RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

cybersecuritytech-culture

USB Drop Test Goes Viral: Lessons From a Physical Pen-Test Stunt

A penetration tester's account of a USB drop exercise — scattering rigged thumb drives near a target organization to see which employees would plug them into co

via Dark Reading ·
aidevops

Agent Skills: bolting senior-engineer scaffolding onto AI coding agents

Addy Osmani argues that AI coding agents default to the same failure mode as junior engineers: take the shortest path to 'task complete' and skip the invisible

via Hacker News ·
aisupply-chain

AI lowers the bar: nontechnical attackers now run sophisticated campaigns

A December 2025 arrest in Osaka captures the shift: a 17-year-old with no technical background used AI tools to exfiltrate 7 million records from Japan's larges

via The Hacker News ·
privacypolicy

Alberta's salted voter rolls expose separatist group's leaked database

Elections Alberta used a centuries-old leak-detection technique — the canary trap — to identify how its electoral list ended up powering an unauthorized online

via Ars Technica ·
aipolicy

Andy Masley: Data center land-use panic ignores decades of farmland sell-off

Andy Masley dismantles the 'data centers are eating our farmland' narrative with a scale comparison. Between 2000 and 2024, US farmers voluntarily sold off a Co

via Simon Willison ·
open-sourcedevops

Bun begins Zig-to-Rust port with Phase-A guide commit

The Bun JavaScript runtime project has landed an initial commit (46d3bc2) adding a Phase-A porting guide, signaling the start of a migration from Zig to Rust. T

via Hacker News ·
cybersecurityidentity

Credit unions hit by process-based loan fraud, not exploits

Flare researchers tracked a structured loan fraud playbook circulating in underground forums that bypasses credit unions without touching a single vulnerability

via BleepingComputer ·
vulnerabilitycybersecurity

Critical cPanel Flaw Triggers Mass Exploitation Wave Across Shared Hosting

A critical vulnerability in cPanel — the control panel running on a substantial share of the world's web hosting infrastructure — is under active exploitation,

via Dark Reading ·
cybersecurityvulnerability

Critical MOVEit Automation Auth Bypass Patched, CVSS 9.8

Progress Software shipped fixes for two flaws in MOVEit Automation, its server-based managed file transfer scheduler. The headline issue, CVE-2026-4670, is a 9.

via The Hacker News ·
cybersecuritytech-culture

Dark Reading at 20: How a 2006 Launch Reshaped Security Journalism

Dark Reading marks its origin story from 2006, when the publication launched into a cybersecurity media landscape dominated by vendor newsletters and generalist

via Dark Reading ·
tech-culturepolicy

F1 Miami: Energy regen tweaks calm the 'yo-yo' chaos of new hybrid era

Formula One returned in Miami after a five-week pause, with the spotlight on regulatory tweaks rather than the city's pastel-and-hospitality spectacle. The spor

via Ars Technica ·
tech-culturepolicy

GameStop floats unsolicited $56B bid for eBay with hazy financing plan

GameStop chairman Ryan Cohen sent an unsolicited offer to acquire eBay for $55.5 billion, despite eBay's market cap being more than four times GameStop's. The p

via Ars Technica ·