US designates extreme right-wing network as terrorist organisation in global crackdown on extremism

The US government has officially labelled the extreme right-wing ‘Terrorgram’ network as a terrorist organisation, citing its promotion of violent white supremacist attacks. The group operates mainly on the Telegram platform and has been linked to attacks across the globe, including shootings and planned assaults on critical infrastructure.

The move, announced by the State Department, includes sanctions against three of the network’s leaders based in Brazil, Croatia, and South Africa. The designation freezes any US-based assets belonging to the group and bans Americans from engaging with its members. Officials say the collective has provided detailed guidance for attacks on minorities and government officials, calling for a race war.

US authorities have been ramping up efforts to combat domestic extremism under President Biden, who launched the country’s first national strategy on countering domestic terrorism in 2021. Britain has already taken similar steps, outlawing the Terrorgram collective in April last year.

This crackdown follows criminal charges brought against two alleged leaders of the group, accused of using Telegram to incite violence against Black, Jewish, LGBTQ, and immigrant communities. Authorities stress that dismantling such online hate groups is essential to prevent further extremist attacks.

Drones threaten safety in high-security UK jails

The UK‘s prisons watchdog has warned that drones are becoming a serious national security threat due to a surge in the smuggling of weapons, drugs, and other contraband into high-security jails. Charlie Taylor, the chief inspector of prisons, called for immediate action from the police and government following investigations into two of England and Wales’ most dangerous prisons, HMP Manchester and HMP Long Lartin. Both facilities, holding notorious criminals and terrorism suspects, have seen an increase in illicit deliveries by drones, putting staff, inmates, and public safety at risk.

Taylor’s report highlights how gangs have exploited weaknesses in security, including the deterioration of basic anti-drone measures like protective netting and CCTV. At Long Lartin, inspectors found that large quantities of illicit items were being delivered, fueling violence and unrest among prisoners. At HMP Manchester, inmates were burning holes in windows to facilitate drone deliveries, raising concerns about potential escapes and further disruptions.

The growing use of sophisticated drones, capable of carrying large payloads and flying under the radar, has made it increasingly difficult for prison authorities to control the flow of contraband. While some prisons have deployed counter-drone technology, most do not block drones from approaching, leaving many vulnerable to this growing threat.

Prison officials are now under mounting pressure to confront this new challenge, with experts warning that the situation is a matter of national security. Taylor also highlighted the need for a more robust approach to tackling gang activity and reducing the supply of illegal items that undermine prison safety.

US tightens AI chip export rules to maintain edge over China

The US government has announced new restrictions on exporting AI chips and technology, seeking to safeguard its dominance in AI development while limiting China’s access to advanced computing capabilities. The regulations, unveiled during the final days of President Biden’s administration, impose strict caps on AI chip exports to most countries, with exemptions for close allies such as Japan, the UK, and South Korea. Countries like China, Russia, Iran, and North Korea remain barred from accessing this critical technology.

Commerce Secretary Gina Raimondo emphasised the importance of maintaining US leadership in AI to support national security and economic interests. The regulations, which build on a four-year effort to block China’s acquisition of advanced chips, also close existing loopholes and enforce tighter controls. New limits target advanced graphics processing units (GPUs), essential for training AI models, and introduce worldwide licensing requirements for cutting-edge AI technologies. Major cloud providers like Microsoft and Amazon will face new authorisation processes to establish data centres globally under stringent conditions.

Industry leaders, including Nvidia, have expressed concerns over the broad scope of the rules, warning of potential harm to innovation and market dynamics. Nvidia called the restrictions an “overreach,” while Oracle cautioned that the measures could inadvertently benefit Chinese competitors. Despite this criticism, US officials argue the rules are vital for maintaining a competitive edge, given AI’s transformative potential in sectors like healthcare, cybersecurity, and defence. China’s Commerce Ministry condemned the move, vowing to protect its interests in response to the escalating technology standoff.

Microsoft sues hackers over AI security breach

Microsoft has taken legal action against a group accused of bypassing security measures in its Azure OpenAI Service. A lawsuit filed in December alleges that the unnamed defendants stole customer API keys to gain unauthorised access and generate content that violated Microsoft’s policies. The company claims the group used stolen credentials to develop hacking tools, including software named de3u, which allowed users to exploit OpenAI’s DALL-E image generator while evading content moderation filters.

An investigation found that the stolen API keys were used to operate an illicit hacking service. Microsoft alleges the group engaged in systematic credential theft, using custom-built software to process and route unauthorised requests through its cloud AI platform. The company has also taken steps to dismantle the group’s technical infrastructure, including seizing a website linked to the operation.

Court-authorised actions have enabled Microsoft to gather further evidence and disrupt the scheme. The company says additional security measures have been implemented to prevent similar breaches, though specific details were not disclosed. While the case unfolds, Microsoft remains focused on strengthening its AI security protocols.

