Top stories
Australia's eSafety Watchdog Criticizes Tech Giants for Inadequate Sextortion Measures
Australia's eSafety Commission reports over 2,000 sextortion complaints, with 800 from men aged 18-24. Tech companies, including Apple and Meta, face criticism for not effectively combating these threats, especially given recurring coercive scripts. Major platforms identified include Instagram, WhatsApp, iMessage, and Snapchat.
Lidl Data Breach Affects Customers in Germany, Belgium, and Netherlands
Lidl, a European supermarket chain, suffered a data breach affecting online customers in Germany, Belgium, and the Netherlands. Attackers accessed customer data stored by a third-party service provider. Although no payment information was compromised, affected customers have been advised to be cautious of potential phishing scams.
Google Expands Gemini in Chrome to UK Users
Google has expanded its Gemini feature in Chrome to users in the UK, continuing its international rollout. Gemini, previously limited to certain subscriptions, offers AI-based summarization and integration with Google services. This feature, now more widely available, enhances user interaction with content and other Google apps directly in the browser.
GitHub Copilot Enhances Efficiency with Improved Context Handling and Model Selection
GitHub Copilot has introduced improvements in context handling and model routing for Visual Studio Code, boosting productivity without user involvement. The updates enhance prompt caching and enable automatic model selection aligned with tasks. This development could impact software development workflows by optimizing resource use and maintaining quality in longer coding sessions.
Micron to Boost U.S. Chip Investments to $250 Billion by 2035
Micron has announced a strategic investment of $3 billion in U.S. semiconductor manufacturing, including $500 million for GlobalWafers' Texas wafer plant. This is part of a broader plan to increase Micron's total U.S. investment to $250 billion by 2035, driven by rising memory demand from AI advancements. The move seeks to secure a reliable domestic supply of critical input materials.
IEEE Introduces Large Language Model Training for Engineers
IEEE has launched a virtual course on large language models (LLMs) aimed at training engineers in their implementation. The course addresses the increasing integration of LLMs into digital infrastructures, highlighting a growing need for technical expertise as these models become core to modern engineering practices.
Meta Expands Hyperion Data Center in Louisiana to a 5GW Facility, Investment Surpasses $50 Billion
Meta's data center in Louisiana will grow to a 5GW facility, increasing its investment from $27 billion to over $50 billion. Supported by Louisiana's tax incentives, this expansion is part of Meta's AI infrastructure strategy and promises substantial local economic benefits.
Forg365 Phishing-as-a-Service Targets Microsoft 365 with Sophisticated Methods
Forg365, a new phishing-as-a-service platform, targets Microsoft 365 accounts with advanced techniques such as adversary-in-the-middle attacks, AI-generated lures, and device code phishing. This operation is notable for its complexity and capability to execute persistent access while leveraging legitimate email services for delivery.
Brazilian Court Orders Microsoft to Restore Hacked Xbox Account and Pay Damages
A Brazilian court ordered Microsoft to reinstate a gamer's suspended Xbox account and digital library, following a lawsuit by a user known as Ordo_Liberal. Microsoft must also pay $400 in damages. The court ruling emphasizes consumer rights in digital ownership and security.
Apple to Release New Apple Pencil Models in 2027 with Replaceable Batteries
Apple is set to release new models of its Apple Pencil in spring 2027, featuring replaceable batteries to comply with EU regulations. This update aims to improve repairability and user experience, aligning with new standards for portable electronic devices.
Google, Amazon, and Microsoft Report Significant Rise in Carbon Emissions Amid AI Demand
Google, Amazon, and Microsoft report rises in carbon emissions spurred by AI technologies and data center demand. Emissions increased 25%, 16%, and nearly 20% respectively, challenging their net-zero carbon goals. This reflects broad tech industry challenges as AI adoption expands, impacting sustainability pledges.
Phia Faces Suspension for Alleged Cookie Stuffing in Affiliate Marketing
Phia, co-founded by Phoebe Gates and Sophia Kianni, is accused of cookie stuffing, improperly claiming affiliate sales it did not generate. Investigations revealed the misuse, leading to Phia's suspension from Impact.com. The issue highlights challenges in maintaining transparency in affiliate marketing practices.
Attackers Use Dormant GitHub Accounts for Reconnaissance via API
Datadog Security Labs has identified multiple attack campaigns exploiting dormant GitHub accounts for organizational reconnaissance. Attackers use these accounts with automated tools to gather data, occasionally accessing private repositories. This is significant due to potential risks of further targeted attacks.
200 GitHub Repositories Used to Spread Malware in 'Operation Muck and Load'
A threat actor has leveraged 200 GitHub repositories to distribute malware in 'Operation Muck and Load'. The campaign uses a deceptive Go module posing as a DNS scanner, distributing over 700 malicious variants since January 2023 to execute spyware, trojans, and other malware. This highlights significant risks in software supply chain security.
