X is requiring users who use hardware security keys or passkeys for 2FA to re-enroll by November 10, 2025, as the platform retires the twitter[.]com domain. Failure to re-enroll will lock accounts unt…
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#2fa#passkeys#security-key#account-security
Accenture’s survey of 1,000 Irish office workers found 19% input sensitive business data (customer/financial) into free, unsecured AI tools. Despite frequent training, confusion persists around report…
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#shadow-ai#dlp#training#privacy
IEEE Spectrum reports on real‑time audio deepfake capabilities enabling live voice cloning for vishing and fraud. The maturing ecosystem—easy‑to‑use tools, improved latency, and higher fidelity—erodes…
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#deepfake#vishing#voice
Group‑IB uncovered a campaign impersonating Singapore’s prime minister and national security minister using verified Google Ads, fake media sites, and deepfake videos to funnel victims into a Mauritiu…
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#google-ads#deepfake#impersonation#fraud
Guidance article outlines practical steps to reduce executive OSINT exposure—tightening public data, standardizing comms patterns, and using managed takedowns. Emphasizes social engineering risks tied…
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#osint#executive-protection#impersonation
HIBP indexed the 'Synthient Stealer Log Threat Data' corpus containing 183M unique email addresses with captured credentials and associated domains. The dataset aggregates 'threat data' from multiple …
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#hibp#stealer-logs#credentials#password-reuse
A hacking collective known as The Com reportedly shared personal details of hundreds of U.S. government officials (DHS/ICE, FBI, DOJ) on private Telegram channels, per 404 Media. The data includes nam…
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#doxxing#telegram#the-com#privacy
Unity Technologies disclosed a checkout skimmer on its SpeedTree website that captured customer payment details between 13 March and 26 August 2025. The malicious code—added to the checkout page—could…
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#data-breach#web-skimming#ecommerce#gaming
Qantas said data for 5.7M customers stolen in July was posted online as part of a broader Salesforce-targeting extortion campaign hitting multiple global brands.
Category: Industry News / Privacy & Data Protection / Privacy & Data Protection
#data breach#airlines#Salesforce#extortion#PII