Hacktivists respond to the arrest of Telegram\u2019s CEO in France. Stealthy Linux malware stayed undetected for two years. Versa Networks patches a zero-day vulnerability. Google has patched its tenth zero-day vulnerability of 2024. Researchers at Arkose labs document Greasy Opal. A flaw in Microsoft 365 Copilot allowed attackers to exfiltrate sensitive user data. Gafgyt targets crypto mining in cloud native environments. Microsoft investigates an Exchange Online message quarantine issue. Our guest is Bar Kaduri, research team leader at Orca Security talking about AI Goat, the first open source AI security learning environment based on the OWASP top 10 ML risks. Kentucky Prisoners Trick Tablets to Generate Fake Money.\xa0\nMiss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you\u2019ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.\n\nCyberWire Guest\nOur guest is Bar Kaduri, research team leader at Orca Security talking about AI Goat, the first open source AI security learning environment based on the OWASP top 10 ML risks. Available on GitHub, AI Goat is an intentionally vulnerable AI environment built in Terraform that includes numerous threats and vulnerabilities for testing and learning purposes. Learn more.\xa0\n\nSelected Reading\nArrest of Telegram CEO sparks cyberattacks against French websites (SC Media)\nUnveiling sedexp: A Stealthy Linux Malware Exploiting udev Rules (AON)\t\nStealthy 'sedexp' Linux malware evaded detection for two years (Bleeping Computer)\nGoogle tags a tenth Chrome zero-day as exploited this year (Bleeping Computer)\nVersa fixes Director zero-day vulnerability exploited in attacks (Bleeping Computer)\nGreasy Opal: Greasing the Skids for Cybercrime (Arkose Labs)\nMicrosoft Copilot Prompt Injection Vulnerability Let Hackers Exfiltrate Personal Data (Cyber Security News)\nGafgyt Botnet: Weak SSH Passwords Targeted For GPU Mining (Security Boulevard)\nMicrosoft: Exchange Online mistakenly tags emails as malware (Bleeping Computer)\nKentucky prisoners hack state-issued computer tablets to digitally create $1M. How\u2019d they do it? (Union Bulletin)\n\nShare your feedback.\nWe want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.\xa0\n\nWant to hear your company in the show?\nYou too can reach the most influential leaders and operators in the industry. Here\u2019s our media kit. Contact us at cyberwire@n2k.com to request more info.\nThe CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. \xa9 N2K Networks, Inc.\nLearn more about your ad choices. Visit megaphone.fm/adchoices