9 out of 10 people can no longer distinguish real from AI-generated content

Online fraud is becoming harder to distinguish from legitimate activity as AI-generated messages, voices, photos, reviews, and identities become more convincing. Nearly nine in ten adults say they can no longer tell what is real from AI-generated conte… Continue reading 9 out of 10 people can no longer distinguish real from AI-generated content

Making the cloud prove it followed your privacy wishes

Making companies that store personal data in cloud key-value databases handle deletion requests by running the operation and confirming the job is complete. The people making those requests and the regulators overseeing them have had limited means to c… Continue reading Making the cloud prove it followed your privacy wishes

X Square Robot open sources its robot-free data collection framework

Companies building robots for physical work spend large amounts of time and money operating machines by hand to gather training examples. Each session with a physical robot produces a small number of demonstrations per day, which slows the growth of da… Continue reading X Square Robot open sources its robot-free data collection framework

Identity theft is turning into a chain reaction for victims

For a growing number of victims, identity theft no longer ends with a fraudulent charge or a compromised account. More than one in four people who contacted the Identity Theft Resource Center during the reporting period were dealing with multiple ident… Continue reading Identity theft is turning into a chain reaction for victims

New Browser-in-the-Browser phishing uses fake login popups to steal Microsoft 365 credentials

A new Browser-in-the-Browser (BitB) phishing campaign is targeting Microsoft 365 users with fake login popups designed to closely mimic legitimate browser authentication windows, according to Palo Alto Networks Unit 42. The attack relies on a fake brow… Continue reading New Browser-in-the-Browser phishing uses fake login popups to steal Microsoft 365 credentials

Anthropic’s Claude Fable 5 is out for public use, with safeguards for high-risk requests

Days after publishing research on how advanced AI systems could amplify cyber operations in the wrong hands, Anthropic released Claude Fable 5, a Mythos-class model for general use. “Releasing a model this capable comes with risks. Without safeguards, … Continue reading Anthropic’s Claude Fable 5 is out for public use, with safeguards for high-risk requests

Google patches Chrome zero-day exploited in the wild (CVE-2026-11645)

Google has fixed 74 vulnerabilities in Chrome, including a high-severity zero-day (CVE-2026-11645) that has been exploited in the wild. “Google is aware that an exploit for CVE-2026-11645 exists in the wild,” the company said in a Monday se… Continue reading Google patches Chrome zero-day exploited in the wild (CVE-2026-11645)

Mythos Preview can weaponize N-day vulnerabilities in hours

Mythos Preview can develop working exploits from newly disclosed software vulnerabilities in hours, cutting down a process that has historically taken days or weeks, according to Anthropic. Anthropic’s recent cybersecurity research has largely fo… Continue reading Mythos Preview can weaponize N-day vulnerabilities in hours

Meta claims NSO Group still targets WhatsApp users despite court order

Meta claims it disrupted spear-phishing attempts linked to NSO Group and is asking a US federal court to hold the spyware vendor in contempt for allegedly violating an injunction that bars it from targeting WhatsApp and its users. “We successfully disr… Continue reading Meta claims NSO Group still targets WhatsApp users despite court order