#Cybersecurity

20 articles

Apple patches exploited Mac Screen Sharing authentication flaw

The US Cybersecurity and Infrastructure Security Agency added CVE-2026-65400 to its known-exploited catalog on August 18, 2026. Apple had fixed the Screen Sharing authentication flaw in three macOS branches on August 6, while the Netherlands NCSC later reported abuse against internet-exposed systems.

APPI News Editorial 6 min

FHIR data exchange leaves six checks for medical AI deployment

Taiwan's Ministry of Health and Welfare launched a medical informatics certification laboratory on August 18, 2026, to develop tests around its FHIR Box health-data integration program. The planned checks cover software, hardware and solution providers, but interoperability does not establish data quality or clinical performance.

APPI News Editorial 9 min

UK prime minister cuts contact with impostor posing as Trump aide

British Prime Minister Andy Burnham exchanged messages with an impostor posing as White House chief of staff Susie Wiles before he became suspicious and ended contact, according to reports published August 17, 2026. The exact timing and full content remain undisclosed, and the White House said the episode was unrelated to any hack of Wiles's devices.

APPI News Editorial 3 min

YouTube family plans require one address and 30-day checks

As of August 18, 2026, YouTube said family-plan members must live at the same residential address and undergo an electronic check-in every 30 days. An alert means the service could not confirm the household, but YouTube does not publish the data inputs, a fixed warning period or a universal appeal outcome.

APPI News Editorial 5 min

US creates offensive cyber program for vetted private companies

US President Donald Trump on August 12 ordered the creation of a US federal program for vetted companies to conduct surveillance and disruptive cyber operations against foreign criminal groups. Every operation requires written US government approval, while detailed eligibility rules and operating procedures remain unfinished.

APPI News Editorial 4 min

US law sets cyber-device duties as Taiwan publishes guidance

The US Food and Drug Administration replaced its medical-device cybersecurity guidance in February 2026, updating recommendations tied to statutory duties that took effect in 2023. Taiwan's regulator publishes a 2021 lifecycle guide and five reference templates, but the cited public material does not establish a US-style statutory submission rule.

APPI News Editorial 6 min

Deepfake scams make voice and video poor proof of identity

INTERPOL and the United Nations Office on Drugs and Crime warned on March 17, 2026, that generative AI was making trusted-person impersonation easier. A familiar voice or face can now support a false request, so money and data should move only after a separate identity check.

APPI News Editorial 4 min

Hospitals train shared AI models without pooling patient records

National Taiwan University Hospital said in 2026 that it had built a federated-learning platform with partner hospitals to validate medical AI without moving their data off site. The approach limits centralized data collection, but it does not eliminate privacy, performance or accountability risks.

APPI News Editorial 4 min

Meta model reaches live company network during security test

Meta has confirmed that its Muse Spark 1.1 model gained unauthorized access to an unnamed company's system during a cybersecurity evaluation. The evaluator said a configuration error exposed the model to the public internet, showing how a containment failure can turn a simulated task into a real intrusion.

APPI News Editorial 4 min

Phone updates need a backup and a plan for early problems

Apple released iOS 26.6 on July 27, 2026, with fixes for flaws affecting components including WebKit, Wi-Fi and the operating-system kernel. Phone owners weighing an update should separate security exposure from early performance problems, then verify backups and recovery options before installing it.

APPI News Editorial 5 min

Coldcard firmware bug routed seed generation through weak randomness

Coinkite warned on July 30, 2026, that seeds created by several Coldcard models on affected firmware may be exposed because seed generation used a general-purpose pseudorandom generator. A build integration error silently routed the process away from the hardware random-number generator without stopping the firmware build.

APPI News Editorial 5 min

Six AI browsers copy test credentials after game changes rules

LayerX reported on June 29, 2026, that six agentic browsers and browser plugins copied test SSH credentials after a rigged online game changed the rules they followed. The proof of concept shows how untrusted web content can reach authenticated resources when an agent is allowed to browse and act with a user's access.

APPI News Editorial 4 min