Security

US lawmakers push new bill to ban DeepSeek and other Chinese AI models across gov’t agencies

US lawmakers on Wednesday have introduced a bill in both the House and Senate that would prohibit federal agencies from using artificial intelligence models developed in China, such as DeepSeek, as well as from Russia and other nations hostile to the US.
Read more about US lawmakers push new bill to ban DeepSeek and other Chinese AI models across gov’t agencies

SonicWall warns of trojanized NetExtender app stealing sensitive data

Think before you download – a trojanized version of SonicWall’s NetExtender is being used to steal sensitive information.
Read more about SonicWall warns of trojanized NetExtender app stealing sensitive data

Trust in tech instead of sticky notes to secure your online accounts, NCSC says

Password managers and passkeys help simplify our digital life, reduce login stress, and combat password fatigue.
Read more about Trust in tech instead of sticky notes to secure your online accounts, NCSC says

GhostSec’s ground war on Israeli satellites

Following the recent escalation between Israel and Iran, the pro-Palestinian hacktivist group GhostSec has reportedly shifted its focus toward space-based assets. It is particularly interested in Israeli satellites.
Read more about GhostSec’s ground war on Israeli satellites

No laughing matter: tourist claims JD Vance meme got him deported

A Norwegian tourist said he was denied entry to the US after border guards found a meme of a baby-head JD Vance on his phone.
Read more about No laughing matter: tourist claims JD Vance meme got him deported

Hacker’s guide to asymmetrical OSINT warfare

I’ve never experienced a warzone or had to survive an invading army, but I know something about powerlessness.
Read more about Hacker’s guide to asymmetrical OSINT warfare

Highly targeted spear phishing campaign targets corporate leaders, financial executives

Hacking techniques have become more sophisticated. In mid-May, the privately held cybersecurity company Trellix uncovered a new spear-phishing campaign using legitimate tools that target finance executives and CFOs at banks, insurance firms, utilities and investment companies worldwide.
Read more about Highly targeted spear phishing campaign targets corporate leaders, financial executives

Just got hired? Beware, as scammers prefer you to the old-timers

Newbies are more likely to click on phishing emails than longer-term employees, making them a very lucrative target for cybercriminals.
Read more about Just got hired? Beware, as scammers prefer you to the old-timers

Robots making long-distance relationships easier are a potential cybersecurity risk

There is a range of mobile robots, designed to spy on your pets, which people use to navigate long-distance relationships.
Read more about Robots making long-distance relationships easier are a potential cybersecurity risk

UK gov warns music fans: £1.6m lost to ticket fraud in 2024

The UK government has warned music goers to remain vigilant about last-minute ticket sales on social media ahead of the Glastonbury Festival, the UK’s world-famous five-day music and performing arts festival.
Read more about UK gov warns music fans: £1.6m lost to ticket fraud in 2024

China-linked Salt Typhoon hacked Canadian telecom

Hackers linked to China’s Salt Typhoon group, who breached several US telecommunications companies last year – including Viasat, Verizon, and T-Mobile – also hacked a Canadian telecom provider in February.
Read more about China-linked Salt Typhoon hacked Canadian telecom

Ex-CISA head urges vigilance, warns retaliatory cyberattacks after Iran nuclear strikes likely

Jen Easterly, former head of the US Cybersecurity and Infrastructure Security Agency (CISA), on Monday posted an alert directed at US critical infrastructure operators to be on high alert for cyberattacks after this weekend’s US air strikes on Iranian nuclear facilities.
Read more about Ex-CISA head urges vigilance, warns retaliatory cyberattacks after Iran nuclear strikes likely

Lost devices "systemic risk" to UK cybersecurity

Thousands of UK government laptops, phones, and tablets have been lost or stolen, putting the country’s cybersecurity at risk.
Read more about Lost devices "systemic risk" to UK cybersecurity

Gigabytes of Disneyland data “just end up” in ransomware gangs’ hands

Anubis ransomware gang claims to have 64GB of data about Disneyland Paris that just “ended up” in their hands.
Read more about Gigabytes of Disneyland data “just end up” in ransomware gangs’ hands

Oxford City Council reports election worker data breach (2001–2022)

Oxford City Council has been forced to temporarily shut down its main systems to investigate a cybersecurity incident that occurred over the weekend of June 7th-8th.
Read more about Oxford City Council reports election worker data breach (2001–2022)

McLaren Health Care hit by another data breach, exposing 743K people’s data

McLaren Health Care, a Michigan healthcare provider, has suffered another data breach, exposing hundreds of thousands of people's personally identifiable information (PII).
Read more about McLaren Health Care hit by another data breach, exposing 743K people’s data

Anonymous and the hidden cost of CSAM vigilantism

Recently, a member of Anonymous confessed to me that police had seized his phone as key evidence in an investigation into his abuser. He had been a victim himself and had recorded a confession from his abuser on the device. That recording was later classified as evidence, along with the phone.
Read more about Anonymous and the hidden cost of CSAM vigilantism

Massive 170K database filled to the brim with plaintext PII exposed

An unencrypted and non-password-protected database containing over 170,000 records potentially belonging to a real estate management and investment company was left open for anyone to exploit.
Read more about Massive 170K database filled to the brim with plaintext PII exposed

Why it might be time to leave the WhatsApp group

More than a decade after Facebook (now Meta) acquired WhatsApp for a record $19 billion, the world's most popular messenger is predictably starting to look a lot more like Facebook, as even messaging morphs into another billboard for advertisers.
Read more about Why it might be time to leave the WhatsApp group

Fake virus alerts overwhelm authorities: combat them by disabling push notifications

“Your computer is damaged by suspicious programs!” This notification usually is not a virus – it’s a scam. But you might get malware if you click on it. Authorities are flooded with reports from people who receive similar pop-ups.
Read more about Fake virus alerts overwhelm authorities: combat them by disabling push notifications