Hydra is discussed here as a malware family tied to metadata-poisoning attacks that target AI/ML software supply chains and model repositories.
Hydra is discussed here as a malware family tied to metadata-poisoning attacks that target AI/ML software supply chains and model repositories. The articles describe how poisoned metadata in Python libraries and Hugging Face models can enable remote code execution or manipulation of models, marking Hydra-like threats as a notable risk to AI workflows. The coverage of Android banking malware in the same set underscores the broader financial risk landscape that HYDRA-inspired actors could exploit.
Between March and May 2026, Zenity researchers observed three distinct campaigns where attackers hijacked exposed AI endpoints from Ollama and LiteLLM for offensive operations. The attackers exploited inference…
Cybersecurity researchers have identified a new Android banking trojan named Sturnus, capable of stealing banking credentials and accessing encrypted messages from apps like WhatsApp, Telegram, and Signal. The malware…
The Herodotus Android Trojan has emerged as a sophisticated banking malware that mimics human typing to evade detection by security systems. It is capable of stealing credentials, logging keystrokes, and intercepting…
Recent advancements in intrusion detection systems (IDS) have focused on improving dataset reliability for anomaly detection. The CSE-CIC-IDS2018 dataset has been developed to address the shortcomings of previous…
On June 29, 2026, Offensive Security released Kali Linux 2026.2, introducing nine new tools and significant improvements to VM boot times. The update includes enhancements to the GNOME 50 and KDE Plasma 6.6 desktop…
Kali Linux has launched version 2025.4, marking its final update for the year. This release includes three new tools, improvements to desktop environments, and enhanced support for Wayland. The update also features a…
Vulnerabilities have been identified in popular AI and ML Python libraries used in Hugging Face models, allowing remote attackers to embed malicious code in metadata. This code executes automatically when a file with…