Sign in

Schneier on Security

@schneier.com
1.4K followers 1 following 575 posts

An automated feed of posts from Bruce Schneier's blog. www.schneier.com

PostsRepliesMedia
Schneier on Security @schneier.com · 6h
I Want Better Reporting on AI Genie Behavior AI systems are regularly completing tasks in ways that their prompters don't want or intend. Some of them are disturbing, and some of them are dangerous.... www.schneier.com/blog/archives/2026…
schneier.com
I Want Better Reporting on AI Genie Behavior
AI systems are regularly completing tasks in ways that their prompters don't want or intend. Some of them are disturbing, and some of them are dangerous. This is something I've been calling "genie behavior," because I think that really gets at the core of what's happening. I wish the popular press would report on this better. I don't like the "going rogue" framing because it deflects the responsibility from the prompters -- often the AI companies themselves.
172
Schneier on Security @schneier.com · 29/09/2026
Using Device Linking to Eavesdrop on WhatsApp and Signal Modern messaging apps allow users to link their phone accounts to their computer desktop. Eavesdroppers are…... www.schneier.com/blog/archives/2026…
schneier.com
Using Device Linking to Eavesdrop on WhatsApp and Signal
Modern messaging apps allow users to link their phone accounts to their computer desktop. Eavesdroppers are taking advantage of this capability: Apps such as WhatsApp Web and Signal Desktop allow people to use their accounts on other devices, such as laptops or desktop computers. Germany's Customs Office has been using these features to connect a police-controlled computer to a suspect's account.
163
Schneier on Security @schneier.com · 28/09/2026
New Attack Against RSA ArsTechnica is reporting on a "new" attack against RSA, one that bypasses factoring. First, this attack isn't new.... www.schneier.com/blog/archives/2026…
schneier.com
New Attack Against RSA
ArsTechnica is reporting on a "new" attack against RSA, one that bypasses factoring. First, this attack isn't new. The original research is from 2007. What is new is the implementation. Second, it is a forgery attack. It allows an attacker to forge digital signatures. It does not recover the private key from the public key. Third, the attack only works against pure signatures.
062
Schneier on Security @schneier.com · 25/09/2026
Friday Squid Blogging: Participatory Squid Dissection in October in Tennessee I feel like someone who reads this blog will want to go to this: Families are invited to… www.schneier.com/blog/archives/2026…
schneier.com
Friday Squid Blogging: Participatory Squid Dissection in October in Tennessee
I feel like someone who reads this blog will want to go to this: Families are invited to dive into the fascinating world of marine biology during an exciting, hands-on Family Squid Dissection at the Hands-On Science Center. Designed for curious learners of all ages, this unique experience combines an interactive lesson with the opportunity to explore the anatomy and adaptations of real ocean life.
021
Schneier on Security @schneier.com · 25/09/2026
On Anthropic’s AI Misuse Report Earlier this month, Anthropic published a long report detailing all of the Claude misuses it detected. Daniel Meissler usefully…... www.schneier.com/blog/archives/2026…
schneier.com
On Anthropic’s AI Misuse Report
Earlier this month, Anthropic published a long report detailing all of the Claude misuses it detected. Daniel Meissler usefully summarized the report into 117 findings. A few of the highlights: AI agents increasingly handled reconnaissance, exploitation, data theft, propaganda production, surveillance workflows, and research while humans selected targets, set goals, and reviewed important outputs. The report describes attackers using AI to industrialize credential theft, cloud compromise, phishing, vulnerability research, and the extraction of sensitive data from downstream organizations.
081
Schneier on Security @schneier.com · 24/09/2026
Malicious npm Packages That Evade Defenses This is an impressive piece of malware. Its sophistication says nation-state to me, but there is no direct evidence and certainly no attribution. www.schneier.com/blog/archives/2026…
schneier.com
Malicious npm Packages That Evade Defenses
This is an impressive piece of malware. Its sophistication says nation-state to me, but there is no direct evidence and certainly no attribution.
