It’s been a dense week for security news, ranging from nation-state phishing campaigns to a fresh crop of ICS advisories, plus some policy shifts worth watching on both sides of the Atlantic. As always, we start with the ritual: Bruce Schneier’s Friday Squid Blogging post, this time noting a lower Illex catch in the Falklands. It’s also an open thread for whatever security stories didn’t make his cut — which, given the volume below, is understandable.
On the policy front, new UK PM Andy Burnham is opting for continuity over shake-up, retaining Liz Lloyd in her cyber policy role even after dissolving the ministry that housed it. It’s a small but telling signal that Whitehall wants stability in cyber governance regardless of who’s steering the ship — and a reminder that personnel often matters more than org charts.
Cryptocurrency’s physical-world risk is rising fast: researchers are tracking a surge in “wrench attacks” — home invasions and kidnappings targeting crypto holders. As digital assets become more liquid and traceable on-chain wealth becomes a known target, the threat model for holders is shifting from purely technical to distinctly physical, and self-custody advice needs to catch up.
Schneier and Barath Raghavan’s essay proposes a clever new benchmark idea: the “Genie coefficient”, measuring not what an AI can do but whether it does what you actually meant. As AI systems get delegated more autonomy, the gap between literal instruction and intended outcome is exactly where things go wrong — this is a useful framing for an underserved corner of AI safety evaluation.
Russia’s Laundry Bear group is having a moment. Both The Record and a joint international advisory from CISA detail a zero-click phishing technique used against Zimbra Collaboration Suite webmail accounts worldwide since mid-2025. Zero-click exploitation of widely deployed collaboration software is a high-value tactic precisely because it sidesteps user awareness training entirely — patching and monitoring are the only real defenses here.
The State Department is turning to a less technical lever against cybercrime: visa restrictions. Secretary Rubio’s new policy targets individuals tied to transnational scam operations, an acknowledgment that many of these networks rely on human trafficking and forced labor as much as technical infrastructure — immigration policy as a cybercrime deterrent is an interesting, if untested, tool.
Origin Energy, one of Australia’s largest utilities, is the latest major services provider to confirm a customer data breach, still working out the scope. Energy providers sit at an uncomfortable intersection of consumer PII and critical infrastructure,
Leave a Reply