FreshRSS

🔒
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ ☆ ✇ WIRED

The Mystery of Hezbollah’s Deadly Exploding Pagers

By: Lily Hay Newman, Matt Burgess — September 17th 2024 at 18:31
At least eight people have been killed and more than 2,700 people have been injured in Lebanon by exploding pagers. Experts say the blasts point toward a supply chain compromise, not a cyberattack.
☐ ☆ ✇ WIRED

Apple’s New Passwords App May Solve Your Login Nightmares

By: Matt Burgess — September 16th 2024 at 15:52
Apple is launching its first stand-alone password manager app in iOS 18. Here’s what you need to know.
☐ ☆ ✇ WIRED

A Creative Trick Makes ChatGPT Spit Out Bomb-Making Instructions

By: Lily Hay Newman — September 14th 2024 at 09:30
Plus: New evidence emerges about who may have helped 9/11 hijackers, UK police arrest a teen in connection with an attack on London’s transit system, and Poland’s spyware scandal enters a new phase.
☐ ☆ ✇ WIRED

Apple Vision Pro’s Eye Tracking Exposed What People Type

By: Matt Burgess — September 12th 2024 at 10:00
The Vision Pro uses 3D avatars on calls and for streaming. These researchers used eye tracking to work out the passwords and PINs people typed with their avatars.
☐ ☆ ✇ WIRED

Hackers Threaten to Leak Planned Parenthood Data

By: Matt Burgess, Andrew Couts — September 7th 2024 at 11:30
Plus: Kaspersky’s US business sold, Nigerian sextortion scammers jailed, and Europe’s controversial encryption plans return.
☐ ☆ ✇ WIRED

YubiKeys Are a Security Gold Standard—but They Can Be Cloned

By: Dan Goodin, Ars Technica — September 5th 2024 at 21:01
Security researchers have discovered a cryptographic flaw that leaves the YubiKey 5 vulnerable to attack.
☐ ☆ ✇ WIRED

Russia’s Most Notorious Special Forces Unit Now Has Its Own Cyber Warfare Team

By: Andy Greenberg — September 5th 2024 at 17:00
Unit 29155 of Russia’s GRU military intelligence agency—a team responsible for coup attempts, assassinations, and bombings—has branched out into brazen hacking operations with targets across the world.
☐ ☆ ✇ WIRED

Taylor Swift Concert Terror Plot Was Thwarted by Key CIA Tip

By: Lily Hay Newman — August 31st 2024 at 10:30
Plus: China-linked hackers infiltrate US internet providers, authorities crack down on a major piracy operation, and a ransomware gang claims attacks during the Paris Olympics.
☐ ☆ ✇ WIRED

Powerful Spyware Exploits Enable a New String of ‘Watering Hole’ Attacks

By: Lily Hay Newman — August 29th 2024 at 14:17
Suspected Russian hackers have compromised a series of websites to utilize sophisticated spyware exploits that are eerily similar to those created by NSO Group and Intellexa.
☐ ☆ ✇ WIRED

Notorious Iranian Hackers Have Been Targeting the Space Industry With a New Backdoor

By: Lily Hay Newman — August 28th 2024 at 15:19
In addition to its long-standing password spraying attacks, Microsoft says Iran-backed hacker group Peach Sandstorm—or APT 33—has developed custom malware dubbed “Tickler.”
☐ ☆ ✇ WIRED

The US Navy Has Run Out of Pants

By: Lily Hay Newman — August 24th 2024 at 10:30
Plus: The US intelligence community formally blames Iran for Trump campaign hack, aircraft-tracking platform FlightAware says a “configuration error” exposed sensitive user data, and more.
☐ ☆ ✇ WIRED

The US Government Wants You—Yes, You—to Hunt Down Generative AI Flaws

By: Lily Hay Newman — August 21st 2024 at 15:02
The AI ethics nonprofit Humane Intelligence and the US National Institute of Standards and Technology are launching a series of contests to get more people probing for problems in generative AI systems.
☐ ☆ ✇ WIRED

