<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:atom="http://www.w3.org/2005/Atom"
    xmlns:media="http://search.yahoo.com/mrss/">
    <channel><title>Consumer Insights</title><description>News, views and insights from the Bitdefender experts</description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/</link><image><url>https://download.bitdefender.com/resources/images/favicon/favicon-32x32.png</url><title>Consumer Insights</title><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/</link></image><generator>Bitdefender Blog</generator><lastBuildDate>Wed, 09 Sep 2026 16:37:01 GMT</lastBuildDate><atom:link href="https://www.bitdefender.com/nuxt/api/en-au/rss/hotforsecurity/industry-news/" rel="self" type="application/rss+xml"/><ttl>1800</ttl><item><title>Windows 11 to share users’ ages with installed apps</title><description><![CDATA[Windows 11 is preparing to take on a job that apps and online services have largely handled until now, most of it badly: working out whether a user falls into the right age bracket.]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/windows-11-age-verification</link><guid isPermaLink="false">6aa174278beeea9658029af8</guid><category><![CDATA[Industry News]]></category><dc:creator>Silviu STAHIE</dc:creator><pubDate>Wed, 09 Sep 2026 15:09:52 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/09/yugudesign-checklist-10418822_1920.png" medium="image"/><content:encoded><![CDATA[Windows 11 is preparing to take on a job that apps and online services have largely handled until now, most of it badly: working out whether a user falls into the right age bracket.]]></content:encoded></item><item><title>Google patches Chrome zero-day exploited by hackers – update now!</title><description><![CDATA[Google has released Chrome 153 with security fixes for desktop and Android users, including a vulnerability that attackers are already exploiting in the wild.


Key takeaways


 * Google has released Chrome 153 with a large batch of security fixes
 * CVE-2026-87491 affects Chrome's V8 JavaScript engine
 * Google confirms that an exploit for the vulnerability is already being used in the wild
 * Windows, macOS, Linux and Android users should install the latest Chrome update as soon as possible
 *]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/google-patches-chrome-zero-day-exploited-hackers</link><guid isPermaLink="false">6aa138928beeea9658029abe</guid><category><![CDATA[Industry News]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Wed, 09 Sep 2026 10:50:54 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/09/header-7.jpg" medium="image"/><content:encoded><![CDATA[Google has released Chrome 153 with security fixes for desktop and Android users, including a vulnerability that attackers are already exploiting in the wild.


Key takeaways


 * Google has released Chrome 153 with a large batch of security fixes
 * CVE-2026-87491 affects Chrome's V8 JavaScript engine
 * Google confirms that an exploit for the vulnerability is already being used in the wild
 * Windows, macOS, Linux and Android users should install the latest Chrome update as soon as possible
 *]]></content:encoded></item><item><title>Instagram creators hit by ransom demands</title><description><![CDATA[Instagram content creators say scammers are abusing the platform’s copyright-reporting system to get accounts suspended, then demanding money to make the complaints disappear.

Losing access to a social media account can cost content creators much more than followers. It can cut off advertising revenue and sponsorships and, in some cases, threaten their entire livelihood.

Scammers appear to be exploiting exactly that pressure.

Instagram creators have told the BBC that fraudsters are filing bog]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/instagram-creator-ransom</link><guid isPermaLink="false">6aa0357e8beeea96580299c0</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Content Creators]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Tue, 08 Sep 2026 16:25:24 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/09/instagram-content-creator-ransom.jpg" medium="image"/><content:encoded><![CDATA[Instagram content creators say scammers are abusing the platform’s copyright-reporting system to get accounts suspended, then demanding money to make the complaints disappear.

Losing access to a social media account can cost content creators much more than followers. It can cut off advertising revenue and sponsorships and, in some cases, threaten their entire livelihood.

Scammers appear to be exploiting exactly that pressure.

Instagram creators have told the BBC that fraudsters are filing bog]]></content:encoded></item><item><title>The US military just turned off ad tracking on its phones. Maybe you should too</title><description><![CDATA[Branches of the US military have reportedly disabled ad-tracking on government-issued phones and computers, following concerns that commercially-available location data has been used to target American forces in the Middle East.]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/us-military-turned-off-ad-tracking-phones</link><guid isPermaLink="false">6aa01d1b8beeea96580299ac</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Tue, 08 Sep 2026 14:36:01 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/09/army-phone.jpeg" medium="image"/><content:encoded><![CDATA[Branches of the US military have reportedly disabled ad-tracking on government-issued phones and computers, following concerns that commercially-available location data has been used to target American forces in the Middle East.]]></content:encoded></item><item><title>How a hole in Lenovo's login system let hackers walk into 5,000 Dropbox accounts</title><description><![CDATA[If you ever linked your Dropbox account to a Lenovo ID - perhaps to make life easier when logging in via a Lenovo laptop - you might want to take heed.

