Klue says hackers stole credential from 2022 that led to customer data breaches

It’s unclear why Klue had not revoked the credential after the limited pilot, which hackers then used to breach a system holding keys for accessing customers’ data.

The maker of ChatGPT wants to make open-source projects less of a security bargain

As AI tools flood open-source maintainers with low quality bug reports, OpenAI’s new Patch the Planet initiative aims to filter out the noise and fix real threats.

Password manager maker LastPass says hackers stole customer support case data during Klue breach

This is the second data breach to affect LastPass customers in recent years, after one of the password manager’s tech partners was recently breached.

Using Football Passwords Is A Huge Own Goal

Passwords containing football player or club names can be cracked in milliseconds, warn security researchers.

A new unpatchable flaw in Apple chips opens the door to an iPhone jailbreak 

European offensive cybersecurity company Paradigm Shift released details of a flaw and a technique to exploit it that opens the door for hackers to unlock and break into older iPhones.

Anthropic says Claude may want to see your ID

Claude’s chatbot may ask to verify your age and identity “in certain circumstances,” such as with a passport or driver’s license, according to a privacy policy change.

Klue hack results in data breach at several cybersecurity firms

Huntress, HackerOne, Jamf, Recorded Future, and Tanium are among the cybersecurity companies that had data stolen following an earlier breach at market research firm Klue.

The G7, Pope Leo XIV, Trump And The Battle To Govern Artificial Intelligence

Artificial intelligence is no longer just a technology issue. The G7, Pope Leo XIV and President Trump are shaping a global debate over AI governance,

Encryption, spyware, and now Mythos: History shows why cyber export control doesn’t work

For the last 30 years, stopping the flow of cybersecurity-related software has proven to be ineffective. It’s unclear why it would work now with Anthropic’s cybersecurity model Mythos.

Is the US government’s Anthropic ban accidentally helping the brand?

Just as last week was ending, the US government forced Anthropic to pull its two newest models, Fable 5 and Mythos 5, citing national security concerns after Amazon researchers allegedly found a way to bypass Fable 5’s guardrails.&…