062
Schneier on Security @schneier.com · 23/09/2026
Research on Models Engaging in Genie-Like Behavior New paper: "Self-Jailbreaking: Language Models Can Reason Themselves Out of Safety Alignment After Benign Reasoning Training…... www.schneier.com/blog/archives/2026…
schneier.com
Research on Models Engaging in Genie-Like Behavior
New paper: "Self-Jailbreaking: Language Models Can Reason Themselves Out of Safety Alignment After Benign Reasoning Training." Abstract: We discover a novel and surprising phenomenon of unintentional misalignment in reasoning language models (RLMs), which we call self-jailbreaking. Specifically, after benign reasoning training on math or code domains, RLMs will use multiple strategies to circumvent their own safety guardrails. One strategy is to introduce benign assumptions about users and scenarios to justify fulfilling harmful requests.
052
Schneier on Security @schneier.com · 22/09/2026
GPT-6 Astra Breaks an Old Enigma Message This is pretty amazing: However, the most astonishing thing about this break is that the GPT­6 Astra did it entirely on its own.... www.schneier.com/blog/archives/2026…
schneier.com
GPT-6 Astra Breaks an Old Enigma Message
This is pretty amazing: However, the most astonishing thing about this break is that the GPT­6 Astra did it entirely on its own. Carter Leffer only directed GPT­6 Astra to see if it could break any of the unbroken Enigma messages published on the Crypto Cellar Research web page. After analysing the unbroken messages on the website, it decided that the most promising message was Nr.
1102
Schneier on Security @schneier.com · 21/09/2026
Reverse-Engineering Flock Cameras Hackers captured a Flock camera and got a look (alternate link) at the software: While much of the automatic license plate reader's (ALPR) most sensitive storage remained… www.schneier.com/blog/archives/2026…
schneier.com
Reverse-Engineering Flock Cameras
Hackers captured a Flock camera and got a look (alternate link) at the software: While much of the automatic license plate reader's (ALPR) most sensitive storage remained encrypted and inaccessible, the joint analysis of the recovered data shows that software running on the device explicitly detects people as well as vehicles, license plates, and bicycles. The camera can produce dozens of images of a single passing vehicle and, according to several weeks of recovered logs, generated more than a million images.
052
Schneier on Security @schneier.com · 18/09/2026
Friday Squid Blogging: On Squid Egg Sacs Short essay about squid egg sacs. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered. Blog moderation… www.schneier.com/blog/archives/2026…
schneier.com
Friday Squid Blogging: On Squid Egg Sacs
Short essay about squid egg sacs. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered. Blog moderation policy.
010
Schneier on Security @schneier.com · 18/09/2026
Are AIs Still Struggling with CAPTCHAs? Anthropic's recent security-incident document contains a bit about how CAPTCHAs are still frustrating Claude. In the transcript, the Claude model that is so powerful… www.schneier.com/blog/archives/2026…
schneier.com
Are AIs Still Struggling with CAPTCHAs?
Anthropic's recent security-incident document contains a bit about how CAPTCHAs are still frustrating Claude. In the transcript, the Claude model that is so powerful that Anthropic is gatekeeping access to it appeared to slam its virtual head against the wall solving a simple image identification test. In a test where the agent was asked to identify a shape that didn't match the others displayed, it couldn't even decide which image to select.
031
Schneier on Security @schneier.com · 17/09/2026
How Candidates Could Use AI for Good This essay was written with Nathan E. Sanders, and originally appeared in The Guardian. There are plenty of signs that AI will make all of our experiences of the US… www.schneier.com/blog/archives/2026…
schneier.com
How Candidates Could Use AI for Good
This essay was written with Nathan E. Sanders, and originally appeared in The Guardian. There are plenty of signs that AI will make all of our experiences of the US midterm elections worse. Voters have anxiety about AI's impacts on the country. Politicos are using AI deepfakes to spread lies. The White House is posting slopaganda. Meanwhile, candidates are missing a real opportunity to use AI to make campaigning better.
