• Lenovo BIOS Vulnerability Lets Attackers Gain Full System Control

    A newly discovered Lenovo BIOS vulnerability could allow attackers to gain full control of affected systems, bypass operating systems, and even install persistent malware. Lenovo has released urgent advisories and firmware updates, but some patches are still pending. The flaw affects select Lenovo IdeaCentre and Yoga AIO (All-In-One) computers using BIOS developed by Insyde Software.…

  • Coinbase Chase Partnership Expands Crypto Access With Credit Card and Rewards Integration

    Coinbase is teaming up with banking giant JP Morgan Chase in a major move that brings crypto closer to the mainstream. The Coinbase Chase partnership will allow users to make instant crypto purchases using Chase credit cards, with more integration features rolling out in 2025 and beyond. Starting this fall, Coinbase users can buy cryptocurrency…

  • AI Bypasses CAPTCHA: ChatGPT and Other Bots Now Evade Basic Online Verification

    Artificial intelligence continues to break new ground—and not always in comforting ways. In the latest development, AI bypasses CAPTCHA tests, a system long relied on to block bots from accessing websites. A Reddit user shared screenshots of OpenAI’s ChatGPT completing a video conversion task that required clicking Cloudflare’s “I am not a robot” checkbox. The…

  • FTX Japan Data Leak Exposes 35,000 Users More Than a Year After Shutdown

    The ghost of a defunct crypto exchange is still haunting the web. A new FTX Japan data leak has exposed personal and financial information from more than 35,000 users—well over a year after the platform officially shut down. Cybernews researchers discovered an open Amazon S3 bucket on May 12, 2025. It contained more than 26…

  • A7A5 stablecoin surge hits 240% as Russians bypass sanctions

    The A7A5 stablecoin surge is accelerating rapidly, with the ruble-backed crypto asset growing by over 240% in just two weeks. Russian users are increasingly turning to the stablecoin as a workaround to international sanctions and frozen crypto accounts. Blockchain analytics firm Elliptic reports that A7A5’s supply now exceeds 41 billion tokens—worth over $501 million. Daily…

  • Lovense email leak exposes users after months of warnings

    The Lovense email leak has exposed users of the popular sex tech brand to serious privacy risks, allowing attackers to extract plaintext email addresses using only usernames. Security researchers say the company failed to fix the flaw for more than a year—even after multiple disclosures. Ethical hacker BobDaHacker first discovered the issue while casually using…

  • Google AI misinformation spreads in Men’s Health Luka Dončić article

    Google AI misinformation has found its way into mainstream media. Men’s Health magazine recently published an article that falsely claimed NBA star Luka Dončić recorded a 42-inch vertical leap at the 2018 NBA Scouting Combine. The problem? He didn’t even attend the event. The misleading factoid likely originated from Google’s AI-generated summary, which incorrectly attributed…

  • Arctic Glacier data breach exposes staff IDs and sensitive documents

    The Arctic Glacier data breach has been claimed by the Qilin ransomware gang, who listed the major North American ice supplier on its dark web blog. The cybercriminals allege they’ve exfiltrated sensitive company files, including employee identification documents, payroll data, and legal contracts. Arctic Glacier is one of the largest packaged ice suppliers in the…

  • Aeroflot cyberattack forces flight cancellations, hackers claim breach

    Russian airline Aeroflot cancelled dozens of flights on Tuesday following a massive cyberattack, but claimed its flight schedule had largely stabilized. The attack, claimed by two pro-Ukraine hacker groups, reportedly disrupted 7,000 servers and accessed sensitive employee and passenger data. The hackers, Belarusian Cyber Partisans and the group Silent Crow, said they spent a year…

  • Scattered Spider ransomware gang evolves with new attack tactics

    The US Cybersecurity and Infrastructure Security Agency (CISA) has released an updated advisory on the Scattered Spider ransomware group, warning of newly observed tactics and even more sophisticated attacks. The group is now targeting third-party IT vendors by impersonating company employees—stepping beyond its original playbook. According to the July update, this is the third advisory…