Browser-in-the-browser attacks: from theory to reality
A browser-in-the-browser attack, theoretically described in 2022, has been adopted in real-world phishing. We break down how it works, and how to spot a fake authentication window.
130 articles
A browser-in-the-browser attack, theoretically described in 2022, has been adopted in real-world phishing. We break down how it works, and how to spot a fake authentication window.
Which social networks mostly just display your posts to your friends, and which ones use them for AI training and ad targeting? We explore the 2025 privacy rankings for popular social media platforms.
Which messaging apps leak the least amount of your data, and provide the most control over your privacy? Today we discuss the latest rankings of popular communication platforms.
Deepfake videos, fraudulent Instagram and Facebook accounts, private WhatsApp chats: how Mark Zuckerberg’s social media platforms have become a primary tool for investment scammers.
A look at how Apple’s new child protection features work, what their limitations are, and why you still can’t do without third-party solutions.
Counterfeit smartphones imitating well-known brands and offered online come pre-installed with the powerful Triada Trojan.
In the wake of Google and Facebook, Mozilla has introduced its own technology for replacing third-party cookies: let’s take a look at how privacy-preserving attribution works.
Training AI requires a colossal amount of data. Meta seems to have found a “brilliant” solution — using the personal data of its own users.
Cybercriminals are using genuine Facebook infrastructure to send phishing emails threatening to block accounts.
Facebook now collects your link history and uses it to show targeted ads. Here’s how to disable this “handy” feature.
How attackers use infected archives and malicious browser extensions to steal Facebook Business accounts.
Discussing privacy in Threads, and whether you should sign up to Zuckerberg’s Twitter clone.
Remembering 2021’s most interesting infosec events — in memes and tweets.
Jeff and Dave discuss Facebook and COVID-19, the latest on the Microsoft Exchange vulnerabilities, deepfakes, and more.
Jeff and Dave discuss fines for Facebook and TikTok, HR during the pandemic, and more.
What to do if you receive a notification about a suspicious login to your Facebook or Instagram account.
Jeff and Dave discuss Clubhouse and security issues as well as the latest in the battle between Australia and Facebook.
Facebook lets you manage the data it collects from third-party websites and apps. Here’s how.
Jeff and Dave discuss some interesting Facebook ads, Nancy Pelosi’s still-missing laptop, Emotet’s takedown, and more.
If you receive a message saying your Facebook account has been blocked for copyright violation, don’t panic. It’s most likely just another phishing scam.
Jeff and Dave discuss Bitcoin value ($20K!), creepy Microsoft patents, yet another ransomware case, and more.