News
Apple patches decade-old iOS zero-day, possibly exploited by commercial spyware
Apple patched a zero-day vulnerability affecting every iOS version since 1.0, used in what the company calls an "extremely sophisticated attack" against targeted individuals.…
Supply chain attacks now fuel a 'self-reinforcing' cybercrime economy
Cybercriminals are turning supply chain attacks into an industrial-scale operation, linking breaches, credential theft, and ransomware into a "self-reinforcing" ecosystem, researchers say.…
Feeling brave? Ministry of Defence seeks £300K digital boss to manage £4.6B spend
The UK Ministry of Defence (MoD) is offering between £270,000 to £300,000 for a senior digital leader who will oversee more than £4.6 billion in spending and more than 3,000 specialist staff.…
Google: China's APT31 used Gemini to plan cyberattacks against US orgs
A Chinese government hacking group that has been sanctioned for targeting America's critical infrastructure used Google's AI chatbot, Gemini, to auto-analyze vulnerabilities and plan cyberattacks against US organizations, the company says.…
Microsoft warns that poisoned AI buttons and links may betray your trust
Amid its ongoing promotion of AI’s wonders, Microsoft has warned customers it has found many instances of a technique that manipulates the technology to produce biased advice.…
Devilish devs spawn 287 Chrome extensions to flog your browser history to data brokers
They know where you've been and they're going to share it. A security researcher has identified 287 Chrome extensions that allegedly exfiltrate browsing history data for an estimated 37.4 million installations.…
Posting AI-generated caricatures on social media is risky, infosec killjoys warn
If you've seen the viral AI work pic trend where people are asking ChatGPT to "create a caricature of me and my job based on everything you know about me" and sharing it to social, you might think it's harmless. You'd be wrong.…
Were telcos tipped off to *that* ancient Telnet bug? Cyber pros say the signs stack up
Telcos likely received advance warning about January's critical Telnet vulnerability before its public disclosure, according to threat intelligence biz GreyNoise.…
Payroll pirates are conning help desks to steal workers' identities and redirect paychecks
Exclusive When fraudsters go after people's paychecks, "every employee on earth becomes a target," according to Binary Defense security sleuth John Dwyer.…