Latest stories — Page 61

Samsung's New Galaxy S26 Ultra Has a Screen That Blocks Nosy Neighbours — But Is That a Security Feature?
The phone's built-in privacy display is a neat hardware trick. What it can't do is protect the data sitting behind the glass.

A U.S. Government Agency Quietly Paid $1 Million to a Group That May Not Even Be Ransomware
A leaked negotiation chat and blockchain trail suggest Kairos runs pure data-theft extortion — no file-locking, just threats to leak.

North Korean hackers flood open-source repositories with 108 booby-trapped packages
The Contagious Interview crew is back, seeding npm, Packagist, Go and Chrome with malware aimed at developers.

Five Eyes spy chiefs warn AI is shrinking the window to stop cyberattacks — and boards need to act now
The heads of five Western cybersecurity agencies say artificial intelligence is already changing how fast criminals can strike. Waiting is no longer an option, they say — and the warning is aimed squarely at company boards, not IT teams.

AI Scams Trick Millions of Americans, Cost $68 Billion
New survey reveals AI-powered scams are growing, impacting millions and costing billions.

Australian Health Websites Secretly Fed Patients' Fertility and Medication Searches to Meta and TikTok
Australia's privacy regulator has ruled that Monash IVF and Medmate broke the law by embedding invisible tracking code on their health websites — code that sent sensitive visitor data to social media giants without asking anyone's permission.

WhatsApp Is Letting You Ditch Your Phone Number — Here's What That Means for Your Privacy
The world's most-used messaging app is adding usernames, so strangers no longer need your phone number to reach you. It's a meaningful privacy upgrade, but it comes with a scramble.

Seven flaws in a tiny bit of code could shake millions of gadgets
runZero found bugs in FatFs, the filesystem library hiding inside cameras, drones and hardware crypto wallets. Patches are already trickling out, but the fix will take years.

Meet Avalon: The Swiss-Army Malware That Ends in Ransomware
A newly documented toolkit called Avalon steals passwords, spreads across networks, and locks up files — all from one phishing email.

Google and FBI cut off NetNut, a two-million-device botnet hidden inside smart TVs
The residential proxy service let hundreds of criminal and spy groups route attacks through ordinary homes.

Fake Rollup Helper Packages on npm Traced to North Korean Hackers
Two look-alike JavaScript packages copied a popular developer tool line-for-line, then quietly opened a back door onto the machines of anyone who installed them.

81 Million Login Attempts: A Massive Password Spray Attack Hit Microsoft 365 Users
Criminals hammered Microsoft accounts with automated login attempts for two weeks. At least 78 accounts were broken into — and many victims had multi-factor authentication switched on, just not set up correctly.

Three Quick Hits: Canadian Hacker Jailed, Open-Source Flaws Dropped, ATM Jackpotters Sentenced
A week's worth of security stories that deserve a second look — from an Anonymous-linked arrest in Canada to cash-machine criminals facing US prison time.

New Phishing Kit 'ARToken' Exposes Full Microsoft 365 Takeover Playbook
Cisco Talos researchers found more than 80 hidden commands inside a phishing service tied to the EvilTokens platform — including tools to steal Microsoft 365 logins, read mailboxes, and quietly hide their tracks.

Adobe Is Doubling Its Patch Releases — Here's Why That Matters
Starting in July, Adobe will push security fixes twice a month instead of once. Blame faster vulnerability discovery, AI-assisted research, and a threat pace that monthly updates can no longer keep up with.

Armored Likho: the newly-named hacking crew hitting power grids and government offices
Russian security firm Kaspersky says the group mixes espionage against big institutions with money-driven attacks on ordinary people.

New Chinese AI Models Challenge Cyber Defenses
Recent advances in Chinese AI models reveal vulnerabilities at a rapid pace, posing a challenge to cybersecurity defenses.

Citrix NetScaler Vulnerability Sparks Exploitation Attempts
Citrix patches a high-severity flaw in NetScaler appliances as exploitation attempts are reported within 24 hours.

An AI Agent Ran a Ransomware Attack by Itself. Here's What That Means.
Criminals used an AI tool called Langflow to let a machine plan and carry out a multi-step ransomware intrusion without a human guiding every move — a shift that could make attacks faster and cheaper to run at scale.

A Spyware Investigator Got Spied On: Pegasus Hit an EU Lawmaker Probing Pegasus
Forensic analysis of Stelios Kouloglou's phone shows repeated Pegasus infections while he sat on the European Parliament's own spyware inquiry.

ShinyHunters Breach Hits Medtronic: 3.8 Million Patients' Medical Records Stolen
The extortion group ShinyHunters broke into the medical device maker's systems in April 2026, walking away with names, Social Security numbers, and sensitive health details belonging to nearly four million people.