Government AI deployments are accelerating across intelligence and tax enforcement: the CIA is building its own ChatGPT-style tool for open-source intelligence analysis, the U.S. military is testing AI to handle classified data and issue field orders, and the IRS is expanding AI-driven audits targeting wealthy taxpayers — raising serious questions about hallucination risk, bias, and […]
Blog
Cyber Onslaught: MGM and Caesars Face Ransomware Threat | HN 17
Scattered Spider — a financially motivated group of young English-speaking hackers operating as a BlackCat/ALPHV affiliate — hit both MGM Resorts and Caesars Entertainment using social engineering and SIM swapping rather than zero-days. Caesars paid a $15 million ransom and recovered quickly; MGM refused, suffered 10 days of casino and hotel downtime, and was publicly […]
Zero-Click iPhone Horror: Pegasus Spyware Attack Against Exiled Russian Journalist | HN 16
Galina Timchenko, an award-winning Russian investigative journalist and co-founder of the independent news outlet Medusa, was infected with Pegasus spyware via a zero-click exploit called “Pwn Your Home” — requiring no action whatsoever from the target — giving the attacker complete access to her device including corporate passwords, staff identities, and the names of sources […]
New Chaes Malware Variant Attack on Banking and Financial Apps | HN 15
A new Python-rewritten variant of the Chaes banking malware — dubbed Chae$4 — was delivered through 800 compromised WordPress websites using fake Java and antivirus download prompts, deploying a modular attack framework that steals banking credentials, crypto wallet data, browser cookies, and payment transfers from Latin American financial platforms. Stories Covered Chae$4: Rewritten Python Chaes […]
Is Your Fingerprint Safe? X Is Collecting Your Biometric Data and NCSC Cautions Building With LLMs | HN 14
X (formerly Twitter) quietly updated its privacy policy to collect biometric data including fingerprints and facial imagery from premium users with no stated retention limit, while the UK’s National Cyber Security Centre published a warning that prompt injection attacks against large language models may be an inherent flaw with no surefire fix. Stories Covered X’s […]
Roblox Developers Beware! Tricked by Imitation NPM Packages | HN 13
Researchers at ReversingLabs discovered a supply chain attack targeting Roblox game developers: malicious NPM packages named to impersonate legitimate noblox.js Roblox scripting utilities were delivering Luna Grabber malware capable of stealing browser cookies, Discord tokens, saved credentials, and session data from any developer who installed them. Stories Covered Luna Grabber: Malicious NPM Packages Target Roblox […]





