Smashing Security podcast #470: This AI security flaw might be impossible to fix
A website called “UK visa portal” has been quietly collecting passport scans, selfies, and personal data from thousands of travellers...
A website called “UK visa portal” has been quietly collecting passport scans, selfies, and personal data from thousands of travellers...
A website called “UK visa portal” has been quietly collecting passport scans, selfies, and personal data from thousands of travellers...
A website called “UK visa portal” has been quietly collecting passport scans, selfies, and personal data from thousands of travellers...
A website called “UK visa portal” has been quietly collecting passport scans, selfies, and personal data from thousands of travellers...
Cybersecurity researchers have disclosed details of a new automated campaign called Megalodon that has pushed 5,718 malicious commits to 5,561...
Ravie LakshmananMay 20, 2026Artificial Intelligence / Security Testing Microsoft has unveiled two new open-source tools called RAMPART and Clarity to...
In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340...
Google on Tuesday unveiled a new opt-in Android feature called Intrusion Logging for storing forensic logs to better analyze sophisticated...
A pro-Ukrainian hacktivist group called PhantomCore has been attributed to attacks actively targeting servers running TrueConf video conferencing software in...
Cybersecurity researchers have flagged a new malware called ZionSiphon that appears to be specifically designed to target Israeli water treatment...
Ravie LakshmananMar 27, 2026Threat Intelligence / Vulnerability A pro-Ukrainian group called Bearlyfy has been attributed to more than 70 cyber...
It’s called AirSnitch: Unlike previous Wi-Fi attacks, AirSnitch exploits core features in Layers 1 and 2 and the failure...
When a top cybersecurity firm discovered it had a leak, you would expect the FBI to be called. Instead, the...
Threat hunters have called attention to a new campaign as part of which bad actors masqueraded as fake IT support...
Cybersecurity researchers have disclosed details of a new phishing suite called Starkiller that proxies legitimate login pages to bypass multi-factor...