<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:atom="http://www.w3.org/2005/Atom"
    xmlns:media="http://search.yahoo.com/mrss/">
    <channel><title>Consumer Insights</title><description>News, views and insights from the Bitdefender experts</description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/</link><image><url>https://download.bitdefender.com/resources/images/favicon/favicon-32x32.png</url><title>Consumer Insights</title><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/</link></image><generator>Bitdefender Blog</generator><lastBuildDate>Wed, 29 Jul 2026 05:28:34 GMT</lastBuildDate><atom:link href="https://www.bitdefender.com/nuxt/api/en-gb/rss/hotforsecurity/industry-news/" rel="self" type="application/rss+xml"/><ttl>1800</ttl><item><title>US targets cyberscammers with visa restrictions</title><description><![CDATA[The United States has introduced a new global visa restriction policy targeting foreign nationals accused of participating in cybercrime, online scams, and sextortion schemes directed at Americans.

The policy, announced by Secretary of State Marco Rubio, allows US authorities to restrict visas for people deemed involved in cyber-enabled crime. Their immediate family members may also face restrictions.

The measure expands the tools available to Washington as criminal networks increasingly opera]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/us-cyberscams-visa-restrictions</link><guid isPermaLink="false">6a68ae018beeea96580283a6</guid><category><![CDATA[Industry News]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Tue, 28 Jul 2026 13:31:29 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/US-visa.jpg" medium="image"/><content:encoded><![CDATA[The United States has introduced a new global visa restriction policy targeting foreign nationals accused of participating in cybercrime, online scams, and sextortion schemes directed at Americans.

The policy, announced by Secretary of State Marco Rubio, allows US authorities to restrict visas for people deemed involved in cyber-enabled crime. Their immediate family members may also face restrictions.

The measure expands the tools available to Washington as criminal networks increasingly opera]]></content:encoded></item><item><title>Illinois man gets six years for stealing women’s private Snapchat photos</title><description><![CDATA[An Illinois man has been sentenced to more than six years in federal prison for running a large-scale phishing operation that compromised the Snapchat accounts of hundreds of women and harvested private photos.

Kyle Svara, 27, of Oswego, Illinois, was sentenced to 76 months in prison, followed by three years of supervised release. He pleaded guilty in February to aggravated identity theft, wire fraud, computer fraud, conspiracy to commit computer fraud, and making false statements to investigat]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/illinois-six-years-prison-steal-women-private-snapchat-photos</link><guid isPermaLink="false">6a675f5f8beeea9658028320</guid><category><![CDATA[Industry News]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Mon, 27 Jul 2026 13:48:17 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/header-5.jpg" medium="image"/><content:encoded><![CDATA[An Illinois man has been sentenced to more than six years in federal prison for running a large-scale phishing operation that compromised the Snapchat accounts of hundreds of women and harvested private photos.

Kyle Svara, 27, of Oswego, Illinois, was sentenced to 76 months in prison, followed by three years of supervised release. He pleaded guilty in February to aggravated identity theft, wire fraud, computer fraud, conspiracy to commit computer fraud, and making false statements to investigat]]></content:encoded></item><item><title>OpenAI's AI "goes rogue" and hacks Hugging Face: what you need to know</title><description><![CDATA[You can't have failed to hear the news headlines: "AI agent went rogue and hacked startup by itself, OpenAI reveals", "Firm hacked by rogue OpenAI models says it is 'a wake-up call'", and even "Humanity is no longer in control of its most awesome creation."

But what has actually happened, and is it as serious as some of the reports suggest?

Here is what you need to know.

On 16 July, AI platform Hugging Face disclosed a security breach, describing it as different from anything they had handled]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/openais-hacks-hugging-face</link><guid isPermaLink="false">6a621faf8beeea96580280b9</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Thu, 23 Jul 2026 14:06:52 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/openai-goes-rogue.jpeg" medium="image"/><content:encoded><![CDATA[You can't have failed to hear the news headlines: "AI agent went rogue and hacked startup by itself, OpenAI reveals", "Firm hacked by rogue OpenAI models says it is 'a wake-up call'", and even "Humanity is no longer in control of its most awesome creation."

But what has actually happened, and is it as serious as some of the reports suggest?

Here is what you need to know.

