Maine forced to take down data breach portal after fake notices filed with authorities

The US state of Maine has taken its public data breach notification portal offline after someone submitted fraudulent breach disclosures impersonating two well-known technology companies.

Read more in my article on the Hot for Security blog. Continue reading Maine forced to take down data breach portal after fake notices filed with authorities

Privacy own-goal: World Cup blunder leaks Lionel Messi’s passport details

Argentina’s World Cup squad had their passport numbers leaked before a ball was kicked – not by hackers, but by someone who failed to redact a document properly. document. It’s a mistake that has been made many times in the past…

Read more in my art… Continue reading Privacy own-goal: World Cup blunder leaks Lionel Messi’s passport details

Privacy own-goal: World Cup blunder leaks Lionel Messi’s passport details

Argentina’s World Cup squad had their passport numbers leaked before a ball was kicked – not by hackers, but by someone who failed to redact a document properly. document. It’s a mistake that has been made many times in the past…

Read more in my art… Continue reading Privacy own-goal: World Cup blunder leaks Lionel Messi’s passport details

Smashing Security podcast #471: This AI worm just rewrote its own rules

Researchers at the University of Toronto have built a worm that thinks for itself. Using free off-the-shelf AI models it works out how to break into each new computer it encounters, and hijacks the powerful ones to host its own AI brain. And then the r… Continue reading Smashing Security podcast #471: This AI worm just rewrote its own rules

Why schools remain one of cybercriminals’ favourite targets

Schools on both sides of the Atlantic have been revealed in recent days to have been hit by hackers, reminding all of us that ransomware gangs see educational instituions as targets all year round.

Read more in my article on the Hot for Security blog. Continue reading Why schools remain one of cybercriminals’ favourite targets

Got a LinkedIn message from a recruiter? It might be Chinese intelligence, warn FBI and MI5

If you’ve ever received an out-of-the-blue message via LinkedIn from a recruiter offering some well-paid consultancy work, intelligence agencies have a message for you: be very careful.

Read more in my article on the Hot for Security blog. Continue reading Got a LinkedIn message from a recruiter? It might be Chinese intelligence, warn FBI and MI5

Meta’s own AI chatbot to blame for Instagram accounts being stolen in seconds

Hackers have been hijacking Instagram accounts at scale by exploiting Meta’s AI support chatbot. And, as if that weren’t bad enough, the technique required no technical skill whatsoever.

Read more in my article on the Fortra blog. Continue reading Meta’s own AI chatbot to blame for Instagram accounts being stolen in seconds

Smashing Security podcast #470: This AI security flaw might be impossible to fix

A website called “UK visa portal” has been quietly collecting passport scans, selfies, and personal data from thousands of travellers who thought they were applying through official channels. They weren’t. And when a journalist tried to warn the compan… Continue reading Smashing Security podcast #470: This AI security flaw might be impossible to fix

Police arrest man following hack of Ajax football club

Dutch police have arrested a 35-year-old man suspected of hacking into the computer systems of Amsterdam football giant Ajax, after the personal data of hundreds of thousands of supporters was put at risk.

Read more in my article on the Hot for Securi… Continue reading Police arrest man following hack of Ajax football club