"Zombie card" exploit uses two smartphones to rewrite credit card expiration data
WTF?! Credit cards aren't meant to last forever, but a team of researchers just found a way to keep expired ones alive for a little longer than intended, and not for the cardholder's benefit. Not every card is affected, but the flaw sits deep enough in how contactless payments are verified that exploitation isn't just theoretical.
Editor's take: Google is once again trying to simplify something that was already fairly easy and convenient. Mountain View's latest target is email-based authentication, which is now dropping the email-checking step altogether thanks to a new Android API update.
Editor's take: Windows Recall continues to raise security concerns. Microsoft has redesigned the feature to improve data and identity protection following public outcry, but a new tool is now reigniting the controversy. I have to suspect that few people in their right mind would choose to enable or use it at this point.
Plaintiffs cite whistleblowers to argue that end-to-end encryption doesn't work as advertised
Ripple effect: Questions about whether WhatsApp's encryption works as Meta describes have taken center stage in a new international lawsuit filed in a US federal court, where plaintiffs allege that Meta misled billions of users about the privacy of their messages.