
The largest password leak in history exposes nearly 10 billion credentials
The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews. This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords. Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum. “In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.” Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems. Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said. This could affect online services, cameras and hardware This could affect various targets, from online services to internet-facing cameras and industrial hardware. “Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded. However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades. This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak. Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information. That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms. Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security. Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.

"Corrupt Politicians GPT" "Fiscal Bill GPT", Kenyan protesters use AI to "protest"
In the past few weeks of anti-government activities in Kenya, AI tools have been creatively used by protesters to serve protests. According to the US "Flag" News Agency on July 5, protests in Kenya triggered by the 2024 fiscal bill are still continuing. In the past few weeks, Kenyan protesters, mainly young people, have creatively developed a series of AI tools to assist anti-government activities. The Kenyan government expressed concern about the risks associated with the use of AI tools in protests. Kelvin Onkundi, a software engineer in Kenya, developed the "Fiscal Bill GPT", which operates similarly to ChatGPT and can receive questions about the fiscal bill and generate responses. Martin Siele, a reporter from the "Flag" News Agency, analyzed: "The 'Fiscal Bill GPT' can convert professional terms in many legislative fields into easy-to-understand information for protesters, helping Kenyans understand the potential impact of the fiscal bill." Another software engineer, Marion Kavengi, developed the "SHIF GPT" to provide Kenyans with information about the upcoming Social Health Insurance Fund (SHIF). In addition to AI tools designed to help people understand controversial policies, protesters have also developed "Corrupt Politicians GPT" to assist protest demonstrations. After entering the name of a politician on the platform, the platform will generate a list of corruption scandals about the politician in chronological order. Developer BenwithSon wrote on the social platform X on June 28: "'Corrupt Politicians GPT' allows people to search for any scandal related to any politician. I have seen some leaders stand at the forefront of the political arena, but they are corrupt behind the scenes." Kenyan Chief Minister and Foreign Minister Mudavadi issued a communiqué to ambassadors of various countries in Nairobi on July 2 local time on protests and relevant government measures, expressing concerns about the use of AI and false information in protests. Mudavadi said: "AI technology is used by people with ulterior motives, which will fill the global information system with false narratives." The Kenya Times reported on June 30 that AI technology enables people to force the government to increase transparency and strengthen accountability, and its role in Kenyan political activities is becoming increasingly prominent. Martin Siller believes that AI is reshaping African political behavior in many ways. AI is a new tool for both governments and opposition parties in Africa, but Kenya is one of the African countries with the most developers, and its young protesters are particularly good at using AI technology to fight the government. The 2024 fiscal bill voted and passed by the Kenyan National Assembly on June 25 clearly stated that additional taxes will be levied to repay the interest on high sovereign debt, triggering large-scale demonstrations. After President Ruto announced the withdrawal of the tax increase bill on the evening of the 26th, demonstrations in many parts of Kenya continued. According to Reuters on July 3, Kenyan anti-government protesters are re-adjusting their activities to prevent the protests from turning into violent incidents.

