RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

tech-culture

Orion's Internal Helium Leak Prompts Extra Testing on Artemis II

NASA scrapped a planned piloting demonstration on the Artemis II mission to squeeze in additional propulsion system testing after detecting a small internal hel

via Ars Technica ·
aipolicy

Pro-Iran Activist Group Weaponizes AI Lego Videos to Mock Trump

A pro-Iranian activist collective called Explosive Media has been churning out AI-generated, Lego-themed propaganda videos mocking President Trump throughout th

via Ars Technica ·
cybersecuritymalware

Ransomware hits Dutch EHR vendor ChipSoft, knocks hospital portals offline

ChipSoft, the Dutch supplier behind the HiX electronic health record platform used across much of the Netherlands, has been hit by ransomware and pulled its Zor

via BleepingComputer ·
tech-culture

Rocket Report: Chinese Falcon 9 clone fails, Artemis II nears reentry

The latest Rocket Report covers several developments in the launch industry as Artemis II approaches its most critical phase - atmospheric reentry on Friday eve

via Ars Technica ·
aipolicy

Sanders Interviews Claude on AI and Privacy, Sparks Sycophancy Debate

Bruce Schneier flags a published conversation between Senator Bernie Sanders and Anthropic's Claude on AI and privacy issues, noting the model handled the topic

via Schneier on Security ·
open-sourcedevops

Simple Tool Exposes GitHub Repo Sizes via Public API

Simon Willison built a small web tool that reveals the size of any GitHub repository - information GitHub doesn't surface in its own UI. The tool works by query

via Simon Willison ·
cybersecuritysupply-chain

Smart Slider 3 Pro update system compromised, backdoors pushed to 900K+ sites

Attackers compromised the update distribution system for Smart Slider 3 Pro, a popular WordPress and Joomla plugin, and used it to push a trojanized version (3.

via BleepingComputer ·
cybersecurityidentity

Storm-2755 hijacks Canadian payroll via AiTM phishing of Microsoft 365 sessions

Microsoft is tracking Storm-2755, a financially motivated crew rerouting Canadian employees' salary payments by stealing Microsoft 365 session tokens. Victims l

via BleepingComputer ·
cybersecurityidentity

VENOM PhaaS targets C-suite Microsoft accounts with QR-based AiTM phishing

A previously undocumented phishing-as-a-service operation dubbed VENOM has been running since November against CEOs, CFOs, and VPs across industries. Abnormal r

via BleepingComputer ·
cybersecurityvulnerability

Weekly Threat Roundup: Masjesu IoT Botnet and 13-Year Apache ActiveMQ RCE

The Hacker News' weekly ThreatsDay bulletin highlights 20 security stories, led by the Masjesu botnet and a long-dormant Apache ActiveMQ remote code execution f

via The Hacker News ·
vulnerabilitycybersecurity

Adobe Reader zero-day exploited since December via weaponized PDFs

EXPMON founder Haifei Li disclosed an unpatched Adobe Reader vulnerability that attackers have been exploiting in the wild since at least December. The exploit

via BleepingComputer ·
vulnerabilityopen-source

AI-Assisted Research Surfaces 13-Year-Old RCE in Apache ActiveMQ Classic

A high-severity remote code execution flaw (CVE-2026-34197, CVSS 8.8) has been patched in Apache ActiveMQ Classic after sitting undetected for over a decade. Ho

via BleepingComputer ·