Latest Security News
SEE SECURITY STORIES BY CATEGORY
News
Public companies now have a deadline to report cyberattacks
New SEC rules require companies to be much faster in sharing when hacks are discovered—and clearer about cybersecurity practices overall.News
133 Windows drivers with valid Microsoft signatures found crawling with malware
Malware is found in over 100 drivers for Windows, despite valid signatures. Microsoft reacts and suspends the licences of many developers.News
US Navy researchers expose Microsoft Teams security flaws
"TeamsPhisher" can be used to slip messages and attachments past basic Teams security.News
Hackers compete to take over a satellite… in space
The competition has previously focussed on satellites that were still down on Earth.News
LastPass 2FA reset prompts are locking users out of accounts
Some customers can't access passwords after resyncing their two-factor authentication apps. If you're one of them, here's how to get it fixed.News
U.S. Army warns against unsolicited smartwatches sent to service members
Watches sent out may be filled with malware, but more likely are just a brushing scam.News
Update your Asus Wi-Fi router right now
Asus says its high-end ROG, RT, TUF, and ZenWiFi routers have critical security vulnerabilities.News
Outlook, OneDrive outages caused by DDoS attack, Microsoft says
Microsoft says 'Anonymous Sudan' launched massive DDoS attacks on Outlook, OneDrive, and other Microsoft 365 services, bringing them to their knees.News
Windows 10 pirate downloads hide money-stealing malware
Hackers are exploiting the huge popularity of Windows 10 to spread malware.News
Chrome adds Windows biometric logins to its password powers
Google wants you to store your passwords inside its browser, and its added powerful security features to lure you in: biometric logins within Windows, password notes, and import features.News
Dozens of popular Minecraft mods are infected with malware
CurseForge and Bukkit accounts were compromised, loading up mods with millions of downloads with spyware.News
Blackmailers are using AI to generate nudes from social media photos
The FBI warns of new extortion methods enabled by deepfake software, used against both adults and children.News
Update Chrome now—yet another nasty exploit is out in the wild
Another zero-day flaw has been discovered in Chrome, and like the other two discovered earlier this year, it’s apparently a doozy.Updated
An exploit can reveal your KeePass master password in plaintext
This vulnerability in KeePass edition 2.x allows retrieval of the password safeguarding the database—and administrator rights on the PC aren’t needed. But a fix is on the way.Updated
Tons of Gigabyte motherboards come with a hidden firmware backdoor (Update: Patched)
Gigabyte's motherboard backdoor installs software updates from unsecured web servers.Feature
The problem with built-in password managers
Built-in password managers from Apple, Google, and Microsoft: Worth using?Feature
What is encryption? The backbone of computer security, explained
Encryption keeps your private data secure from prying eyes. Here's a basic explainer on how it works.Updated
Update: Mysterious Intel patch released for almost every modern CPU
Intel's new security patch is worrisome as it affects virtually every chip found within consumer PCs, and Intel quietly released it just days after its traditional, scheduled monthly release date.News
Gmail can warn you if your account is being trafficked on the dark web
Google is expanding its dark web protection services. Now, if your email is being shared on the Internet's underground, the dark web, Google will tell you.Feature
Beyond passwords: How to set up passkeys with your Google account
You can now use a passkey instead of a password to log into your Google account. It’s secure, simple, and easy to set up on PC. We show you how.News
Alert: MSI and Intel software keys are in the wild
After failing to extract a ransom, hackers have posted firmware keys for dozens of MSI products and hundreds that use Intel Boot Guard.News
Western Digital hacked: Your deeply personal data might be stolen
Western Digital has revealed the extent of a successful data breach from March. It's bad.News
You won't need a password to use Dashlane's password manager
Google isn’t the only company sticking another dagger into password use this week. Dashlane will soon offer passwordless logins, too.Feature
RIP passwords: Google accounts now support passkeys
In honor of World Password Day, Google accounts now support passkeys, a secure but simple login method. Here’s how they work, and how to set them up.Feature
Google Authenticator's long-awaited cloud 2FA feature carries hidden risk
