We met with some of my wife's friends and it always surprises me how people think differently about some current things.

One friend has seen the movie about the child abuser Michael Jackson twice. And that seems strange to me because I have no interest in that movie.

Another friend's husband works in #TechSecurity and when I asked what he think about the banning of under 16s from #SocialMedia I was told he mostly agrees.

I find that odd since it's really about every adult having to upload id to the web and I assumed someone in tech security would be concerned not supportive.

But I suppose working in tech doesn't mean you don't support oppression. Lots of tech people love #bitcoin and #AI

It does surprise me how people aren't more critical about things in the media. I know people are exposed to different things, different news, but it still surprises me people aren't more radical about what's going on.

Data breach incidents climbed to 575 this week, up 27.8% from the previous 7 days. Technology & Telecom saw the sharpest sector pressure, rising 21.2% to 217 incidents. #DataBreach #TechSecurity #ThreatIntel

Analysis High Profile Meta AI Chatbot Breach Spotlights Security Risks of Automation 

An Instagram hack that saw attackers talk Meta’s AI support chatbot into handing over access to high-profile accounts has exposed a critical flaw at the heart of the company’s push to automate sensitive user functions. The breach allowed hackers to seize accounts including the dormant Obama White House page, beauty retailer Sephora and a senior U.S. Space Force official. The chatbot was persuaded to reset account credentials without independently verifying identity.......Continue […]

https://onlinemarketingscoops.com/2026/06/03/high-profile-meta-ai-chatbot-breach/

Analysis High Profile Meta AI Chatbot Breach Spotlights Security Risks of Automation 

An Instagram hack that saw attackers talk Meta’s AI support chatbot into handing over access to high-profile accounts has exposed a critical flaw at the heart of the company’s push to automate sens…

Online Marketing Scoops
Vibe coding, where AI-generated code is trusted without review, presents productivity gains but also significant risks like security flaws, increased technical debt, and erosion of developer skills. Is it a revolution or a ticking time bomb? Discover more at https://dev.to/rawveg/vibe-coding-revolution-or-risk-in-software-development-smarterarticles-s1e6-3ek9
#HumanInTheLoop #AIinSoftware #TechSecurity #SoftwareDevelopment
Vibe Coding: Revolution or Risk in Software Development? - SmarterArticles S1E6

Written by Tim Green, narrated by AI. Listen to the full episode here. 🎙️ Season 1, Episode 6 |...

DEV Community
Show 4: The Digital Con Artist. Phishing today isn’t about hacking your computer it’s about hacking you. In this episode of The Geek and The Detective, Amy Lynn and Detective Derrick Stevens break down how scammers use fake profiles, urgent messages... #TheGeekAndTheDetective #Vishing #Smishing #MFA #CyberCrime #StaySafeOnline #TechSecurity #DigitalPrivacy #CyberAwareness https://www.amylynn.org/thegeekandthedetective

[Translation] How a “dream job invitation” turns into an attack

It all starts with a notification that feels familiar and exciting for any developer: “You’ve been shortlisted for an AI developer position.” The company looks impressive — DLMind, an “AI innovation lab.” The recruiter appears legitimate — Tim Morenc, CEDS, with a polished LinkedIn profile, professional communication style, and mutual connections.

But behind this friendly outreach is BeaverTail — a malicious operation designed to steal your code, credentials, and developer assets.

The attack is part of a broader pattern associated with North Korean cyber operations, including groups such as Lazarus Group.

How the attack works

The victim is approached via LinkedIn or similar platforms

A convincing fake company and recruiter profile is used

A “technical assignment” or test task is provided

The task contains malicious code or a compromised dependency

Once executed, it extracts sensitive data such as:

GitHub / Git credentials

SSH keys

API tokens

browser session data

Why it works

The campaign relies on social engineering rather than technical exploitation:

trust in recruitment processes

desire for career opportunities

familiarity of developer workflows (GitHub, npm, Python, etc.)

Key takeaway

Any unsolicited “test assignment” should be treated as potentially hostile code. Execution environments must be isolated, and credentials should never be exposed in evaluation setups.

---

#hashtags
#cybersecurity #infosec #malware #socialengineering #phishing #infostealer #supplychainattack #github #developers #techsecurity #beavertail #lazarusgroup

@habr25 [Translation] How a “dream job invitation” turns into an attack

It all starts with a notification that feels familiar and exciting for any developer: “You’ve been shortlisted for an AI developer position.” The company looks impressive — DLMind, an “AI innovation lab.” The recruiter appears legitimate — Tim Morenc, CEDS, with a polished LinkedIn profile, professional communication style, and mutual connections.

But behind this friendly outreach is BeaverTail — a malicious operation designed to steal your code, credentials, and developer assets.

The attack is part of a broader pattern associated with North Korean cyber operations, including groups such as Lazarus Group.

How the attack works

The victim is approached via LinkedIn or similar platforms

A convincing fake company and recruiter profile is used

A “technical assignment” or test task is provided

The task contains malicious code or a compromised dependency

Once executed, it extracts sensitive data such as:

GitHub / Git credentials

SSH keys

API tokens

browser session data

Why it works

The campaign relies on social engineering rather than technical exploitation:

trust in recruitment processes

desire for career opportunities

familiarity of developer workflows (GitHub, npm, Python, etc.)

Key takeaway

Any unsolicited “test assignment” should be treated as potentially hostile code. Execution environments must be isolated, and credentials should never be exposed in evaluation setups.

---

#hashtags
#cybersecurity #infosec #malware #socialengineering #phishing #infostealer #supplychainattack #github #developers #techsecurity #beavertail #lazarusgroup

Federal prosecutors charged a 20-year-old Texas man with attempted murder after he allegedly threw a Molotov cocktail at OpenAI CEO Sam Altman's home, then tried to break into the company's headquarters. Court filings say he carried a list of AI executives' addresses and told security he came to "kill anyone inside." A separate, unrelated shooting at the same residence occurred Sunday.

#AISafety #TechSecurity #OpenAI

https://www.implicator.ai/texas-man-charged-in-molotov-attack-on-sam-altman-prosecutors-say-he-kept-ai-executive-target-list/

Texas Man Charged in Molotov Attack on Sam Altman; Prosecutors Say He Kept AI Executive Target List

Federal and state prosecutors charged a 20-year-old Texas man Monday with attempted murder in Friday's Molotov cocktail attack on OpenAI CEO Sam Altman's San Francisco home. Court filings say Daniel Moreno-Gama traveled from Spring, Texas, hit Altman's Russian Hill residence at 3:45 a.m., then tried to break into OpenAI's headquarters with a chair. In his backpack: incendiary devices, a jug of kerosene, and a document naming other AI CEOs by home address.

Implicator.ai

Two separate attacks on OpenAI CEO Sam Altman's San Francisco home within 72 hours raise questions about AI executive security. Police arrested two people after Sunday gunfire incident, following Friday's Molotov cocktail attack by Texas man. Three firearms seized. No injuries reported. Investigators haven't confirmed if incidents are connected.

#AISafety #TechSecurity #OpenAI

https://www.implicator.ai/sam-altmans-home-hit-by-gunfire-days-after-molotov-attack-two-arrested/

Sam Altman Home Hit by Gunfire, Two Arrested in SF

San Francisco police arrested two people Sunday after reported gunfire near OpenAI CEO Sam Altman's Russian Hill home, 48 hours after a 20-year-old Texas man allegedly firebombed the property. Three guns seized. Nobody hurt either time. FBI is watching.

Implicator.ai
Windows 95 defenses against installers that overwrite a file with an older version - The Old New Thing

A very primitive version of recovery.

The Old New Thing