052
Schneier on Security @schneier.com · 16/09/2026
Fake CAPTCHA Scams New variant of an old scam: Use the framing of a CAPTCHA to get an unsuspecting user to download and run a malicious program. www.schneier.com/blog/archives/2026…
schneier.com
Fake CAPTCHA Scams
New variant of an old scam: Use the framing of a CAPTCHA to get an unsuspecting user to download and run a malicious program.
093
Schneier on Security @schneier.com · 15/09/2026
25 Years of Mass Surveillance Is Enough This essay was written with Cindy Cohn, and originally appeared in Lawfare. One of the many legacies of the terrorist attacks of Sept.... www.schneier.com/blog/archives/2026…
schneier.com
25 Years of Mass Surveillance Is Enough
This essay was written with Cindy Cohn, and originally appeared in Lawfare. One of the many legacies of the terrorist attacks of Sept. 11 is the government-wide shift from targeted surveillance—such as individual wiretaps or pen register/trap and trace orders—to mass surveillance techniques—such as tapping into the internet backbone or mass collection of telephone or internet metadata. The legal and technical architecture of modern mass surveillance, initially framed as a necessary defense against terrorist threats, has grown far beyond that justification and national security in general.
174
Schneier on Security @schneier.com · 15/09/2026
On the NSA’s Supercomputer from the 1960s Really interesting story about Harvest, a specialized code breaking computer built in the 1960s by IBM for the NSA. www.schneier.com/blog/archives/2026…
schneier.com
On the NSA’s Supercomputer from the 1960s
Really interesting story about Harvest, a specialized code breaking computer built in the 1960s by IBM for the NSA.
062
Schneier on Security @schneier.com · 14/09/2026
Upcoming Speaking Engagements This is a current list of where and when I am scheduled to speak: I’m speaking online (via Zoom) at a…... www.schneier.com/blog/archives/2026…
schneier.com
Upcoming Speaking Engagements
This is a current list of where and when I am scheduled to speak: I’m speaking online (via Zoom) at a League of Women Voters event on Tuesday, September 22, 2026 at 5 PM ET. I’m speaking at CanSecWest 2026 in Vancouver, Canada. The conference runs September 30–October 1, 2026; the time of my talk is TBD. I’m giving a talk on “
020
Schneier on Security @schneier.com · 14/09/2026
Using AI for Weapons Development Last week, Anthropic released a long and detailed document describing current misuses of their Claude models. I'm still reading it, but I wanted to flag this:... www.schneier.com/blog/archives/2026…
schneier.com
Using AI for Weapons Development
Last week, Anthropic released a long and detailed document describing current misuses of their Claude models. I'm still reading it, but I wanted to flag this: We identified a cell of threat actors based in northern Yemen running three weapons development programs: a guided rocket that used a commodity phone-class flight computer with final-phase homing guidance; a multi-stage ballistic missile with a stated range goal above 2,000 km; and a multi-variant missile (referred to as the "R2000" set) that included a hypersonic glide vehicle variant.
040
Schneier on Security @schneier.com · 14/09/2026
Microsoft’s Patching Once a month, Microsoft pushes a security update to all Windows users. Tomorrow's is a new record…... www.schneier.com/blog/archives/2026…
schneier.com
Microsoft’s Patching
Once a month, Microsoft pushes a security update to all Windows users. Tomorrow's is a new record: Microsoft's patch for September is a doozy, with a record number of roughly 972 vulnerabilities fixed and 112 of them meeting the high critical-severity threshold. It was only two months ago that Microsoft patched a then-record 570 vulnerabilities. Then, last month, Microsoft patched some 620 of them.