Six Vulnerabilities Found in U-Boot Bootloader Threaten Device Security at Boot
Six vulnerabilities in the U-Boot bootloader, used in devices from routers to servers, have been identified. These flaws enable attackers to execute arbitrary code or crash devices during boot, compromising security before the operating system verifies software. This poses significant risks due to U-Boot's widespread deployment in various embedded systems.
Armenian Man Pleads Guilty to Involvement in Ryuk Ransomware Attacks
Karen Serobovich Vardanyan, a 34-year-old Armenian national, pleaded guilty in the US to charges related to deploying Ryuk ransomware. Extradited from Ukraine, Vardanyan facilitated attacks from November 2019 to April 2020, securing approximately $15 million in ransoms. His case underscores ongoing cybersecurity threats impacting various sectors.
Injective SDK npm Package Compromised to Steal Cryptocurrency Keys
A version of the Injective SDK npm package was compromised, leading to the theft of cryptocurrency wallet private keys via a malicious version. Hackers accessed Injective Labs' GitHub to publish the harmful package, affecting developers in the decentralized finance space.
AWS & Google Cloud Designated as Critical Third Parties to UK's Financial Sector
HM Treasury has designated Amazon Web Services and Google Cloud as critical third parties to the UK financial sector. Under the Critical Third Party (CTP) regime effective January 1, 2025, these tech giants will be subject to oversight from UK regulators such as the Bank of England. This move aims to enhance the operational resilience of the financial sector amidst increasing reliance on cloud services.
Supreme Court Ruling on Location Data May Impact Automated License Plate Cameras
The Supreme Court's decision in Chatrie v. United States mandates warrants for cellphone location data, potentially affecting the use of automated license plate readers (ALPRs) like those used by Flock Safety. This could impose legal constraints on current law enforcement practices utilizing widespread ALPR networks without warrants. The case reflects broader privacy concerns about surveillance technologies and Fourth Amendment rights.
Dutch Police Probe Local Hackers in Odido Telecom Data Breach
The Dutch police are investigating local hackers in the February Odido data breach affecting 6.2 million customers. A suspect impersonated an Odido IT employee, facilitating unauthorized access through a customer contact system. Authorities are requesting public assistance to identify the caller.
Google Research Launches TabFM for Efficient Tabular Data Predictions
Google Research has introduced TabFM, a zero-shot foundation model for tabular data that simplifies classification and regression tasks without manual tuning. It reduces the need for extensive feature engineering and retraining pipelines, allowing predictions from unseen tables in a single step. This advancement highlights a shift from traditional models, significantly speeding up enterprise data processing.
AMD Releases Ryzen AI Halo, a $4,000 Local AI Development Platform
AMD has launched the Ryzen AI Halo, a $3,999.99 mini-PC for local AI development, powered by the Zen 5 Ryzen AI Max+ 395 processor. It includes integrated graphics, ample memory, and comes preloaded with Windows 11 Pro or a custom AMD Linux. While user-friendly, its performance is noted to lag behind Nvidia's similar offerings.
Netflix Considers Launching Always-On Channels Amid Engagement Challenges
Netflix is exploring the introduction of always-on channels to address declining user engagement and enhance ad revenue. This initiative would directly compete with free streaming platforms like Pluto TV and Tubi by offering non-stop streaming content. The move also aligns with strategies to incorporate streaming bundles as demonstrated by competitors like Apple TV and Prime Video.
AI Agents Expose Gaps in Enterprise Identity Governance Systems
AI agents are increasing machine identities in enterprises, highlighting gaps in identity governance. Traditional identity access management (IAM) systems were not designed for autonomous AI, often causing security risks due to over-privileged access. Addressing this issue is critical for secure enterprise operations.
Volkswagen Considers Major Restructuring Amid Profit Decline and Union Tensions
Volkswagen Group is contemplating factory closures and a significant reduction of its workforce as it seeks to adapt to changing market conditions and declining profits. Plans to streamline operations face opposition from strong worker unions.
Trailblazing Pilot and Space Traveler Wally Funk Dies at 87
Wally Funk, a pioneering aviator and space traveler, died at 87 at her home in Grapevine, Texas. She was known as the oldest person to fly in space at 82 aboard Blue Origin's New Shepard in 2021. Funk was a member of the Mercury 13, an unrecognized group of female astronaut trainees in the 1960s.
GigaWiper: New Sophisticated Windows Backdoor with Destructive Capabilities
Microsoft has uncovered GigaWiper, a sophisticated malware targeting Windows machines. This backdoor combines older destructive programs to offer disk wiping, fake ransomware, and spyware functions, showcasing a shift in wiper malware to extortion activities. Its likely connections to cyber threats against Israeli organizations highlight the need for vigilance and strong cyber defenses.
