DeepSeek's Impact on the Tech Market:
Anthropic's New Citations API:
- Anthropic announced a new API feature, Citations, designed to reduce AI hallucinations by linking responses directly to source documents. π arstechnica.com π slashdot.org
Facebook's Ban on Linux-Related Topics:
Startups and Business:
- Data suggests 2025 will see a continuation of startup failures, following a trend of increased closures in 2024. π techcrunch.com π tech.slashdot.org
Climate Change and Health:
Pebble Smartwatch OS Open-Sourced:
Microsoft's Open-Source Document Database:
Meta AI Data Usage:
JD Vance's Comments on Big Tech:
- Vice President JD Vance criticized big tech companies for having too much power and engaging in censorship. π cbsnews.com π news.slashdot.org
DeepSeek's New Image Model:
Low-Risk Prostate Cancer Renaming Debate:
UK's Four-Day Work Week Adoption:
GitHub Desktop Vulnerabilities:
- Multiple vulnerabilities in GitHub Desktop and other Git projects risk credential leaks via malicious remote URLs. π thehackernews.com
OWASP NHI Top 10 Risks:
- The Open Web Application Security Project (OWASP) released a new Top 10 list focusing on Non-Human Identity (NHI) risks, including API keys and service accounts. π thehackernews.com
GamaCopy Cyber Espionage Campaign:
- A new threat actor, GamaCopy, mimics Gamaredon's tactics in cyber espionage targeting Russian entities. π thehackernews.com
MintsLoader Malware Campaign:
- MintsLoader is distributing StealC malware and BOINC in targeted cyberattacks. π thehackernews.com
Llama Framework Vulnerability:
- A high-severity vulnerability in Meta's Llama framework exposes AI systems to remote code execution risks. π thehackernews.com
Satori Data Security Platform:
- Satori is a new data security platform aimed at securing sensitive data across various technologies and cloud environments. π thehackernews.com
LTE and 5G Network Vulnerabilities (RANsacked):
- Over 100 vulnerabilities were found in LTE and 5G implementations, potentially allowing attackers to disrupt service or gain access to the core network. π thehackernews.com
DoJ Indictment of Individuals Involved in North Korean IT Worker Scheme:
- The US Department of Justice indicted five individuals for their alleged involvement in a North Korean IT worker scheme. π thehackernews.com
Android's Identity Check Feature:
- Android's new Identity Check feature locks sensitive settings behind biometric authentication when outside trusted locations. π thehackernews.com
CISA Adds jQuery XSS Flaw to KEV List:
- CISA added a five-year-old jQuery cross-site scripting (XSS) flaw to its Known Exploited Vulnerabilities list. π thehackernews.com
UnitedHealth Data Breach:
Clone2Leak Attacks:
Microsoft Teams Phishing Alerts:
Microsoft WSUS Deprecation:
Bitwarden Security Enhancement:
- Bitwarden enhanced security for accounts without MFA, requiring email verification. π bleepingcomputer.com
Apple Zero-Day Vulnerability Patch:
- Apple released security updates to address an actively exploited zero-day vulnerability. π bleepingcomputer.com
EU Sanctions Russian GRU Hackers:
- The EU sanctioned three Russian GRU hackers for cyberattacks against Estonia. π bleepingcomputer.com
Windows 11 Taskbar Update:
- Windows 11 is testing a new taskbar feature displaying battery percentage. π bleepingcomputer.com
Phemex Cryptocurrency Theft:
Ransomware and VMware ESXi:
TalkTalk Data Breach Investigation:
- TalkTalk is investigating a data breach after alleged customer data appeared on a hacking forum. π bleepingcomputer.com
PayPal Data Breach Settlement:
Zyxel Firewall Boot Loop Issue:
Subaru Starlink Vulnerability:
- A vulnerability in Subaru's Starlink service allowed hackers to hijack cars. π bleepingcomputer.com
Windows RID Hijacking:
Fake Malware Builder Targeting Script Kiddies:
Student Loan Data Breach:
- A data breach exposed 2.5 million student loan records. π threatpost.com
ScanBox Keylogger via Watering Hole Attacks:
- Researchers uncovered a watering hole attack using the ScanBox keylogger. π threatpost.com
0ktapus Phishing Campaign:
- The 0ktapus threat group targeted over 130 companies with a multi-factor authentication spoofing campaign. π threatpost.com
Rise in Ransomware Attacks:
