Tech News
← Home  ·  All topics

Cookies

5 GoKawiil briefs on this topic

Girl Scouts to add dog-friendly and allergy-friendly cookies in 2027

Girl Scouts of the USA has announced two new additions to its cookie lineup for the 2027 season: a cookie made specifically for dogs and an allergy-friendly cookie for human customers. The announcement comes alongside broader changes to how cookies are sold, including expanded online ordering options, as prices continue to climb.

Girl Scouts to launch allergy-friendly cookie and dog treats in 2024 season

Girl Scouts of the USA is introducing two new products for its 2024 cookie season: Sparkables, a nut-free, gluten-free and vegan oatmeal cookie made with Partake Foods, and Patch Pals, a blueberry muffin-flavored soft treat for dogs made with Bark. Both items will be sold exclusively online starting when cookie season begins on January 12, rather than through local troop sales.

Show HN: GET Together lets users post to a social feed via plain GET requests

A hobby project called GET Together implements an entire social network—posting, replying, hearting and deleting—using only HTTP GET requests instead of POST. Posts are created by hitting URLs like /post?name=alice&text=hello, with an optional session cookie enabling later deletion, and a /feed endpoint returning JSON. The system includes basic profanity and crypto-content moderation, plus a reporting mechanism for abuse review.

Anthropic warns Claude self-serve accounts hit by infostealer session-cookie theft

Anthropic notified users that a threat actor used common infostealer malware—including Vidar, LummaC2, StealC, RedLine, Acreed and Atomic Stealer—to steal browser session cookies and replay them into paid Claude accounts, bypassing login and two-factor checks entirely. The company signed out affected sessions, removed stored payment methods, and refunded fraudulent charges tied to the campaign.

Phishing-as-a-service kit 'NovaCookies' hijacks Microsoft 365 logins for $320/month

Researchers have identified a subscription-based phishing toolkit called NovaCookies that uses adversary-in-the-middle techniques to intercept live Microsoft 365 login sessions. Rather than just harvesting usernames and passwords, the kit captures session cookies, letting attackers bypass multi-factor authentication and take over accounts directly. It is being sold as a service for roughly $320 a month, making advanced phishing capability accessible to less-skilled criminals.