Dropbox has confirmed that approximately 5,000 customer accounts were accessed between 4-21 August, after hackers exploited a legacy login integration between Dropbox and Lenovo's own identity system, Lenovo ID.

Dropbox sent a warning to affected users about what it described as "an issue with Lenovo's email verification process," which saw att]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/lenovo-login-system-hackers-dropbox</link><guid isPermaLink="false">6a9e87598beeea965802988c</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Mon, 07 Sep 2026 09:44:44 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/09/dropbox-lenovo.jpeg" medium="image"/><content:encoded><![CDATA[If you ever linked your Dropbox account to a Lenovo ID - perhaps to make life easier when logging in via a Lenovo laptop - you might want to take heed.

Dropbox has confirmed that approximately 5,000 customer accounts were accessed between 4-21 August, after hackers exploited a legacy login integration between Dropbox and Lenovo's own identity system, Lenovo ID.

Dropbox sent a warning to affected users about what it described as "an issue with Lenovo's email verification process," which saw att]]></content:encoded></item><item><title>Revolut scam steals £180,000 from Jersey residents in just four weeks</title><description><![CDATA[If you live in Jersey and bank with Revolut, you should be on your guard against scam phone calls.

Because local police on the largest of the Channel Islands have warned that over a single four-week period, an astonishing 75% of all scam crime reports they have received have involved Revolut accounts.

In all, victims have lost around £180,000 (over US $240,000) - a striking figure for such a short period of time, in such a small community, involving just one particular digital bank.

According]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/revolut-scam-jersey</link><guid isPermaLink="false">6a9833908beeea9658029860</guid><category><![CDATA[Scam]]></category><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Wed, 02 Sep 2026 14:33:43 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/09/revolut-jersey.jpeg" medium="image"/><content:encoded><![CDATA[If you live in Jersey and bank with Revolut, you should be on your guard against scam phone calls.

Because local police on the largest of the Channel Islands have warned that over a single four-week period, an astonishing 75% of all scam crime reports they have received have involved Revolut accounts.

In all, victims have lost around £180,000 (over US $240,000) - a striking figure for such a short period of time, in such a small community, involving just one particular digital bank.

According]]></content:encoded></item><item><title>Big Tech calls for cyber-defense before AI attacks surge</title><description><![CDATA[More than 120 technology, cybersecurity, financial and infrastructure organizations are urging companies and governments to strengthen digital defenses before increasingly capable AI systems make sophisticated cyberattacks faster, cheaper and more widespread.

A coalition of technology companies, cybersecurity vendors, banks and other organizations is calling for an urgent global effort to strengthen cyber defenses as artificial intelligence reshapes the threat landscape.

The open letter, publi]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/big-tech-cyber-defense-ai-cyber-attacks</link><guid isPermaLink="false">6a91ae3d8beeea96580295e2</guid><category><![CDATA[Industry News]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Fri, 28 Aug 2026 15:54:46 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/big-tech-header.jpg" medium="image"/><content:encoded><![CDATA[More than 120 technology, cybersecurity, financial and infrastructure organizations are urging companies and governments to strengthen digital defenses before increasingly capable AI systems make sophisticated cyberattacks faster, cheaper and more widespread.

A coalition of technology companies, cybersecurity vendors, banks and other organizations is calling for an urgent global effort to strengthen cyber defenses as artificial intelligence reshapes the threat landscape.

The open letter, publi]]></content:encoded></item><item><title>Shai-Hulud hackers: two men charged over TeamPCP's global supply chain crime spree that hit OpenAI, and thousands more</title><description><![CDATA[Police have charged two men from Western Australia over their alleged involvement in TeamPCP, a cybercriminal gang that has been blamed for a massive software supply-chain hacking campaign. TeamPCP is best known for Shai-Hulud, a self-propagating worm that spread itself through open source software.