054
Schneier on Security @schneier.com · 12/09/2026
Rewiring Democracy (Paperback) NOTE: I'm teaching at the University of Toronto this school year, and will sign and ship books when I visit the US. Expect considerable delays. Copies will be signed by me only, not by Nathan Sanders. www.schneier.com/product/rewiring-d…
schneier.com
Rewiring Democracy (Paperback)
NOTE: I'm teaching at the University of Toronto this school year, and will sign and ship books when I visit the US. Expect considerable delays. Copies will be signed by me only, not by Nathan Sanders.
030
Schneier on Security @schneier.com · 11/09/2026
Friday Squid Blogging: Rotting Squid on a Beached California Boat Smells awful: But an estimated 30 to 50 tons of dead squid remain inside the boat's catch tank, where they have… www.schneier.com/blog/archives/2026…
schneier.com
Friday Squid Blogging: Rotting Squid on a Beached California Boat
Smells awful: But an estimated 30 to 50 tons of dead squid remain inside the boat's catch tank, where they have been decomposing for days. "That is nasty. I wouldn't want to do that," said commercial fisherman Dick Ogg of the Bodega Bay Fishermen's Marketing Association. Ogg said anyone familiar with the fishing industry understands what happens when a large catch sits for an extended period.
021
Schneier on Security @schneier.com · 11/09/2026
My Talk at DEF CON Last month, I gave a talk at DEF CON on AI hacking: what happens when AIs become hackers.... www.schneier.com/blog/archives/2026…
schneier.com
My Talk at DEF CON
Last month, I gave a talk at DEF CON on AI hacking: what happens when AIs become hackers. It's a combination of the potentialities I raised in my 2022 book A Hacker's Mind and the lessons we're learning from current AI models engaging in hacking behavior. I'm really proud of the talk, and the fact that it gained over 100K views on YouTube in just a few days. Also online is an interview with me in the AI Village.
053
Schneier on Security @schneier.com · 11/09/2026
Cliff Stoll’s DEF CON Talk In August, Cliff Stoll gave a talk at DEF CON, remembering the wily hacker he stalked forty years ago. Great fun. www.schneier.com/blog/archives/2026…
schneier.com
Cliff Stoll’s DEF CON Talk
In August, Cliff Stoll gave a talk at DEF CON, remembering the wily hacker he stalked forty years ago. Great fun.
151
Schneier on Security @schneier.com · 10/09/2026
AIs Compress Exploit Timeline Give an AI agent a mere rumor of an exploit, and it's enough for them to find it.... www.schneier.com/blog/archives/2026…
schneier.com
AIs Compress Exploit Timeline
Give an AI agent a mere rumor of an exploit, and it's enough for them to find it. What's worse, I found I could use my own agents to find the exploit just by knowing roughly what it was about and so could have been exploiting it well before the public patch was available! Given that just the rumour of a security issue seems enough to give attackers enough info to find new exploits, we're going to need to change the way we deal with security responses in open source.
192
Schneier on Security @schneier.com · 09/09/2026
Driver’s License Data for Sale A database of 153 million drivers licenses is for sale on the dark web. Brian Krebs has more detail. www.schneier.com/blog/archives/2026…
schneier.com
Driver’s License Data for Sale
A database of 153 million drivers licenses is for sale on the dark web. Brian Krebs has more detail.
122
Schneier on Security @schneier.com · 09/09/2026
Claude Fable Solves a Historical Cipher Claude Fable 5.1 solved a 370-year-old cipher in forty-four minutes. This tracks with what I wrote about AIs doing mathematics: It's good at things that involve lots… www.schneier.com/blog/archives/2026…
schneier.com
Claude Fable Solves a Historical Cipher
Claude Fable 5.1 solved a 370-year-old cipher in forty-four minutes. This tracks with what I wrote about AIs doing mathematics: It's good at things that involve lots of searching and testing.
