Researchers at Shandong University have shown a fast new way to pull data off computers that are cut off from every network. The technique, called TrojPix, tweaks on-screen pixels in ways the eye cannot see, so that the video cable carrying

Researchers have developed a novel method, dubbed TrojPix, capable of exfiltrating data from air-gapped systems by manipulating on-screen pixels. This technique exploits the electromagnetic emissions generated by video cables to transmit sensitive information.
The TrojPix attack works by subtly altering the pixels displayed on a computer screen. These alterations are designed to be imperceptible to the human eye, meaning users would not notice any visual anomalies. However, these minute changes cause distinct electromagnetic signals to be emitted from the video cable connecting the computer to its display.
These electromagnetic emissions can then be captured by an attacker positioned within a certain proximity to the target system. The captured signals are then decoded to reconstruct the data that was originally present on the air-gapped computer. This bypasses traditional network security measures, as the system has no external network connectivity.
The effectiveness of TrojPix relies on the fact that all computers, even those isolated from networks, must still render visual output to a display. This output is transmitted via cables, which inherently generate electromagnetic radiation. The researchers have demonstrated that these emissions can be modulated to carry data.
While the specific details of the data types that can be exfiltrated were not fully elaborated, the potential implications are significant. Air-gapped systems are typically used to store highly sensitive information, such as classified government data, financial records, or proprietary industrial secrets, due to their inherent security against remote network attacks.
The TrojPix attack presents a new threat vector for adversaries seeking to compromise these highly secured environments. It highlights the importance of considering physical and electromagnetic emanations as potential attack surfaces, even when network-based threats are mitigated.
Mitigation strategies for such an attack would likely involve physical security measures to prevent attackers from getting close enough to capture the emissions. Additionally, specialized shielding for video cables and displays could potentially disrupt or block the emanations. Further research into signal jamming or data masking techniques might also offer countermeasures.
This discovery underscores a broader challenge in cybersecurity: the constant evolution of attack methods that exploit often overlooked physical properties of computing hardware. As air-gapped systems are considered among the most secure, the emergence of such techniques necessitates a re-evaluation of existing security paradigms.

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

OpenAI has announced a $1 billion commitment to provide subsidized access to its Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. The initiative, named Daybreak for Frontline Defenders, will offer AI models, training, and technical support over the next six months, prioritizing water and wastewater utilities, electric grid operators, and local government entities. This move aims to equip organizations with limited budgets and staff against increasingly sophisticated cyber threats.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.