On 16 July, AI platform Hugging Face disclosed a security breach, describing it as different from anything they had handled]]></content:encoded></item><item><title>South Korea diplomatic academy hack exposes diplomat data</title><description><![CDATA[An intrusion lasting nearly 10 months exposed names, emails and encrypted passwords associated with thousands of South Korean officials.


Key takeaways

 * Hackers maintained access to the Korea National Diplomatic Academy’s online education system between April 2025 and February 2026.
 * The breach exposed names, user IDs, email addresses and encrypted passwords of current and former Foreign Ministry personnel.
 * Reports estimate that roughly 6,000 people were affected, while the compromised ]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/south-korea-diplomatic-academy-breach</link><guid isPermaLink="false">6a61e5258beeea965802809c</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Thu, 23 Jul 2026 09:57:28 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/daniel-bernard-qjsmpf0aO48-unsplash.jpg" medium="image"/><content:encoded><![CDATA[An intrusion lasting nearly 10 months exposed names, emails and encrypted passwords associated with thousands of South Korean officials.


Key takeaways

 * Hackers maintained access to the Korea National Diplomatic Academy’s online education system between April 2025 and February 2026.
 * The breach exposed names, user IDs, email addresses and encrypted passwords of current and former Foreign Ministry personnel.
 * Reports estimate that roughly 6,000 people were affected, while the compromised ]]></content:encoded></item><item><title>Lost money to a scam? FBI warns about recovery scams</title><description><![CDATA[The FBI has issued a new alert to warn consumers that criminals are impersonating FBI employees and the Internet Crime Complaint Center (IC3) in an increasingly sophisticated recovery scam.

Instead of targeting random victims, these scammers go after people who lost money in previous scams. They promise to recover stolen funds, then use fake FBI identities, AI-generated videos, spoofed government websites, social media accounts, and malicious links to steal even more personal and financial info]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/fbi-warning-fake-ai-powered-recovery-scams</link><guid isPermaLink="false">6a5f9d268beeea9658028008</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Scam]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Tue, 21 Jul 2026 16:41:44 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/fbi-warning.png" medium="image"/><content:encoded><![CDATA[The FBI has issued a new alert to warn consumers that criminals are impersonating FBI employees and the Internet Crime Complaint Center (IC3) in an increasingly sophisticated recovery scam.

Instead of targeting random victims, these scammers go after people who lost money in previous scams. They promise to recover stolen funds, then use fake FBI identities, AI-generated videos, spoofed government websites, social media accounts, and malicious links to steal even more personal and financial info]]></content:encoded></item><item><title>Russian hackers are hijacking internet-connected cameras to spy on NATO and Ukraine</title><description><![CDATA[Dutch intelligence warns Russian hackers are hijacking internet-connected security cameras across Europe for military espionage]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/russian-hackers-hijacking-cameras-spy-nato-and-ukraine</link><guid isPermaLink="false">6a5f7d828beeea9658027fe2</guid><category><![CDATA[Industry News]]></category><dc:creator>Silviu STAHIE</dc:creator><pubDate>Tue, 21 Jul 2026 14:20:32 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/ChatGPT-Image-Jul-21--2026--05_08_48-PM.png" medium="image"/><content:encoded><![CDATA[Dutch intelligence warns Russian hackers are hijacking internet-connected security cameras across Europe for military espionage]]></content:encoded></item><item><title>Ukraine warns fake CAPTCHAs are being used to make you hack yourself</title><description><![CDATA[Ukraine's computer emergency response team, CERT-UA, has warned that Russian hackers are using fake CAPTCHA checks to trick people into compromising their own PCs.

The Kremlin-backed Sandworm hacking group is reportedly leveraging fake CAPTCHA checks on compromised websites that persuade users to execute a PowerShell command on their computers - tricking them into running malicious code.

CERT-UA has attributed the attacks, which have surged this spring and summer against Ukrainian targets, to ]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/ukraine-fake-captchas-hack-yourself</link><guid isPermaLink="false">6a5f126f8beeea9658027f2c</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Tue, 21 Jul 2026 06:33:07 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/clickfix.jpeg" medium="image"/><content:encoded><![CDATA[Ukraine's computer emergency response team, CERT-UA, has warned that Russian hackers are using fake CAPTCHA checks to trick people into compromising their own PCs.

The Kremlin-backed Sandworm hacking group is reportedly leveraging fake CAPTCHA checks on compromised websites that persuade users to execute a PowerShell command on their computers - tricking them into running malicious code.

