24 Jul

Pope’s official prayer app commits cardinal sin, leaks 700K+ users’ info

Security (Security) hole-ier than thou Click To Pray, a prayer app endorsed by the Pope with hundreds of thousands of users worldwide, has leaked people’s

Author rabih
24 Jul

Europol flags 4,340 ‘horrific’ URLs linked to The Com

Security Stop the spread (of online recruiting and propaganda) Europol and its partners’ investigators flagged 4,340 “horrific” URLs for removal over several weeks in June

Author rabih
24 Jul

Uncle Sam tells overseas cybercrooks their visas are canceled

Security Policy targets online scammers, sextortionists, and potentially their immediate families Marco Rubio says the US will deny visas to foreign nationals involved in cybercrime

Author rabih
23 Jul

OpenAI-Hugging Face attack doesn’t mean agents are evil – unless you tell them to be

Security Attack models gonna attack Open AI’s admission this week that its agents escaped the sandbox and autonomously hacked model repository Hugging Face has spawned

Author rabih
23 Jul

Researchers replace downloaded macOS apps with evil twins, Apple shrugs

Security Gatekeeper has one job and it’s not doing it for some software Apple macOS apps that have been downloaded from the internet and run

Author rabih
23 Jul

Year-long Russian attacks infect users as soon as they look at an email

PATCHES Phishing for dummies Kremlin cyber goons have been breaking into government and commercial networks for at least a year by exploiting a Zimbra bug

Author rabih
23 Jul

Millions of California-bought cars can be hijacked via Bluetooth

security Aftermarket dealer-installed KARR/SWDS security systems all use the same secure key, say UCSD researchers At least 2.2 million vehicles fitted with dealer-installed KARR and

Author rabih
23 Jul

Oracle drops 1,449 security patches like it’s the new normal

Security Experts say the era of AI bug hunting is here, so defenders will simply have to adapt to busier workloads It’s a bad day

Author rabih
23 Jul

Iran-linked crews are probing more flavors of US industrial kit

SECURITY CISA widens alert beyond Rockwell controllers as intruders target internet-facing devices across critical infrastructure The US Cybersecurity and Infrastructure Security Agency (CISA) has expanded

Author rabih
23 Jul

One ChatGPT link could smuggle a rogue AI agent into your company

security Researchers say OpenAI flaw let phishing bait create an autonomous corporate mole armed with employee access One click on what looked like an ordinary

Author rabih
23 Jul

If you get knocked on the head and get all your devices stolen and have amnesia, Google will let you back in with a selfie

security You’ll need to be able to move your head side to side to make sure you’re not a deepfake Tired of worrying about how

Author rabih
23 Jul

Swiss train maker tells ransomware crooks to get off at the next stop

Security Stadler refuses $12.3 demand after thieves swipe technical data through supplier platform Swiss rail manufacturer Stadler Rail says it refused a CHF 10 million

Author rabih
23 Jul

Talking smack about a doctor got him access to private medical files

SECURITY Who needs a working security badge when you know how to talk your way into the records room? PWNED Welcome back to PWNED, the

Author rabih
22 Jul

OpenAI scored an own goal with HuggingFace attack, showing how open Chinese models are winning

AI and ML Closed models with guardrails can still cause harm, but may also not be able to fix problems they caused OPINION OpenAI has

Author rabih
22 Jul

Linux kernel team publishes 432 CVEs in two days

security Sunday-to-Monday onslaught fuels speculation over AI-assisted bug reports If you’re responsible for Linux security, someone just dumped a pile of work onto your desk:

Author rabih
22 Jul

Sneaky Windows stealer targets 300+ apps, gives crims an AI profiler to maximize profits

EXCLUSIVE A Windows information-stealer targeting more than 300 applications comes equipped with a novel surveillance tool: an AI profiler that ranks infected victims so crooks

Author rabih
22 Jul

Greedy ransomware crews return for seconds after victims cough up first extortion payments

Security Some never saw their files again either, infosec biz Proofpoint finds Authorities have long warned organizations not to pay ransoms, and fresh figures underline

Author rabih
22 Jul

Council worker spared prison after four-day data-snooping spree

SECURITY Herefordshire employee handed suspended sentence for breach of Computer Misuse Act A council worker who “abused” his position to unlawfully access “highly sensitive” personal

Author rabih
Load moreLoadingAll items loaded