Security

Trump’s national security adviser reportedly used his personal Gmail account to do government work

Senior members of the Trump administration’s National Security Council — including its top national security adviser, Michael Waltz — used Gmail to conduct government business, The Washington Post reported, citing documents and three unnamed government officials. The report follows last week’s news that several cabinet-level officials, including the Secretary of Defense Pete Hegseth, discussed highly […]

Trump’s national security adviser reportedly used his personal Gmail account to do government work Read More »

Genetic sharing site openSNP to shut down, citing concerns of data privacy and ‘rise in authoritarian governments’

OpenSNP, a large open source repository for user-uploaded genetic data, will shut down and delete all of its data at the end of April, co-founder Bastian Greshake Tzovaras has confirmed. In a blog post, openSNP’s Greshake Tzovaras attributed the decision to shutter the site due to concerns of data privacy following the financial collapse of

Genetic sharing site openSNP to shut down, citing concerns of data privacy and ‘rise in authoritarian governments’ Read More »

Someone is trying to recruit security researchers in bizarre hacking campaign 

Are you willing to hack and take control of Chinese websites for a random person for up to $100,000 a month?  Someone is making precisely that tantalizing, bizarre, and clearly sketchy job offer. The person is using what look like a series of fake accounts with avatars displaying photos of attractive women, and sliding into

Someone is trying to recruit security researchers in bizarre hacking campaign  Read More »

Oracle under fire for its handling of separate security incidents

Tech giant Oracle is facing criticism for how it’s handling two seemingly separate data breaches.  At least one of the incidents appears to still be unfolding, despite Oracle reportedly denying a breach at all. The other relates to a breach of patient data under the tech giant’s healthcare subsidiary, Oracle Health. Oracle did not respond

Oracle under fire for its handling of separate security incidents Read More »

API testing firm APIsec exposed customer data during security lapse

API testing firm APIsec has confirmed it secured an exposed internal database containing customer data, which was connected to the internet for several days without a password. The exposed APIsec database stored records dating back to 2018, including names and email addresses of its customers’ employees and users, as well as details about the security

API testing firm APIsec exposed customer data during security lapse Read More »

Again and again, NSO Group’s customers keep getting their spyware operations caught

On Thursday, Amnesty International published a new report detailing attempted hacks against two Serbian journalists, allegedly carried out with NSO Group’s spyware Pegasus.  The two journalists, who work for the Serbia-based Balkan Investigative Reporting Network (BIRN), received suspicious text messages including a link — basically a phishing attack, according to the nonprofit. In one case, Amnesty

Again and again, NSO Group’s customers keep getting their spyware operations caught Read More »

Mozilla patches Firefox bug ‘exploited in the wild’, similar to bug attacking Chrome

Mozilla has fixed a security bug in its Firefox for Windows browser that was “being exploited in the wild.”  In a brief update, Mozilla said it updated the browser to Firefox version 136.0.4 after identifying and fixing the new bug, tracked as CVE-2025-2857, which presents a “similar pattern” to a bug that Google patched in

Mozilla patches Firefox bug ‘exploited in the wild’, similar to bug attacking Chrome Read More »

NHS vendor Advanced to pay £3M fine following 2022 ransomware attack

NHS vendor Advanced will pay just over £3 million ($3.8 million) in fines for not implementing basic security measures before it suffered a ransomware attack in 2022, the U.K.’s data protection regulator has confirmed.  It’s half the fine that the Information Commissioner’s Office had initially sought in August 2024, when the data watchdog said it

NHS vendor Advanced to pay £3M fine following 2022 ransomware attack Read More »