The Wire
Curated cybersecurity and tech news — AI-summarized, source attributed.
Magento Skimmer Hides in 1×1 SVG Pixel, Hits ~100 Stores
Attackers have compromised roughly 100 Magento stores by injecting a credit card skimmer into a single-pixel SVG element embedded directly in page HTML. The mal
Malicious litellm 1.82.8 wheel auto-executes on Python startup via .pth file
A poisoned release of the litellm package on PyPI, version 1.82.8, shipped a wheel containing a 34,628-byte .pth file named litellm_init.pth. Because Python pro
Masjesu Botnet Surfaces as DDoS-for-Hire Platform Exploiting IoT Devices
A new botnet dubbed Masjesu has emerged as a commercial DDoS-for-hire service, compromising IoT devices worldwide to build its attack infrastructure. The operat
Meta's Superintelligence Lab Debuts Spark, a Proprietary Break from Llama
Meta has released Muse Spark, the first model from its Superintelligence Labs division - a unit formed roughly a year ago with ambitions around personal superin
Microsoft auto-suspends VeraCrypt, WireGuard, MemTest86 dev signing accounts
Microsoft silently terminated Windows Hardware Program signing accounts belonging to maintainers of WireGuard, VeraCrypt, MemTest86, and Windscribe, cutting off
Mobile-Driven Fraud Surges Across Latin America
Fraud rates are climbing sharply across Latin America, driven by the region's heavy reliance on mobile devices as the primary gateway to digital services. With
New Mexico's Meta Ruling Could Make Encryption a Legal Liability
A New Mexico court ruling against Meta is being used to argue that adding end-to-end encryption to Facebook Messenger was itself a negligent design choice - bec
OPM Seeks Monthly Medical Records on 8M Federal Workers With Little Justification
The Office of Personnel Management quietly published a notice in December requiring health insurers to hand over detailed, identifiable medical records - includ
Russia's APT28 Hits Ukraine and NATO with New PRISMEX Malware
Russia-linked threat group APT28 (also known as Fancy Bear or Forest Blizzard) has been observed deploying a previously undocumented malware strain dubbed PRISM
Russia's Forest Blizzard Harvests Credentials en Masse Through Compromised SOHO Routers
The Russian state-backed threat group Forest Blizzard (also tracked as APT28 or Fancy Bear) has been exploiting compromised small office/home office (SOHO) rout
Schneier: AI-Driven 'Instant Software' Will Reshape the Attack-Defense Arms Race
Bruce Schneier sketches a near-future where AI writes disposable, on-demand applications alongside traditional software, and where the same models that generate
150-Million-Year-Old Fish Fossil Found with Squid Lodged in Throat
A newly described fossil from the Jurassic period captures a fish mid-choke on a belemnite rostrum - the mineralized internal shell of an extinct cephalopod rel