RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

privacypolicy

OPM Seeks Monthly Medical Records on 8M Federal Workers With Little Justification

The Office of Personnel Management quietly published a notice in December requiring health insurers to hand over detailed, identifiable medical records - includ

via Ars Technica ·
cybersecuritymalware

Russia's APT28 Hits Ukraine and NATO with New PRISMEX Malware

Russia-linked threat group APT28 (also known as Fancy Bear or Forest Blizzard) has been observed deploying a previously undocumented malware strain dubbed PRISM

via The Hacker News ·
cybersecuritymalware

Russia's Forest Blizzard Harvests Credentials en Masse Through Compromised SOHO Routers

The Russian state-backed threat group Forest Blizzard (also tracked as APT28 or Fancy Bear) has been exploiting compromised small office/home office (SOHO) rout

via Dark Reading ·
aicybersecurity

Schneier: AI-Driven 'Instant Software' Will Reshape the Attack-Defense Arms Race

Bruce Schneier sketches a near-future where AI writes disposable, on-demand applications alongside traditional software, and where the same models that generate

via Schneier on Security ·
tech-culture

150-Million-Year-Old Fish Fossil Found with Squid Lodged in Throat

A newly described fossil from the Jurassic period captures a fish mid-choke on a belemnite rostrum - the mineralized internal shell of an extinct cephalopod rel

via Schneier on Security ·
cybersecurityai

Autonomous AI Agents Are Creating Attack Surfaces Faster Than Security Can Follow

A new class of autonomous AI agents - typified by OpenClaw, an open-source tool that proactively manages email, executes code, browses the web, and integrates w

via Krebs on Security ·
clouddevops

Exchange Online Mailbox Outage Drags Into Fourth Week Despite Microsoft's Fix Claims

Microsoft prematurely closed a three-week-old Exchange Online incident (EX1256020) on April 1, only to reopen it under a new tracking ID (EX1268771) after affec

via BleepingComputer ·
cybersecuritymalware

Iran-Linked Handala Hackers Wipe 200K Stryker Devices via Microsoft Intune

A MOIS-affiliated hacktivist group called Handala claimed a destructive wiper attack against medical device giant Stryker, forcing the company to send home over

via Krebs on Security ·
privacycybersecurity

LinkedIn Fingerprints 6,000+ Chrome Extensions, Builds Device Profiles on Users

LinkedIn injects a randomized-filename JavaScript file into user sessions that probes for over 6,236 Chrome extensions by attempting to fetch static resources t

via BleepingComputer ·
vulnerabilityai

Microsoft March 2026 Patch Tuesday: 77 Fixes, AI-Discovered CVE Marks New Era

Microsoft's March 2026 Patch Tuesday addresses 77 vulnerabilities with no active zero-days, but several patches warrant urgent attention. A publicly disclosed S

via Krebs on Security ·
cybersecuritymalware

Qilin Ransomware Hits German Left Party, Claims Political Motive

The Qilin ransomware group breached Die Linke, a German democratic socialist party with 64 Bundestag seats and 123,000 members, exfiltrating internal organizati

via BleepingComputer ·
cybersecuritymalware

Ransomware's Multi-Extortion Evolution Hits Healthcare and Finance Hard

Ransomware has moved well beyond simple file encryption. The double-extortion model-exfiltrate data first, then encrypt-renders backup-only defenses obsolete, s

via BleepingComputer ·