An AWS Configuration Issue Could Expose Thousands of Web Apps

By: Lily Hay Newman — August 20th 2024 at 22:00
Amazon has updated its instructions for how customers should more securely implement AWS's traffic-routing service known as Application Load Balancer, but it's not clear everyone will get the memo.
☐ ☆ ✇ WIRED

The Slow-Burn Nightmare of the National Public Data Breach

By: Lily Hay Newman — August 16th 2024 at 18:31
Social Security numbers, physical addresses, and more—all available online. After months of confusion, leaked information from a background-check firm underscores the long-term risks of data breaches.
☐ ☆ ✇ WIRED

Nearly All Google Pixel Phones Exposed by Unpatched Flaw in Hidden Android App

By: Lily Hay Newman — August 15th 2024 at 13:00
A fix is coming, but data analytics giant Palantir says it’s ditching Android devices altogether because Google’s response to the vulnerability has been troubling.
☐ ☆ ✇ WIRED

A Single Iranian Hacker Group Targeted Both Presidential Campaigns, Google Says

By: Andy Greenberg — August 14th 2024 at 22:27
APT42, which is believed to work for Iran’s Revolutionary Guard Corps, targeted about a dozen people associated with both Trump’s and Biden’s campaigns this spring, according to Google’s Threat Analysis Group.
☐ ☆ ✇ WIRED

Your Gym Locker May Be Hackable

By: Matt Burgess — August 14th 2024 at 17:59
Security researchers say they’ve extracted digital management keys from select electronic lockers and revealed how they could be cloned.
☐ ☆ ✇ WIRED

Want to Win a Bike Race? Hack Your Rival’s Wireless Shifters

By: Andy Greenberg — August 14th 2024 at 11:00
Please don’t, actually. But do update your Shimano Di2 shifters’ software to prevent a new radio-based form of cycling sabotage.
☐ ☆ ✇ WIRED

Thousands of Corporate Secrets Were Left Exposed. This Guy Found Them All

By: Matt Burgess — August 10th 2024 at 23:00
Security researcher Bill Demirkapi found more than 15,000 hardcoded secrets and 66,000 vulnerable websites—all by searching overlooked data sources.
☐ ☆ ✇ WIRED

Google Researchers Found Nearly a Dozen Flaws in Popular Qualcomm Software for Mobile GPUs

By: Lily Hay Newman — August 9th 2024 at 22:55
The vulnerabilities, which have been patched, may have novel appeal to attackers as an avenue to compromising phones.
☐ ☆ ✇ WIRED

ATM Software Flaws Left Piles of Cash for Anyone Who Knew to Look

By: Lily Hay Newman — August 9th 2024 at 18:37
Six vulnerabilities in ATM-maker Diebold Nixdorf’s popular Vynamic Security Suite could have been exploited to control ATMs using “relatively simplistic attacks.”
☐ ☆ ✇ WIRED

‘Sinkclose’ Flaw in Hundreds of Millions of AMD Chips Allows Deep, Virtually Unfixable Infections

By: Andy Greenberg — August 9th 2024 at 12:00
Researchers warn that a bug in AMD’s chips would allow attackers to root into some of the most privileged portions of a computer—and that it has persisted in the company’s processors for decades.
☐ ☆ ✇ WIRED

How Hackers Extracted the ‘Keys to the Kingdom’ to Clone HID Keycards

By: Andy Greenberg — August 9th 2024 at 11:00
A team of researchers have developed a method for extracting authentication keys out of HID encoders, which could allow hackers to clone the types of keycards used to secure offices and other areas worldwide.
☐ ☆ ✇ WIRED

Computer Crash Reports Are an Untapped Hacker Gold Mine

By: Lily Hay Newman — August 8th 2024 at 23:22
One hacker solved the CrowdStrike outage mystery with simple crash reports, illustrating the wealth of detail about potential bugs and vulnerabilities those key documents hold.
☐ ☆ ✇ WIRED

