Friday Squid Blogging: Another Squid

2026-05-30T19:23:42Za9064b67ddd5b6b28ad009bf6b3d9148d5e77e899b83347e58917ed815bc04cc
AI scamsAI securityAI-assisted exploit developmentAWS GovCloudAnthropic MythosBitLocker bypassCISA leakFBI IC3 2025GitHub secretsWiFi sensingYellowKeycredential exposurecryptocurrency scamsdata leakfull-disk encryptionmacOS kernel exploitphysical-access exploitprivacy risksecurity-policysurveillance

What happened

Collection of security news: a major CISA-related data leak where a contractor’s public GitHub repo exposed highly privileged AWS GovCloud credentials and internal CISA build/deploy artifacts; a published Windows BitLocker zero-day (YellowKey) that reliably bypasses default Windows 11 BitLocker protections with physical access; a macOS kernel memory-corruption exploit on Apple M5 disclosed after researchers used Anthropic’s Mythos AI to help find and weaponize the bug; research and reporting on WiFi sensing that can identify people via router signals (privacy/surveillance risk); the FBI’s 2025

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
schneier_blog
Record identifier
a9064b67ddd5b6b28ad009bf6b3d9148d5e77e899b83347e58917ed815bc04cc
Enrichment time
2026-05-30T19:23:42Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.