051
Schneier on Security @schneier.com · 08/09/2026
AIs as Modern Genies This essay was written with Barath Raghavan, and originally appeared in Lawfare. In April, an artificial intelligence (AI) agent…... www.schneier.com/blog/archives/2026…
schneier.com
AIs as Modern Genies
This essay was written with Barath Raghavan, and originally appeared in Lawfare. In April, an artificial intelligence (AI) agent conducting a routine task at a company hit a snag, tried to solve it, and soon ended up deleting the company’s database along with all of its backups. In July, OpenAI asked an unreleased AI model to attempt a hacking test.
041
Schneier on Security @schneier.com · 08/09/2026
Stealing AI Reasoning Traces Interesting research: "Stealing Reasoning Traces from Proprietary LLM APIs": Abstract: Leading large language model providers now conceal their models' step-by-step reasoning, or… www.schneier.com/blog/archives/2026…
schneier.com
Stealing AI Reasoning Traces
Interesting research: "Stealing Reasoning Traces from Proprietary LLM APIs": Abstract: Leading large language model providers now conceal their models' step-by-step reasoning, or chain-of-thought, to protect intellectual property and limit information leakage. Rather than storing these traces server-side, providers return them to the client as blocks of encrypted text, which the client passes back with each subsequent request. Building on prior research, we identify an architectural vulnerability: these encrypted blocks are fully compatible and interchangeable across different sessions, users, and models within a provider's ecosystem.
033
Schneier on Security @schneier.com · 07/09/2026
Automobile Camouflage to Hide from Flock Cameras Not sure it's practical, but it's certainly striking. www.schneier.com/blog/archives/2026…
schneier.com
Automobile Camouflage to Hide from Flock Cameras
Not sure it's practical, but it's certainly striking.
033
Schneier on Security @schneier.com · 04/09/2026
Friday Squid Blogging: Squid on a Stick at the New York State Fair Looks tasty. As usual, you can also use this squid post to talk about the security stories in the news that I… www.schneier.com/blog/archives/2026…
schneier.com
Friday Squid Blogging: Squid on a Stick at the New York State Fair
Looks tasty. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered. Blog moderation policy.
021
Schneier on Security @schneier.com · 04/09/2026
Using a VM to Contain an AI Agent It won't work: My suspicion was that GPT 5.6-Cyber would succeed, but the frequency and manner of its success removed all doubt.... www.schneier.com/blog/archives/2026…
schneier.com
Using a VM to Contain an AI Agent
It won't work: My suspicion was that GPT 5.6-Cyber would succeed, but the frequency and manner of its success removed all doubt. We have to reassess sandboxing quality for capable AI agents, and in general the software stack with which they interact. An off-the-shelf VM is not enough to contain a modern, cyber-capable AI agent. There is simply too much attack surface. Even innocuous features (like running with a display) add extra, exploitable attack surface.
033
Schneier on Security @schneier.com · 04/09/2026
Security Vulnerability in a Voting System It's a vulnerability that allows someone to recover the order of ballots cast, newly exploited with AI tools.... www.schneier.com/blog/archives/2026…
schneier.com
Security Vulnerability in a Voting System
It's a vulnerability that allows someone to recover the order of ballots cast, newly exploited with AI tools. Nearly four years since the original vulnerability was disclosed, I was still able to use it to analyze voter behavior in Georgia (one of the 21 states that uses affected scanners) in the recent May 2026 primary. Notably, I never touched a voting machine, exploited a network, examined source code, or accessed anything non-public.
030
Schneier on Security @schneier.com · 04/09/2026
AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks We cannot forget that AI coding agents are not yet trustworthy: Researchers at a stealth… www.schneier.com/blog/archives/2026…
schneier.com
AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks
We cannot forget that AI coding agents are not yet trustworthy: Researchers at a stealth startup in Israel scanned 6,214 live domains belonging to defense contractors, Fortune 500, and Big Tech companies. Of the 8,265 llms.txt and llms-full.txt files they found (many sites hosted both an llms.txt and an llms-full.txt file), 120 of them, each on a different site, pointed to one or more code packages or domain names that weren't registered.
