<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:atom="http://www.w3.org/2005/Atom"
    xmlns:media="http://search.yahoo.com/mrss/">
    <channel><title>Consumer Insights</title><description>News, views and insights from the Bitdefender experts</description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/</link><image><url>https://download.bitdefender.com/resources/images/favicon/favicon-32x32.png</url><title>Consumer Insights</title><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/</link></image><generator>Bitdefender Blog</generator><lastBuildDate>Wed, 20 May 2026 06:58:44 GMT</lastBuildDate><atom:link href="https://www.bitdefender.com/nuxt/api/en-au/rss/hotforsecurity/industry-news/" rel="self" type="application/rss+xml"/><ttl>1800</ttl><item><title>Scam Centers Are Feeling the Heat – INTERPOL Makes 201 Arrests in the MENA Region</title><description><![CDATA[International police agencies are mowing through scam centers.

INTERPOL has announced a “first-of-its-kind cybercrime operation” that has led to 201 arrests. Authorities across the Middle East and North Africa (MENA) have identified a further 382 suspects. The coordinated operation targeted online fraud, financial scams, malware distribution, and digital extortion, as global law enforcement agencies step up efforts to disrupt organized cybercrime at scale.


Key takeaways


 * INTERPOL-led auth]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/scam-center-interpol-arrests-mena</link><guid isPermaLink="false">6a0c48c32fa53a9f2eef77a3</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Scam]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Tue, 19 May 2026 12:10:17 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/scam-center.png" medium="image"/><content:encoded><![CDATA[International police agencies are mowing through scam centers.

INTERPOL has announced a “first-of-its-kind cybercrime operation” that has led to 201 arrests. Authorities across the Middle East and North Africa (MENA) have identified a further 382 suspects. The coordinated operation targeted online fraud, financial scams, malware distribution, and digital extortion, as global law enforcement agencies step up efforts to disrupt organized cybercrime at scale.


Key takeaways


 * INTERPOL-led auth]]></content:encoded></item><item><title>Older adults lost billions to scammers last year, FBI warns</title><description><![CDATA[The FBI is warning that older adults continue to face growing financial losses from scams, fraud, and cybercrime.

Americans aged 60 and older reported more than $7.7 billion in losses in 2025 alone, the bureau announced last week. Officials say scammers are becoming increasingly sophisticated, using emotional manipulation, impersonation tactics, fake investment opportunities, and even AI-generated content to target victims.


Key takeaways

 * The FBI says adults over the age of 60 lost more th]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/older-adults-lost-billions-to-scammers-2026</link><guid isPermaLink="false">6a0c20722fa53a9f2eef76db</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Scam]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Tue, 19 May 2026 09:09:54 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/Older-adults-lost-billions-to-scammers-last-year--FBI-warns.png" medium="image"/><content:encoded><![CDATA[The FBI is warning that older adults continue to face growing financial losses from scams, fraud, and cybercrime.

Americans aged 60 and older reported more than $7.7 billion in losses in 2025 alone, the bureau announced last week. Officials say scammers are becoming increasingly sophisticated, using emotional manipulation, impersonation tactics, fake investment opportunities, and even AI-generated content to target victims.


Key takeaways

 * The FBI says adults over the age of 60 lost more th]]></content:encoded></item><item><title>Burst Statistics flaw opens WordPress sites to admin takeover</title><description><![CDATA[A critical Burst Statistics bug is being exploited to hijack WordPress sites through forged administrator requests.


Attackers target popular analytics plugin

Hackers are exploiting CVE-2026-8181, a critical authentication bypass in the Burst Statistics WordPress plugin used on more than 200,000 websites. The plugin is promoted as a privacy-minded analytics alternative for site owners who want traffic insights without Google Analytics.

The vulnerability affects Burst Statistics versions 3.4.0]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/burst-statistics-flaw-wordpress-admin-takeover</link><guid isPermaLink="false">6a070bb82fa53a9f2eef74bc</guid><category><![CDATA[Industry News]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Fri, 15 May 2026 12:05:30 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/justin-morgan-ZjX-z2Q5zrk-unsplash.jpg" medium="image"/><content:encoded><![CDATA[A critical Burst Statistics bug is being exploited to hijack WordPress sites through forged administrator requests.


Attackers target popular analytics plugin

Hackers are exploiting CVE-2026-8181, a critical authentication bypass in the Burst Statistics WordPress plugin used on more than 200,000 websites. The plugin is promoted as a privacy-minded analytics alternative for site owners who want traffic insights without Google Analytics.