CERT-UA has attributed the attacks, which have surged this spring and summer against Ukrainian targets, to ]]></content:encoded></item><item><title>The money trail behind investment scams</title><description><![CDATA[US authorities have charged two New York residents on allegations of helping launder at least $43 million stolen from victims of online investment scams in a sophisticated money laundering network tied to China.

The Department of Justice alleges the pair managed a network of shell companies, bank accounts, and money mules that helped move proceeds from so-called “pig butchering” scams out of the United States between 2020 and 2022.


Key takeaways


 * US prosecutors charged two alleged members]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/money-trail-investment-scams-china</link><guid isPermaLink="false">6a5e2c1f8beeea9658027edf</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Scam]]></category><category><![CDATA[Finance]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Mon, 20 Jul 2026 14:17:38 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/money-trail-investment-scam.jpg" medium="image"/><content:encoded><![CDATA[US authorities have charged two New York residents on allegations of helping launder at least $43 million stolen from victims of online investment scams in a sophisticated money laundering network tied to China.

The Department of Justice alleges the pair managed a network of shell companies, bank accounts, and money mules that helped move proceeds from so-called “pig butchering” scams out of the United States between 2020 and 2022.


Key takeaways


 * US prosecutors charged two alleged members]]></content:encoded></item><item><title>Google's Gemini lets strangers send messages from your locked Android phone</title><description><![CDATA[Gemini, Google's AI assistant, is supposed to make life easier for Android smartphone owners. But right now it may also be making life easier for anyone anyone who happens to pick up your phone.

As The Register reports, Google is working on a fix for a vulnerability that allows an attacker with physical access to a locked Android 16 device to use Gemini to send SMS messages and WhatsApp texts, without ever needing to enter a PIN.

So, imagine the scene. Someone gets hold of your locked Android ]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/googles-gemini-strangers-messages-locked-android-phone</link><guid isPermaLink="false">6a5a64d58beeea9658027dfe</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Fri, 17 Jul 2026 17:23:26 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/bypass-android.jpeg" medium="image"/><content:encoded><![CDATA[Gemini, Google's AI assistant, is supposed to make life easier for Android smartphone owners. But right now it may also be making life easier for anyone anyone who happens to pick up your phone.

As The Register reports, Google is working on a fix for a vulnerability that allows an attacker with physical access to a locked Android 16 device to use Gemini to send SMS messages and WhatsApp texts, without ever needing to enter a PIN.

So, imagine the scene. Someone gets hold of your locked Android ]]></content:encoded></item><item><title>Coca-Cola halts Fairlife production across US after ransomware attack</title><description><![CDATA[Coca-Cola has paused production of Fairlife dairy products in the US after ransomware disrupted systems supporting manufacturing operations.]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/coca-cola-fairlife-ransomware-attack</link><guid isPermaLink="false">6a5a109e8beeea9658027dca</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Fri, 17 Jul 2026 11:24:41 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/anita-jankovic-c7PT4PZMcNA-unsplash.jpg" medium="image"/><content:encoded><![CDATA[Coca-Cola has paused production of Fairlife dairy products in the US after ransomware disrupted systems supporting manufacturing operations.]]></content:encoded></item><item><title>700-person scam empire brought down by Dutch police</title><description><![CDATA[Dutch police have dealt a major blow to an international investment fraud operation that allegedly employed more than 700 people, generated over €100 million in illicit revenue a month, and targeted victims in multiple countries through sophisticated fake investment platforms.

The investigation led to the arrest of several suspects, including a 46-year-old Israeli-Polish national described as a key figure in the organization. Authorities say the suspect was arrested while traveling from Dubai t]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/scam-empire-brought-down-dutch-police</link><guid isPermaLink="false">6a58cb788beeea9658027dab</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Scam]]></category><category><![CDATA[Finance]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Thu, 16 Jul 2026 12:20:18 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/scam-center.png" medium="image"/><content:encoded><![CDATA[Dutch police have dealt a major blow to an international investment fraud operation that allegedly employed more than 700 people, generated over €100 million in illicit revenue a month, and targeted victims in multiple countries through sophisticated fake investment platforms.

