RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

privacycybersecurity

LinkedIn Fingerprints 6,000+ Chrome Extensions, Builds Device Profiles on Users

LinkedIn injects a randomized-filename JavaScript file into user sessions that probes for over 6,236 Chrome extensions by attempting to fetch static resources t

via BleepingComputer ·
vulnerabilityai

Microsoft March 2026 Patch Tuesday: 77 Fixes, AI-Discovered CVE Marks New Era

Microsoft's March 2026 Patch Tuesday addresses 77 vulnerabilities with no active zero-days, but several patches warrant urgent attention. A publicly disclosed S

via Krebs on Security ·
cybersecuritymalware

Qilin Ransomware Hits German Left Party, Claims Political Motive

The Qilin ransomware group breached Die Linke, a German democratic socialist party with 64 Bundestag seats and 123,000 members, exfiltrating internal organizati

via BleepingComputer ·
cybersecuritymalware

Ransomware's Multi-Extortion Evolution Hits Healthcare and Finance Hard

Ransomware has moved well beyond simple file encryption. The double-extortion model-exfiltrate data first, then encrypt-renders backup-only defenses obsolete, s

via BleepingComputer ·
cybersecurityidentity

ShinyHunters Breached Hims & Hers via Okta SSO → Zendesk Chain

Telehealth company Hims & Hers disclosed a data breach stemming from unauthorized access to its Zendesk customer service instance between February 4-7, 2026. At

via BleepingComputer ·
supply-chainmalware

TeamPCP Deploys Iran-Targeted Wiper via Trivy Supply Chain Compromise

A cloud-focused cybercrime group called TeamPCP escalated from financial extortion to geopolitically targeted destruction, deploying a wiper payload that destro

via Krebs on Security ·
cybersecuritysupply-chain

US Bans Foreign-Made Consumer Routers, Requires FCC Approval for Imports

An Executive Branch determination has effectively banned new foreign-manufactured consumer routers from the US market, citing supply chain vulnerabilities and c

via Schneier on Security ·
cybersecuritymalware

US, Canada, Germany Dismantle Four IoT Botnets Behind Record DDoS Campaigns

A joint operation across three countries seized infrastructure supporting four interconnected IoT botnets - Aisuru, Kimwolf, JackSkid, and Mossad - collectively

via Krebs on Security ·
cybersecuritymalware

US Contractor's iOS Exploit Kit 'Coruna' Leaked to Russia, Now in the Wild

Google security researchers have detailed 'Coruna,' a zero-click iOS exploitation framework that chains 23 vulnerabilities to silently install malware via a mal

via Schneier on Security ·
cybersecuritypolicy

US Cyber Strategy Hints at Sanctioned Hackback for Private Sector

The 2026 US Cyber Strategy for America largely recycles a decade of White House cybersecurity boilerplate, but one line breaks from precedent: a pledge to 'unle

via Schneier on Security ·
privacyai

WebinarTV Indexes Public Zoom Webinars - Privacy Concern or User Error?

WebinarTV.us automatically records, transcribes, and publishes public Zoom webinars to a searchable index, feeding transcripts into AI for summaries. The servic

via Schneier on Security ·