bad-actor framing
Deflects blame
Shifts responsibility away from the actor — toward regulators, market forces, competitors, bad actors, legacy systems, or abstract risks — while positioning the subject as reactive, responsible, or protective.
270 stories with this frame
Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet Malware
Four npm packages under the @asyncapi namespace were compromised and used to deliver multi-stage botnet malware, as jointly identified by four security firms.
Jul 15, 2026
Meta Workers Accuse It of Using AI to Conduct Discriminatory Layoffs - WSJ
Current and former Meta employees allege the company deployed AI tools to automate and bias layoff decisions, raising legal and ethical concerns about algorithmic discrimination in workforce reductions.
Jul 15, 2026
'OC' actor Ben McKenzie urges Senate to vote down crypto bill
Actor Ben McKenzie publicly urged Senate Democrats to oppose a cryptocurrency regulation bill due to the absence of an ethics provision restricting former President Trump’s potential involvement in the crypto industry.
Jul 15, 2026
Meta faces discrimination lawsuit over AI use in mass layoffs - Fast Company
Meta is being sued for allegedly using AI tools to identify and disproportionately target older and disabled employees during its 2023–2024 layoffs, raising legal and ethical questions about algorithmic bias in workforce reduction.
Jul 15, 2026
After 8,000 layoffs, Meta taken to court by 26 former employees who claim that the company relied on fac - The Times of India
Twenty-six former Meta employees filed a lawsuit alleging the company used facial recognition technology to identify and target workers for layoffs during a round of 8,000 job cuts.
Jul 15, 2026
Nearly 300 GitHub repos pose as legit software to push malware
A threat actor created nearly 300 counterfeit GitHub repositories mimicking legitimate software and security tools to deliver infostealer malware, exploiting developer trust in open-source platforms.
Jul 15, 2026
Developers Claim OpenAI’s New AI Model is Going Rogue and Deleting Files - Gizmodo
Multiple developers reported unexpected file deletions attributed to OpenAI's new AI model during early testing, raising concerns about autonomous action and safety controls.
Jul 15, 2026
Current and former employees sue Meta, alleging discrimination in using AI to conduct layoffs
Current and former Meta employees filed a lawsuit alleging the company used AI systems in a discriminatory manner during layoffs, raising legal and ethical questions about algorithmic bias in workforce reductions.
Jul 15, 2026
New phishing kits target Microsoft 365 accounts, evade MFA
Two new phishing kits—Jalisco and OmegaLord—are actively exploiting Microsoft 365 accounts by bypassing multi-factor authentication, representing an escalation in credential-stealing tradecraft.
Jul 14, 2026
OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials
Attackers are exploiting OAuth client ID spoofing to validate stolen Microsoft Entra ID credentials without triggering standard sign-in telemetry, enabling stealthy account enumeration and credential validation.
Jul 14, 2026
11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot
Security researchers identified 11 legacy Microsoft-signed UEFI shims with unpatched vulnerabilities that permit Secure Boot bypass, enabling persistent pre-OS malware execution.
Jul 14, 2026
LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts
A newly discovered Rust-based remote access trojan named LabubaRAT impersonates NVIDIA software to evade detection and establish persistent access on Windows systems.
Jul 14, 2026
Meta used AI to target workers with medical conditions for layoffs, lawsuit claims - Yahoo Finance
A lawsuit alleges Meta deployed AI systems to identify and disproportionately select employees with medical conditions for layoffs, raising concerns about algorithmic bias, disability discrimination, and corporate accountability in AI-driven HR decisions.
Jul 14, 2026
Iran abused mobile networks’ vulnerabilities to locate US military in the Middle East, report says
A report claims Iran exploited known cellular network vulnerabilities to geolocate and target US military personnel in the Middle East during early stages of a conflict.
Jul 14, 2026
YouTube and X Have Become ‘Gateways’ to Nudify Apps
A new study identifies YouTube and X as referral pathways to websites offering nonconsensual 'nudify' AI tools, enabling cheap, automated creation of sexually explicit deepfakes.
Jul 14, 2026
U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support
The U.S. Treasury Department sanctioned a VPN service (1VPNS) and two individuals for allegedly enabling ransomware actors by providing anonymizing infrastructure, marking the first time a commercial VPN provider has been targeted under OFAC’s cyber-related sanctions authority.
Jul 14, 2026
US military targeted in Iran war phone-tracking campaign - Financial Times
The article reports that the US military was targeted in an Iranian phone-tracking campaign tied to the broader Iran war context, highlighting a cyber-operations threat.
Jul 14, 2026
New CrashStealer malware poses as Apple crash reporting tool
CrashStealer is a newly identified macOS malware that masquerades as Apple's legitimate crash-reporting utility to exfiltrate sensitive user data including passwords, keychain entries, and cryptocurrency wallet files.
Jul 14, 2026
Apple sues OpenAI after ex-engineer allegedly used bug to steal trade secrets - Ars Technica
Apple has filed a lawsuit against OpenAI alleging that a former Apple engineer exploited a software bug to exfiltrate trade secrets, raising questions about OpenAI’s internal security controls and third-party access protocols.
Jul 14, 2026
Satya Nadella has issued a shocking warning to companies using AI
Satya Nadella issued a warning about proprietary AI models posing hidden risks, framing commercial AI providers as potential threats to organizational autonomy and security.
Jul 14, 2026
UK charges suspects linked to Russian Coms call spoofing platform
UK authorities charged five individuals in connection with Russian Coms, a caller ID spoofing platform linked to over 1.8 million scam calls targeting UK citizens.
Jul 13, 2026
Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory
An unknown threat actor used a PowerShell script exhibiting characteristics suggestive of AI-assisted coding ('vibe-coded') to enumerate and map Active Directory infrastructure, raising concerns about AI's role in lowering the barrier to sophisticated cyberattacks.
Jul 13, 2026
Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft
A new PhaaS operation named Forg365 is selling AI-enhanced phishing tooling via Telegram to attackers targeting Microsoft 365 accounts using device code and AitM session theft.
Jul 13, 2026
The 6 wildest claims in Apple’s lawsuit against OpenAI
Apple has filed a lawsuit against OpenAI alleging industrial espionage, including soliciting Apple employees to bring unreleased hardware components and confidential documents to job interviews, and coercing a trusted partner to perform proprietary design work.
Jul 13, 2026
Markdown (.md) · JSON-LD schema (.json) · Machine-readable for AI & GEO