Father of Molly Russell urges UK to strengthen online safety laws

Ian Russell, father of Molly Russell, has called on the UK government to take stronger action on online safety, warning that delays in regulation are putting children at risk. In a letter to Prime Minister Sir Keir Starmer, he criticised Ofcom’s approach to enforcing the Online Safety Act, describing it as a “disaster.” Russell accused tech firms, including Meta and X, of prioritising profits over safety and moving towards a more dangerous, unregulated online environment.

Campaigners argue that Ofcom’s guidelines contain major loopholes, particularly in addressing harmful content such as live-streamed material that promotes self-harm and suicide. While the government insists that tech companies must act responsibly, the slow progress of new regulations has raised concerns. Ministers acknowledge that additional legislation may be required as AI technology evolves, introducing new risks that could further undermine online safety.

Russell has been a prominent campaigner for stricter online regulations since his daughter’s death in 2017. Despite the Online Safety Act granting Ofcom the power to fine tech firms, critics believe enforcement remains weak. With concerns growing over the effectiveness of current safeguards, pressure is mounting on the government to act decisively and ensure platforms take greater responsibility in protecting children from harmful content.

Italy weighs Starlink deal for secure satellite communications

Italy is exploring a potential agreement with Elon Musk’s Starlink to provide secure satellite communications for government and defence officials. The proposed five-year deal, worth €1.5 billion, would enable encrypted communications in high-risk areas. An Italian representative for Musk’s aerospace businesses stated that the country would retain full control over its data while using the technology.

Opposition parties have criticised the project, questioning whether a company owned by the US billionaire should handle sensitive Italian communications. Prime Minister Giorgia Meloni, who has faced scrutiny over her ties with Musk, dismissed concerns, insisting that discussions about the deal began before her government took office in 2022.

Starlink, a subsidiary of SpaceX, operates 6,700 satellites in low-Earth orbit and is a dominant player in global satellite communications. While the Italian government evaluates the deal, officials maintain that national interests and data security would remain protected.

Norwegian data authority notified after Unacast hack

Unacast has informed Norwegian authorities of a data breach involving its subsidiary Gravy Analytics. The announcement was revealed in a notice published by Norwegian broadcaster NRK.

The breach involved a compromised web server using a misappropriated key, with some stolen files potentially containing personal data. Unacast’s legal representatives, BakerHostetler, confirmed the breach was discovered on 4 January, though the exact timing remains under investigation.

Repeated attempts to reach Unacast and its legal team for comment have gone unanswered. Norway’s data protection authority also could not be reached for further statements after business hours on Friday.

Gravy Analytics had been at the centre of online speculation last week, with experts confirming the authenticity of leaked data. Investigations into the full extent of the breach are ongoing.

Chinese hackers infiltrate major US telecom companies, Sullivan confirmed

Chinese state-sponsored hackers, identified as the Salt Typhoon group, have breached multiple US telecommunications companies, including AT&T, Verizon, Charter Communications, and T-Mobile. These cyber-espionage operations exploited vulnerabilities in network devices from vendors such as Fortinet and Cisco Systems.

US National Security Adviser Jake Sullivan has stated that the United States has taken steps in response to these intrusions, sending clear messages to China about the consequences of disrupting American critical infrastructure.

The breaches have raised significant concerns about national security and the resilience of US critical infrastructure against sophisticated cyber threats. While companies like AT&T and Verizon have reported that their networks are now secure and are collaborating with law enforcement, the extent and impact of these breaches continue to be scrutinised.

China has denied involvement in these cyber activities, accusing the United States of disseminating disinformation. Nonetheless, the revelations have intensified discussions about the need for enhanced cybersecurity measures to protect sensitive communications and infrastructure from state-sponsored cyber espionage.

OpenSea users at risk after massive email leak

OpenSea users are facing increased risks after over 7 million email addresses were exposed in a data breach dating back to 2022. The breach occurred when an employee of Customer.io, OpenSea’s email delivery partner, mishandled user data, sharing email addresses with an unauthorised third party. This data includes the emails of major figures in the crypto world, raising concerns about potential phishing attacks and scams.

Blockchain security expert 23pds highlighted the growing threat, warning that the leaked information had been circulated multiple times before becoming public. OpenSea had previously alerted users about phishing risks following the breach, advising them to be cautious with email links and attachments.

Phishing scams targeting OpenSea users have been a persistent issue, with attackers using fake websites and fraudulent email campaigns to exploit vulnerabilities. One such scam in January 2024 promised exclusive access to an NFT event, only to direct victims to a malicious site designed to steal funds and wallet information.

Experts continue to advise users to stay vigilant, verify email sources, enable two-factor authentication, and never share sensitive wallet details to protect themselves from ongoing phishing threats.