Security

Thousands of exposed GitHub repositories, now private, can still be accessed through Copilot

Security researchers are warning that data exposed to the internet, even for a moment, can linger in online generative AI chatbots like Microsoft Copilot long after the data is made private. Thousands of once-public GitHub repositories from some of the world’s biggest companies are affected, including Microsoft’s, according to new findings from Lasso, an Israeli cybersecurity […]

Thousands of exposed GitHub repositories, now private, can still be accessed through Copilot Read More »

US employee screening giant DISA says hackers accessed data of more than 3M people

DISA Global Solutions, a U.S.-based provider of employee screening services, has said it suffered a data breach that affects more than 3.3 million people. DISA, which provides services like drug and alcohol testing and background checks to more than 55,000 enterprises and a third of Fortune 500 companies, confirmed the data breach in a filing

US employee screening giant DISA says hackers accessed data of more than 3M people Read More »

Three years on, Europe looks to Ukraine for the future of defense tech

Today marks three years since Russia’s illegal, unprovoked, and brutal invasion of Ukraine. The Ukrainian people have heroically fought the war with grit and determination, but they have also, against the odds, innovated on and off the battlefield.  In addition to establishing a defense tech initiative called BRAVE1, the country has also hosted tech conferences like

Three years on, Europe looks to Ukraine for the future of defense tech Read More »

Australia bans government use of Kaspersky software due to ‘unacceptable security risk’

Australia has become the latest country to ban government officials from using software made by Russian cybersecurity firm Kaspersky, arguing that the software poses an “unacceptable security risk.”  Australia’s Department of Home Affairs last week issued a directive that prohibits government agencies from installing Kaspersky products or web services on official systems and devices, citing

Australia bans government use of Kaspersky software due to ‘unacceptable security risk’ Read More »

Researchers accuse North Korea of $1.4 billion Bybit crypto heist

On Friday, hackers stole around $1.4 billion in Ethereum cryptocurrency from crypto exchange Bybit, in what is the largest crypto heist of all time. After the hack, several blockchain monitoring firms, as well as the well-known crypto investigator ZachXBT, have all pointed to the North Korean government hacking group known as Lazarus Group as the

Researchers accuse North Korea of $1.4 billion Bybit crypto heist Read More »

A single default password exposes access to dozens of apartment buildings

A security researcher says the default password shipped in a widely used door access control system allows anyone to easily and remotely access door locks and elevator controls in dozens of buildings across the U.S. and Canada. Hirsch, the company that now owns the Enterphone MESH door access system, won’t fix the vulnerability, saying that

A single default password exposes access to dozens of apartment buildings Read More »

Apple pulls iCloud end-to-end encryption feature for UK users after government demanded backdoor

Apple confirmed Friday that it “can no longer” offer a security feature that allows users in the United Kingdom to encrypt their iCloud data.  In a statement provided to TechCrunch, Apple spokesperson Fred Sainz said the company’s Advanced Data Protection feature will no longer be available to new users and current U.K. users “will eventually

Apple pulls iCloud end-to-end encryption feature for UK users after government demanded backdoor Read More »

A huge trove of leaked Black Basta chat logs expose the ransomware gang’s key members and victims

A trove of chat logs allegedly belonging to the Black Basta ransomware group has leaked online, exposing key members of the prolific Russia-linked gang.  The chatlogs, which include over 200,000 messages spanning from September 18, 2023, to September 28, 2024, were shared with threat intelligence company Prodaft by a leaker. The cybersecurity firm says the

A huge trove of leaked Black Basta chat logs expose the ransomware gang’s key members and victims Read More »