Security through obscurity is dead, and AI delivered the fatal blow
This one is for all the people who buy a router, set it up according to the default settings, and never look at it again. Unfortunately, default settings aren't really optimized to keep us safe and secure. Instead, they're designed to make the product work out-of-the-box for as many people as possible.



As someone who is very fond of my smart home setup, I’ll be the first to admit that a lot of it is surplus to requirements. Rarely would I recommend everyone install color-changing bulbs or relinquish control of the HVAC to just a smartphone app or a Home Assistant integration.

Samsung has ended guaranteed security updates for the Galaxy Z Fold 3 and Z Flip 3. Here’s what owners should know and whether it’s time to upgrade.
The post Samsung Ends Galaxy Z Fold 3 and Flip 3 Updates: Is It Time to Upgrade? appeared first on TechRepublic.
Nothing OS 5 leaves three phones without Android 17. See which Nothing devices are affected, what support remains, and whether owners should upgrade.
The post Nothing OS 5 Ends Support for Three Phones: What Owners Should Do Next appeared first on TechRepublic.
See what you missed in Daily Tech Insider from Sept. 7–11.
The post AI Agents, Foldables, Cyberthreats, and Chip Deals Define This Week in Tech appeared first on TechRepublic.
Any time I recommend software to a friend, there is always an inevitable question: How much does it cost? The quality isn't necessarily the discerning factor—no one wants to pay for something if it isn't necessary. That makes free, open-source tools very easy to recommend to most people without a moment's hesitation.

PaperCut flaws were exploited across 440 servers using hundreds of AI agents. Learn which versions are affected and what security teams should do now.
The post AI Agents Help Hackers Compromise 440 PaperCut Servers appeared first on TechRepublic.
Anthropic says researchers used Claude for biological work that could support weapons development, exposing new challenges for AI safeguards.
The post Anthropic Says Claude Used in Possible Bioweapon Research appeared first on TechRepublic.
ENISA has gained access to Anthropic’s Mythos 5, giving EU officials a chance to independently test the cyber AI after months of negotiations.
The post EU Gets Access to Anthropic Cyber AI — But Not Its Newest Model appeared first on TechRepublic.
Thailand’s Cloud Security Standard took effect Sept. 10, 2026, raising compliance requirements for government, CII organizations, and cloud providers.
The post Thailand’s Cloud Security Standard Is Now in Force: What Providers and CII Operators Must Review appeared first on TechRepublic.
Anthropic said it stopped multiple attempts by scientists this year to use its technology for research that could help develop biological weapons, as experts increasingly fear the threat that AI poses to public safety.
The startup gave five examples of times actors “circumvented controls” and made other efforts to “obfuscate” the purpose of their research to dodge safeguards. The cases involved some users in nations that it prohibits from accessing its models, which include Russia, China, and Iran.
“We hope that by sharing these examples, we spark a conversation within the AI industry and with governments about emerging biological risks and how best to counter them,” Anthropic said in a report about efforts to use its models for malicious activity.


© Getty Images | picture alliance
It wasn’t that long ago that ClickFix attacks were exotic. Now the technique has become mainstream as attackers reap its simplicity and effectiveness in infecting users of PCs and Macs alike. All that’s required is a compromised website—a painless enough task—a fake CAPTCHA overlay, and the inclusion of a single terminal command. So many visitors get suckered into pasting and running the command that just about every malware pusher has adopted the technique. Even Kremlin-backed hacking groups are joining in.
“Reddit is becoming post after post after post of people getting their computer infected via ClickFix,” independent researcher Kevin Beaumont observed Thursday. “Legit websites everywhere [are] getting hacked to serve the fake captcha prompts.”
More seasoned Internet users—a fair number who read this site—are quick to dismiss the attack. They typically blame the people who fall for the scams and marvel at their gullibility and lack of attention. The reality is that for more casual users, using computers and the Internet has become so difficult—think impossible-to-close interstitials, CAPTCHAs with an endless series of pictures to analyze, and constantly changing interfaces that bury the features they’re looking for—that they have grown desensitized to instructions that seem ridiculous and burdensome.


© Getty Images