LLMs can unmask pseudonymous users at scale with surprising accuracy

2026-03-04T19:45:04Zf9a2239d4f476815769197bd514f079ffe97c9e1dd5726ac5098f221b144e5e2
airsnitchbug-bounty-fatiguecryptocurrency-theftdydx-malicious-packagesemail-spoofing-scamsfbi-takedownkids-ai-privacyllm-deanonymizationlumma-stealermalwaremerkle-tree-certificatesmicrosoft-office-exploitnotepad++-compromisepassword-manager-riskspoland-grid-attackprivacyquantum-proofingsecure-boot-certificatessms-signin-link-riskstate-sponsored-actorssupply-chain-attackviral-ai-promptswifi-exploitwiper-malware

What happened

Ars Technica security roundup (Jan–Mar 2026) covering multiple high‑impact incidents and trends: LLMs can deanonymize pseudonymous users at scale; Google is deploying Merkle‑Tree certificates to quantum‑proof HTTPS; a new AirSnitch Wi‑Fi attack can bypass encryption; Lumma Stealer and related malware campaigns have returned with effective lures; several supply‑chain compromises (Notepad++ updater, malicious packages targeting dYdX) have led to backdoors and wallet thefts; Microsoft warns about expiring Secure Boot certificates while an urgent Office vulnerability is being actively exploited by

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
f9a2239d4f476815769197bd514f079ffe97c9e1dd5726ac5098f221b144e5e2
Enrichment time
2026-03-04T19:45:04Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · LLMs can unmask pseudonymous users at scale with surprising accuracy · Baitaphish