073
Schneier on Security @schneier.com · 03/09/2026
Researching Employment Scams Researchers built a fake company to study fake employee scams. www.schneier.com/blog/archives/2026…
schneier.com
Researching Employment Scams
Researchers built a fake company to study fake employee scams.
010
Schneier on Security @schneier.com · 02/09/2026
AI Agents Are Now Emailing Me with Their Security Concerns I received the two emails below earlier in the month. They're vaguely coherent. I suppose I shouldn't be surprised that the… www.schneier.com/blog/archives/2026…
schneier.com
AI Agents Are Now Emailing Me with Their Security Concerns
I received the two emails below earlier in the month. They're vaguely coherent. I suppose I shouldn't be surprised that the corpus that AIs are training on contain data suggesting that I am someone to write to with random computer and network security problems. After all, I observe that behavior in many humans as well. (Hi, humans. Glad you're still reading.)
040
Schneier on Security @schneier.com · 02/09/2026
Wireless Routers as Motion Detectors Comcast has added motion detection as a feature to its wireless routers: The feature sends push notifications to users when motion is detected near a connected device,… www.schneier.com/blog/archives/2026…
schneier.com
Wireless Routers as Motion Detectors
Comcast has added motion detection as a feature to its wireless routers: The feature sends push notifications to users when motion is detected near a connected device, such as a TV or printer. It has different settings for when people are home, asleep, or away. The Xfinity app also lets users see live motion activity and a feed of recent activity.
160
Schneier on Security @schneier.com · 01/09/2026
What’s the Scam? To subscribe to my monthly email newsletter, you have to enter your information on the webpage, and then reply to an automatically generated email.... www.schneier.com/blog/archives/2026…
schneier.com
What’s the Scam?
To subscribe to my monthly email newsletter, you have to enter your information on the webpage, and then reply to an automatically generated email. This is, of course, to prevent people from subscribing addresses other than their own. Starting last weekend, I have been receiving a lot of individual responses to those emails. Always one line: Thank you for the positive impact your emails have had on my life.
020
Schneier on Security @schneier.com · 01/09/2026
Leaked Russian Cyber-Operations Training Materials This is interesting: The records describe a force-generation mechanism for several General Staff components, including the GRU, Main… www.schneier.com/blog/archives/2026…
schneier.com
Leaked Russian Cyber-Operations Training Materials
This is interesting: The records describe a force-generation mechanism for several General Staff components, including the GRU, Main Operational Directorate, and 8th Directorate, which is associated with protected communications, cryptography, and information security. [...] The reporting also linked a 2024 Department No. 4 graduate, Aleksei Kondrashov, to Military Unit 74455, widely known as Sandworm. That unit has been associated with destructive cyber activity against Ukraine and other targets, including the 2017 NotPetya attack.
040
Schneier on Security @schneier.com · 01/09/2026
Rewiring Democracy Series on The Renovator Nathan E. Sanders and I are writing a series of essays on real-world examples of democratic technologies for…... www.schneier.com/blog/archives/2026…
schneier.com
Rewiring Democracy Series on The Renovator
Nathan E. Sanders and I are writing a series of essays on real-world examples of democratic technologies for The Renovator. I haven't been posting the full text on the blog because they're a bit long, but here are links. Part 1 is about the Japanese digital democracy party, Team Mirai. Part 2 is about the Swiss Public AI model, Apertus. Part 3 is about the civic technologists of Open Knowledge Brazil. And the new one, Part 4, is about civic AI in Scotland.
053
Schneier on Security @schneier.com · 31/08/2026
Is Someone Hacking DoD Refrigerators? It sure seems like it. The stores confirmed to be affected include Fort Irwin, Calif.; …... www.schneier.com/blog/archives/2026…
schneier.com
Is Someone Hacking DoD Refrigerators?
