SecurityWeek’s weekly roundup covers major cybersecurity developments, including OpenAI’s disruption of a Cambodia-based scam network, Amgen’s cloud data theft incident, and Apple’s move to limit AI-generated bug bounty noise. It also highlights supply chain compromises, router backdoors, phishing and vishing attacks, and policy efforts targeting Chinese data center components. #OpenAI #Amgen #Apple #QuickFox #FDMTP #Zbtlink #DoubleCup #CountLoader #DeviceManager #IEHCorporation #TwoSigma #Point72 #Citadel
Keypoints
- OpenAI banned ChatGPT accounts tied to a Cambodia-based scam operation.
- Amgen confirmed proprietary and patient data theft from third-party cloud environments.
- Apple capped bug bounty submissions to reduce AI-generated false positives.
- QuickFox VPN was used in a supply chain attack to deliver the FDMTP implant.
- Zbtlink routers were found shipping with an unauthenticated root backdoor.