The Australian Federal Police (AFP), working with the FBI and Western Australia Police, announced that on 26 August they charged a 21-year-old from Cottesloe and a 23-year-old from Mandurah with mul]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/shai-hulud-hackers-charged-teampcps</link><guid isPermaLink="false">6a91602f8beeea96580295b2</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Fri, 28 Aug 2026 10:18:00 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/teampcp.jpeg" medium="image"/><content:encoded><![CDATA[Police have charged two men from Western Australia over their alleged involvement in TeamPCP, a cybercriminal gang that has been blamed for a massive software supply-chain hacking campaign. TeamPCP is best known for Shai-Hulud, a self-propagating worm that spread itself through open source software.

The Australian Federal Police (AFP), working with the FBI and Western Australia Police, announced that on 26 August they charged a 21-year-old from Cottesloe and a 23-year-old from Mandurah with mul]]></content:encoded></item><item><title>Manchester Airports Group cyberattack exposes data of 8.7 million customers</title><description><![CDATA[Hackers obtained customer contact and booking-related data from Manchester, Stansted and East Midlands airports, creating new phishing risks for travelers.]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/manchester-airports-group-data-breach-8-7-million</link><guid isPermaLink="false">6a9146648beeea965802959b</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Digital Privacy]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Fri, 28 Aug 2026 08:28:40 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/joel-barwick-7qz6rINHYBw-unsplash.jpg" medium="image"/><content:encoded><![CDATA[Hackers obtained customer contact and booking-related data from Manchester, Stansted and East Midlands airports, creating new phishing risks for travelers.]]></content:encoded></item><item><title>OpenAI bans Russian ChatGPT accounts in influence operation</title><description><![CDATA[OpenAI banned Russian-linked ChatGPT accounts that promoted a suspect think tank and amplified pro-Russia narratives across social platforms.


Key takeaways

 * OpenAI banned a cluster of ChatGPT accounts it assesses as very likely originating in Russia.
 * The accounts used ChatGPT mainly to create promotional posts for the International Burke Institute (IBI).
 * OpenAI found that 34 of 36 IBI articles reviewed had been copied from elsewhere online.
 * The campaign had limited overall reach, b]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/openai-bans-russian-chatgpt-accounts</link><guid isPermaLink="false">6a904c818beeea9658029589</guid><category><![CDATA[Industry News]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Thu, 27 Aug 2026 14:42:30 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/levart_photographer-7q-kE4SZzvQ-unsplash.jpg" medium="image"/><content:encoded><![CDATA[OpenAI banned Russian-linked ChatGPT accounts that promoted a suspect think tank and amplified pro-Russia narratives across social platforms.


Key takeaways

 * OpenAI banned a cluster of ChatGPT accounts it assesses as very likely originating in Russia.
 * The accounts used ChatGPT mainly to create promotional posts for the International Burke Institute (IBI).
 * OpenAI found that 34 of 36 IBI articles reviewed had been copied from elsewhere online.
 * The campaign had limited overall reach, b]]></content:encoded></item><item><title>US Navy tells sailors and their families: scrub your social media, enemies are watching</title><description><![CDATA[The US Navy has told its entire workforce of 340,000 active-duty personnel, 58,000 reservists, and 210,000 civilian employees to clean up their social media profiles, because adversaries might be using them to determine who they are, where they live, and when they may not be at home.

The advice comes in the form of a newly-published bulletin called "Epic Vigilance: Immediate Actions for Force Protection and Personal Security."

According to the advisory, "a coordinated, multi-domain campaign" i]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/us-navy-sailors-families-scrub-social-media-enemies-watching</link><guid isPermaLink="false">6a8fd97b8beeea96580294ed</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Thu, 27 Aug 2026 06:31:17 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/usnavy.jpeg" medium="image"/><content:encoded><![CDATA[The US Navy has told its entire workforce of 340,000 active-duty personnel, 58,000 reservists, and 210,000 civilian employees to clean up their social media profiles, because adversaries might be using them to determine who they are, where they live, and when they may not be at home.

The advice comes in the form of a newly-published bulletin called "Epic Vigilance: Immediate Actions for Force Protection and Personal Security."

According to the advisory, "a coordinated, multi-domain campaign" i]]></content:encoded></item><item><title>WhatsApp makes account theft harder: how to turn on the new defenses</title><description><![CDATA[WhatsApp is strengthening account protection with full passwords for two-step verification, support for multiple passkeys and more information about calls from unknown numbers.

New account-security upgrades are meant to make account takeovers more difficult and help users think twice before answering suspicious calls.

