Crypto-Gram Newsletter
Crypto-Gram is a free monthly e-mail digest of posts from Bruce Schneier’s Schneier on Security blog.
Recent Issues
December 15, 2024
In this issue:
- Good Essay on the History of Bad Password Policies
- Most of 2023’s Top Exploited Vulnerabilities Were Zero-Days
- Why Italy Sells So Much Spyware
- Steve Bellovin’s Retirement Talk
- Secret Service Tracking People’s Locations without Warrant
- The Scale of Geoblocking by Nation
- Security Analysis of the MERGE Voting Protocol
- What Graykey Can and Can’t Unlock
- NSO Group Spies on People on Behalf of Governments
- Race Condition Attacks against LLMs
- Details about the iOS Inactivity Reboot Feature
- Algorithms Are Coming for Democracy—but It’s Not All Bad
- AI and the 2024 Elections
- Detecting Pegasus Infections
- Trust Issues in AI
- Full-Face Masks to Frustrate Identification
- Jailbreaking LLM-Controlled Robots
- Ultralytics Supply-Chain Attack
- Upcoming Speaking Events
November 15, 2024
In this issue:
- More Details on Israel Sabotaging Hezbollah Pagers and Walkie-Talkies
- Cheating at Conkers
- Justice Department Indicts Tech CEO for Falsifying Security Certifications
- AI and the SEC Whistleblower Program
- No, the Chinese Have Not Broken Modern Encryption Systems with a Quantum Computer
- Are Automatic License Plate Scanners Constitutional?
- Watermark for LLM-Generated Text
- Criminals Are Blowing up ATMs in Germany
- Law Enforcement Deanonymizes Tor Users
- Simson Garfinkel on Spooky Cryptographic Action at a Distance
- Tracking World Leaders Using Strava
- Roger Grimes on Prioritizing Cybersecurity Advice
- Sophos Versus the Chinese Hackers
- AIs Discovering Vulnerabilities
- IoT Devices in Password-Spraying Botnet
- Subverting LLM Coders
- Prompt Injection Defenses Against LLM Cyberattacks
- AI Industry is Trying to Subvert the Definition of “Open Source AI”
- Criminals Exploiting FBI Emergency Data Requests
- Mapping License Plate Scanners in the US
- New iOS Security Feature Makes It Harder for Police to Unlock Seized Phones
October 15, 2024
In this issue:
- Legacy Ivanti Cloud Service Appliance Being Exploited
- Python Developers Targeted with Malware During Fake Job Interviews
- Remotely Exploding Pagers
- FBI Shuts Down Chinese Botnet
- Clever Social Engineering Attack Using Captchas
- Hacking the "Bike Angels" System for Moving Bikeshares
- Israel’s Pager Attacks and Supply Chain Vulnerabilities
- New Windows Malware Locks Computer in Kiosk Mode
- An Analysis of the EU’s Cyber Resilience Act
- NIST Recommends Some Common-Sense Password Rules
- AI and the 2024 US Elections
- Hacking ChatGPT by Planting False Memories into Its Data
- California AI Safety Bill Vetoed
- Weird Zimbra Vulnerability
- Largest Recorded DDoS Attack is 3.8 Tbps
- China Possibly Hacking US "Lawful Access" Backdoor
- Auto-Identification Smart Glasses
- Deebot Robot Vacuums Are Using Photos and Audio to Train Their AI
- IronNet Has Shut Down
- More on My AI and Democracy Book
- Perfectl Malware
- Upcoming Speaking Engagements
Sidebar photo of Bruce Schneier by Joe MacInnis.