Подтвердите e-mail

Для публикаций, комментариев, реакций и сообщений подтвердите адрес.

Профиль

Lorenzo Franceschi-Bicchierai

Профиль Vively

Real-time historian of the late cyber capitalist era @TechCrunch, writing about the intersection of hackers, human rights, and spies. Also writing a book about Hacking Team and the history of government spyware. ☎️ Signal: +1 917 257 1382

I would like to announce that my chatbot also went and committed some crimes on its own. I am looking into it.

15912

Alright let’s log onto Threads for a second…oh. I wonder who “those people” are…🤔

370

NEW: Since the advent of LLMs experts have warned that AI would usher in an era of countless bugs, putting pressure on defenders to keep up with hackers. We are starting to see hard data backing up that prediction. In just one month, Google fixed as many bugs in Chrome as in the previous two years.

Google says it fixed more Chrome bugs in June than over the past two years, thanks to AI | TechCrunchAs experts have warned for the last two years, some companies — like Microsoft and now Google — are finding and patching an exponential number of bugs in their products, thanks to the use of LLMs and ...techcrunch.com
1238

NEW: OpenAI’s hack against Hugging Face was novel because it was fully autonomous and AI-powered, but the rogue agent acted mostly human-like. And Hugging Face could have done a better job at spotting and stopping the attack with better traditional cybersecurity defenses, experts explained.

In the Hugging Face breach, OpenAI's hacker was noisy and fast — but not unstoppable | TechCrunchCybersecurity experts told TechCrunch that one of the biggest lessons to be taken from the OpenAI hack against HuggingFace has nothing to do with AI, but traditional cybersecurity defense.techcrunch.com
2116

This is a great explainer of the OpenAI hack against Hugging Face, particularly of the report that the latter published earlier this week. If you had trouble parsing the highly technical report, this article can walk you through it.

The Hugging Face AI break-in, as told through an increasingly committed bear metaphor | TechCrunchAnother way to think about the whole thing is to picture a bear at a campsite. (Really, we are going there.)techcrunch.com
0198

NEW: After Redditors and journalists found an untold number of Claude chats publicly available on Google, Anthropic blamed the users. The company told us that share links only appear in search results when they’ve been posted somewhere search engines can see, like a forum or on social media.

PSA: Your Claude shared chats and Artifacts may have ended up on Google | TechCrunchAn untold number of Claude chats and Artifacts — the interactive mini apps and documents users can build inside Claude — were found publicly searchable ontechcrunch.com
1115

NEW: I delved into the mystery of Phineas Fisher, probably the most prolific and public hacker never to have gotten caught. This is what we know about the infamous hacktivist and their spectacular hacks against spyware makers FinFisher and Hacking Team. There will be even more in my upcoming book.

The hacker who humiliated spyware makers and was never caught | TechCrunchAn awe-inspiring hacktivist who hacked two controversial government spyware makers may be the most prolific hacker to have never gotten caught. What do we know about Phineas Fisher?techcrunch.com
511329

NEW: I spoke to several offensive cybersecurity researchers, including zero-day developers, about how the guardrails imposed by OpenAI and Anthropic on AI models are impeding their work. Most complained the guardrails are inconsistent and too strict, which pushes them to use open source models.

How AI guardrails are impeding the work of offensive cybersecurity researchers | TechCrunchWe spoke with several cybersecurity researchers, who look for unknown vulnerabilities and develop tools to exploit them, about how OpenAI’s and Anthropic’s guardrails affect their work.techcrunch.com
25112

Zero-day startup Paradigm Shift took down the blog post and corresponding Proof-of-Concept code for the iPhone flaw they dubbed Usbliter8. Takedown comes following a judge order in the lawsuit filed by Magnet Forensics, which alleges a former employee now at the startup stole the flaw.

395

NEW: OpenAI said it built a “highly isolated” environment to test a model that then went rogue and autonomously hacked Hugging Face. According to cybersecurity experts, the company made a human mistake—one expert called "a massive control failure"— that led to the unprecedented AI-enabled attack.

