Smashing Security podcast #464: Rockstar got hacked. The data was junk. The secrets it revealed were not

A company that ran anonymous tip lines for 35,000 American schools – handling reports of bullying, weapons, and self-harm – boasted on its website that it had suffered zero security breaches in over 20 years. A hacker called Internet Yiff Machine thoug… Continue reading Smashing Security podcast #464: Rockstar got hacked. The data was junk. The secrets it revealed were not

Singer loses life savings to fake wallet downloaded from the Apple App Store

If you hold cryptocurrency, there’s a very simple golden rule that you should always follow. Never hand over your seed phrase.

Garrett Dutton, better known as G. Love – the front man of blues-hip-hop outfit G. Love & Special Sauce – has learnt th… Continue reading Singer loses life savings to fake wallet downloaded from the Apple App Store

Sometimes changing the password on your email mailbox isn’t enough

Have you ever taken a look at your Microsoft 365 mailbox rules? If not, it might be worth a few minutes of your time. Because newly released research reveals that hackers may already have beaten you to it.

Read more in my article on the Fortra blog. Continue reading Sometimes changing the password on your email mailbox isn’t enough

Smashing Security podcast #463: This AI company leaked its own code. It’s also built something terrifying

A hacking group claims to have broken into the flood defence system protecting Venice’s Piazza San Marco – and is offering to sell access to whoever wants it. The asking price? A frankly insulting $600.

Meanwhile, Anthropic accidentally leaked the sou… Continue reading Smashing Security podcast #463: This AI company leaked its own code. It’s also built something terrifying

108 malicious Chrome extensions caught stealing Google and Telegram data from 20,000 users

Cybersecurity researchers have revealed that 108 malicious Google Chrome extensions have been quietly stealing user credentials, hijacking Telegram sessions, and injecting unwanted ads and scripts into browsers – all reporting back to the same central … Continue reading 108 malicious Chrome extensions caught stealing Google and Telegram data from 20,000 users

Smashing Security podcast #462: LinkedIn is spying on you, and you agreed to nothing

LinkedIn has been secretly scanning your browser for over 6,000 installed extensions — on every single click you make. It can tell if you’re job hunting, what religion you are, and whether you have ADHD. And none of this is mentioned anywhere in their … Continue reading Smashing Security podcast #462: LinkedIn is spying on you, and you agreed to nothing

Life imprisonment for Cambodian scam compound operators – but will it make a difference?

Cambodia has taken a dramatic step in its fight against scam compounds that have imprisoned innocent people, and forced them to work as virtual slaves defrauding victims via the internet around the world with romance scams and dodgy investment schemes…. Continue reading Life imprisonment for Cambodian scam compound operators – but will it make a difference?

Nigerian romance scammer jailed after being caught out by fellow fraudster

A Nigerian fraudster spent years posing as a woman online, romancing unsuspecting American men out of their savings – until he accidentally tried the same trick on a fellow scammer, who told him to “learn how to do a clean job.”

The recovered chat log… Continue reading Nigerian romance scammer jailed after being caught out by fellow fraudster

Smashing Security podcast #461: This man hid $400 million in a fishing rod. Then it vanished

A cannabis-growing, beekeeping, gyrocopter-flying Irishman invested his drug money in Bitcoin back in 2011 – and now sits on a fortune worth $400 million. There’s just one small problem: the access codes were tucked inside his fishing rod case, which h… Continue reading Smashing Security podcast #461: This man hid $400 million in a fishing rod. Then it vanished