2026.01.06 News You Should Know

- 2 mins read

Series: News You Should Know

Crims punish Wired subscribers by publishing personal info • The Register - The current leak is centered around readers of Wired magazine. The miscreants published 2.3 million emails, which had the names of 285,000 subscribers, 108,000 home addresses, and 32,000 phone numbers.

Have I Been Pwned: Check if your email address has been exposed in a data breach - Use this. Sign up your family. Use unique passwords in a password manager.

New York’s incoming mayor bans Raspberry Pi at inauguration • The Register - Classic story of misunderstanding scary tech?

You’re invited to the 2026 Inauguration of a New Era - What Should I Wear and What Should I Bring?

Threat Research: PHALT#BLYX: Fake BSODs and Trusted Build Tools - Securonix - Hotel Staff tricked by ClickFix’d Blue Screens on Windows

You’ve been targeted by government spyware. Now what? | TechCrunch - Get Help!

California residents can use new tool to demand brokers delete their personal data | TechCrunch - CA Residents have had the right to demand that a company stop collecting and selling their data since 2020, doing so required a laborious process of opting out with each individual company. The Delete Act, passed in 2023, was supposed to simplify things, allowing residents to make a single request that more than 500 registered data brokers delete their information. Brokers are supposed to start processing requests in August 2026 The nation’s strictest privacy law just took effect, to data brokers’ chagrin - Ars Technica

U.S. Treasury Lifts Sanctions on Three Individuals Linked to Intellexa and Predator Spyware - Hamou was sanctioned by OFAC in March 2024, and Harpaz and Gambazzi were targeted in September 2024 in connection with developing, operating, and distributing Predator. The Treasury’s press release does not give any reason as to why they were removed from the list.

New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands -  authenticated attacker to execute arbitrary system commands on the underlying host.

Romanian energy provider hit by Gentlemen ransomware attack

Hacktivist deletes white supremacist websites live onstage during hacker conference | TechCrunch -

I’m an experienced home cook, security engineer, people leader, and dedicated father and husband. I can be found on Mastodon at @IAintShootinMis@DigitalDarkAge.cc and on Signal at DigitalDarkAge.98. An RSS Feed of this blog is available here and a copy of my current OPML file is here.