The vulnerability affects Burst Statistics versions 3.4.0]]></content:encoded></item><item><title>Android 17 Will Let Users Verify Whether Their OS Is Legit</title><description><![CDATA[Google is preparing to add a new Android OS verification feature to Android 17 that helps users determine whether the OS they're running is an authentic version of Android.]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/android-17-os-verify-legit</link><guid isPermaLink="false">6a06fd8e2fa53a9f2eef749b</guid><category><![CDATA[Industry News]]></category><dc:creator>Silviu STAHIE</dc:creator><pubDate>Fri, 15 May 2026 11:14:19 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/ChatGPT-Image-May-15--2026--02_10_49-PM.png" medium="image"/><content:encoded><![CDATA[Google is preparing to add a new Android OS verification feature to Android 17 that helps users determine whether the OS they're running is an authentic version of Android.]]></content:encoded></item><item><title>Suspected Dream Market kingpin arrested after gold bars sent to his home address</title><description><![CDATA[If you're going to run one of the world's largest dark web drug marketplace, it's probably a good idea not to have laundered loot delivered to your front door.

That, according to US and German prosecutors, is what 49-year-old Owe Martin Andresen did - and it has helped land him in custody where he is facing money laundering charges on both sides of the Atlantic.

Andresen was arrested at his home on 7 May 2026 by German police. Prosecutors allege he is "Speedstepper" - the suspected main admini]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/dream-market-kingpin-arrested-gold-bars</link><guid isPermaLink="false">6a0609802fa53a9f2eef7489</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Thu, 14 May 2026 17:44:00 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/dream-market.jpeg" medium="image"/><content:encoded><![CDATA[If you're going to run one of the world's largest dark web drug marketplace, it's probably a good idea not to have laundered loot delivered to your front door.

That, according to US and German prosecutors, is what 49-year-old Owe Martin Andresen did - and it has helped land him in custody where he is facing money laundering charges on both sides of the Atlantic.

Andresen was arrested at his home on 7 May 2026 by German police. Prosecutors allege he is "Speedstepper" - the suspected main admini]]></content:encoded></item><item><title>BitLocker zero-day exposes Windows drives as PoC goes public</title><description><![CDATA[A researcher has released proof-of-concept (PoC) exploit code for two unpatched Windows flaws, including a BitLocker bypass that can expose encrypted drives on affected systems.]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/bitlocker-zero-day-poc</link><guid isPermaLink="false">6a05dc1c2fa53a9f2eef7473</guid><category><![CDATA[Industry News]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Thu, 14 May 2026 14:30:03 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/Aura-data-breach.jpg" medium="image"/><content:encoded><![CDATA[A researcher has released proof-of-concept (PoC) exploit code for two unpatched Windows flaws, including a BitLocker bypass that can expose encrypted drives on affected systems.]]></content:encoded></item><item><title>Apple Fixes ‘Persistent Notifications’ Flaw on Older iPhones and iPads</title><description><![CDATA[Got an older iPhone or iPad? Check your software version.

Apple rolled out updates across its entire product lineup this week, delivering a long list of security fixes. One important patch fixes a serious flaw that allowed “deleted” notification data, such as message previews from encrypted apps like Signal, to persist on iPhones and later be recovered.


Key takeaways


 * Apple has extended a fix for the “persisting notifications” flaw to older iPhones and iPads, including devices as old as t]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/apple-notifications-flaw-older-iphones-ipads</link><guid isPermaLink="false">6a05c3692fa53a9f2eef744c</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Mobile Security]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Thu, 14 May 2026 12:48:19 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/old-gen-iphones.jpg" medium="image"/><content:encoded><![CDATA[Got an older iPhone or iPad? Check your software version.

Apple rolled out updates across its entire product lineup this week, delivering a long list of security fixes. One important patch fixes a serious flaw that allowed “deleted” notification data, such as message previews from encrypted apps like Signal, to persist on iPhones and later be recovered.


Key takeaways


 * Apple has extended a fix for the “persisting notifications” flaw to older iPhones and iPads, including devices as old as t]]></content:encoded></item><item><title>Football ticket scams are rising fast, Lloyds Bank warns</title><description><![CDATA[Scammers have been actively exploiting the hype surrounding football tournaments, and the demand for the biggest event of the year could bring devastating financial losses for fans, Lloyds Bank and the UK Home Office warned.


