Feed aggregator

Is New 'Wednesday' Footage Coming? Netflix Tudum Teases Peek in New Trailer

CNET Feed - Mon, 04/28/2025 - 9:00am
Plus, Happy Gilmore makes his triumphant return.
Categories: CNET

Employee monitoring app exposes users, leaks 21+ million screenshots

Malware Bytes Security - Mon, 04/28/2025 - 8:53am

Unfortunately, spyware apps with poor reputations and even weaker security practices are all too common.

I’ve lost count of how many blogs I’ve written about stalkerware-type apps that not only exposed the people they spied on but also ended up exposing the spies themselves.

However, perhaps one would expect an employee monitoring app to be of a higher standard. Not in this case.

Cybernews recently uncovered that employee monitoring app WorkComposer left over 21 million images exposed in an unsecured Amazon AWS S3 bucket. These images show a frame-by-frame activity log of remote workers.

This is not just bad news for those remote workers, it could be even worse for the WorkComposer customers that can see internal communications, confidential business documents, and log in pages exposed to anyone that stumbled over the unprotected bucket.

An S3 bucket is like a virtual file folder in the cloud where you can store various types of data, such as text files, images, videos, and more. There is no limit to the amount of data you can store in an S3 bucket, and individual instances can be up to 5 TB in size.

The WorkComposer software logs keystrokes, tracks how long an employee spends on each app, and records desktop screenshots every few minutes. This means those 21 million images could reveal everything from work processes to employees’ private information.

Although there are no indications that cybercriminals gained access to the same bucket, WorkComposer has failed to respond to any notifications and queries. It did secure the access after being notified, but did not provide any comments.

This incident echoes a previous Cybernews investigation that found WebWork, another remote team tracker, leaked over 13 million screenshots containing emails, passwords, and other sensitive work data.

What to do if your employer used WorkComposer

There are some actions you can take if you are, or suspect you may have been monitored by WorkComposer.

  • Change the passwords that may have been seen. You can make a stolen password useless to thieves by changing it. Choose a strong password that you don’t use for anything else. Better yet, let a password manager choose one for you.
  • Enable two-factor authentication (2FA). If you can, use a FIDO2-compliant hardware key, laptop or phone as your second factor. Some forms of two-factor authentication (2FA) can be phished just as easily as a password. 2FA that relies on a FIDO2 device can’t be phished.
  • Watch out for phishing attacks. Cybercriminals may use the information to craft convincing phishing emails, SMS, or messages pretending to be from trusted sources. Do not click on suspicious links or respond to unexpected messages requesting personal or work information.
  • Set up identity monitoring. Identity monitoring alerts you if your personal information is found being traded illegally online, and helps you recover after.
  • Report suspicious activity. If you notice any suspicious emails, messages, or unauthorized access attempts, report them immediately to your IT department or manager. Early reporting can help contain potential damage and prevent further breaches.

We don’t just report on threats – we help safeguard your entire digital identity

Cybersecurity risks should never spread beyond a headline. Protect your—and your family’s—personal information by using identity protection.

Categories: Malware Bytes

8 ways to protect your privacy on Linux and keep your data safe

ZDNet Security - Mon, 04/28/2025 - 8:44am
Using Linux is a good start - but it is not enough. These easy privacy tricks could mean the difference between secure and sorry.
Categories: ZDNet Security

Artificial intelligence has the potential to boost the UK economy, but people need training and assurances that their jobs are not going to be disrupted

Computer Weekly Feed - Mon, 04/28/2025 - 8:31am
Artificial intelligence has the potential to boost the UK economy, but people need training and assurances that their jobs are not going to be disrupted
Categories: Computer Weekly

Fujihack Doom Port (2023)

Hacker News - Mon, 04/28/2025 - 8:28am

Article URL: https://fujihack.org/doom.html

Comments URL: https://news.ycombinator.com/item?id=43820723

Points: 1

# Comments: 0

Categories: Hacker News

Show HN: I built a meal planning app for busy parents

Hacker News - Mon, 04/28/2025 - 8:24am

Hi all,

I’m a parent and meal planning for my kids always felt overwhelming. I built a web app that would let me create profiles for my children, plan their meals, put their meal preferences, recipes, export the plan to my calendar, and share links to the timetable with others, and of course an AI helping with the plan and recipe . For now it has a free plan and also paid plan with more functionalities. I hoped it would be helpful for other parents. So i shared it with some family and friends. I would really appreciate your feedback.

Thanks

Comments URL: https://news.ycombinator.com/item?id=43820687

Points: 1

# Comments: 0

Categories: Hacker News

Defensive Pessimism

Hacker News - Mon, 04/28/2025 - 8:24am
Categories: Hacker News

4 Million Affected by VeriSource Data Breach

Security Week - Mon, 04/28/2025 - 8:23am

VeriSource Services says the personal information of 4 million people was compromised in a February 2024 cyberattack.

The post 4 Million Affected by VeriSource Data Breach appeared first on SecurityWeek.

Categories: SecurityWeek

Local file sharing in your web browser

Hacker News - Mon, 04/28/2025 - 8:22am

Article URL: https://pairdrop.net/

Comments URL: https://news.ycombinator.com/item?id=43820664

Points: 1

# Comments: 0

Categories: Hacker News

Show HN: Imagegen MCP Server

Hacker News - Mon, 04/28/2025 - 8:19am

I created a MCP server for using OpenAI's imagegen.

Comments URL: https://news.ycombinator.com/item?id=43820631

Points: 1

# Comments: 0

Categories: Hacker News

Pages