Cybersecurity & Privacy

Hackers are targeting AI toolchains, not just AI apps
WIRED, citing CrowdStrike research, says attackers are aiming at the software pipelines behind AI development to steal credentials, exfiltrate data, and in some cases sabotage systems.

How One Presentation Frames Surveillance Capitalism as a Design Problem — and a Civic One
A community talk argues that data-hungry platforms do more than track people: they shape behavior, concentrate power, and make privacy harder to defend without public pressure.

ClickFix Is No Longer Just a Low-End Scam — Even Elite Hackers Are Using It
A social-engineering trick once associated with lower-end crime is being adopted by more sophisticated threat actors, broadening its importance for defenders.

What Trump’s newly declassified election documents do — and don’t — show about US voting risks
Trump is using a fresh trove of declassified material to argue that American elections remain vulnerable, but the documents described in the source context mostly revisit long-known concerns rather than proving past election outcomes were altered.

Research says TP-Link Kasa cameras exposed home GPS over unauthenticated UDP for years
A security write-up on the Kasa Spot EC71 says a single UDP request could return precise GPS coordinates and device details without authentication, and that TP-Link has since patched the issue in firmware 2.4.1.

Why your router is suddenly a bigger security target
Home and small-office routers are drawing fresh attention because state-backed hackers can use poorly secured devices as long-lived proxy points, according to a new government warning.