Private Chinese hackers were employed not just for foreign hacking, but also as a part of the government's domestic surveillance program. The document leak indicates that i-Soon may have also hacked domestic targets for the purpose of intelligence-gathering.
A security vulnerability that was initially documented as a Chrome bug is likely part of the attack chain employed by NSO Group's Pegasus spyware, and has been revised as a critical libwebp flaw in a new CVE ID filed by Google.
The DoD has published a strategy and roadmap directing all the department's agencies to migrate to zero trust architecture by 2027. Strategy identified 90 target capabilities and 62 capabilities to achieve “more advanced zero trust.”
Amazon's new sleep tracking technology proposes to cast an "electromagnetic bubble" over customers. Critics have raised multiple concerns, including exactly what Amazon intends to do with the data it collects.
A new Thailand cybersecurity law went into effect last week, and is controversial more for what it doesn't specify than what it does. As it is worded, it appears to give the Thai government very broad powers to monitor internet use, censor content and even seize property without court orders.
Recent DOGE actions in U.S. Treasury computer systems have raised particular privacy concerns and triggered lawsuits. Some government officials and legal experts are claiming that this access to federal data breaches the Privacy Act of 1974 among other regulations.
A lawsuit that follows on from the Epic Games vs Apple judgment of late 2021 has now been joined by the DOJ and 35 states, as Apple's app market policies are increasingly tested against antitrust laws.
The FBI's data handling practices were sharply criticized during a recent DOJ audit, with the OIG noting that the agency is failing to adequately control its storage media and that its disposal methods are potentially exposing sensitive and classified information.
The U.S. Department of Justice has charged five members of the cybercrime gang Scattered Spider for related cyber attacks affecting numerous individuals and organizations, including Okta, Caesars Entertainment, Twilio, DoorDash, MailChimp, Reddit, and Riot Games.
DOJ seized 94,000 Bitcoins from a New York couple accused of laundering 119,754 Bitcoins from the 2016 Bitfinex cryptocurrency theft currently valued at $4.5 billion.









