On New Year’s Eve, NSO Group—the Israel-based company behind the Pegasus spyware, one of the world’s most sophisticated cyberweapons—quietly released a new transparency report. The 27-page document is carefully worded—even apologetic—and is intended to demonstrate resilience, progress, and responsibility to further strengthen the company’s human rights compliance program. It claims …
Read More »Security News This Week: US Agencies Urged to Patch Ivanti VPNs That Are Actively Being Hacked
A major coordinated disclosure this week called attention to the importance of prioritizing security in the design of graphics processing units (GPUs). Researchers published details about the “LeftoverLocals” vulnerability in multiple brands and models of mainstream GPUs—including Apple, Qualcomm, and AMD chips—that could be exploited to steal sensitive data, such …
Read More »A Flaw in Millions of Apple, AMD, and Qualcomm GPUs Could Expose AI Data
As more companies ramp up development of artificial intelligence systems, they are increasingly turning to graphics processing unit (GPU) chips for the computing power they need to run large language models (LLMs) and to crunch data quickly at massive scale. Between video game processing and AI, demand for GPUs has …
Read More »A Bloody Pig Mask Is Just Part of a Wild New Criminal Charge Against eBay
After the security firm Mandiant had its X account compromised earlier this month, the US Securities and Exchange Commission dealt with a similar intrusion this week. Attackers wrested control of the agency’s account for more than half an hour and posted false information during that time about a highly anticipated …
Read More »How to Stop Your X Account From Getting Hacked Like the SEC’s
This week, the United States Securities and Exchange Commission (SEC) suffered an embarrassing—and market-moving—breach in which a hacker gained access to its X social media account and published fake information about a highly anticipated SEC announcement related to bitcoin. The agency regained control of its account and deleted the post …
Read More »The SEC’s Official X Account Was ‘Compromised’ and Used to Post Fake Bitcoin News
The official X account of the United States Securities and Exchange Commission was “compromised” this afternoon, resulting in the publication of an “unauthorized” post, according to SEC chair Gary Gensler. The account, @SECGov, also said the account had been compromised. “The SEC has determined that there was unauthorized access to …
Read More »23andMe Blames Users for Recent Data Breach as It's Hit With Dozens of Lawsuits
It’s been nearly two years since Russia’s invasion of Ukraine, and as the grim milestone looms and winter drags on, the two nations are locked in a grueling standoff. In order to “break military parity” with Russia, Ukraine’s top general says that Kyiv needs an inspired military innovation that equals …
Read More »What It’s Like to Use Apple’s Lockdown Mode
With the releases of iOS 16 and macOS Ventura in 2022, Apple debuted its Lockdown Mode for people at particular risk of being targeted by mercenary spyware. The feature is essentially a set of configurations for iOS and macOS that limit or block niceties like link previews in Messages and …
Read More »Google Fixes Nearly 100 Android Security Issues
December was a hectic month for updates as firms including Apple and Google rushed to get patches out to fix serious flaws in their products before the holiday break. Enterprise software giants also issued their fair share of patches, with Atlassian and SAP squashing several critical bugs during December. Here’s …
Read More »The Worst Hacks of 2023
With political polarization, unrest, and violence escalating in many regions of the world, 2023 was fraught with uncertainty and tragedy. In digital security, though, the year felt more like a Groundhog Day of incidents caused by classic types of attacks, like phishing and ransomware, rather than a roller coaster of …
Read More »