Pixnapping: The Android Exploit That Can Steal Everything on Your Screen
Frank Marano Frank Marano

Pixnapping: The Android Exploit That Can Steal Everything on Your Screen

If you thought your shiny new Pixel 10 Pro Fold was the ultimate flex, think again. Researchers have uncovered a new Android exploit dubbed Pixnapping, and it’s as bad as it sounds. This attack can capture everything displayed on your screen — including sensitive data like two‑factor authentication (2FA) codes.

Read More
Massive Multi‑Country Botnet Targets RDP: Why Remote Desktop Is Still a Top Attack Vector
Frank Marano Frank Marano

Massive Multi‑Country Botnet Targets RDP: Why Remote Desktop Is Still a Top Attack Vector

On October 8, researchers observed a large‑scale botnet campaign targeting Remote Desktop Protocol (RDP) services in the United States. The attacks are being launched from more than 100,000 IP addresses across multiple countries, making this one of the most aggressive RDP campaigns in recent memory.

According to multiple reports, the botnet is systematically scanning and brute‑forcing exposed RDP endpoints. Given the scale and distribution of the IPs, experts believe this is a coordinated, multi‑country operation designed to compromise vulnerable systems quickly and at scale.

Read More
Do You Really Need That 30‑Year‑Old Email? Why Auto‑Archiving Isn’t Enough Without a Data Retention Policy
Frank Marano Frank Marano

Do You Really Need That 30‑Year‑Old Email? Why Auto‑Archiving Isn’t Enough Without a Data Retention Policy

📬 Do you really need that email from 30 years ago? Probably not. And Microsoft seems to agree.

Microsoft is now enabling threshold‑based auto‑archiving by default in Exchange Online. When a user’s mailbox approaches 90% of its quota, the oldest items are automatically moved to the archive mailbox. This is a smart first step to reduce mailbox bloat and keep Exchange Online running smoothly.

But here’s the catch: auto‑archiving is not the same as a Data Retention Policy.

Read More
AI Is Already the #1 Data Exfiltration Channel—Here’s How to Stay Ahead
Frank Marano Frank Marano

AI Is Already the #1 Data Exfiltration Channel—Here’s How to Stay Ahead

Artificial Intelligence is the shiny new toy on the block. It’s evolving faster than anyone imagined, and businesses everywhere are racing to adopt it. From marketing copy to code generation, AI is transforming workflows at lightning speed.

But here’s the uncomfortable truth: AI has already become the single largest uncontrolled channel for corporate data exfiltration—outpacing shadow SaaS, unmanaged file sharing, and even personal cloud storage. Sensitive data is flowing into ChatGPT, Claude, and Copilot at staggering rates, often through unmanaged accounts. And most traditional Data Loss Prevention (DLP) tools aren’t even looking in the right direction.

Read More