5G is coming, and while it'll be more secure than 4G it's still not perfect. Chrome will check your passwords to make sure they're not already in some data breach somewhere. And set aside some time to read this tale of an Army veteran who thought he found romance on a dating site—but ran into a terrifying scam instead .
15 Months of Fresh Hell Inside Facebook
And there's still more. Every Saturday we round up the security and privacy stories that we didn’t break or report on in-depth but think you should know about nonetheless. Click on the headlines to read them, and stay safe out there.
Facebook Finally Stops Using Your Two-Factor Phone Number For Friend SuggestionsFor far too long, if you provided Facebook with a phone number for two-factor authentication, the company turned around and used it to serve you targeted ads and present you with people you might know. It's the sort of duplicitous, privacy-disregarding behavior that earned the company a $5 billion FTC fine. But while Zuck and company quit using 2FA numbers to feed its ad machine in the summer, it took until this week to announce that it would do the same with friend-finding. Even now, though, the change won't roll out globally until next year. More annoying still, according to Reuters, to uncouple your 2FA number from Facebook's friend-connections, you need to delete and then enter it once more. Or maybe go ahead and delete your Facebook account altogether , just a thought!
Wawa Stores Were Infected With Point-of-Sale MalwareBad news, fans of hoagies and slightly stale soft pretzels in and around Pennsylvania: Convenience store chain Wawa on Friday revealed that its point-of-sale servers had been infected with malware that stole credit card information, potentially affecting all 700 of its stores across five states. The malware had been present on Wawa's systems as early as March, but was only discovered on December 10. The company assures customers that debit card PINs, credit card CVV2 codes and ATMs at the stores weren't affected, but it's nonetheless offering credit monitoring to affected customers.
Also on Friday, Business Insider reported that years of Zuckerberg’s public writings had mysteriously disappeared, “obscuring details about core moments in Facebook’s history.” The missing trove included everything the CEO wrote in both 2007 and 2008, as well as more recent announcements, like the blog post Zuckerberg penned in 2012 when Facebook acquired Instagram.
How A Single Hacker's DDoS Attack Took Liberia OfflineBloomberg this week told the in-depth story of a young Israeli hacker named Daniel Kaye, also known by his handle Spdrman, who launched a record-setting cyberattack that took down the largest telecommunications network in Libera. In the fall of 2016, Kaye's distributed denial of service attacks launched gargantuan waves of junk traffic from his botnet of half a million hijacked internet-connected security cameras, one of several botnets known as Mirai, at the Liberian telecom network Lonestar. Kaye had been hired by the CEO of one of Lonestar's competitors, Avishai Marziano. The attack knocked 1.5 million Liberians off the internet, about a third of the country's population, including its largest hospital and infectious disease specialists dealing with the aftermath of the Ebola outbreak that had hit the country the year before. At other points, Kaye allegedly rented out parts of its botnet to other hackers who used it for attacks on banks and gaming rivals. Kaye was arrested by British police in February of 2017 while trying to board a flight to Cyprus, and was later given a 32-month prison sentence.
The New York Times Used App Location Data To Track the PresidentThe New York Times Opinions desk this week revealed that it had obtained a massive cache of location data that included 50 billion"pings"representing the detailed locations of 12 million Americans, as captured by their smartphones as they move about their daily lives. The Times declined to reveal the source of that data, saying only that it was a firm that collects location data on Americans, and that such data is captured by programs as seemingly harmless as weather apps and coupon savers. The Times then went on to demonstrate the application of that data for targeted surveillance, showing that it could track the detailed whereabouts of a Secret Service agent accompanying President Trump, following him to Mar-a-lago and a round of golf the president played with Japan's Prime Minister Shinzo Abe. To drive the point home, the Times also published obscured location patterns of other officials including a Pentagon staffer and a senator's advisor.
A Russian Spy Ship Is Getting Reckless Off the US CoastRussian spy ships hanging out near the US is surprisingly common. But US officials told CNN this week that the Viktor Leonov was acting in an "unsafe manner" and engaging in "erratic maneuvers," which are generally not words you want to hear in association with a nearby spy ship from a hostile nation.
- The mad scientist who wrote the book on how to hunt hackers
- Why Ring doorbells perfectly exemplify the IoT security crisis
- Bing Maps make the revived Flight Simulator eerily realistic
- Diss tech Buddhists all you want—but read this book first
- A remote Tanzanian village logs onto the internet
- 👁 Will AI as a field "hit the wall" soon ? Plus, the latest news on artificial intelligence
- ✨ Optimize your home life with our Gear team’s best picks, from robot vacuums to affordable mattresses to smart speakers .