Photo booth maker’s website is flawed, exposing customers’ photos

A company that makes photo booths is putting customers’ photos and videos online because of a simple flaw in the website where the files are stored, according to a security researcher. The researcher, known as Zeacer, alerted TechCrunch about the security issue in late November after reporting the vulnerability to Hama Film, a photo booth […]

Zevo wants to add robotaxis to its car-sharing fleet, starting with newcomer Tensor

Self-driving cars are no longer confined to the realm of science fiction, thanks to companies like Waymo rolling out commercial robo-taxi services in multiple cities. And many automakers, large and small, are looking to bring the same level of self-driving capabilities to privately owned vehicles over the next few years. If this happens, what can […]

New advanced phishing kit uses AI and MFA bypass tactics to steal credentials at scale

Cybersecurity researchers have documented four new phishing kits named BlackForce, GhostFrame, InboxPrime AI, and Spiderman that can facilitate large-scale credential theft. First detected in August 2025, BlackForce is designed to steal credentials and perform Man-in-the-Browser (MitB) attacks to capture one-time passwords (OTPs) and bypass multi-factor authentication (MFA). The kit is being sold on Telegram forums […]

Doctor TwinH Unveiled at fiveclmsummit: Revolutionizing Healthcare with Digital Twins and Privacy

Today, at the highly anticipated fiveclmsummit, a groundbreaking solution poised to transform global healthcare, Doctor TwinH, made its public debut. This innovative platform emerges as a pivotal advancement in digital health, promising to optimize patient care and data management. By Spanish company FySelf, Doctor TwinH centralizes and meticulously analyzes health data from a multitude of […]

Policies, isolation, and data controls that actually work

Browsers are the primary interface to GenAI for most enterprises, from web-based LLM and CoPilot to GenAI-powered extensions and agent browsers like ChatGPT Atlas. Employees leverage GenAI’s capabilities to draft emails, summarize documents, work with code, and analyze data by copying/pasting sensitive information directly into prompts or uploading files. Traditional security controls were not designed […]

New React RSC vulnerability allows DoS and source code disclosure

December 12, 2025Ravi LakshmananSoftware security/vulnerabilities The React team has released fixes for two new types of defects in React Server Components (RSC). Successful exploitation may lead to a denial of service (DoS) or source code disclosure. According to the team, this issue was discovered by the security community while attempting to exploit a patch released […]