AUTO-UPDATED

Your Period Tracker Is (Probably) Spying on You

Recent reports highlight significant cybersecurity breaches, AI privacy concerns, and evolving state-sponsored digital espionage, underscoring the growing risks to personal data and critical infrastructure across the globe.

Key Points

  • The San Francisco City Attorney demanded Apple and Google remove 13 AI-powered "face-swap" apps frequently used to target women and girls.
  • A Mozilla Foundation audit found the Stardust period tracker shares sensitive reproductive health data with third-party analytics firms without user consent.
  • Western governments confirmed that Russia’s FSB, not the GRU, was responsible for a cyberattack that nearly disabled Poland’s electric and water utilities.
  • US prosecutors linked a defendant in a major NATO hacking case to previous employment at the Russian cybersecurity firm Kaspersky.
  • DHS officials twice dismissed signs of a real breach in the Homeland Security Information Network as false positives, allowing hackers to maintain access.
  • A data breach at the AI music startup Suno revealed the company scraped millions of songs and podcasts from platforms like YouTube Music for model training.

Why it Matters

These incidents demonstrate how rapidly advancing AI tools and sophisticated "living off the land" hacking techniques are outpacing current security protocols and regulatory frameworks. The exposure of sensitive personal data and critical government infrastructure highlights an urgent need for improved transparency, stricter data privacy enforcement, and more robust threat detection capabilities.
Wired Published by Andy Greenberg, Dell Cameron, Lily Hay Newman
Read original