The investigation led to the arrest of several suspects, including a 46-year-old Israeli-Polish national described as a key figure in the organization. Authorities say the suspect was arrested while traveling from Dubai t]]></content:encoded></item><item><title>Qantas data breach started with a fake IT support call</title><description><![CDATA[A vishing attack on an overseas contact center exposed 5.67 million Qantas customer records in 2025, Australia’s privacy regulator says.]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/qantas-data-breach-vishing-scam</link><guid isPermaLink="false">6a58ad7f8beeea9658027d47</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><category><![CDATA[Scam]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Thu, 16 Jul 2026 10:10:28 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/towfiqu-barbhuiya-FnA5pAzqhMM-unsplash.jpg" medium="image"/><content:encoded><![CDATA[A vishing attack on an overseas contact center exposed 5.67 million Qantas customer records in 2025, Australia’s privacy regulator says.]]></content:encoded></item><item><title>Lidl warns customers after data breach</title><description><![CDATA[German retailer Lidl is notifying customers of a data breach after cybercriminals gained unauthorized access to customer information via one of its third-party service providers.


Key takeaways

 * Lidl has disclosed a data breach affecting customers of its online shop in Germany, Belgium, and the Netherlands after one of its IT service providers was compromised.
 * Stolen data includes customer identifiers and other account details. The retailer says customer accounts and its online shop syste]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/lidl-data-breach-2026</link><guid isPermaLink="false">6a579cf68beeea9658027cd3</guid><category><![CDATA[Data Breach]]></category><category><![CDATA[Industry News]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Wed, 15 Jul 2026 14:55:55 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/Lidl-warns-customers-after-data-breach.png" medium="image"/><content:encoded><![CDATA[German retailer Lidl is notifying customers of a data breach after cybercriminals gained unauthorized access to customer information via one of its third-party service providers.


Key takeaways

 * Lidl has disclosed a data breach affecting customers of its online shop in Germany, Belgium, and the Netherlands after one of its IT service providers was compromised.
 * Stolen data includes customer identifiers and other account details. The retailer says customer accounts and its online shop syste]]></content:encoded></item><item><title>US indicts three Russians accused of powering global cybercrime</title><description><![CDATA[A seven-year investigation has culminated in criminal charges against three Russian nationals accused of operating a "bulletproof hosting" network that enabled ransomware, phishing, malware, and other cybercriminal operations responsible for more than $62 million in victim losses.

The indictment, unsealed this week by the U.S. Department of Justice, alleges the defendants provided specialized internet infrastructure to help cybercriminals avoid detection and remain online despite repeated compl]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/russian-bulletproof-hosting-global-cybercrime</link><guid isPermaLink="false">6a5792418beeea9658027cb6</guid><category><![CDATA[Industry News]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Wed, 15 Jul 2026 14:04:54 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/russians-bulletproof-hosting-header.png" medium="image"/><content:encoded><![CDATA[A seven-year investigation has culminated in criminal charges against three Russian nationals accused of operating a "bulletproof hosting" network that enabled ransomware, phishing, malware, and other cybercriminal operations responsible for more than $62 million in victim losses.

The indictment, unsealed this week by the U.S. Department of Justice, alleges the defendants provided specialized internet infrastructure to help cybercriminals avoid detection and remain online despite repeated compl]]></content:encoded></item><item><title>The ransomware negotiator who was working for the other side</title><description><![CDATA[When a company falls victim to a ransomware attack, it is not uncommon for it to turn to experts for help.

Specialist ransomware negotiation firms handle communications with criminal gangs on a victim's behalf. They know how the ransomware gangs operate, how to buy time, and how to push back on extortionate demands. They can help manage the technical side of any payment if needed, and help a corporate victim assess whether decryptors actually work.

What victims don't expect is that their trust]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/ransomware-negotiator-working-other-side</link><guid isPermaLink="false">6a5529808beeea9658027b77</guid><category><![CDATA[Industry News]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Mon, 13 Jul 2026 18:10:06 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/ransom-betrayal.jpeg" medium="image"/><content:encoded><![CDATA[When a company falls victim to a ransomware attack, it is not uncommon for it to turn to experts for help.

Specialist ransomware negotiation firms handle communications with criminal gangs on a victim's behalf. They know how the ransomware gangs operate, how to buy time, and how to push back on extortionate demands. They can help manage the technical side of any payment if needed, and help a corporate victim assess whether decryptors actually work.

What victims don't expect is that their trust]]></content:encoded></item></channel>
        </rss>