Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. π¨π¦ More voices against Canada’s proposed End-to-End-Encryption ban: Apple Google Push Judicial Oversight Canada Online Safety Bill β www.reuters.com/β¦ Citizen Lab urges Canada to withdraw parts of Bill C-22 over privacy concerns β cyberinsider.com/β¦ […]
Continue readingTag: vulnerabilities
Security Bits β 26 April 2026
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Mozilla says Claudeβs Mythos AI helped uncover 271 flaws in Firefox β cyberinsider.com/β¦ Related: OpenAI Releases GPT 5.4 Cyber to Help with Defensive Security β www.macobserver.com/β¦ πΊπΈ FCC Hands Netgear an Effective Monopoly on […]
Continue readingSecurity Bits β 12 April 2026
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. πΊπΈ A good analysis of the US router ban that had just broken last time: The United States router ban, explained β www.theverge.com/β¦ Reported as a Probably Breach last time: 1.2 million Crunchyroll users […]
Continue readingSecurity Bits β 1 March 2026
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Notepad++ boosts update security with βdouble-lockβ mechanism β www.bleepingcomputer.com/β¦ (Following the embarrassing compromise of their update infrastructure that required all users to do a manual upgrade late last year) π¬π§ A little movement on […]
Continue readingSecurity Bits β 26 October 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. πΊπΈ US Court Blocks Spyware Vendor NSO Group from Targeting WhatsApp Users β cyberinsider.com/β¦ (Maybe their recent change to US ownership will give this injunction more teeth!) Update on the Tea app which suffered […]
Continue readingSecurity Bits β 12 October 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Another interesting twist in the NSO Group Saga: Spyware maker NSO Group confirms acquisition by US investors β techcrunch.com/β¦ (via Allison) β Action Alerts Calls to action, if any stories in this section are […]
Continue readingSecurity Bits β 17 August 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. π§ More details on the Tea leak discussed last time, with reporting of how many women are continuing to use the app, and including new sigunups π€―: kill switch: why are women still signing […]
Continue readingSecurity Bits β 6 July 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Just like we predicted last time: Scattered Spider hackers shift focus to aviation, transportation firms β www.bleepingcomputer.com/β¦ (They’d just pivoted to Insurance and were finding it fallow ground, so we predicted they’d jump again […]
Continue readingSecurity Bits β 22 June 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. Greyware spyware from Pegatron continues to be abused: Graphite spyware used in Apple iOS zero-click attacks on journalists β www.bleepingcomputer.com/β¦ (This all happened a few months ago, and the zero-day was patched back in […]
Continue readingSecurity Bits β 25 May 2025
Feedback & Followups Listener and community feedback, developments in recently covered stories, and developments in long-running stories we’re tracking over time. πͺπΊ Following the near-miss with the US-funded critically important CVE database earlier this year (CISA nearly let funding lapse without notice, and even then only temporarily extended the existing funding rather than actually renewing […]
Continue reading