How an OpenAI’s human mistake led to the AI-powered hack on Hugging Face | TechCrunchOpenAI made a mistake setting up what it called a “highly isolated” testing environment and sandbox. According to cybersecurity experts, that human mistake is what made the AI-powered attack on Huggin...techcrunch.com
75024

The fact that *this* Spain — a team where kids whose parents are from Africa are some of the best in the squad — won in front of Donald Trump is kind of poetic. Spain still has huge problems with racism, but this team reflects a new beautiful reality that deserves to be celebrated.

Dom Ervolina

Nico Williams Jr. presenting his World Cup medal to his mother She crossed the Sahara while pregnant with his older brother, Iñaki, to make a better life for her children

212333

NEW: Hackers are currently exploiting two critical WordPress flaws, which were patched on Friday, to remotely hack and take over websites, according to several cybersecurity firms. Around 90 million websites could still be vulnerable, according to an estimate by a security researcher.

Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk | TechCrunchTwo critical security flaws in WordPress’ software have given hackers the chance to remotely take over tens of millions of websites, according to an estimate by a cybersecurity researcher.techcrunch.com
02013

PSA: "Lamine" and "Yamal" are both his first names (or I guess first and middle name if you wanna see it that way). So you shouldn't use only "Yamal" as if it was his last name, cause it's not. So just call him Lamine. Please and thank you. en.wikipedia.org/wiki/Lamine_...

Lamine Yamal - Wikipediaen.wikipedia.org
061

NEW: The FBI arrested a 21-year-old student accused of uploading malware-laden video games on Steam, infecting thousands of victims, and then stealing $220,000 in crypto from some of them. The man, Zyaire Wilkins, worked with unnamed co-conspirators to publish at least five malware-embedded games.

FBI arrests man accused of using Steam games to drain victims' crypto wallets | TechCrunchProsecutors accused 21-year-old student Zyaire Wilkins of publishing on Steam several fake video games that contained malware, infecting thousands of victims, and stealing crypto from some of them.techcrunch.com
084

"Pegasus training material describes situations where it may not be possible to attack a target directly [...] NSO Group suggests expanding to 'close-circle infection,' targeting [...] colleagues, friends or family members of the primary target in order to gather information about them indirectly."

Inside Pegasus: The evolution of the world's most notorious spyware system - Amnesty International Security LabWe are presenting here our most complete analysis to date of the Pegasus spyware. This blog post builds on previous technical reports and forensic investigations by Amnesty International’s Security La...securitylab.amnesty.org
11718

NEW: Cops say the arrest of two members of the infamous Scattered Spider hacking group have halted the gang’s activities. On Thursday, two members of Scattered Spider were sentenced to five years and a half in prison for hacking London’s transportation system in 2024.

UK cops say arrest of two young hackers disrupted the operations of an infamous hacking group | TechCrunchOwen Flowers and Thalha Jubair, two members of the prolific Scattered Spider hacking group, pleaded guilty and were sentenced to five years and six months in jail for hacking London’s metropolitan tra...techcrunch.com
072

NEW: A security vulnerability in the remastered version of the classic 25-year-old war strategy game Age of Empires II allowed hackers to take over victims' computers with just a malicious game invite. techcrunch.com/2026/07/15/m...

Microsoft patches bug in video game Age of Empires II | TechCrunchThe vulnerability in the decades-old game could have allowed hackers to take over victims’ computers with a malicious game invite.techcrunch.com
0142

NEW: The Iranian government abused well-known flaws in the global telecoms infrastructure — specifically SS7 — to locate U.S. military personnel in the Middle East at the beginning of the war. techcrunch.com/2026/07/14/i...

Iran abused mobile networks' vulnerabilities to locate U.S. military in the Middle East, report says | TechCrunchThe Iranian government exploited well-known flaws in cellphone networks to locate and then strike U.S. military personnel in the build-up and beginning of the war.techcrunch.com
32518

This may be a hot take, I need to look at the maps and fact check. But I think there is now a higher density of Neapolitan pizza places in Barcelona than NYC. It feels like BCN is totally saturated (in a good way). I haven’t been to that many yet and they also feel sorta different from each other.

181
Показать ещё