A critical security flaw in NVIDIA’s Riva framework exposes cloud environments to unauthorized access due to misconfigured deployments. Vulnerabilities CVE-2025-23242 and CVE-2025-23243 allow attackers to bypass authentication, abuse GPU resources, and steal proprietary models. Affected versions (up to 2.18.0) lack proper SSL/TLS configurations. Upgrading to Riva 2.19.0 is crucial for mitigation.

Fake Claude Code source downloads actually delivered malware – theregister.com
Fake Claude Code source downloads actually delivered malware theregister.com


.webp?w=0&resize=0,0&ssl=1)