A spyware vendor is using a vulnerability in Arm’s GPU kernel drivers to gain access to free memory, with possible limited, targeted exploitation. The flaw, tracked as CVE-2023-4211, affects drivers in Arm’s Mali GPU, often found in Android devices. Google released a patch for its Pixel devices in September. Arm advised users to upgrade to a fixed version. The flaw’s discoverers were from Google’s Threat Analysis Group and Project Zero.

AI Pentesting Tool ‘Villager’ Merges Kali Linux with DeepSeek AI for Automated Security Attacks
Security researchers at Straiker’s AI Research (STAR) team have uncovered Villager, an AI-native penetration testing framework developed by Chinese-based group Cyberspike that has already accumulated