Tricky Web Timing Attacks Are Getting Easier to Use—and Abuse

By: Lily Hay Newman — August 8th 2024 at 21:19
New research shows how known techniques for finding weaknesses in websites are actually practical in uncovering vulnerabilities, for better or worse.
☐ ☆ ✇ WIRED

Microsoft’s AI Can Be Turned Into an Automated Phishing Machine

By: Matt Burgess — August 8th 2024 at 18:20
Attacks on Microsoft’s Copilot AI allow for answers to be manipulated, data extracted, and security protections bypassed, new research shows.
☐ ☆ ✇ WIRED

USPS Text Scammers Duped His Wife, So He Hacked Their Operation

By: Matt Burgess — August 8th 2024 at 14:50
The Smishing Triad network sends up to 100,000 scam texts per day globally. One of those messages went to Grant Smith, who infiltrated their systems and exposed them to US authorities.
☐ ☆ ✇ WIRED

Watch How a Hacker’s Infrared Laser Can Spy on Your Laptop’s Keystrokes

By: Andy Greenberg — August 8th 2024 at 11:00
Hacker Samy Kamkar is debuting his own open source version of a laser microphone—a spy tool that can invisibly pick up the sounds inside your home through a window, and even the text you’re typing.
☐ ☆ ✇ WIRED

A Flaw in Windows Update Opens the Door to Zombie Exploits

By: Lily Hay Newman — August 7th 2024 at 17:20
A researcher found a vulnerability that would let hackers strategically downgrade a target’s Windows version to reexpose patched vulnerabilities. Microsoft is working on fixes for the issue.
☐ ☆ ✇ WIRED

A New Plan to Break the Cycle of Destructive Critical Infrastructure Hacks

By: Lily Hay Newman — August 6th 2024 at 17:20
As digital threats against US water, food, health care, and other vital sectors loom large, a new project called UnDisruptable27 aims to help fix cybersecurity weaknesses where other efforts have failed.
☐ ☆ ✇ WIRED

How Project 2025 Would Put US Elections at Risk

By: Eric Geller — August 5th 2024 at 10:30
Experts say the “nonsensical” policy proposal, which largely aligns with Donald Trump’s agenda, would weaken the US agency tasked with protecting election integrity, critical infrastructure, and more.
☐ ☆ ✇ WIRED

US Hands Over Russian Cybercriminals in WSJ Reporter Prisoner Swap

By: Dhruv Mehrotra, Andrew Couts — August 3rd 2024 at 10:30
Plus: Meta pays $1.4 million in a historic privacy settlement, Microsoft blames a cyberattack for a major Azure outage, and an artist creates a face recognition system to reveal your NYPD “coppelganger.”
☐ ☆ ✇ WIRED

A $500 Open Source Tool Lets Anyone Hack Computer Chips With Lasers

By: Andy Greenberg — August 1st 2024 at 11:00
The RayV Lite will make it hundreds of times cheaper for anyone to carry out physics-bending feats of hardware hacking.
☐ ☆ ✇ WIRED

How Infostealers Pillaged the World’s Passwords

By: Lily Hay Newman, Matt Burgess — July 29th 2024 at 11:30
Infostealer malware is swiping millions of passwords, cookies, and search histories. It’s a gold mine for hackers—and a disaster for anyone who becomes a target.
☐ ☆ ✇ WIRED

A North Korean Hacker Tricked a US Security Vendor Into Hiring Him—and Immediately Tried to Hack Them

By: Jon Brodkin, Ars Technica — July 26th 2024 at 12:00
KnowBe4 detailed the incident in a recent blog post as a warning for other potential targets.
☐ ☆ ✇ WIRED

A Hacker ‘Ghost’ Network Is Quietly Spreading Malware on GitHub

By: Matt Burgess — July 24th 2024 at 11:00
Cybersecurity researchers have spotted a 3,000-account network on GitHub that is manipulating the platform and spreading ransomware and info stealers.
☐ ☆ ✇ WIRED