It sure seems like it. The stores confirmed to be affected include Fort Irwin, Calif.; F.E. Warren Air Force Base, Wyo.; Fort Huachuca, Ariz.; Naval Station Newport, R.I.; Columbus Air Force Base, Miss.; and Travis Air Force Base, Calif., according to announcements made online by each installation. Naval Air Station Lemoore, Calif., also experienced an outage, according to M.
051
Schneier on Security @schneier.com · 31/08/2026
Hiding Prompt Injection in Legal Filing Someone hid AI instructions into a legal filing. Alternate link. www.schneier.com/blog/archives/2026…
schneier.com
Hiding Prompt Injection in Legal Filing
Someone hid AI instructions into a legal filing. Alternate link.
050
Schneier on Security @schneier.com · 28/08/2026
Friday Squid Blogging: Truckload of Squid Spills in Rhode Island Ugh: A tractor-trailer rollover sent a truckload of squid spilling into a Rhode Island roadway, leaving a stench as… www.schneier.com/blog/archives/2026…
schneier.com
Friday Squid Blogging: Truckload of Squid Spills in Rhode Island
Ugh: A tractor-trailer rollover sent a truckload of squid spilling into a Rhode Island roadway, leaving a stench as they sat in the road for hours in the summer heat. Local authorities have dubbed it the "Squidpocalypse of '26." That would be twenty tons of squid. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered. Blog moderation policy.
030
Schneier on Security @schneier.com · 28/08/2026
AI Doesn’t Mean the End of Mathematics—at Least Not Yet This essay was written with Kasra Rafi, and originally appeared in The Guardian. Earlier this month, about 40 top mathematicians…... www.schneier.com/blog/archives/2026…
schneier.com
AI Doesn’t Mean the End of Mathematics—at Least Not Yet
This essay was written with Kasra Rafi, and originally appeared in The Guardian. Earlier this month, about 40 top mathematicians gathered at OpenAI's offices to discuss the future of their profession. The meeting was off-the-record, but if recent articles by mathematicians are any guide, it was mostly pretty glum. People fear for their jobs, their careers and the work they love.
140
Schneier on Security @schneier.com · 27/08/2026
LLM-Based Social Engineering Scams OpenAI disrupted a social engineering group from Cambodia that used ChatGPT. Its scope is impressive: The network simultaneously conducted multiple types of scams, often… www.schneier.com/blog/archives/2026…
schneier.com
LLM-Based Social Engineering Scams
OpenAI disrupted a social engineering group from Cambodia that used ChatGPT. Its scope is impressive: The network simultaneously conducted multiple types of scams, often blending elements from different schemes. For instance, operators used dating personas to build trust before introducing fraudulent investment opportunities involving cryptocurrencies and spot gold trading. Other users engaged in lengthy romantic conversations with targets using fictitious identities, posed as representatives of online gambling platforms offering fake bonuses and winnings, or impersonated law enforcement agencies to tell targets they needed to pay fines for committing serious criminal offenses.
041
Schneier on Security @schneier.com · 26/08/2026
Spyware for Babies The New York Times has a long article (alt link) on surveillance systems aimed at babies.... www.schneier.com/blog/archives/2026…
schneier.com
Spyware for Babies
The New York Times has a long article (alt link) on surveillance systems aimed at babies. They are increasingly using AI. Nanit and its rivals want to own 24/7 health tracking for the sub-four-foot set. And their already astonishing levels of baby data collection are just the beginning. Nanit recently raised $50 million from investors to expand its use of A.I. and use its camera to track speech and language development, motor skills and more, while extending its presence in children's bedrooms into early adolescence.
