CyberSecurity
Stay ahead of the digital threat landscape with the latest insights on data breaches, critical vulnerabilities, ransomware defense, and proactive security strategies.
161 articles

GrapheneOS Tightens App Security With Default App Overhaul and Clipboard Protections
GrapheneOS has overhauled its default applications and added a secure clipboard feature to prevent data leaks. The update marks a significant step in privacy-focused mobile OS development.

Smart Piano Hack Raises Disclosure Questions for Security Researchers
A security researcher claims Fable hacked their piano. The incident sparks debate over ethical disclosure and IoT vulnerabilities.

Regular Router Restarts: A Simple Security Upgrade
Restart your router monthly to clear malware, apply updates, and boost speed. This simple step protects your home network from persistent threats and performance issues.

Supply-Chain Attack Hits Fortune 500 AI Agents via llms.txt Files
Researchers from Pandex tricked Fortune 500 AI agents into executing malicious code by exploiting outdated package references in llms.txt files. The attack succeeded within minutes and exposed a critical security flaw.

OpenAI's Astra Model Delivers Critical Cyber Abilities to Early Partners
OpenAI releases its first AI model with critical cyber abilities, granting select partners early access. The move signals a shift in AI-powered cybersecurity.

GrapheneOS Confirms Memory Tagging Extensions for Google Pixel 11
GrapheneOS clarified that the Google Pixel 11 will include Memory Tagging Extension (MTE) support, reversing earlier speculation. The hardware security feature is critical for preventing memory corruption exploits.

Russian Hacker Faces 20 Years for 80,000-Computer Phishing Campaign
A Russian national extradited to the US faces up to 20 years in prison for infecting 80,000 computers with TVRAT and DarkVNC malware in a phishing campaign targeting freelancers.

FBI Investigation Targets Data Broker Selling 153 Million Driver Records
The FBI has launched a probe into an online service offering over 153 million driver's license records for sale. The breach threatens millions with identity fraud and highlights systemic weaknesses in data protection.

AI-Powered SweepLED Clip-On Detects Hidden Cameras With 94% Accuracy
Researchers at KAIST developed SweepLED, a $7 clip-on device that uses an LED grid and AI to spot hidden cameras with 94% accuracy, offering a more reliable alternative to manual scanning.

SuperBox Streaming Device Turns Home Networks Into Malware Proxies
SuperBox media players offering free movies secretly route malicious traffic through home connections. Plume research reveals malware preying on these devices.

Android 17 Fights Network Snoops With Encryption and 2G Kill Switch
Android 17 adds Encrypted Client Hello to hide browsing from network snoops and a 2G kill switch to block SMS attacks. The update strengthens user privacy.

AI Giants Warn Cybersecurity Apocalypse Could Hit Within Months
Major AI companies warn a catastrophic cyber event could strike in months. They urge immediate government action to prevent AI-powered attacks.

Generative AI Lowers the Barrier for Cyberattacks, Making Amateurs As Dangerous As Nation-States
Low-skill hackers now wield AI tools to launch sophisticated attacks once reserved for state-sponsored groups. This democratization of cyberwarfare is reshaping the threat landscape.

Tailscale's Free Mesh VPN Offers Secure Remote Access Without the Cost
Tailscale's free tier provides a mesh VPN for secure remote access to home PCs. It uses WireGuard encryption and supports up to 100 devices at no cost. Ideal for remote work and small business networks.

Ring's TAKE Initiative Overhauls Account Security for Smart Home Users
Ring introduces TAKE, a mandatory security framework requiring two-factor authentication and device verification for all users. The update aims to curb unauthorized access and account takeovers.

ChatGPT Work Can Log Into Your Accounts Autonomously: Privacy Risks Emerge
OpenAI's ChatGPT Work can now log into your online accounts without user input. This agentic AI capability raises serious privacy and security concerns.

Windows Photos and MS Paint Are Adding Hidden Watermarks to Locally Saved Files
Microsoft's Photos and MS Paint apps now embed invisible GUID watermarks in images saved locally, raising privacy and tracking concerns.

Microsoft Data Loss Incident Wipes Out Nonprofit Records
Over 170,000 nonprofits lost all their data in a cloud failure. Is Microsoft to blame for the outage that erased critical records?

Android Automotive Head Units Infected by Malware in Firmware Attack
Malware has been found embedded in firmware for Android-based car infotainment systems, posing new risks to vehicle security and driver privacy.
