Rather like with the smart home, when it comes to AI, I’ve taken the second wave approach — I let the early adopters get well and truly burned, and give the developers a chance to make a meaningful start at fixing the biggest problems, before slowly dipping my toe in. Compared to non-geeks, I’m still […]
Continue readingAuthor: Bart Busschots
Security Bits — 23 November 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Google backpedals on new Android developer registration rules — www.bleepingcomputer.com/… (Android is not becoming quite as Apple-like after all — better for Linux geeks, worse for regular folks) Deep Dive — that Cloudflare Outage […]
Continue readingSecurity Bits — 9 November 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. More evidence of the dangers of Agentic Browsers: ChatGPT Atlas Browser Can Be Tricked by Fake URLs into Executing Hidden Commands — thehackernews.com/… Related Article: Be Cautious with Agentic Web Browsers — tidbits.com/… (by […]
Continue readingSecurity Bits — 12 October 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Another interesting twist in the NSO Group Saga: Spyware maker NSO Group confirms acquisition by US investors — techcrunch.com/… (via Allison) ❗ Action Alerts Calls to action, if any stories in this section are […]
Continue readingSecurity Bits — 28 September 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. The industry is fighting back against the recent spike in supply-chain attacks targeting shared library platforms like NPM, PyPi, etc.: GitHub tightens npm security with mandatory 2FA, access tokens — www.bleepingcomputer.com/… 🇺🇸 Details are […]
Continue readingSecurity Bits — 31 August 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. 🇺🇸 The leaked data from the Allianz Life breach discussed last time has been added to Have-I-Been-Pwned, so you can now check if you are affected — www.bleepingcomputer.com/… There have been confusing developments in […]
Continue readingSecurity Bits — 1 August 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. 🇬🇧 It looks like the UK is trying to find a face-saving way to back down from it’s secretive attempt to back-door Apple’s iCloud Advanced Data Protection feature — appleinsider.com/… (Nothing official because everything […]
Continue readingSecurity Bits — 6 July 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Just like we predicted last time: Scattered Spider hackers shift focus to aviation, transportation firms — www.bleepingcomputer.com/… (They’d just pivoted to Insurance and were finding it fallow ground, so we predicted they’d jump again […]
Continue readingSecurity Bits — 25 May 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. 🇪🇺 Following the near-miss with the US-funded critically important CVE database earlier this year (CISA nearly let funding lapse without notice, and even then only temporarily extended the existing funding rather than actually renewing […]
Continue readingSecurity Bits — 11 May 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. A great example of why it’s important to patch – this is one of the things the Apple updates we called out last time patched: Apple ‘AirBorne’ flaws can lead to zero-click AirPlay RCE […]
Continue reading