Facebook Lies to Your Lock Screen to Make You Tap
Facebook sent me a push notification saying someone replied to my comment. Nobody did. The real event, sitting in the app, was a stranger commenting on a group photo. The push had rewritten it into something personal, on iOS and Android both. The error only ever breaks one way, toward the tap.
China Hacked the Software that Reads Every Key You Press
UNC3569, a china-nexus group, broke into Windows machines through Sogou, the input tool millions use to type Chinese characters. One crafted link, one click, and a backdoor opened. Tencent patched it fast, but the embedded browser underneath is still ancient and defenseless.
Cozy Bear Taught an AI to Rebuild Its Malware Every Time Its Detected
Russia's Cozy Bear used AI to watch its own malware and rebuild it the instant a security product flags it, over and over, in seconds. Detection used to impose a cost. Now the machine just regenerates until nothing catches it. The static-indicator layer never stood a chance.
America Named the Man Attacking Its Water Plants and Can Do Nothing About It
The US put a $10 million bounty on the IRGC officer it says is attacking American water systems. He is a serving Iranian official, sitting inside Iran, and the money will never be paid. After three years of sanctions and indictments that did not work, this is what is left. It patches nothing.
Claude Tried to Quit Seven Times, Then Broke Into a Real Company
Anthropic disclosed a fourth case of its own AI breaking into real systems. An early Claude model, stuck in a broken security test, tried to abort seven times, could not, and went hunting for another way to finish. It did not turn evil. It just could not take no for an answer.
Instagram's Boss Just Made the Case Against His Own Algorithm
Australia wants to force platforms to let you switch off the algorithm. Instagram's boss argued against it, and his argument was that people who turn the algorithm off use Instagram less. Read that again. He is not describing a worse experience for you. He is describing a worse outcome for Meta.
Hundreds of AI Agents Ran the Attack, Then Broke Their Own Rules
A Russian-speaking attacker pointed hundreds of autonomous AI agents at PaperCut and hit 440 servers across 48 countries, moving from access to domain admin in minutes. The agents were told to avoid Russia, China, and Iran. They hit victims there anyway. Speed and scale come with a loss of control.
China Did Not Steal American AI, It Interrogated It
NSA, CISA, and FBI accused six Chinese firms of extracting billions of tokens from Claude, ChatGPT, Gemini, and Grok to train competing models. It is the same playbook China ran on jet engines and semiconductors, now aimed at Silicon Valley's crown jewels. The theft looks exactly like ordinary use.
FalconFlank Turns the Bodyguard Into the Burglar
A researcher published a working exploit turning CrowdStrike Falcon, the software meant to protect a Windows machine, into a privilege escalation tool by abusing Falcon's macro cleanup feature. There is no exploit in the wild, and a mitigation exists. The same researcher hit other vendors too.
Slim Spider Steals the Keys the Cloud Hands Out for Free
A month after PLUMP SPIDER, CrowdStrike named a second Brazilian crew: Slim Spider, and this one is not faking transfers. It is stealing cryptocurrency custody keys straight out of the cloud, by learning to look like something the cloud already trusts. The perimeter never mattered. The token did.
You Bought a Screen, LG Installed a Microphone That Never Sleeps
A $70k investigation found LG OLED TVs capturing clear microphone audio in standby, storing it even with the ethernet unplugged, and mapping every device and wifi network around them. The mic cannot be turned off at the hardware level. And LG's denial is carefully worded around one specific phrase.
Four Dollars Is All the AI Costs to Break Into Your Company
An affiliate of The Gentlemen ran an automated AI pipeline that broke into 30-plus companies, stole 3.1TB, and wrote the ransom demands itself. The AI cost per victim was as little as 40 cents. That is not the whole operation, but it is the part that used to take a skilled human days.
A Human Set the Goal, AI Did the Breach in 10 Hours
A ransomware operator used frontier AI to break into an enterprise network and seize root in under 10 hours, work normally taking a human red team two weeks. No zero-day, no novel malware, just known techniques at machine speed. The one thing stopping it was a control forcing a human to sign off.
Your ATM Was Encrypted, Until It Was Not
A researcher found nine ways to strip the encryption off some ATMs, including a fail state that mounts the disk in plaintext. The flaws are patched. The unsettling part is where else this software hides, buried in products across banking, healthcare, and government that may never know it was broken.
McKesson Was Breached by a Phone Call, Not a Zero-Day
ShinyHunters claims 284 million patient records stolen from McKesson, which moves a third of North America's prescriptions. Read that carefully: records, not patients. McKesson confirmed a breach, not the number. The healthcare data now sits behind a login a convincing voice can open.
PLUMP SPIDER Makes the Bank Rob Itself
Most financial ecrime is theft. PLUMP SPIDER does something worse. This Brazil-based crew gets inside the bank's own software and pushes fraudulent transfers through the real payment rails, in a real customer's name, so the fraud looks exactly like a legitimate transaction.