Tech News
← Home  ·  All topics

Security

201 GoKawiil briefs on this topic

UK military confirms it jams foreign satellites for self-defence, BBC reports

The BBC reported that the UK's armed forces are actively jamming satellites belonging to other nations as part of efforts to protect Britain's own space-based infrastructure. Health Secretary Wes Streeting, commenting on the reliance on satellite systems, noted that Britain depends on them for weather forecasts, energy supplies, financial transactions, sat-navs, mobile networks and deliveries.

Rep. Ramirez proposes ending border tower program, dismantling DHS

Rep. Delia Ramirez plans to introduce the Reimagining Safety Act, which would terminate the border surveillance tower program and dismantle the Department of Homeland Security, redistributing functions like CISA, FEMA, TSA and customs to other federal agencies. The bill, developed with groups Just Futures Law and Mijente, would replace DHS with a new Department of Community Safety, though the full text has not yet been released.

Check Point confirms active exploitation of two VPN gateway flaws

Check Point disclosed that hackers are actively exploiting CVE-2026-85102, a pre-authentication remote code execution flaw in its Security Gateway VPN certificate handling, and CVE-2026-93616, a path traversal bug in its Management web service. The company says the path traversal flaw has been exploited as a zero-day since July 23, while exploitation of the gateway flaw began September 12 using VPNs and proxies to mask attacker origin. CISA has added both vulnerabilities to its Known Exploited Vulnerabilities catalog, giving federal agencies until September 25, 2026 to patch.

Researchers Detail 'Dark Sourcery' Campaign Poisoning ChatGPT, Gemini With Fake Support Info

Vigilance Security researchers say attackers are seeding tens of thousands of web pages, PDFs, reviews and fake support portals with fraudulent phone numbers, emails and login links, aiming to get AI chatbots like ChatGPT, Google Gemini and Google AI Overview to surface them as trustworthy answers. The campaign, named Dark Sourcery, has reportedly affected at least 374 companies, including Fortune 100 firms, airlines, banks, travel companies and software providers.

Opinion piece calls for domestic supply chains in U.S. homebuilding materials

A commentary argues that the United States should prioritize building products manufactured domestically, citing repeated disruptions from the pandemic, tariffs, and geopolitical conflicts that have exposed vulnerabilities in global supply chains. The piece points to newer, economical and more sustainable American-made building materials as a viable alternative to imported goods.

Microsoft-led coalition dismantles EvilTokens AI phishing-as-a-service network

Microsoft and partners including Cloudflare, Coinbase, OpenAI, SpyCloud, TRM Labs and Health-ISAC disrupted EvilTokens, a phishing-as-a-service platform that used AI to scan compromised inboxes and craft tailored lures. The operation had compromised over 12,000 inboxes across more than 10,000 organizations worldwide, spanning sectors like healthcare, finance and higher education. The takedown seized 50 sites and disabled 150 domains, and UK police arrested two men, aged 32 and 38, after Microsoft shared intelligence with the Metropolitan Police's cybercrime unit.

OpenAI's Altman and Anthropic's Amodei to brief UN Security Council on AI risks

Sam Altman of OpenAI and Dario Amodei of Anthropic are set to speak before the UN Security Council at a meeting this week focused on artificial intelligence, alongside Hugging Face CEO Clément Delangue and AI safety researcher Yoshua Bengio. The gathering, scheduled for Wednesday during UN General Assembly week, comes amid mounting concern over AI safety following recent incidents of AI models behaving autonomously in troubling ways.

Meta fixes critical zero-day flaw in Muse AI assistant

Meta has patched a serious security vulnerability found in its Muse AI assistant. The flaw could have let attackers seize control of Muse and exploit its permissions to access a user's connected apps and devices.

GoKawiil Original Why susQR Belongs in Your Bookmarks Bar

A QR code hides its destination until you have already opened it. susQR is a free web tool that checks the link first, and it is worth keeping one tap away.

GoKawiil Original QR Code Scams Explained: How to Check a Code Before You Scan It

Quishing works because a QR code gives you nothing to judge before you commit. Here is what the scams look like in practice and the habits that defuse them.

Meta's Muse AI agent for Mac had a 0-day letting any local app redirect voice data

Security researcher Patrick Wardle discovered that any app or Terminal command running on a Mac could silently alter undocumented settings in Meta's new Muse AI agent without requiring special macOS permissions. One affected setting, endo_voyager_dictation_endpoint, determines where a user's dictated voice prompts are transmitted, meaning an attacker could reroute that data elsewhere. The flaw surfaced just weeks after Meta heavily promoted Muse's security architecture, including a dedicated Secure VM, a monitoring system called Sentinel, and bug bounties up to $300,000.

GoKawiil Original Passkeys vs Passwords: What Actually Changes for You

Passkeys replace a secret you know with a key your device holds. That single change removes most of what makes phishing work, and it changes how account recovery should be set up.