The biggest change replaces the familiar six-digit two-step verification PIN with a longer password that can contain letters, numbers and special characters. WhatsApp is also let]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/whatsapp-account-theft-defense</link><guid isPermaLink="false">6a8ee80b8beeea96580294c3</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Mobile Security]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Wed, 26 Aug 2026 13:31:00 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/whatsapp-passkey-security.jpg" medium="image"/><content:encoded><![CDATA[WhatsApp is strengthening account protection with full passwords for two-step verification, support for multiple passkeys and more information about calls from unknown numbers.

New account-security upgrades are meant to make account takeovers more difficult and help users think twice before answering suspicious calls.

The biggest change replaces the familiar six-digit two-step verification PIN with a longer password that can contain letters, numbers and special characters. WhatsApp is also let]]></content:encoded></item><item><title>TikTok pays $400 million to settle children’s privacy case</title><description><![CDATA[TikTok and parent company ByteDance have agreed to pay $400 million to settle US government allegations that the video-sharing platform collected and retained children’s personal information without parental consent.

The settlement resolves litigation brought by the US Department of Justice following an investigation by the Federal Trade Commission (FTC). It ranks among the largest recoveries ever secured in a case involving the Children’s Online Privacy Protection Act (COPPA), according to the]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/tiktok-400-million-childrens-privacy</link><guid isPermaLink="false">6a8da3198beeea96580293e3</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Family Safety]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Tue, 25 Aug 2026 14:19:09 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/tiktok-children-case.jpg" medium="image"/><content:encoded><![CDATA[TikTok and parent company ByteDance have agreed to pay $400 million to settle US government allegations that the video-sharing platform collected and retained children’s personal information without parental consent.

The settlement resolves litigation brought by the US Department of Justice following an investigation by the Federal Trade Commission (FTC). It ranks among the largest recoveries ever secured in a case involving the Children’s Online Privacy Protection Act (COPPA), according to the]]></content:encoded></item><item><title>Malicious Firefox add-ons caught stealing cryptowallet seed phrases and browser credentials</title><description><![CDATA[Every time you add an extension or plugin to your browser, there's a risk that you might be doing more than managing your cryptocurrency wallet, generating passwords, taking notes, or tracking sports results. There's a chance that you have just handed a complete stranger access to your savings.

Security researchers at Socket have identified scores of malicious linked Firefox add-ons designed to steal cryptocurrency wallet seed phrases or password details.

The campaign, which researchers have d]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/malicious-firefox-add-ons-stealing-cryptowallet-seed-phrases-browser-credentials</link><guid isPermaLink="false">6a8c59d38beeea96580292c9</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Mon, 24 Aug 2026 14:50:59 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/firefox-addons.jpeg" medium="image"/><content:encoded><![CDATA[Every time you add an extension or plugin to your browser, there's a risk that you might be doing more than managing your cryptocurrency wallet, generating passwords, taking notes, or tracking sports results. There's a chance that you have just handed a complete stranger access to your savings.

Security researchers at Socket have identified scores of malicious linked Firefox add-ons designed to steal cryptocurrency wallet seed phrases or password details.

The campaign, which researchers have d]]></content:encoded></item><item><title>Russian-linked hackers turn Google and WhatsApp logins into phishing traps</title><description><![CDATA[Three suspected Russian cyber-espionage clusters are abusing legitimate authentication features to compromise personal accounts of people in sensitive sectors across Europe and the US, Google says.


Key takeaways

 * Google is tracking UNC6293, UNC7005 and UNC5976, which it assesses with high confidence to have a Russian nexus
 * The campaigns abuse legitimate Google OAuth, app-password and device-linking workflows rather than software vulnerabilities
 * UNC7005 has also used WhatsApp device li]]></description><link>https://www.bitdefender.com/en-au/blog/hotforsecurity/russian-hackers-google-whatsapp-phishing</link><guid isPermaLink="false">6a88204f8beeea96580291e1</guid><category><![CDATA[Industry News]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Fri, 21 Aug 2026 09:55:54 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/08/dimitri-karastelev-ynJaWgrwSlM-unsplash--1-.jpg" medium="image"/><content:encoded><![CDATA[Three suspected Russian cyber-espionage clusters are abusing legitimate authentication features to compromise personal accounts of people in sensitive sectors across Europe and the US, Google says.


Key takeaways

 * Google is tracking UNC6293, UNC7005 and UNC5976, which it assesses with high confidence to have a Russian nexus
 * The campaigns abuse legitimate Google OAuth, app-password and device-linking workflows rather than software vulnerabilities
 * UNC7005 has also used WhatsApp device li]]></content:encoded></item></channel>
        </rss>