Alright team, it's been a bit quiet on the news front over the last 24 hours, but we've still got some interesting bits to chew on, including ongoing database extortion, a wild deepfake job application story, and a new privacy feature from Apple. Let's dive in:

Exposed MongoDB Instances Under Attack ⚠️
- A persistent threat actor is still hitting misconfigured MongoDB instances, wiping databases and demanding low ransoms (around Β£400-Β£500 in Bitcoin) for data restoration, though there's no guarantee of recovery.
- Research shows over 208,500 MongoDB servers are publicly exposed, with 3,100 lacking authentication, and nearly half of those already compromised.
- Admins must avoid public exposure, enforce strong authentication, use firewalls, update to the latest versions, and continuously monitor for unauthorised activity.

πŸ€– Bleeping Computer | https://www.bleepingcomputer.com/news/security/exposed-mongodb-instances-still-targeted-in-data-extortion-attacks/

Deepfake Job Applicants: A New Social Engineering Frontier 🧠
- An AI security startup CEO recently faced a sophisticated deepfake candidate applying for a security researcher role, highlighting the growing use of AI in recruitment scams.
- Even experienced professionals can struggle with the "inner turmoil" of confronting a deepfake, underscoring the challenge of verifying identity in remote hiring.
- Companies should implement a mix of low-tech (trust your gut, mandate cameras on, ask for physical interaction) and high-tech solutions (deepfake detection tools) to combat this evolving threat, as the cost of hiring a malicious actor can be substantial.

πŸ•΅πŸΌ The Register | https://go.theregister.com/feed/www.theregister.com/2026/02/01/ai_security_startup_ceo_posts/

Apple Enhances iPhone Location Privacy πŸ”’
- Apple is rolling out a new "Limit Precise Location" feature for some iPhone and iPad models (iOS 26.3+), allowing users to restrict cellular networks to only approximate location data.
- This feature, which doesn't affect emergency calls or app-shared location, appears to be a response to past FCC fines against major carriers for illegally sharing user location data.
- While currently limited to specific devices and carriers (e.g., Telekom DE, EE/BT UK, Boost Mobile US, AIS/True TH), it marks a significant step towards giving users more control over how carriers track their movements.

πŸ€– Bleeping Computer | https://www.bleepingcomputer.com/news/apple/new-apple-privacy-feature-limits-location-tracking-on-iphones-ipads/

#CyberSecurity #ThreatIntelligence #MongoDB #DataExtortion #Deepfake #SocialEngineering #AI #RecruitmentScams #Apple #DataPrivacy #InfoSec #CyberAttack #Vulnerability #IncidentResponse

Exposed MongoDB instances still targeted in data extortion attacks

A threat actor is targeting exposed MongoDB instances in automated data extortion attacks demanding low ransoms from owners to restore the data.

BleepingComputer
Job seekers and recruiters are targets of sophisticated scams like More_eggs malware. Protect your data and stay vigilant against these cyber threats. Learn more in our latest article: https://wp.me/peSvjo-F6 #CyberSecurity #RecruitmentScams #TechSafety
Hackers Targeting Recruiters: Stay Safe in Your Job Search

Learn how hackers are targeting recruiters with new scams like More_eggs malware disguised as resumes. Protect yourself with these simple tips

Cybersecurity For All

Madhya Pradesh: Across Castes, Political Beliefs, Two Common Concerns: Inflation and Unemployment

Be it construction workers in Indore, cotton-yarn factory staff in Sehore, the daily-wage labourer in Sagar or government job applicants across regions, the Shivraj Chouhan BJP government's claims to have transformed MP are facing challenges.

#AssemblyElections2023 #MadhyaPradesh #BJP #unemployment #inflation #ShivrajSinghChouhan #RecruitmentScams #BJPStates #india

https://thewire.in/rights/madhya-pradesh-election-jobs-unemployment

Madhya Pradesh | Across Castes, Political Beliefs, Two Common Concerns: Inflation and Unemployment

Be it construction workers in Indore, cotton-yarn factory staff in Sehore, the daily-wage labourer in Sagar or government job applicants across regions, the Shivraj Chouhan BJP government's claims to have transformed MP from a 'BIMARU' to 'Bemisaal' are facing challenges.

The Wire