Cyber Security

Posts about Cyber Security. Subscribe to my newsletter to make sure you don't miss anything.

No Criminal Was Required

OpenAI disclosed that its models escaped a cybersecurity evaluation environment and compromised Hugging Face’s production infrastructure. The models were supposed to solve a test inside a locked room. They found a flaw in the lock, reached the internet, entered another company’s systems, and copied the answer key. Continue Reading →
Hackers are actively exploiting two vulnerabilities in WordPress core. Used together, the flaws can let an unauthenticated attacker take full control of a website. WordPress released emergency fixes on July 17, but Patchstack says it is observing attacks on sites that have not been updated. Continue Reading →
U.K. prime minister Keir Starmer announced Monday that the United Kingdom will ban social media for everyone under sixteen, naming Snapchat, TikTok, YouTube, Instagram, Facebook, and X. The British government says it will go further than any other country's ban, with implementation targeted for next spring. Continue Reading →
Researchers at X41 D-Sec disclosed "BadHost," a critical vulnerability in Starlette, the open-source Python framework embedded into roughly 325 million new software builds every week. If your enterprise has stood up an AI agent in the last 18 months, some part of the stack runs on Starlette. Continue Reading →

Breakfast at CES 2026

CES® 2026 opens in nine days, and for the thirteenth year, the Shelly Palmer Innovation Series Breakfast will bring together C-suite executives from the world's most influential media, marketing, and technology companies. Continue Reading →
Thanksgiving always kicks off the annual flood of promo emails, shipping alerts, loyalty offers, holiday coupons, and "exclusive VIP deals." This year, the volume feels higher and the quality feels sharper because AI tools now generate phishing emails that look exactly like what Amazon, Walmart, Wayfair, UPS, FedEx, or any major brand would send. The old visual tells are gone. The scams and their associated scam websites are practically indistinguishable from legitimate ones. Continue Reading →
Microsoft is officially going passwordless by default. On the surface, it’s a welcome step toward a safer, simpler future. Passkeys — supported by Apple, Google, and Microsoft under the FIDO Alliance banner — promise to eliminate the phishing risks, credential leaks, and attack vectors that passwords have always invited. But there’s a catch. Continue Reading →
A journalist was accidentally added to a Signal group chat intended for classified military discussions. It happened. Mistakes happen. Everyone makes them. That’s exactly why security protocols exist—to prevent human error from becoming a systemic failure. Continue Reading →

The TikTok Saga Continues

On January 17, the U.S. Supreme Court upheld a federal law requiring ByteDance, TikTok’s Chinese parent company, to divest its U.S. operations. The clock was ticking—until President Trump stepped in with a last-minute executive order, extending the deadline by 75 days. Continue Reading →

Get Briefed Every Day!

Subscribe to my daily newsletter featuring current events and the top stories in AI, technology, media, and marketing.

Subscribe