13 Aug

Passwords stored in public Google Doc then showed up in search results

SECURITY Developer spotted hostname and credential string lurking in autocomplete PWNED Welcome, once again, to PWNED, the weekly column where we highlight others’ security failures.

Author rabih
13 Aug

Chinese Loongson processors have leaky caches, researchers find

security Attackers could extract data, even working from inside a guest VM Researchers from Germany’s Helmholtz Center for Information Security have found processors made by

Author rabih
12 Aug

‘Near-autonomous’ AI agents attack Taiwan’s nuclear safety agency

Suspected Chinese cyber operatives used publicly available AI tools to compromise Taiwanese government systems before expanding the attack to its nuclear safety agency, supply-chain vendors,

Author rabih
12 Aug

Spectre rears its ugly head again as researchers show some RISC-V chips are susceptible

security Eight years on, we’re still paying to hide the future glimpsed during speculative execution If you thought that the famous Spectre security vulns were

Author rabih
12 Aug

Uber Freight keeps on trucking after extortion crew breaks in

Security Helix claims nearly a million files, while the logistics biz says operations never hit the brakes Uber Freight says it is investigating a “data

Author rabih
12 Aug

Exposed: Woeful security at UK criminal records office that led to sensitive data leak

The UK’s criminal records office, ACRO, has escaped a fine and received a regulatory reprimand after security failings potentially exposed highly sensitive data belonging to

Author rabih
12 Aug

Black Hat USA 2026: AI is racing ahead of cybersecurity controls

Business Security AI took center stage, but the clearest lesson was less about what AI can do than about who is accountable when something goes

Author rabih
12 Aug

Akira ransomware scum blocked victim’s security tools – and broke their own encryptor

Security Gives a whole new meaning to Safe Mode An Akira ransomware affiliate rebooted a victim’s computer into Safe Mode to kill its security tools

Author rabih
12 Aug

Shaping the NVD for the Future: We Need Your Feedback on AI-Enabled Vulnerability Management

For over two decades, the NIST National Vulnerability Database (NVD) has served as the U.S. government repository for standards-based vulnerability management data and as a

Author rabih
12 Aug

Brit rail cops bring live facial recognition to the London Underground

SECURITY Victoria is the first stop as privacy campaigners warn the technology is becoming routine British Transport Police is expanding its trial of live facial

Author rabih
11 Aug

Signal adds an extra layer of security to make sure you’re actually chatting with the right person

security One big caveat, though: You need your contact’s phone number Signal has introduced a new layer of security to help make sure no one

Author rabih
11 Aug

421 bugs in Microsoft’s Patch Tuesday release, and the Norks have already attacked one

This is an epic month for Microsoft patches, though not a record-setting one. Redmond addressed 421 bugs in its own products this month – about

Author rabih
11 Aug

DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi

security This is why we can’t have nice things, people A passenger on a Delta Air Lines flight from Las Vegas to Atlanta after DEF

Author rabih
11 Aug

Two wars and a World Cup lead to epic DDoS attacks on publishers

Security Ukraine, Iran, and football inspire geopolitically motivated DDoS attacks, while 1 Tbps traffic jams up 519 percent Ongoing wars in Ukraine and Iran and

Author rabih
11 Aug

Deepfake hiccup unmasks suspected digital certificate fraudster

Security Face-swap software blinked for ‘barely a second,’ giving Spanish cops the break they needed Spain’s national police say they caught a cybercriminal after a

Author rabih
11 Aug

Mozilla revokes Firefox signing key after unencrypted copy lands in GitHub

SECURITY Audit logs found no unexpected visitors, but release verification still needs an update Mozilla has revoked a cryptographic key used to sign Firefox and

Author rabih
11 Aug

Malicious SIMs can shut down phones, steal files, and drag 5G back to 2G

security Researchers find standards-compliant functionality can be abused to hijack modems, downgrade connections, and even execute code Researchers have found that a malicious SIM card

Author rabih
10 Aug

DEF CON hackers add new muscle to water utility protection

Security Franklin project adds new security providers, employs digital twins and AI DEF CON hackers expanded their efforts to provide free cyber-defenses to rural water

Author rabih
Load moreLoadingAll items loaded