In today’s episode, we delve into a security flaw in WhatsApp for Windows that allows Python and PHP scripts to execute without warning, a new malicious PyPI package targeting macOS for stealing Google Cloud credentials, and how cybercriminals bypassed Google’s email verification to exploit Google Workspace accounts. Additionally, we explore the controversial use of AI surveillance at the Paris 2024 Olympics, examining its possible long-term impacts on privacy and security. Stay tuned as we unpack these pressing cybersecurity issues.
00:00 – Intro
01:14 – At the Olympics, AI is watching you
02:47 – Crooks Bypassed Google’s Email Verification
05:15 – Malicious PyPI Package Targets macOS
07:32 – WhatsApp lets Python, PHP scripts execute with no warning
- https://www.bleepingcomputer.com/news/security/whatsapp-for-windows-lets-python-php-scripts-execute-with-no-warning/
- https://thehackernews.com/2024/07/malicious-pypi-package-targets-macos-to.html
- https://krebsonsecurity.com/2024/07/crooks-bypassed-googles-email-verification-to-create-workspace-accounts-access-3rd-party-services/
- https://arstechnica.com/ai/2024/07/at-the-olympics-ai-is-watching-you/
Video Episode: https://youtu.be/4GS2Ofq4uW4
Sign up for digestible cyber news delivered to your inbox: https://news.thedailydecrypt.com
Thanks to Jered Jones for providing the music for this episode. https://www.jeredjones.com/
Logo Design by https://www.zackgraber.com/
Tags: Meta, vulnerability, Python, security, WhatsApp, Windows, scripts, Telegram, exploit, power users, developers, PyPI, malicious package, lr-utils-lib, macOS, Google Cloud, credentials, cybercriminals, enterprise systems, developers, authentication, vulnerabilities, Workspace, email verification, user protection, Paris, AI algorithms, CCTV cameras, urban security, Olympics
Search Phrases:
- What are today’s top cybersecurity news stories?
- Why is Meta not blocking Python and PHP scripts on WhatsApp for Windows?
- How dangerous is the WhatsApp for Windows vulnerability?
- What was the Telegram exploit related to script execution?
- How to avoid downloading malicious PyPI packages?
- What are the risks of using lr-utils-lib on macOS?
- How were Google Cloud credentials targeted by lr-utils-lib?
- What vulnerabilities exist in Google Workspace authentication?
- How are AI algorithms used in urban security monitoring?
- Security concerns of AI surveillance during the Paris 2024 Olympics