Key takeways

 * Lloyds bank says football ticket fraud has surged in recent seasons, and experts believe the World Cup could make the fraud problem even worse.
 * Football ticket scams rose by 36% with victims losing an average of £215
 * Many scams originated on social m]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/football-ticket-scams-lloyds-bank</link><guid isPermaLink="false">6a05860f2fa53a9f2eef739e</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Scam]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Thu, 14 May 2026 08:33:18 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/Football-ticket-scams-are-rising-fast--Lloyds-Bank-warns.jpg" medium="image"/><content:encoded><![CDATA[Scammers have been actively exploiting the hype surrounding football tournaments, and the demand for the biggest event of the year could bring devastating financial losses for fans, Lloyds Bank and the UK Home Office warned.


Key takeways

 * Lloyds bank says football ticket fraud has surged in recent seasons, and experts believe the World Cup could make the fraud problem even worse.
 * Football ticket scams rose by 36% with victims losing an average of £215
 * Many scams originated on social m]]></content:encoded></item><item><title>When ransomware gets physical: cybercriminals turn to threats of violence</title><description><![CDATA[For years, ransomware has been a crime committed at arm's length. Hackers in one country, victims in another. The only weapon is the hackers' threat to release stolen data, or leave your systems permanently encrypted.

But that's changing.

As a BBC News report describes, a growing number of online extortionists are no longer content with locking up your files and threatening to leak your data. Instead, they are making threats to hurt their victims. Or their families. Or staff who refuse to pay ]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/ransomware-physical-threats-violence</link><guid isPermaLink="false">6a056b3b2fa53a9f2eef738c</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Thu, 14 May 2026 06:28:21 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/violence.jpeg" medium="image"/><content:encoded><![CDATA[For years, ransomware has been a crime committed at arm's length. Hackers in one country, victims in another. The only weapon is the hackers' threat to release stolen data, or leave your systems permanently encrypted.

But that's changing.

As a BBC News report describes, a growing number of online extortionists are no longer content with locking up your files and threatening to leak your data. Instead, they are making threats to hurt their victims. Or their families. Or staff who refuse to pay ]]></content:encoded></item><item><title>iPhone-to-Android Texts Are Finally Encrypted – Here’s What That Means for You</title><description><![CDATA[For years, texting between iPhones and Android devices came with a stubborn privacy gap. Messages sent through Apple’s iMessage system were encrypted. Google Messages chats between Android users could also be encrypted. But once a conversation crossed the “blue bubble vs. green bubble” divide, those protections largely disappeared. That is finally starting to change.

Apple announced that end-to-end encrypted (E2EE) RCS messaging is now rolling out in beta through iOS 26.5, developed in collabor]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/iphone-to-android-texts-encrypted-e2ee</link><guid isPermaLink="false">6a04802b2fa53a9f2eef7357</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Mobile Security]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Wed, 13 May 2026 13:52:24 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/iPhone-to-Android-Texts-Are-E2EE-Encrypted--header-.png" medium="image"/><content:encoded><![CDATA[For years, texting between iPhones and Android devices came with a stubborn privacy gap. Messages sent through Apple’s iMessage system were encrypted. Google Messages chats between Android users could also be encrypted. But once a conversation crossed the “blue bubble vs. green bubble” divide, those protections largely disappeared. That is finally starting to change.

Apple announced that end-to-end encrypted (E2EE) RCS messaging is now rolling out in beta through iOS 26.5, developed in collabor]]></content:encoded></item><item><title>UK Water Supplier Fined Nearly £1 Million After Hackers Roamed Networks for Almost 2 Years</title><description><![CDATA[A UK water supplier has been fined £945,000 after regulators found cybercriminals had access to its systems, exposing sensitive customer data, for nearly two years before they were discovered.

The UK Information Commissioner’s Office (ICO) announced this week that it had levied the penalty against South Staffordshire Plc and South Staffordshire Water Plc following a 2022 ransomware attack that compromised the personal data of hundreds of thousands of customers.


Key takeaways


 * UK regulator]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/uk-water-1-million-hackers-ransomware</link><guid isPermaLink="false">6a03358f2fa53a9f2eef72c8</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Tue, 12 May 2026 14:22:34 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/tap-water.png" medium="image"/><content:encoded><![CDATA[A UK water supplier has been fined £945,000 after regulators found cybercriminals had access to its systems, exposing sensitive customer data, for nearly two years before they were discovered.

The UK Information Commissioner’s Office (ICO) announced this week that it had levied the penalty against South Staffordshire Plc and South Staffordshire Water Plc following a 2022 ransomware attack that compromised the personal data of hundreds of thousands of customers.


