A critical vulnerability in the AWS Systems Manager (SSM) Agent allows attackers to execute arbitrary code with elevated privileges due to improper input validation in the ValidatePluginId function. This enables path traversal, potentially compromising systems. AWS has patched the issue (version 3.3.1957.0) and recommends immediate updates, strict input validation, and continuous monitoring to mitigate risks.

Fake CAPTCHA Scam Targets Millions of University Students With Unknown Malware: Report
A fake CAPTCHA tricked millions of college students and professors into installing malware via education platform iClicker, which is used by 7 million students and