RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

cybersecuritycloud

Full Sail University Adding IBM Cyber Defense Range to Campus

Full Sail University is launching an on-campus IBM Cyber Defense Range, built on AWS infrastructure and powered by Cloud Range's simulation platform. The facili

via Dark Reading ·
cybersecuritymalware

Germany IDs REvil/GandCrab kingpin 'UNKN' as 31-year-old Russian Daniil Shchukin

Germany's Federal Criminal Police (BKA) have publicly named Daniil Maksimovich Shchukin, a 31-year-old from Krasnodar, Russia, as the operator behind the handle

via Krebs on Security ·
cybersecuritycryptography

Google Sets 2029 Deadline for Full Post-Quantum Cryptography Migration

Google has committed to completing a full transition to post-quantum cryptography by 2029. The deadline isn't driven by an imminent quantum threat - no cryptogr

via Schneier on Security ·
cybersecurityai

HackerOne Halts Bug Bounties Over AI Remediation Risks

HackerOne has temporarily paused its bug bounty programs due to concerns over the reliability of AI-driven vulnerability remediation. The platform observed a su

via Dark Reading ·
cybersecuritymalware

Hackers Use Emojis to Bypass Cybersecurity Defenses

Cybercriminals are increasingly leveraging emojis in malicious communications to evade detection by security tools that traditionally scan for known malware sig

via Dark Reading ·
privacypolicy

Hong Kong law compels travelers to surrender device passwords at the border

Hong Kong authorities revised enforcement rules under the National Security Law on March 23, 2026, granting police the power to demand passwords and decryption

via Schneier on Security ·
cybersecurityvulnerability

Iran-Linked APT Hits US Critical Infrastructure PLCs Amid Escalating Conflict

An Iranian government-affiliated threat group has been actively disrupting programmable logic controllers (PLCs) across US critical infrastructure since at leas

via Ars Technica ·
identitycybersecurity

IVIP: A New Category Pitches Visibility as the Cure for IAM Sprawl

Identity and access management has fragmented across SaaS, cloud, and on-prem systems faster than most organizations can map. The result is an attack surface de

via The Hacker News ·
privacycybersecurity

LinkedIn's Silent Browser Extension Scanning Triggers Two Privacy Lawsuits

LinkedIn is facing two class action lawsuits after reports emerged that it scans users' installed browser extensions without clear disclosure. The suits allege

via Ars Technica ·
cybersecuritymalware

Magento Skimmer Hides in 1×1 SVG Pixel, Hits ~100 Stores

Attackers have compromised roughly 100 Magento stores by injecting a credit card skimmer into a single-pixel SVG element embedded directly in page HTML. The mal

via BleepingComputer ·
supply-chainopen-source

Malicious litellm 1.82.8 wheel auto-executes on Python startup via .pth file

A poisoned release of the litellm package on PyPI, version 1.82.8, shipped a wheel containing a 34,628-byte .pth file named litellm_init.pth. Because Python pro

via Schneier on Security ·
cybersecuritymalware

Masjesu Botnet Surfaces as DDoS-for-Hire Platform Exploiting IoT Devices

A new botnet dubbed Masjesu has emerged as a commercial DDoS-for-hire service, compromising IoT devices worldwide to build its attack infrastructure. The operat

via The Hacker News ·