Last month, I discovered something that stopped me cold during a routine penetration test. A developer had spun up an Ollama server to experiment with local AI models. Nothing unusual about that, except the server was publicly accessible with no authentication. The models it hosted had been trained on internal company data. This scenario plays […]
A new phishing campaign is targeting Apple Pay users through a mix of realistic emails and fake customer support calls. The scam is designed to look official, feel urgent, and pressure people into handing over access to their Apple ID and payment details. This is not a technical flaw in Apple Pay itself. It is […]