited remotely, even without authentication. This makes the update particularly urgent for all organizations using Oracle infrastructure in critical environments. An update that affects much of the Oracle ecosystem The October bulletin covers a long list of products, including: In

China launches UBIOS, the first national standard for system firmware.

The Global Computing Consortium (GCC) officially announced the release of the group standard ” Uniform Basic Input/Output System (UBIOS) Infrastructure Specification” (T/GCC 3007-2025) on October 21. This is China’s first fully independent firmware framework, designed to support distributed architectures and hardware-software cooperation. The initiative represents a historic milestone for China, which thus achieves its first national standard for a complete, standardized and scalable firmware system , laying the foundation for a truly autonomous technology ecosystem. The technical document was prepared by 13 institutions and companies , including the China Electronics Standardization Institute, Huawei Technologies Co., Ltd., Nanjing Baiao Software Co., Ltd., and

ChatGPT buys me bread! Atlas, the smart browser for macOS, is here.

OpenAI has released the ChatGPT Atlas browser for macOS. It integrates artificial intelligence directly into the interface and can perform tasks on web pages without having to switch between tabs. Atlas works like a regular browser, but with a ChatGPT sidebar . The assistant can read the page content, answer questions about the text, summarize the content, suggest next steps, and use chat memory for context. The user retains control over their privacy; browsing data is not used to train the model by default, and “browser memory” can be disabled in the settings. Agent mode has been added. This allows the assistant

Visual Studio Code under attack: GlassWorm worm spreads via extensions

Researchers at Koi Security have detected a supply chain attack using OpenVSX and the Visual Studio Code Marketplace . Criminal hackers are distributing self-replicating malware called GlassWorm, which has already been installed approximately 35,800 times. Experts have discovered at least eleven GlassWorm -infected extensions in OpenVSX and one in the Visual Studio Code Marketplace: The malware hides its malicious code using invisible Unicode characters. Furthermore, GlassWorm has worm-like functionality and can spread independently: using the victim’s stolen credentials, it infects other extensions the victim has access to. The attackers use the Solana blockchain to control their botnet, using Google Calendar as a

Malaysia launches new RM2 billion submarine cable for digital revolution

Malaysia has announced the construction of a new submarine fiber-optic cable system to boost connectivity between the eastern and western parts of the country, aiming to support the growth of its digital economy. The Deputy Minister of Communications said on Sunday, October 12, that the government has approved an investment of RM2 billion to build the project, called the Chang Ming Submarine Cable System . The initiative is part of the government’s Madani Submarine Cable Connection (SALAM) program, which aims to improve the national network infrastructure. The system, approximately 3,190 kilometres long, will connect East and West Malaysia, providing increased data transmission

In-depth analysis! Your toilet now knows you better than your GP.

Kohler enters the digital health market with an unusual product: a toilet-mounted module equipped with a camera and a recognition system that monitors health. The device, called Dekoda , costs $599; pre-orders are open now, with first shipments expected on October 21, 2025. It is the first development from Kohler Health, a new initiative that aims to integrate accurate medical measurements into everyday life. The system analyzes the contents of the toilet after each use and interprets the data to assess hydration levels, gastrointestinal function, and the presence of blood. Artificial intelligence algorithms process the data, and the results are sent to

What you write on ChatGPT is evidence. A user’s identity was revealed in an investigation.

For the first time, the U.S. Department of Homeland Security has asked OpenAI to disclose the identity of a ChatGPT user whose requests were implicated in a child pornography investigation . The warrant, issued to investigators at Homeland Security Investigations (HSI) and released after being declassified in Maine, marks the first known instance in which authorities formally require a generative AI developer to disclose data on specific requests. The investigation began with attempts to identify the administrator of a large darknet website that distributed child pornography. Undercover agents managed to contact the alleged administrator, who casually mentioned using ChatGPT. During the conversation,