AI Privacy

DeepSeek database leak exposes AI security risks

Wiz Research uncovered a publicly accessible ClickHouse database belonging to DeepSeek, a Chinese AI startup. The database exposed over a million sensitive log entries, including chat history, API keys, and backend details. The database was entirely open, allowing full control without authentication. This posed severe security risks, making it vulnerable to unauthorized access and potential […]

AI Privacy

Italy probes DeepSeek data risks

Italy’s Privacy Guarantor has requested information from DeepSeek AI providers in China about their data collection practices. Authorities are concerned about potential risks to the personal data of millions of Italians. Key inquiries include data sources, the legal basis for collection, storage locations, and the use of web scraping. Regulators want to understand how DeepSeek […]

AI

Generative AI is shaping the future of work

Generative AI (gen AI), like ChatGPT and image-generating tools, is revolutionizing job markets, particularly in writing, coding, and design. This technological shift is reshaping the demand for certain roles and creating both challenges and opportunities for workers. Research analyzing 1.4 million online job posts from 2021 to 2023 shows a significant impact of AI tools […]

Privacy

Australian Bunnings faces backlash for privacy violations with facial recognition

Bunnings, Australia’s largest hardware chain, has been accused of violating the privacy of hundreds of thousands of customers by using facial recognition technology in over 60 stores. According to the OAIC, Australia’s privacy regulator, the system was overly intrusive and operated without obtaining proper customer consent. The OAIC found that Bunnings failed to meet transparency […]

Multifactor Authentication

FBI warns critical Infrastructure of ‘push bombing’ and password attacks

The FBI, NSA, and other global authorities are warning vital infrastructure organizations about the rise of password spraying and MFA fatigue (push bombing) attacks. Hackers use common passwords to access accounts, then repeatedly send MFA requests until a user mistakenly approves one, granting access. Once in, attackers register their own devices for persistent control. Targeted […]

Privacy

FTC sounds alarm on social media’s massive user surveillance

The FTC revealed that major social media and streaming platforms, like Facebook, YouTube, and TikTok, engage in large-scale user surveillance for profit. The investigation found that these companies collect and monetize vast amounts of personal data. This raises serious privacy concerns, especially for children. The report highlights how these companies’ reliance on targeted ads drives […]

Data Breach GDPR Hack

Psychotherapy data breach victims demand higher compensation

Victims of Finland’s largest psychotherapy data breach are seeking higher compensation. In 2020, a hacker stole sensitive information from 40,000 clients of Vastaamo, including patient records, and used it for extortion. While the Finnish government has offered compensation ranging from €500 to €1500, lawyers argue that this is insufficient, given the severe privacy violations the […]

Crypto Phishing

FBI: do not store information about Crypto Wallets on online devices

Today, the FBI issued a warning to cryptocurrency companies and individuals holding cryptocurrencies about social engineering attacks attributed to North Korea. The U.S. law enforcement agency advises against storing information about crypto wallets on internet-connected devices. The “malicious cyber actors” pose as recruitment agencies or tech companies and attempt to trick employees of crypto companies […]