cybersecurity

AI chatbot’s simple ‘123456’ password risked exposing personal data of millions of McDonald’s job applicants

Security researchers found that they could access the personal information of 64 million people who had applied for a job at McDonald’s, in large part by logging into the company’s AI job hiring chatbot with the username and password “123456.” Ian Carroll and Sam Curry wrote in a blog post that “during a cursory security […]

AI chatbot’s simple ‘123456’ password risked exposing personal data of millions of McDonald’s job applicants Read More »

Authorities arrest four hackers linked to UK retail hacking spree

U.K. authorities confirmed on Thursday they had arrested four individuals for allegedly carrying out a series of hacks earlier this year targeting the British retail sector, including Marks & Spencer, Harrods, and the Co-op. The National Crime Agency said a woman aged 20, two men aged 19, and a youth aged 17, were arrested on

Authorities arrest four hackers linked to UK retail hacking spree Read More »

US government confirms arrest of Chinese national accused of stealing COVID research and mass-hacking email servers

The U.S. Justice Department has confirmed the arrest of Chinese national Xu Zewei, an alleged prolific contract hacker who carried out cyberattacks for China. Xu was arrested in Italy at the request of U.S. prosecutors. Xu and another Chinese national Zhang Yu, who remains at large, are accused in a nine-charge indictment of “hacking and

US government confirms arrest of Chinese national accused of stealing COVID research and mass-hacking email servers Read More »

Marks & Spencer chair refuses to say if retailer paid hackers after ransomware attack

The chairman of U.K. retail giant Marks & Spencer declined to tell a panel of lawmakers whether the company paid a hacking group following a ransomware attack earlier this year.   “We’ve said that we are not discussing any of the details of our interaction with the threat actor,” said chairman Archie Norman, referring to the

Marks & Spencer chair refuses to say if retailer paid hackers after ransomware attack Read More »

Data breach reveals Catwatchful ‘stalkerware’ is spying on thousands of phones

A security vulnerability in a stealthy Android spyware operation called Catwatchful has exposed thousands of its customers, including its administrator.  The bug, which was discovered by security researcher Eric Daigle, spilled the spyware app’s full database of email addresses and plaintext passwords that Catwatchful customers use to access the data stolen from the phones of

Data breach reveals Catwatchful ‘stalkerware’ is spying on thousands of phones Read More »

Hacked, leaked, exposed: Why you should never use stalkerware apps

There is a whole shady industry for people who want to monitor and spy on their families. Multiple app makers promote and advertise their software — often referred to as stalkerware — to jealous partners who can use these apps to access their victims’ phones remotely.  Yet, despite how sensitive this personal data is, an

Hacked, leaked, exposed: Why you should never use stalkerware apps Read More »

Qantas hack results in theft of 6 million passengers’ personal data

Australian airline giant Qantas said on Wednesday it experienced a data breach that compromised the personal information of at least six million passengers. The airline said a cybercriminal targeted one of its call centers on June 30, and stole customer data from its systems, including names, email addresses, phone numbers, dates of birth and frequent

Qantas hack results in theft of 6 million passengers’ personal data Read More »

US government takes down major North Korean ‘remote IT workers’ operation 

The U.S. Department of Justice announced on Monday that it had taken several enforcement actions against North Korea’s money-making operations, which rely on undercover remote IT workers inside American tech companies to raise funds for the regime’s nuclear weapons program, as well as to steal data and cryptocurrency.   As part of the DOJ’s multi-state effort,

US government takes down major North Korean ‘remote IT workers’ operation  Read More »