An update to Google Authenticator this week finally enabled backups for your two-factor authentication codes. But the feature comes with a security risk.News
ChromeOS is getting system-wide camera and microphone toggles
Attention, Google Chrome users! The popular browser will be getting system-wide camera and microphone toggles.News
Proton Mail now includes an encrypted password manager
Proton Pass is available now for premium Proton Mail subscribers, but will eventually be free for everyone.News
Used routers are leaking sensitive data. Don't make the same mistake with your PC
Researchers at ESET uncovered corporate IT secrets on secondhand networking gear—and it’s a lesson for those of us at home.News
Chrome gets its second emergency patch this week
Another Google Chrome patch for a zero-day vulnerability, actively exploited in the wild, is going out to Windows and Mac now.News
Windows 11's incoming presence sensing options keep apps from spying on you
A new Windows beta build includes a toggle that allows users to manually disable presence sensing.Feature
Digital fingerprinting: The secret, insidious way you're tracked online
There's a new way to track your activity on the web, without a cookie or an IP address, and it's almost impossible to block.News
AI can crack most passwords faster than you can read this article
An experiment by cybersecurity firm Home Security Heroes shows that a majority of common passwords can be cracked in under a minute.News
Don't use public phone chargers, FBI warns
A warning from the FBI's Denver field office says that free public charging stations could be easy targets for hackers.News
MSI hacked: Watch out for malicious fake software
MSI BIOS firmware and other data was stolen in a recent attack, so the company is asking users to be careful to only download from official sources.News
IRS-certified free tax filing service caught spreading malware
Pages on eFile.com have been spreading known botnet downloads, and the company has yet to respond to security alerts.News
Privacy browser from Mullvad VPN and Tor tries to erase your digital fingerprint
The combined project hopes to offer the most security possible, especially when you use it from behind a VPNDeal
We love Bitdefender Total Security. Today only, get it for $20
Bitdefender comes loaded with top-notch security a ton of awesome features, and you can get it for 78% off in PCWorld's Software Store.News
Microsoft enlists AI to supercharge PC security and hinder hackers
Security Copilot is Microsoft's AI tool to fight off hackers by identifying and responding to attacks using a specialized security version of the GPT-4 technology found in Bing Chat.Opinion
Sorry, folks—2FA shouldn’t be treated as optional anymore
In the wake of constant data breaches and even wholesale password manager failures, you need a second line of defense protecting your accounts.Feature
Password managers: Why I switched from free to paid premium
You get what you pay for, and when it comes to online security, free password managers fall short.News
Windows PCs reveal hidden 'Acropalypse' screenshot info, but a fast fix is coming
Newly-discovered vulnerabilities in the Windows Snipping Tool and Snip & Sketch mean it's possible to view cropped-out parts of images.News
Journalists targeted by USB drives that explode in PCs
A USB drive triggered a hidden explosive charge when it was plugged into a PC — luckily no one was hurtDeal
Norton 360 Deluxe is the best Windows antivirus. Get it for just $19.99
PCWorld's Software Store is selling the best security software around, Norton 360 Deluxe, for 73% off the usual price.Opinion
I switched from LastPass to Bitwarden and I'm not going back
After a string of high-profile LastPass security failures, I sought out a less problematic (and cheaper) password manager.Updated
Don’t use autofill on your password manager—especially if it’s Bitwarden
A Bitwarden feature that automatically fills in login info on recognized websites is vulnerable for exploit, but all password manager users should be careful.News
Brave Firewall + VPN arrives on Windows
Brave has expanded its Brave Firewall + VPN service from the smartphone to the PC, for just under $10 per month.News
'Play-to-earn' games are the next target for crypto scammers
Scammers are setting up honey pot games, then draining the connected cryptocurrency wallets.News
VPN by Google One is coming to all subscribers
All Google One tiers will receive VPN services, complements of Google, and including Windows. Google is adding a dark web report to help track personal information, too.News
The latest LastPass fail came from an employee's home PC
A key component of the 2022 hack was an employee's home computer that was running vulnerable third-party software.News