Key takeaways


 * UK regulator]]></content:encoded></item><item><title>Instagram Drops Encrypted DMs — What This Means for You</title><description><![CDATA[Instagram parent company Meta has quietly abandoned encrypted direct messages on the popular social media platform, marking a reversal in the company’s push toward privacy-centric messaging.

As of May 8, Instagram users can no longer send end-to-end encrypted DMs, according to updated support documentation. The decision comes less than a year after Meta disclosed plans to use conversations with its AI assistant to personalize ads and content recommendations across Facebook and Instagram.


Key ]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/instagram-drops-encrypted-dms</link><guid isPermaLink="false">6a01ee2f2fa53a9f2eef7127</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Mon, 11 May 2026 15:39:16 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/instagram-dm-encryption.png" medium="image"/><content:encoded><![CDATA[Instagram parent company Meta has quietly abandoned encrypted direct messages on the popular social media platform, marking a reversal in the company’s push toward privacy-centric messaging.

As of May 8, Instagram users can no longer send end-to-end encrypted DMs, according to updated support documentation. The decision comes less than a year after Meta disclosed plans to use conversations with its AI assistant to personalize ads and content recommendations across Facebook and Instagram.


Key ]]></content:encoded></item><item><title>New fear: Man films woman with smart glasses, seeks money to take video down</title><description><![CDATA[A woman in London says a man used smart glasses to secretly film her, then uploaded the footage to social media, and requested money to remove the video after she complained to him directly.]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/man-films-woman-smart-glasses-money</link><guid isPermaLink="false">69fdf30f2fa53a9f2eef6ffa</guid><category><![CDATA[Industry News]]></category><dc:creator>Silviu STAHIE</dc:creator><pubDate>Fri, 08 May 2026 14:32:48 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/ChatGPT-Image-May-8--2026--05_27_52-PM.png" medium="image"/><content:encoded><![CDATA[A woman in London says a man used smart glasses to secretly film her, then uploaded the footage to social media, and requested money to remove the video after she complained to him directly.]]></content:encoded></item><item><title>ClickFix Campaign Uses Compromised WordPress Sites to Spread Vidar Stealer in Australia</title><description><![CDATA[Cybercriminals are increasingly relying on social engineering instead of traditional exploits, and Australian authorities are warning that a spreading “ClickFix” campaign is a prime example.

The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) has issued an advisory about an ongoing malware campaign targeting Australian infrastructure and organizations through compromised WordPress websites. The attacks use fake CAPTCHA or Cloudflare verification prompts to trick u]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/clickfix-compromised-wordpress-sites-vidar-stealer-australia</link><guid isPermaLink="false">69fde7872fa53a9f2eef6fe1</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Very Small Business]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Fri, 08 May 2026 13:42:19 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/clickfix-vidar-stealer-australia-header.png" medium="image"/><content:encoded><![CDATA[Cybercriminals are increasingly relying on social engineering instead of traditional exploits, and Australian authorities are warning that a spreading “ClickFix” campaign is a prime example.

The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) has issued an advisory about an ongoing malware campaign targeting Australian infrastructure and organizations through compromised WordPress websites. The attacks use fake CAPTCHA or Cloudflare verification prompts to trick u]]></content:encoded></item><item><title>Inside Department 4: Russia's secret school for hackers</title><description><![CDATA[Most universities have a careers fair. At Bauman Moscow State Technical University, however, an elite group of students appear to have something rather more unusual: a direct pipeline into some of the world's most notorious state-sponsored hacking groups.

A new investigation by a consortium of journalists from The Guardian, Der Spiegel, Le Monde, and The Insider, amongst others, has lifted the lid on a secretive faculty inside one of Russia's most prestigious technical universities - that has s]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/inside-department-4-russias-secret-school-for-hackers</link><guid isPermaLink="false">69fde6b02fa53a9f2eef6fd0</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Fri, 08 May 2026 13:36:45 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/department-4.jpeg" medium="image"/><content:encoded><![CDATA[Most universities have a careers fair. At Bauman Moscow State Technical University, however, an elite group of students appear to have something rather more unusual: a direct pipeline into some of the world's most notorious state-sponsored hacking groups.

A new investigation by a consortium of journalists from The Guardian, Der Spiegel, Le Monde, and The Insider, amongst others, has lifted the lid on a secretive faculty inside one of Russia's most prestigious technical universities - that has s]]></content:encoded></item></channel>
        </rss>