032
Schneier on Security @schneier.com · 25/08/2026
Black Hat State of Security Vendors Andy Ellis has a roundup of the security vendors at Black Hat this year. Key Takeaways: We have entered into an AI world.... www.schneier.com/blog/archives/2026…
schneier.com
Black Hat State of Security Vendors
Andy Ellis has a roundup of the security vendors at Black Hat this year. Key Takeaways: We have entered into an AI world. While nearly half of booths didn't directly mention AI or agents in their taglines, the effects of AI are everywhere. Multiple spaces (Identity, SaaS, AppSec, Data) have almost every vendor leading with AI; existing unsolved problem areas just got worse.
050
Schneier on Security @schneier.com · 24/08/2026
Criminal Deception in Silicon Valley Interesting paper: Abstract: With entrepreneurial fraud cases on the rise, we investigate how entrepreneurs carry out criminal deception, employing deceptive means to… www.schneier.com/blog/archives/2026…
schneier.com
Criminal Deception in Silicon Valley
Interesting paper: Abstract: With entrepreneurial fraud cases on the rise, we investigate how entrepreneurs carry out criminal deception, employing deceptive means to defraud audiences. Analyzing court data from Silicon Valley ventures and their founders prosecuted for fraud between 2000 and 2023, our findings reveal that entrepreneurs carry out criminal deception through a process of façading: Entrepreneurs construct, perform, and protect illusory appearances (façades) that externally project high-growth performance to audiences while masking ventures’ actual underperformance.
093
Schneier on Security @schneier.com · 21/08/2026
Friday Squid Blogging: Neon Flying Squid The neon flying squid can fly in formation. The shoal of about 100 squid rose unexpectedly from a patch of the Pacific Ocean around 370 miles from Tokyo and glided… www.schneier.com/blog/archives/2026…
schneier.com
Friday Squid Blogging: Neon Flying Squid
The neon flying squid can fly in formation. The shoal of about 100 squid rose unexpectedly from a patch of the Pacific Ocean around 370 miles from Tokyo and glided near the boat for about 30 metres. The astonished researchers were the first to capture photographs of such a thing, which looked like the early stages of an alien invasion.
030
Schneier on Security @schneier.com · 21/08/2026
AI Is Learning to Write Genetic Code This sort of research is both exciting and terrifying: The two models in question were told to generate complete genomes for a viable bacteriophage -- a type of virus able… www.schneier.com/blog/archives/2026…
schneier.com
AI Is Learning to Write Genetic Code
This sort of research is both exciting and terrifying: The two models in question were told to generate complete genomes for a viable bacteriophage -- a type of virus able to infect and replicate itself inside bacteria, destroying them from the inside. Using an existing bacteriophage as an example -- ΦX174 (pronounced "fie-ex-1-7-4"), known for its ability to infect and destroy E.
040
Schneier on Security @schneier.com · 21/08/2026
More Incidents of AIs Going Rogue in Cybersecurity Challenges The AI Security Institute has a new report of AI systems engaging in "unsanctioned behavior" -- what I have been calling… www.schneier.com/blog/archives/2026…
schneier.com
More Incidents of AIs Going Rogue in Cybersecurity Challenges
The AI Security Institute has a new report of AI systems engaging in "unsanctioned behavior" -- what I have been calling "genie behavior -- while being tested on their cybersecurity capabilities. The incident stemmed from a single evaluation where agents were given a task of solving a cyber security challenge. We ran this challenge 122 times across several models. Our investigation found that in 10 of those runs, an AI agent took autonomous, unsanctioned action on the live internet, targeting real people and organisations.
041
Schneier on Security @schneier.com · 20/08/2026
Detailed Timeline of OpenAI’s Cyberattack on Hugging Face OpenAI presented details of its AI's model's cyberattack on Hugging Face at Black Hat last week. Simon Willison details the… www.schneier.com/blog/archives/2026…
schneier.com
Detailed Timeline of OpenAI’s Cyberattack on Hugging Face
OpenAI presented details of its AI's model's cyberattack on Hugging Face at Black Hat last week. Simon Willison details the timeline. It's really interesting to read through -- and really impressive cyberoffense work.
182