https://lwn.net/SubscriberLink/1077035/c7e7c14fbd60fae9/
Discussion: https://news.ycombinator.com/item?id=48484584
Editor-in-Chief of Help Net Security.
I use this account for work and privately.
Work-related interests: Anything and everything to do with information security and related topics.
Personal interests: As above, + hiking, painting/art, development and use of language, human psychology, gardening and plant ecology... Always open to picking up new ones and often falling down internet rabbit holes.
| Help Net Security | https://www.helpnetsecurity.com/author/zeljkazorz/ |
| https://www.linkedin.com/in/zeljka-zorz-ba0065242/ |
Researchers at the University of Toronto, the Vector Institute, and the University of Cambridge have built and tested a proof-of-concept AI-driven worm that does not operate on a fixed list of exploits.
Instead, it analyzes each target it encounters, reasons about how to attack it, and creates a strategy on the fly, all with the help of a small, free large language model (LLM) running directly on machines it has already compromised.
https://www.helpnetsecurity.com/2026/06/03/autonomous-ai-worm-prototype/
An internal Microsoft strategy document says that the plan for its just-announced “Scout” personal assistant AI is to “make people addicted” to the tool before rolling out additional functionality.
The document notes that “security and compliance” are important things to figure out moving forward.
The hidden smart fridge risks that emerge years after purchase
https://www.helpnetsecurity.com/2026/05/12/iot-smart-fridge-risks/
Generative AI does well on tasks where feedback is fast, where being approximately right is good enough, where the human remains the final arbiter.
Drafting a memo, generating examples, summarizing material the reader could verify if they cared to. Brainstorming, copyediting, reformulating one’s own ideas, pattern detection in data one already understands.
https://nooneshappy.com/article/appearing-productive-in-the-workplace/
An email phishing campaign is currently targeting a subset of users of the Robinhood brokerage / investment platform
https://www.helpnetsecurity.com/2026/04/27/robinhood-phishing-email-campaign/
Periodic reminder - I'm maintaining the Internet of Trash list - https://github.com/unixorn/internet-of-trash/.
This is a list of devices to avoid with the reason why - typically companies like Chamberlain that lock out local control or put it behind a paywall.
If you've found a device that sucks, please make a PR or an issue about it so I can update the list.