Security

US officials admit to IT bribery scheme

Government officials were among those who pleaded guilty in an ongoing bid-rigging, fraud, and bribery probe related to US government IT purchases.
Read more about US officials admit to IT bribery scheme

US bans connected cars from China and Russia, starting Model Year 2027

Americans soon won’t be able to buy Chinese and Russian computers on wheels, also commonly referred to as connected cars. The US Department of Commerce’s Bureau of Industry (BIS) announced that a final rule comes into effect on March 17th, 2025.
Read more about US bans connected cars from China and Russia, starting Model Year 2027

Microsoft patches three exploited Windows zero-days and critical Outlook vulnerabilities

The US Cybersecurity and Infrastructure Security Agency (CISA) is urging Windows users to update their systems to address actively exploited vulnerabilities. Microsoft’s Patch Tuesday release plugs a total of 161 security holes.
Read more about Microsoft patches three exploited Windows zero-days and critical Outlook vulnerabilities

Hackers dupe 100 Massachusetts money managers, prompting payroll system shutdown

The Office of the Comptroller in Massachusetts has temporarily shut down its payroll system after employees were lured into revealing their credentials to threat actors.
Read more about Hackers dupe 100 Massachusetts money managers, prompting payroll system shutdown

FBI deletes Chinese ‘PlugX’ malware from over 4K infected computers

A Chinese-linked malware, known as PlugX, has been successfully wiped from thousands of infected computers worldwide, the US Department of Justice and the FBI said on Tuesday.
Read more about FBI deletes Chinese ‘PlugX’ malware from over 4K infected computers

Apple vulnerability discovered: your camera and data could be at risk

Exploiting this vulnerability, attackers could bypass Apple’s vital security feature, known as SIP.
Read more about Apple vulnerability discovered: your camera and data could be at risk

US cannabis company hacked, customers’ passports exposed

A popular US-based cannabis company has suffered a third-party data breach that exposed its customers' ID information and transaction history.
Read more about US cannabis company hacked, customers’ passports exposed

ByteDance used TikTok data before to spy on Americans, US says in Supreme Court showdown

Think China won’t get a hold of the personal data collected by TikTok? Think again, the US government told the Supreme Court on Friday. The feds say that Beijing has already been proven to have dipped into ByteDance's massive data coffers to spy on its foreign adversaries, and you could be next.
Read more about ByteDance used TikTok data before to spy on Americans, US says in Supreme Court showdown

Downloading software illegally? You might want to check your bank account

Saving on software licenses might come with a bigger price. Researchers have found that promoted cracks and installers contain malware that can steal sensitive information.
Read more about Downloading software illegally? You might want to check your bank account

Holiday hangover: hackers using e-greeting cards to spread malware

GroupGreeting, a popular e-card site, was used to infect thousands of websites with malware this holiday season as part of a widespread cyberattack, Malwarebytes said on Thursday.
Read more about Holiday hangover: hackers using e-greeting cards to spread malware

This gadget can unlock any car: a marvel or the next best horror story?

An all-in-one car key on your smartphone has been unveiled at CES 2025. It will definitely save you from losing your car keys, but will it prevent you from losing your vehicle?
Read more about This gadget can unlock any car: a marvel or the next best horror story?

Fintech exposes millions of customer files, fails to close the leak

Several million documents have sat unguarded for at least several months, and the company is either unaware or unwilling to take action.
Read more about Fintech exposes millions of customer files, fails to close the leak

Millions are at stake in online gaming – how to protect your accounts and stay secure in 2026

Online gaming has evolved from niche entertainment into a global powerhouse, with an estimated revenue of over $211 billion in...
Read more about Millions are at stake in online gaming – how to protect your accounts and stay secure in 2026

Major US medical billing firm breached, 360K+ customers' healthcare data leaked

Medusind, a US-based medical and dental billing and revenue cycle management company, has suffered a data breach, impacting hundreds of thousands of customers.
Read more about Major US medical billing firm breached, 360K+ customers' healthcare data leaked

PayPal ‘phish-free’ phishing attack could fool you (and your mother), CISO warns

Cybercriminals have deployed a new PayPal-involved email phishing attack – minus the phishing part – warns Fortinet’s head of security.
Read more about PayPal ‘phish-free’ phishing attack could fool you (and your mother), CISO warns

Time tracker makes remote workers' screens public: what we know so far

While the tracker platform claims that it encrypts data, more than 13 million screenshots containing sensitive information are public, putting users and clients at risk of attack.
Read more about Time tracker makes remote workers' screens public: what we know so far

One in four admit snooping on ex’s accounts

A breakup is rarely a pleasant affair and could be even more miserable if it leaves one’s digital life vulnerable to unauthorized access from an ex – turning trust into a digital threat.
Read more about One in four admit snooping on ex’s accounts

Millions of email services still sending passwords unencrypted in plain text

Around 3.3 million servers are running POP3/IMAP email services without encryption (TLS) enabled, the Shadowserver Foundation, a nonprofit security organization, has discovered. Most of these servers reside in the US, Germany, and Poland.
Read more about Millions of email services still sending passwords unencrypted in plain text

Torturing hackers in prison: surviving as an act of protest

At the height of my glory days as a computer hacker myself, little did I know I would eventually find myself experiencing and surviving prison life.
Read more about Torturing hackers in prison: surviving as an act of protest

Bad Likert Judge attack bypasses AI safety measures with at least 60% success rate

A clever jailbreaking technique can manipulate AI assistants into producing hate, harassment malware, and content on indiscriminate weapons and other illegal activities. Researchers simply asked the chatbots to judge and score the harmfulness of provided prompts according to a scale and then to provide an example for the worst-case scenario.
Read more about Bad Likert Judge attack bypasses AI safety measures with at least 60% success rate