OpenAI Faces Allegations of Evidence Withholding in Ongoing Copyright Suit
OpenAI is facing serious allegations from news organizations, including The New York Times, of concealing evidence in a copyright infringement lawsuit. Key claims involve OpenAI's misleading statements about its ability to search its ChatGPT logs and datasets for potential copyright infringements. This case could impact legal interpretations of AI's use of copyrighted content as fair use or infringement.
Palantir CEO Alex Karp Criticizes AI Token Models Amid Rising Costs
Palantir CEO Alex Karp criticized the token models of AI companies OpenAI and Anthropic, highlighting inefficiencies and surging costs. He suggested businesses are turning to open-weight models and proprietary AI tools. Palo Alto Networks CEO Nikesh Arora also warned that AI token costs must drop significantly to enable wider adoption of AI technologies.
AWS and Google Launch New Sandboxing Environments for Running Untrusted Code
AWS Lambda has introduced MicroVMs, a new serverless compute option offering VM-level isolation for running user-generated code. Concurrently, Google Cloud has launched Cloud Run sandboxes in public preview, enabling safe execution of AI-generated code and untrusted binaries. Both solutions aim to provide secure, isolated environments for a variety of applications.
Samsung Galaxy S26 Ultra Launched with Privacy Display and AI Features
Samsung has unveiled the Galaxy S26 Ultra, featuring a new privacy display with restricted viewing angles and integration of multiple AI chatbots. The device, priced at $1,299, comes with multiple configurations and stackable discounts, driving increased production to meet demand. This launch is significant as it addresses user security while keeping pace with competitive flagship offerings.
Block Inc. Settles for $45M Over Cash App Security Allegations with 46 States
Block, Inc., the parent company of Cash App, agreed to pay $45 million to settle claims from 46 U.S. states over allegations of misleading users about security protections. State attorneys general accused Block of inadequate fraud protection measures which left users exposed. This settlement addresses prior consumer protection failures and requires around-the-clock customer support.
UK Unveils AI-Driven 'Cyber Shield' for Enhanced National Cybersecurity
The UK announced the Cyber Shield initiative to improve national cybersecurity through agentic AI systems. The initiative, led by the National Cyber Security Centre, focuses on countering advanced threats that exploit AI to rapidly identify vulnerabilities. This collaboration with academia and industry aims to hardwire AI advancements into national security defenses against increasingly sophisticated cyber threats.
Brown University Professor's In-Person Exams Highlight Potential AI Cheating Issue
Brown University professor Roberto Serrano suspects AI-facilitated cheating after a drastic score drop from take-home to in-person finals. His class had grown to 86 students, with a notable reduction in attendance after the exam format change. This incident indicates potential academic dishonesty and highlights the impact of AI on examination processes.
Sony Releases RX10 V Superzoom Camera with New Stacked Sensor, Priced at $2,299.99
Sony has launched the RX10 V superzoom camera with a new 20.1 megapixel stacked sensor, enabling 30fps shooting. Priced at $2,299.99, the camera features 4K video recording at 120fps and a redesigned body but retains its predecessor's lens design. The upgrades make it suitable for both photographers and videographers.
Character.AI Launches Interactive AI-Generated Microdramas
Character.AI has introduced c.ai Series, featuring AI-generated microdramas that allow user interaction with characters post-viewing. This venture into the $26 billion microdrama market combines artificial intelligence with popular genres to offer a unique storytelling experience.
Alienware Unveils Enhanced 34-Inch QD-OLED Gaming Monitor
Alienware has launched the AW3426DW, a 34-inch ultrawide monitor using Samsung's QD-OLED technology, featuring a five-layer RGB Stripe panel and a 280 Hz refresh rate. These advancements improve brightness and color accuracy for a more immersive gaming experience. The monitor represents a significant update in the competitive gaming display market.
FTC Approves Elon Musk's Acquisition of Mesh Optical Technologies
The Federal Trade Commission has approved Elon Musk's pending acquisition of Mesh Optical Technologies. Founded by former SpaceX engineers, Mesh develops optical transceivers for data centers. This acquisition could enhance data transmission capabilities in SpaceX's data centers, vital for AI infrastructure.
Mount Royal University Hit by Ransomware Attack, Data Stolen and Deleted
Mount Royal University in Calgary experienced a ransomware attack that led to the theft and deletion of student and employee data from its 'H drive' file storage systems. The CMD Organization, the group responsible for the attack, demanded a $1.9 million ransom for over 10 terabytes of data. This incident, impacting various university systems, emphasizes the ongoing risk of ransomware threats in the education sector.
NHTSA Directs Autonomous Vehicle Makers to Address Interference with Emergency Responders
The NHTSA has directed autonomous vehicle (AV) makers to resolve issues of their vehicles interfering with emergency responders. This directive follows reports of AVs obstructing law enforcement and emergency services, highlighting deficiencies in their safety protocols. AV developers have until the end of the month to present their solutions.