I'm trying to decide if I should cancel my Disney+/Hulu subscription right away or if I first should find a way to contact the company and tell them I will if it doesn't restate Jimmy Kimmel
Can you imagine the huge bonanza espionage and ransomware threat actors are going to have when every service you use forces you to provide them with your ID? This is a disaster that 100% will happen. I can hardly wait.
People in Internet security circles are sounding the alarm over the issuance of three TLS certificates for 1.1.1.1, a widely used DNS service from Cloudflare. The three improperly issued certs escaped notice for 4 months.
After more than a decade of receiving these sorts of messages, I still never know how to respond in a way that might be remotely helpful. image
There very well may be major vulnerabilities in Passkeys or the FIDO spec they're based on. This most definitely ain't one of them.
A reminder that software makers, hardware makers, cloud services, payment processors, and the like will throw their customers under the bus whenever it suits them. Your payment card, food delivery account, AWS instance, Gmail address -- all can be taken away on a whim for any reason or no reason. These providers are NOT your friend. Make plans now. Have backups in place. Practice self-reliance. Ween yourself off these one at a time.
Once again, @Marcus Hutchins :verified: nails it, this time calling out the "gluttony of myopic visionaries" shilling the wonders of AI. https://malwaretech.com/2025/08/every-reason-why-i-hate-ai.html
Is the activating of the Minnesota National Guard an over reaction to the ransomware attack on St. Paul? I have yet to hear an explanation of what exactly these folks are doing or what they can do that normal incident response people can't. Also, how many troops have been deployed? I haven't seen any of these questions answered let alone asked in the coverage I've read.
Coming shortly. Researchers say they've uncovered an in-the-wild phishing operation that "effectively bypasses any protections that a FIDO key grants." As I will explain, this isn't the case. The research misunderstands what's occurring in the attacks. More to follow.
Interesting article reporting that Android will soon give Gemini broadened access to phones and the apps they run, even when Gemini has not been turned on. Article gos on to say people who don't want this should "open the Gemini app from your Android device" and turn off each app extension. Sounds simple enough, but I'm not finding any Gemini app installed on my pixel. Can anyone help me figure out what precisely people must do too keep Gemini off of their android devices?