NASA plays 'blame-shifting' game with China as lunar soil research set to start
The returner of the Chang'e-6 lunar probe is opened during a ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation in Beijing, capital of China, June 26, 2024. The returner of the Chang'e-6 lunar probe was opened at a ceremony in Beijing on Wednesday afternoon. During the ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation, researchers opened the returner and examined key technical indicators. Photo: Xinhua As the US space industry recently faced yet more delays and stagnation with key components including manned spacecraft and space suits "going wrong," NASA has once again resorted to its "sour grapes" rhetoric upon seeing China's successful retrieval of fresh lunar soils from the far side of the moon, by claiming that China did not directly invite its scientists to participate in the lunar soil research. This behavior is a typical blame-shifting trick, Chinese experts said, noting it is clear to all that it is the US' own laws, not China, that are restricting space cooperation between the two sides. Instead of deceiving themselves by distorting the truth, the US should face up to its own problem of overall weakening engineering capability and the lack of long-term planning in its space industry. After the Chang'e-6 samples, weighing nearly 2 kilograms, were safely transported to a special laboratory for further study on Friday, NASA spokesperson Faith McKie told media that while China worked with the European Space Agency, France, Italy and Pakistan on this mission, "NASA wasn't invited to take part in the moon probe." NASA also didn't get "any direct invitation" to study China's moon rocks, after it welcomed all scientists from around the world to apply to study them, McKie told NatSec Daily. Responding to the remarks, Chinese Foreign Ministry spokesperson Mao Ning told the Global Times on Monday that China is open to having space exchanges with the US, and we also welcome countries around the world to take part in the study of lunar samples. "However, the US side seems to have forgotten to mention its domestic legislation such as the Wolf Amendment. The real question is whether US scientists and institutions are allowed by their own government to participate in cooperation with China," Mao said. "The existence of the Wolf Amendment has basically shut the door to space collaboration between the two countries," Wang Yanan, chief editor of Beijing-based Aerospace Knowledge magazine, told the Global Times on Monday. Even if research institutions of the US have the willingness to work with China on opportunities such as lunar sample research, institutions there must obtain special approval from the US Congress due to the presence of this amendment, Wang explained. Currently, no such "green light" is in sight from the Congress. Furthermore, China's collaboration with international partners is based on equality and mutual benefit, leveraging their respective scientific resources, facilities, and expertise. However, the US only wants what it doesn't have, and its engagement with China would be advantageous only to itself, Wang noted. NASA has found itself embroiled in a number of thorny issues recently, with the latest being Boeing's Starliner manned spaceship experiencing both helium leaks and thruster issues during a June 6 docking with the International Space Station (ISS), which led to an indefinite delay for its crew's return to Earth, despite NASA's insistence that they are not "stranded" in space. The return of the Starliner capsule, while has already been delayed by two weeks, will be put on hold "well into the summer" pending results of new thruster tests, which are scheduled to start Tuesday and will take approximately two weeks or even more, per NASA officials. Previously on June 24, NASA cancelled a spacewalk on the ISS following a "serious situation," when one of the spacesuits experienced coolant leak in the hatch. While being broadcast on a livestream, the astronauts reported "literally water everywhere" as they were preparing for the extravehicular activity, space.com reported. The report said that this is the second time this particular spacewalk was postponed, after a June 13 attempt with a different astronaut group was pushed back due to a "spacesuit discomfort." The recurring issues with the spacesuits are due to their much-extended service lifespan, media reported, as the puffy white ones US astronauts currently wear were designed more than 40 years ago. Despite the pressing need to replace them, NASA announced recently that it is abandoning a plan to develop next-generation spacesuits, which had been committed to be delivered by 2026, CNN reported on Thursday. One of the root causes for such problems is that the US has developed many large technology conglomerates, which for a long time have benefited significantly from government orders and industry monopolies. Consequently, in many complex engineering fields, the level of attention given is greatly insufficient, Wang noted. It also reflected the US' lack of long-term strategic planning for its manned space program. For instance, the ageing spacesuits should have been replaced a decade ago to ensure that operational suits remain in usable condition. Failure to address this issue results in a hindrance to the space station's necessary maintenance tasks and even poses life-threatening risks to astronauts in emergency situations, experts said. The issues with Boeing's spacecraft and the spacesuits are not isolated problems, but reflected a systemic issue in the US space industry - the overall weakening of engineering capabilities, they noted.

Microsoft to offer Apple devices to employees in China, cites absence of Android services
July 8 (Reuters) - Microsoft (MSFT.O), opens new tab intends to offer Apple's (AAPL.O), opens new tab iOS-based devices to its employees in China to access authentication apps, a company spokesperson said on Monday, citing absence of Google's (GOOGL.O), opens new tab Android services in the country. Microsoft has been under increased scrutiny after a series of security breaches, the latest being that of Russian hackers who spied and accessed emails of the company's employees and customers earlier this year. The development was first reported by Bloomberg News, which, citing an internal memo, said the Windows OS-maker instructed its employees in China to use Apple devices at workplace from September. As a part of Microsoft's global Secure Future Initiative, the move to switch to iOS-devices stems from the lack of availability of Google Play Store in China that limits its employees' access to security apps such as Microsoft Authenticator and Identity Pass, the report added. "Due to the lack of availability of Google Mobile Services in this region, we look to offer employees a means of accessing these required apps, such as an iOS device," a company spokesperson told Reuters in an email. Microsoft is among those U.S. companies that have a strong presence in China. It entered the Chinese market in 1992 and also operates a large research and development center in the country. The company will provide iPhone 15 models to employees, currently using Android handsets across China, including Hong Kong, the Bloomberg report said.

Iran's president-elect reaffirms policy toward Israel
Iran's President-elect Masoud Pezeshkian reiterated Iran's anti-Israel stance on Monday, saying resistance movements across the region will not allow Israel's "criminal policies" against Palestinians to continue. Pezeshkian told Hassan Nasrallah, the leader of Iran-backed Lebanese Hezbollah, that "the Islamic Republic will always support the people of the region in their resistance against the illegal Zionist regime." This suggests that the incoming government will not change its regional policy under the relatively moderate Pezeshkian, who defeated his hard-line opponent in a runoff election last week. Pezeshkian was quoted as saying by Iranian media, "I am sure that the regional resistance movement will not allow this regime to continue its militant and criminal policies against the oppressed people of Palestine and other countries in the region." The Shiite Muslim Hezbollah and the Palestinian Sunni Muslim Hamas are both part of the local "resistance axis" faction organization supported by Iran. Israel did not immediately comment on Pezeshkian's speech. Hamas led an attack on southern Israel on October 7. According to Israeli statistics, Hamas killed 1,200 people and kidnapped about 250 hostages, triggering the Israeli-Palestinian war. The Gaza Health Ministry said that the Israeli military attack killed more than 38,000 Palestinians and injured nearly 88,000 people.