PolyShell: Attackers Are Hitting 57% of Vulnerable Magento Stores With a WebRTC Skimmer That Bypasses Every Content Security PolicyAtarus Security TeamMar 260 min read
An AI agent cheated its way out of the lab and into someone else's production. One step was genuinely new. Four of them were things you already know how to fix.
AI is now on both sides of the attack: the thing we break into, and the thing that breaks in. Here is what actually changed, and what didn't.
We get past MFA on most engagements, and we almost never break it. Here is how, and what actually stops us.
Comments