Cybersecurity
Latest news, analysis, and updates in cybersecurity.

300 Poisoned GitHub Repos Expose Glassworm Botnet Threat
Glassworm poisoned 300+ GitHub repos before CrowdStrike and Google cut its command channels, but developer supply chains may still be exposed.
6 min read

100,000 Passports and Selfies Spill in UK Visa Portal Leak
UK Visa Portal allegedly exposed 100,000+ passport and selfie files, turning visa paperwork into identity-fraud fuel.
8 min read

A 1GB Browser File Lets Websites Spy on Your SSD Activity
FROST shows a malicious site can infer your tabs and apps by timing SSD activity, turning browser storage into a privacy leak.
8 min read

AI Hatred Sparks New Threat Label: Anti-Tech Extremism
US agencies are recasting violent AI backlash as anti-tech extremism, raising hard questions about protest, labor anger, and surveillance.
8 min read

Iranian Hackers Turn LA Transit Breach Into Warning Shot
A weeks-long LA Metro recovery may trace back to Iranian intelligence using a fake hacktivist front, not a local IT failure.
8 min read

1,600 Bugs: AI Hacking Tools Put Ethical Hackers on Notice
Claude Mythos’ 1,600 flaw claim signals a market shift: AI is turning elite hacking workflows into software-assisted labor.
8 min read

Late CVEs Force Apple iOS and macOS Patches Back Into View
Apple added CVE details to already-shipped iOS, macOS and other patches, changing the disclosure record—not the fixes.
8 min read

185,000 People Get SSNs Spilled in 7-Eleven Data Breach
A 7-Eleven breach exposed SSNs, licenses and personal data for 185,000+ people, raising long-term identity-theft risks.
6 min read

34 TrapDoor Packages Poison AI Coding Tools to Steal Keys
TrapDoor pushed 34 malicious packages across npm, PyPI and Crates.io to steal credentials and poison AI coding workflows.
6 min read

800 Servers Seized as Dutch Cops Hit Cyberattack Lifeline
Dutch authorities seized 800+ servers and arrested two hosters accused of keeping Russia-linked cyber operations online.
11 min read

$930K Cox Media Fine Exposes Fake Phone-Spying Pitch
The FTC says Cox Media sold advertisers on phone-spying tech it didn’t have—turning a privacy panic into a $930K false-ad case.
8 min read

Shadow AI Puts Google Cloud AI Security on Trial
Google Cloud says AI security can’t be bolted on later—while shadow AI shows even platform giants are learning live.
9 min read