How Russia-Linked Malware Cut Heat to 600 Ukrainian Buildings in Deep Winter

By: Andy Greenberg — July 23rd 2024 at 09:00
The code, the first of its kind, was used to sabotage a heating utility in Lviv at the coldest point in the year—what appears to be yet another innovation in Russia’s torment of Ukrainian civilians.
☐ ☆ ✇ WIRED

The Feds Say These Are the Russian Hackers Who Attacked US Water Utilities

By: Andy Greenberg, Lily Hay Newman — July 20th 2024 at 10:30
Plus: The FBI unlocks the Trump shooter’s phone, a security researcher gets legal threats for exposing hackable traffic lights, and more.
☐ ☆ ✇ WIRED

Don’t Fall for CrowdStrike Outage Scams

By: Lily Hay Newman — July 19th 2024 at 22:19
Swindlers are spinning up bogus websites in an attempt to dupe people with “CrowdStrike support” scams following the security firm's catastrophic software update.
☐ ☆ ✇ WIRED

The US Supreme Court Kneecapped US Cyber Strategy

By: Eric Geller — July 17th 2024 at 10:00
After the Supreme Court limited the power of federal agencies to craft regulations, it’s likely up to Congress to keep US cybersecurity policy intact.
☐ ☆ ✇ WIRED

Hackers Claim to Have Leaked 1.1 TB of Disney Slack Messages

By: Lily Hay Newman — July 15th 2024 at 21:10
A hacker group called “NullBulge” says it stole more than a terabyte of Disney’s internal Slack messages and files from nearly 10,000 channels in an apparent protest over AI-generated art.
☐ ☆ ✇ WIRED

AT&T Paid a Hacker $370,000 to Delete Stolen Phone Records

By: Kim Zetter — July 14th 2024 at 17:57
A security researcher who assisted with the deal says he believes the only copy of the complete dataset of call and text records of “nearly all” AT&T customers has been wiped—but some risks may remain.
☐ ☆ ✇ WIRED

Spyware Users Exposed in Major Data Breach

By: Andrew Couts — July 13th 2024 at 10:30
Plus: The Heritage Foundation gets hacked over Project 2025, a car dealership software provider seems to have paid $25 million to a ransomware gang, and authorities disrupt a Russian bot farm.
☐ ☆ ✇ WIRED

The Sweeping Danger of the AT&T Phone Records Breach

By: Lily Hay Newman — July 12th 2024 at 17:44
Telecom giant AT&T says a major data breach has exposed the call and text records of “nearly all” of its customers, epitomizing the dire state of data security.
☐ ☆ ✇ WIRED

Notorious Hacker Kingpin ‘Tank’ Is Finally Going to Prison

By: Matt Burgess — July 11th 2024 at 16:37
The cybercrime boss, who helped lead the prolific Zeus malware gang and was on the FBI’s “most wanted” list for years, has been sentenced to 18 years and ordered to pay more than $73 million.
☐ ☆ ✇ WIRED

Google Is Adding Passkey Support for Its Most Vulnerable Users

By: Lily Hay Newman — July 10th 2024 at 10:00
Google is bringing the password-killing “passkey” tech to its Advanced Protection Program users more than a year after rolling them out broadly.
☐ ☆ ✇ WIRED

The $11 Billion Marketplace Enabling the Crypto Scam Economy

By: Andy Greenberg, Lily Hay Newman — July 10th 2024 at 07:00
Deepfake scam services. Victim data. Electrified shackles for human trafficking. Crypto tracing firm Elliptic found all were available for sale on an online marketplace linked to Cambodia’s ruling family.
☐ ☆ ✇ WIRED

Hackers Leaking Taylor Swift Tickets? Don’t Get Your Hopes Up

By: Matt Burgess, Andy Greenberg — July 6th 2024 at 10:30
Plus: Researchers uncover a new way to expose CSAM peddlers, OpenAI suffered a secret cyberattack, cryptocurrency thefts jump in 2024, and Twilio confirms hackers stole 33 million phone numbers.
☐ ☆ ✇ WIRED

