Latest stories — Page 2

Eight Years for ATM Jackpotting: What the Sentence Tells Us About Cash Machine Crime
A Venezuelan national just received what prosecutors are calling a record federal prison term for a scheme that drained ATMs of millions. Here is what happened, and why it is harder to pull off than it looks on TV.

From Months to Minutes: How AI Is Forcing Companies to Rethink Software Security
Criminals once needed two years to turn a software flaw into a working attack. By next year, that window is expected to shrink to four hours. Companies that patch on a quarterly schedule are already behind.

Apollo Global Hit by Social Engineering Attack That Exposed Names and Social Security Numbers
A phone-based scam tricked Apollo Global Management's IT support staff into handing over access. Names, contact details, and Social Security numbers may have been stolen.

Iran-Linked Hackers Knocked a UK Power Plant Offline for Four Days
A cyberattack tied to Iran shut down a British power station for nearly a working week, raising hard questions about how well the country's energy grid can withstand a determined digital assault.

Chinese-speaking crew UAT-10147 hits web servers with AI-built tools and a Linux rootkit
The group targets Windows and Linux servers across education, media, tech and gaming, with victims concentrated in Brazil, Bolivia, China, Canada and Vietnam.

Seven Ways AI Is Changing How Companies Defend Themselves
Security experts say artificial intelligence is giving overstretched security teams a fighting chance, but only if organisations deploy it carefully and with realistic expectations.

Anthropic Opens Its Most Powerful AI to More Security Defenders and Puts $35 Million Behind Open-Source Safety
The company behind the Claude AI system is carefully widening access to its strongest models for cybersecurity work, while keeping ordinary users and criminals locked out.

Cyberattack on Hachette Australia Leaves Bookshops Without Stock During Peak Season
A breach of the publisher's computer systems on 18 July has frozen book distribution across Australia and New Zealand, hitting authors, retailers, and readers at the worst possible moment in the retail calendar.

Ransomware group Helix claims attack on US energy testing firm AmSpec
A criminal gang called Helix has listed AmSpec on its dark-web leak site, claiming to have broken into the company. AmSpec has not confirmed any incident, and the claim remains unverified.

Escaped the Scam Compound, Trapped by the Aftermath
Thousands of workers lured or forced into south-east Asia's cyber-fraud factories are now free. Many have nowhere to go.

AI 'Nudify' Apps Are a Back-to-School Threat. Here Is What Parents Need to Know.
Apps that strip clothing from photos using artificial intelligence are cheap, easy to find, and already reaching school-age children. Experts say parents need a plan before the new term starts.

Cities That Ditched Flock Cameras Are Still Under Surveillance
Activists who won fights against one licence-plate tracking company are discovering their local governments simply switched to a different vendor, and the cameras stayed up.

Tennessee Man Gets 77 Years for Running Online Abuse Network Targeting Girls
A federal court sentenced Kyle Spitze, 27, to 77 years in prison for crimes tied to the 764 network, an online extremist group the FBI describes as a form of modern-day terrorism.

TikTok to Pay $400 Million Over U.S. Child Privacy Claims
The Justice Department says the ByteDance app broke rules protecting children's data. Most of the money is due now, the rest when an old court order is lifted.

Windows Named Pipes: The Hidden Back Channel Attackers Keep Prying Open
A quiet feature that lets Windows programs talk to each other becomes a privilege-escalation problem when developers skip the access checks.

Three Banking Trojans Are Quietly Draining Accounts Across Two Continents
Manic, Grandoreiro, and ToxicPanda 2.0 are targeting bank customers in Latin America and Europe. Here is what each one does and what ordinary people should watch for.

Fake ABC News Pages and a Swiss 'Broker' Who Never Existed: Inside a $500,000 Investment Scam
An international fraud network, linked to Israel and operating call centres across several countries, has taken hundreds of millions of dollars from victims worldwide, including thousands of Australians, using fabricated news sites, invented trading profits, and fake debts.

Roblox Signs Legal Agreement with Australian Regulators After Adults Found Able to Contact Children Without Parental Consent
Australia's online safety watchdog found that adult accounts on Roblox could see children's profiles and send them connection requests, all without a parent ever knowing. Now Roblox has put its promises in writing.

Quest Apartment Hotels Investigating Customer Data Breach Tied to Third-Party Provider
Personal details of Quest guests, including names, email addresses and some dates of birth, were exposed after criminals broke into a database through a flaw in an outside supplier's system.

Fake npm Calendar Tools Hid an AI-Powered Linux Backdoor
Researchers found 14 booby-trapped packages on the popular open-source library npm, each quietly installing a remote-control tool called RedC2 4.0 on Linux machines.

OWASP Publishes First Security Watchlist for AI Agent 'Skills'
A real attack in July exposed more than 300,000 users to stolen credentials through fake AI skills. Now the group behind the web's most-used security checklists has named the top ten risks, and 'malicious skills' sits at number one.