- Ransomware attacks are on the rise, with Lockbit being the most prolific group. π threatpost.com
Chinese Surveillance Cameras Vulnerability:
- Cybercriminals are selling access to tens of thousands of unpatched Chinese surveillance cameras. π threatpost.com
Twitter Whistleblower Complaint:
- A former Twitter security head alleged security and privacy lapses posing a national security risk. π threatpost.com
Palo Alto Networks PAN-OS Vulnerability:
- CISA warned of an actively exploited vulnerability in Palo Alto Networksβ PAN-OS. π threatpost.com
Fake Travel Reservation Scams:
- Fake travel reservation links are targeting weary travelers. π threatpost.com
Apple iOS and macOS Zero-Day Vulnerabilities:
- Apple urged users to update to patch two actively exploited zero-day vulnerabilities. π threatpost.com
Marvel Snap App Store Restoration:
Alibaba's Qwen2.5-VL AI Models:
- Alibaba released Qwen2.5-VL, a new series of AI models capable of controlling PCs and phones. π techcrunch.com π techmeme.com
KuCoin Pleads Guilty to Unlicensed Money Transmission:
- KuCoin pleaded guilty to operating an unlicensed money transmitting business and agreed to pay $300 million in fines. π bloomberg.com$ π techmeme.com
Twitter Debt Sale:
- Banks are reportedly in talks to sell up to $3 billion in debt tied to Twitter's buyout, boosted by a claim to a ~$6 billion xAI stake. π bloomberg.com$ π techmeme.com
Manas AI Funding Round:
- Manas AI, an AI drug discovery startup, raised $24.6 million to target breast and prostate cancer, and lymphoma. π wsj.com$ π techmeme.com
Davos AI Safety Concerns:
- AI leaders clashed over safety concerns and the $100 billion Stargate project at Davos. π t.co π techmeme.com
Surveillance Tech in Trump's Immigration Crackdown:
- A review of contracts shows ICE and USCIS spent $7.8 billion on surveillance tech since 2020. π nytimes.com$ π techmeme.com
Alan CEO's Role in Mistral Funding:
- A profile of Alan's CEO highlights his role in securing funding for Mistral, a French AI company. π bloomberg.com$ π techmeme.com
China's Booming Crypto Market:
- Despite crackdowns, Chinese traders use VPNs and other methods to access crypto markets. π wsj.com$ π techmeme.com
OpenAI Copyright Lawsuit in India:
- Indian digital news outlets joined a copyright lawsuit against OpenAI, initially filed by ANI in 2024. π reuters.com π techmeme.com
Apple Intelligence Enabled by Default in iOS 18.3:
Meta AI Personalization:
DeepSeek's Reinforcement Learning Approach:
- DeepSeek's success is attributed to its use of reinforcement learning, open source, and other cost-cutting measures. π venturebeat.com π techmeme.com
DeepSeek's Threat to Venture Capital:
- DeepSeek's success poses a threat to venture capital firms that invested heavily in foundational model companies. π axios.com π techmeme.com
DeepSeek's Lack of Lock-in:
- DeepSeek's success highlights the lack of lock-in for existing chatbots and suggests AI may become a national project for China. π bloomberg.com$ π techmeme.com
Nvidia's Market Cap Drop:
- Nvidia experienced the biggest single-day market cap drop in US history. π cnbc.com π techmeme.com
Unsecured Tunneling Protocols Exposing Hosts:
- Unsecured tunneling protocols exposed 4.2 million hosts, including VPNs and routers. π thehackernews.com
Zero Trust Security for Wi-Fi:
- Information on implementing zero trust security for Wi-Fi networks using cloud-based captive portals. π thehackernews.com
Trump's Termination of DHS Advisory Committee Members:
- President Trump terminated DHS advisory committee memberships, potentially disrupting cybersecurity review. π thehackernews.com
Palo Alto Firewalls Vulnerabilities:
- Palo Alto firewalls were found vulnerable to secure boot bypass and firmware exploits. π thehackernews.com
Ross Ulbricht Presidential Pardon:
- President Trump pardoned Ross Ulbricht, creator of the Silk Road. π thehackernews.com
Fake CAPTCHA Campaign Spreading Lumma Stealer:
- A fake CAPTCHA campaign is spreading the Lumma stealer malware across multiple industries. π thehackernews.com
SonicWall Critical Vulnerability:
- SonicWall urged immediate patching for a critical vulnerability (CVE-2025-23006) that is likely being exploited. π thehackernews.com