Cyber Mornings Daily is your go-to daily podcast for the latest cybersecurity news, trends, and insights, delivered by AI. Each episode delivers a concise and informative breakdown of the most pressing cyber threats, vulnerabilities, and breaches.
RSS iTunes YouTube Spotify Amazon MusicI see you found this webpage. Welcome to my little AI project. All audio and album art are generated with AI tools from Google. Generation is performed with a combination of Gemini for text and images, and NotebookLM for the audio portion.
2025-02-13
Nvidia AI Bugs, Poisoned PowerShell, & YouTube Leaks
A critical vulnerability in Nvidia's container software could allow attackers to gain root privileges on host servers by mounting the host’s root filesystem into a container, granting unrestricted access to all of the host’s files. This flaw affects AI applications running the vulnerable container toolkit, whether in the cloud or on-premises. Additionally, North Korean hackers are using a social engineering tactic called ClickFix, which involves deceiving victims into executing malicious PowerShell commands with administrative privileges, leading to malware infections. These attacks often involve spear-phishing emails with PDF attachments that direct targets to fake registration links. Finally, a Google vulnerability allowed the exposure of YouTube users' email addresses by chaining together exploits in YouTube and Pixel Recorder APIs. The flaw allowed access to Google Gaia IDs and then conversion into email addresses, which was a privacy risk for anonymous users.
DownloadPowered by Podcast Generator, an open source podcast publishing solution | Theme based on Bootstrap