The Tech Crash Course That Trains US Diplomats to Spot Threats

By: Eric Geller — July 2nd 2024 at 11:00
The US State Department is training diplomats in cybersecurity, privacy, telecommunications, and other technology issues, allowing them to advance US policy abroad.
☐ ☆ ✇ WIRED

The Problem the US TikTok Crackdown and Kaspersky Ban Have in Common

By: Lily Hay Newman — July 1st 2024 at 10:30
While Kaspersky and TikTok make very different kinds of software, the US has targeted both over national security concerns. But the looming bans have larger implications for internet freedom.
☐ ☆ ✇ WIRED

Google Is Piloting Face Recognition for Office Security

By: Lily Hay Newman — June 29th 2024 at 10:30
Plus: A cloud company says notorious Russian hacker group APT29 attacked it, Chinese hackers use ransomware to hide their espionage campaigns, and a bank popular with startups discloses a cyberattack.
☐ ☆ ✇ WIRED

Inside a Violent Gang's Ruthless Crypto-Stealing Home Invasion Spree

By: Andy Greenberg, Matt Giles — June 28th 2024 at 10:30
More than a dozen men threatened, assaulted, tortured, or kidnapped 11 victims in likely the worst-ever crypto-focused serial extortion case of its kind in the US.
☐ ☆ ✇ WIRED

The Julian Assange Saga Is Finally Over

By: Dell Cameron — June 25th 2024 at 13:09
WikiLeaks founder Julian Assange has agreed to plead guilty to one count of espionage in US court on Wednesday, ending a years-long legal battle between the US government and a controversial publisher.
☐ ☆ ✇ WIRED

Red Tape Is Making Hospital Ransomware Attacks Worse

By: Matt Burgess — June 24th 2024 at 09:00
With cyberattacks increasingly targeting health care providers, an arduous bureaucratic process meant to address legal risk is keeping hospitals offline longer, potentially risking lives.
☐ ☆ ✇ WIRED

A Catastrophic Hospital Hack Ends in a Leak of 300M Patient Records

By: Andy Greenberg, Andrew Couts — June 22nd 2024 at 10:30
Plus: Alleged Apple source code leaks online, cybercrime group Scattered Spider's alleged kingpin gets arrested, and more.
☐ ☆ ✇ WIRED

Hackers Detail How They Allegedly Stole Ticketmaster Data From Snowflake

By: Kim Zetter — June 17th 2024 at 09:30
A ShinyHunters hacker tells WIRED that they gained access to Ticketmaster’s Snowflake cloud account—and others—by first breaching a third-party contractor.
☐ ☆ ✇ WIRED

Medical-Targeted Ransomware Is Breaking Records After Change Healthcare’s $22M Payout

By: Andy Greenberg — June 12th 2024 at 10:30
Cybersecurity firm Recorded Future counted 44 health-care-related incidents in the month after Change Healthcare’s payment came to light—the most it’s ever seen in a single month.
☐ ☆ ✇ WIRED

Ransomware Is ‘More Brutal’ Than Ever in 2024

By: Jordan Pearson — June 10th 2024 at 14:01
As the fight against ransomware slogs on, security experts warn of a potential escalation to “real-world violence.” But recent police crackdowns are successfully disrupting the cybercriminal ecosystem.
☐ ☆ ✇ WIRED

Apple Is Coming for Your Password Manager

By: Andrew Couts — June 8th 2024 at 10:30
Plus: A media executive is charged in an alleged money-laundering scheme, a ransomware attack disrupts care at London hospitals, and Google’s former CEO has a secretive drone project up his sleeve.
☐ ☆ ✇ WIRED

Microsoft Will Switch Off Recall by Default After Security Backlash

By: Andy Greenberg — June 7th 2024 at 16:11
After weeks of withering criticism and exposed security flaws, Microsoft has vastly scaled back its ambitions for Recall, its AI-enabled silent recording feature, and added new privacy features.
❌