Cybersecurity
Ongoing coverage on Cybersecurity.
Latest coverage
Morning Safety Dance
A government-funded study warns that the Dutch semiconductor sector faces a high risk of Chinese interference. This warning comes alongside a CISA vulnerability summary for the week of July 13, 2026, highlighting ongoing cybersecurity concerns.
Meet GigaWiper, a tricksy new malware that can wipe your PC's storage drives squeaky clean and spy on your desktop…
Microsoft has analyzed GigaWiper, a new malware capable of wiping PC storage drives at the physical disk level and spying on desktops. This multi-faceted malware can irreversibly destroy data through multiple overwrites and partition metadata removal. While seemingly targeted towards organizations, users are advised to keep security software updated.
Sunday Legal Briefs
The FBI has traced malware-infected games on Steam to a 21-year-old in Florida. Separately, influencers Andrew Tate and his brother Tristan have been arrested in Miami in connection with sexual offense charges in the UK.
Saturday Safety Dance
LG is facing concerns regarding spyware in its TVs and monitors, as highlighted by Gamers Nexus. Separately, the milk brand Fairlife has paused US production following a cyberattack that breached its systems.
Evening Safety Dance
Hackers successfully breached the Department of Homeland Security's systems after security alarms were twice dismissed as false positives. The incident highlights vulnerabilities in the department's cybersecurity defenses.
Grand Theft Auto 6 Hacker Has Been Moved to Prison to Await Retrial
Arion Kurtaj, the hacker responsible for the Grand Theft Auto 6 leak in September 2022, has been moved to a prison to await a retrial in November. Kurtaj, a member of the Lapsus$ hacking group, was previously deemed unfit to stand trial due to acute autism. The leak resulted in 90 videos of an early build of Grand Theft Auto 6 being released online.
Evening Safety Dance
Microsoft has addressed a significant number of security flaws, including a record 570 vulnerabilities. Notably, a critical flaw in Microsoft's Secure Boot mechanism, which had been exploitable for a decade, was recently discovered and patched. The company also released updates for Exchange Server.
Midday Safety Dance
A recent update to Microsoft Defender has introduced a vulnerability that could allow hackers to fill up the disk space on Windows 11 PCs. This security flaw poses a significant risk to users' data and system stability.
Midday Safety Dance
A recent update to Microsoft Defender has introduced a vulnerability that could allow hackers to fill a Windows 11 PC's disk space. This security flaw poses a significant risk to users' data and system stability.
More Windows security updates to come as Microsoft leverages AI vulnerability detection, but 'only the highest-confidence findings reach the engineering team'
Microsoft is enhancing Windows security by deploying AI to accelerate vulnerability detection and risk prioritization. The company utilizes a multi-model agentic scanning harness (MDASH) to scan for issues, with only the highest-confidence findings reaching the engineering team for fixes. This AI-driven approach aims to reduce the time between vulnerability discovery and customer protection, leading to more frequent security updates.
Evening Safety Dance
A new cybersecurity threat involves a destructive Windows backdoor that bundles multiple wipers and ransomware into a single package. This sophisticated attack method was highlighted by a case where a ransomware negotiator was found to be working for the attackers, representing victims while secretly aiding the perpetrators.
An alleged member of a hacking group was caught, thanks to one hated Windows feature
A 19-year-old alleged member of the hacking group Scattered Spider, Peter Stokes, was arrested and reportedly incriminated by data from Microsoft's Windows Global Device Identifier (GDID) telemetry service. Despite using VPNs, the GDID logged information that law enforcement used to link Stokes to a machine involved in network intrusions and ransom payments totaling over $100 million. This incident has raised further concerns about user consent and data privacy related to Windows' tracking features.
China's National Vulnerability Database warns that recent Claude Code models have a security backdoor
The Chinese National Vulnerability Database (NVDB) has issued a warning regarding Anthropic's Claude Code models, specifically versions 2.1.91 through 2.1.196. The NVDB claims these versions contain a backdoor that transmits sensitive user information, including location data, to remote servers without consent. Users are advised to uninstall affected versions or update to the latest release. This issue follows previous reports of Alibaba banning Claude use due to similar data security concerns.
Evening Safety Dance
The Cybersecurity and Infrastructure Security Agency (CISA) released a vulnerability summary for the week of June 29, 2026. The article acknowledges contributions from 'Ant'.
Microsoft says 'cryptographically relevant quantum computers could arrive sooner than previously expected' as…
Microsoft is accelerating its Quantum Safe Program, now targeting 2029 for readiness against cryptanalytic attacks from quantum computers, which are expected to arrive sooner than previously anticipated. The company emphasizes the need for organizations to prepare for future cryptographic threats, including the 'harvest now, decrypt later' method, and is working on broader resilience efforts beyond just cryptography.
Saturday Safety Dance
AdaptHealth has reported a data breach where patient health data and passwords were stolen by cybercriminals. This incident highlights a critical flaw in confidential computing's trust mechanism, with potential implications for data security across the industry.
Independence Weekend Safety Dance
European Union politicians are reportedly being investigated for their involvement with Pegasus spyware. The article also mentions a breach involving NetNut, with Google and the FBI targeting approximately two million devices.
Evening Safety Dance
A developer reported being warned by Google about an account hijack, only to be subsequently charged $11,000. Separately, a new ransomware attack utilized an AI agent for an end-to-end operation.
Evening Legal Briefs
Google has lost its final appeal regarding a $4.7 billion antitrust fine related to its Android operating system. In separate news, the FBI has seized the NetNut proxy platform, and a startup is suing Palo Alto Networks.
Opera's new security feature stops copy paste attacks from malicious websites
Opera has launched a new security feature designed to protect users from malicious clipboard attacks originating from harmful websites. This feature aims to prevent unauthorized data manipulation through the browser's copy-paste functionality.