ThreatVectr — cybersecurity news: breaches, vulnerabilities, ransomware and AI security

ShinyHunters phoned a ReliaQuest employee, and one of them fell for it
The security firm says a vishing call led to a view-only peek at its Okta dashboard, but device-trust rules stopped anything worse.

A South Korean startup portal left its own encryption key inside the API, and attackers walked in
Encrypted user data isn't protected if the key to unlock it ships alongside the data. A government-backed platform in South Korea just learned that the hard way.

Microsoft Teams gets a new switch that kicks uninvited bots out of meetings
Admins can now auto-block external bots from joining Teams calls, closing a quiet side door that attackers have been probing.

Hired to Build, Judged on the Breach That Never Happened
The skills that land someone a CISO job are rarely the ones the board scores them on a year later. That gap is quietly ending careers.

Microsoft's August .NET patch broke printing in Windows apps. Here's what to do.
A security fix shipped this month is causing crashes when Windows Presentation Foundation apps try to print or export to PDF using common fonts like Calibri.

Dutch Regulator Fines Uber €825 Million for Firing Drivers by Algorithm
Europe's largest-ever GDPR fine was handed to Uber after the Dutch data protection watchdog found that an automated system suspended driver accounts, sometimes permanently, with no human ever checking whether the decision was right.


The podcast
Threat Vectr Weekly, with Marcus & Elena
The week's biggest cybersecurity stories in ten minutes. New episode every Monday.
