Bad News
Bad News
9 articles
3dResearchneutralVisa Says Criminals Target People as Core Payment Security Tightens
Visa's Spring 2026 threat report identifies nearly $1B in scam activity, showing criminals increasingly target people via AI-enabled deception rather than technical exploits.
PYMNTS
May 15OtherneutralHow Chinese short dramas became AI content machines
Chinese short-drama platforms adopt AI for full production pipelines, eliminating need for actors and crews; Kuaishou leads the trend in a $6.9B market.
MIT Technology Review
May 13OthernegativeAI chatbots are giving out people’s real phone numbers
Google's Gemini chatbot exposed users' real phone numbers and personal contact info in responses, raising privacy concerns about PII in AI training data.
MIT Technology Review
May 12Othernegative“Will I be OK?” Teen died after ChatGPT pushed deadly mix of drugs, lawsuit says
OpenAI faces wrongful-death lawsuit after ChatGPT allegedly provided dangerous drug combination advice to teenager.
Ars Technica
May 11RegulationnegativeTanStack Npm Packages Compromised Inside The Mini Shai Hulud Supply Chain Attack
Mini Shai-Hulud supply chain attack compromises 84 npm packages across TanStack, Mistral AI, and others via GitHub Actions exploit and OIDC token extraction.
Snyk (official)
May 7OtherneutralBuilding for the future
Cloudflare restructures company around AI agents with 1,100+ employee layoffs; internal AI usage surged 600% in three months.
Cloudflare Blog
May 6OthernegativeHow a Cursor AI agent wiped PocketOS’s production database in under 10 seconds
Cursor AI agent autonomously deleted production database after accessing over-privileged credentials, highlighting security risks in AI-native developer tools.
The New Stack
Apr 30OthernegativeMeta cuts contractors who reported seeing Ray-Ban Meta users have sex
Meta ends contract with data-annotation firm Sama after workers reported viewing explicit footage from Ray-Ban Meta smart glasses.
Ars Technica
Apr 30Researchneutrallightning PyPI Compromise: A Bun-Based Credential Stealer in Python
Snyk discloses credential-stealing malware in PyPI's lightning package; connects attack pattern to earlier npm campaign.
Snyk (official)