Security

One Line, One Click, One Malware: The Sneaky ClickFix Scam You Need to Warn Your Family About

One Line, One Click, One Malware: The Sneaky ClickFix Scam You Need to Warn Your Family About

Photo by Zulfugar Karimov on Unsplash You know that little string of text you copied and pasted into your terminal because a website told you to? That’s all it takes for your computer to be completely compromised. It sounds almost too simple — and that’s exactly the problem. Over the past year, scammers have pulled […]

One Line, One Click, One Malware: The Sneaky ClickFix Scam You Need to Warn Your Family About Read More »

TEE.fail Just Cracked Open Intel, AMD, and Nvidia’s Secure Enclaves — Here’s Why That Matters

TEE.fail Just Cracked Open Intel, AMD, and Nvidia’s Secure Enclaves — Here’s Why That Matters

Image by BoliviaInteligente on Unsplash Imagine trusting a high-security vault to keep your most sensitive data safe, only to find out someone can pick the lock with tools that fit in a briefcase — and a $1,000 budget. That’s basically what just happened to the secure enclaves used in today’s most critical computing systems. A

TEE.fail Just Cracked Open Intel, AMD, and Nvidia’s Secure Enclaves — Here’s Why That Matters Read More »

NPM Malware Campaign Exploits Invisible Dependencies, Compromising 86,000+ Downloads

NPM Malware Campaign Exploits Invisible Dependencies, Compromising 86,000+ Downloads

Image by Glen Carrie on Unsplash A sneaky malware campaign called PhantomRaven has quietly slid more than 100 malicious packages into NPM, and the scary part is—most developers never saw it coming. If you’ve installed packages from NPM since August, there’s a small but real chance your system might be compromised. Security firm Koi just

NPM Malware Campaign Exploits Invisible Dependencies, Compromising 86,000+ Downloads Read More »

Hackers Used a Zero-Day to Spy on Samsung Galaxy Phones for Almost a Year. Here’s What We Know So Far

Hackers Used a Zero-Day to Spy on Samsung Galaxy Phones for Almost a Year. Here’s What We Know So Far

Photo by appshunter.io on Unsplash A new Android spyware dubbed “Landfall” quietly hacked into Samsung Galaxy phones for nearly a year — and hardly anyone noticed. Researchers at Palo Alto Networks’ Unit 42 say this wasn’t some random, spray-and-pray malware. It was a targeted operation, likely for espionage, and it quietly slipped past Samsung’s radar

Hackers Used a Zero-Day to Spy on Samsung Galaxy Phones for Almost a Year. Here’s What We Know So Far Read More »

Russia’s Most Ruthless Hackers Are Using Data-Wiping Malware to Cripple Ukraine’s Infrastructure and Economy

Russia’s Most Ruthless Hackers Are Using Data-Wiping Malware to Cripple Ukraine’s Infrastructure and Economy

Photo by SCARECROW artworks on Unsplash For years, cyberwarfare has been a silent front in global conflicts—but what’s happening behind Ukraine’s digital walls right now is anything but quiet. Russian state-backed hacking group Sandworm, widely feared and highly sophisticated, has ramped up a wave of destructive cyberattacks in Ukraine this year. The attacks don’t just

Russia’s Most Ruthless Hackers Are Using Data-Wiping Malware to Cripple Ukraine’s Infrastructure and Economy Read More »

Two Major Windows Security Flaws Are Being Exploited Right Now, One Has Been Active Since 2017

Two Major Windows Security Flaws Are Being Exploited Right Now, One Has Been Active Since 2017

Photo by Clint Patterson on Unsplash So here’s something alarming (and a little frustrating): two serious Windows vulnerabilities are currently being exploited in live attacks across the internet. One of these flaws is brand new, but the other? It’s a zero-day that’s been silently abused by hackers since 2017 — and still hasn’t been patched.

Two Major Windows Security Flaws Are Being Exploited Right Now, One Has Been Active Since 2017 Read More »

Pegasus Spyware Officially Banned from WhatsApp: A Big Win for Privacy and a Permanent Block for NSO

Pegasus Spyware Officially Banned from WhatsApp: A Big Win for Privacy and a Permanent Block for NSO

Photo by David Veksler on Unsplash After years of courtroom tug-of-war, WhatsApp users can finally breathe a little easier. A federal judge just slammed the door shut on NSO Group’s ability to use its controversial Pegasus spyware on WhatsApp. The ruling is permanent — and it’s a big deal for anyone who cares about digital

Pegasus Spyware Officially Banned from WhatsApp: A Big Win for Privacy and a Permanent Block for NSO Read More »

Why Cisco Thinks Your AI Strategy Is Broken (Unless You’re Using Machine Data)

Why Cisco Thinks Your AI Strategy Is Broken (Unless You’re Using Machine Data)

Image by Markus Winkler on Unsplash Most companies right now boast about “owning their data” like it’s their secret sauce for AI success. But according to Cisco, that’s just talk — and they’re not shy about calling it out. I sat down (well, virtually) with insights from Jeetu Patel, Cisco’s EVP and Chief Product Officer,

Why Cisco Thinks Your AI Strategy Is Broken (Unless You’re Using Machine Data) Read More »

Judge Permanently Blocks NSO Group from Targeting WhatsApp Users, Slashes Fine from 7 Million to  Million

Judge Permanently Blocks NSO Group from Targeting WhatsApp Users, Slashes Fine from $167 Million to $4 Million

Image by Wesley Tingey on Unsplash For years, people have been asking: can a spyware company be stopped in its tracks? Last week, a California judge gave us a big, resounding “yes.” U.S. District Judge Phyllis Hamilton just ruled that NSO Group—the Israeli cyberintelligence firm behind some pretty aggressive spyware campaigns—is permanently barred from targeting

Judge Permanently Blocks NSO Group from Targeting WhatsApp Users, Slashes Fine from $167 Million to $4 Million Read More »

North Korean Hackers Are Hiding Malware in Blockchain Smart Contracts — And It’s Almost Impossible to Remove

North Korean Hackers Are Hiding Malware in Blockchain Smart Contracts — And It’s Almost Impossible to Remove

How public blockchains became the perfect place for state-backed cyberattacks, and why it’s getting harder to stop them Photo by Steve Johnson on Unsplash If you thought blockchains were just for crypto and NFTs, think again. Hackers—some working directly for the North Korean government—are using public blockchain platforms like Ethereum and BNB Smart Chain to

North Korean Hackers Are Hiding Malware in Blockchain Smart Contracts — And It’s Almost Impossible to Remove Read More »