Geek-Guy.com

Tag: when

Apple, the storage company

When it comes to hardware and services revenues, storage is Apple’s secret spell. Not only has iCloud storage become Apple’s most frequently paid-for service, but people are more often purchasing additional storage when acquiring new Apple hardware. This is good business for the company and all it had to do to build that business was…

PayPal launches latest struggle to get rid of SMS for MFA

When PayPal started emailing customers this month that it was backing off unencrypted SMS for multifactor authentication (MFA) at login, it came with the typical approach-avoidance asterisk. The financial services giant signaled that it was turning the page on the much-maligned authentication method while simultaneously offering no timeline and assuring customers SMS wouldn’t entirely go…

Applying green energy tax policies to improve cybersecurity

For years, governments have focused only on the stick of compliance when they could leverage the carrot of tax incentives. Theoretically, compliance fines and penalties should act as a deterrent that improves accountability and reduces data breaches. However, many vendors often assume compliance risk rather than securing data effectively. For example, Meta has been the…

The era of the Digital Parasite: Why stealth has replaced ransomware

For years, ransomware encryption functioned as the industry’s alarm bell. When systems locked up, defenders knew an attack had occurred. Not anymore. New empirical data show that attackers are actively dismantling that signal. According to Picus Security’s Red Report 2026, adversaries are no longer optimizing for disruption; they’re optimizing for residency. Based on a thorough…

Keenadu: Android malware that comes preinstalled and can’t be removed by users

There’s too little a user can do when hit with a complex Android malware that comes preinstalled on their new smartphone or tablet. Security researchers at Kaspersky have flagged a multifaceted Android malware dubbed Keenadu that can ship preinstalled via device firmware, compromising users before they even complete setup. “Keenadu serves as a reminder that…

A new approach for GenAI risk protection

When generative AI (GenAI) hit the consumer market with the release of OpenAI’s ChatGPT, users worldwide flocked to the product and started experimenting with the tool’s capabilities across industries. The release also sent an instant panic through the hearts of information security professionals whose job is to protect organizations from risks, including the loss or…

CloudBolt Study: 86% of VMware Users Trim Usage Post-Broadcom

When Broadcom acquired VMware in 2023, many IT leaders braced for impact. Two years later, the crash some predicted hasn’t happened, but the slow restructuring of enterprise IT is very real. CloudBolt research shows longer-term shifting strategies around VMware That’s the key takeaway from new January 2026 research by CloudBolt Software, which surveyed 302 North…

Why key management becomes the weakest link in a post-quantum and AI-driven security world

When people talk about cryptography, they usually talk about algorithms. RSA versus ECC. Classical versus post quantum. Encryption strength measured in bits and curves. In practice, none of that matters unless keys are created, stored, rotated and retired correctly. Key management is the discipline that governs the entire lifecycle of cryptographic keys, from generation to…

Telstra’s Spectrum Warning: The Real Cost of Policy Trade-Offs

When Telstra talks about “cost trade-offs,” it’s not idle commentary. It’s a signal to regulators, policymakers – and consumers. The telco’s latest comments around spectrum licence obligations, administered by the Australian Communications and Media Authority (ACMA), have reignited a familiar debate: how do you balance public interest requirements with the commercial realities of building and…

Telstra’s Spectrum Warning: The Real Cost of Policy Trade-Offs

When Telstra talks about “cost trade-offs,” it’s not idle commentary. It’s a signal to regulators, policymakers – and consumers. The telco’s latest comments around spectrum licence obligations, administered by the Australian Communications and Media Authority (ACMA), have reignited a familiar debate: how do you balance public interest requirements with the commercial realities of building and…

Global Group ransomware gang running new campaign using Windows shortcut files

When Microsoft patched a vulnerability last summer that allowed threat actors to use Windows’ shortcut (.lnk) files in exploits, defenders might have hoped use of this tactic would decline. They were wrong. According to researchers at Forcepoint, a new high-volume phishing campaign spreading the Global Group ransomware has been detected that hopes to sucker employees…

Anthropic’s DXT poses “critical RCE vulnerability” by running with full system privileges

When LayerX Security published a report on Monday describing what it called “a critical zero-click RCE vulnerability in [Anthropic’s] Claude Desktop Extensions (DXT) that allows a malicious Google Calendar invite to silently compromise an entire system,” analysts, consultants, security leaders, and even Anthropic didn’t dispute the facts.  But the revelation did reignite the debate about…

How the EU’s trade ‘bazooka’ could hit the US tech sector

When the Trump Administration threatened tariffs last month against countries looking to block any plan to annex Greenland, European leaders debated responding with the region’s trade “bazooka” – a retaliation mechanism that could target US tech firms selling into the European Union.  The anti-coercion instrument, introduced in 2023 and so far unused, is designed to deter…

Hundreds of Malicious Skills Found in OpenClaw’s ClawHub

A routine question about trust exposed a far more serious problem when researchers discovered hundreds of malicious skills hidden inside a widely used AI agent marketplace.  Koi researchers analyzed ClawHub, the third-party skill repository for OpenClaw, and found that threat actors had quietly turned the ecosystem into a large-scale malware distribution channel. We found “……

HP’s ExtendXR Service Gets an Early Lead on a Looming Metaverse Problem

When it comes to technological breakthroughs, we’re often well into the deployment of the new technology before anyone figures out we need to manage all aspects of it. The metaverse will likely prove to be no exception. The metaverse uses existing servers and workstations, which already have a variety of management tools used to manage…