At CES 2025, Intel let journalists into its private “Innovation Showcase,” where we saw things like prototype next-gen laptops and giant stereo 3D handheld gaming PCs.
Technology
Data broker blunders as millions are exposed with public passwords
National Public Data (NPD), a background check company, admitted it exposed sensitive info like phone numbers, addresses and Social Security numbers to hackers.
While the company hasn’t shared how big the breach is, it supposedly involves 2.7 billion records, likely including some data on almost every American.
It gets even worse. A new report revealed that another NPD data broker, which shares access to the same consumer records, published user passwords to its back-end database.
GET SECURITY ALERTS, EXPERT TIPS – SIGN UP FOR KURT’S NEWSLETTER – THE CYBERGUY REPORT HERE
What you need to know
KrebsOnSecurity reported that a sister NPD property, called recordscheck.net, was hosting an archive that included the usernames and passwords of the site’s administrator.
A review of the now-removed archive reveals that it contained the source code, along with plain text usernames and passwords, for various components of recordscheck.net. This site bears a striking resemblance to nationalpublicdata.com, with matching login pages.
The exposed archive, titled “members.zip,” suggests that all RecordsCheck users were initially given the same six-character password and advised to change it, though many didn’t.
According to KrebsOnSecurity, which referenced breach tracking service Constella Intelligence, the passwords found in the source code archive match those exposed in earlier data breaches. This suggests that millions of users may be affected in this case as well.
We reached out for a comment from RecordsCheck but did not hear back before our deadline.
PHARMA GIANT’S DATA BREACH EXPOSES PATIENTS’ SENSITIVE INFORMATION
National Public Data’s response
Salvatore “Sal” Verini, the founder of NPD and a retired sheriff’s deputy from Florida, told KrebsOnSecurity that the exposed archive, a .zip file containing recordscheck.net credentials, has been removed from the company’s website. Verini also mentioned that the site is scheduled to shut down “in the next week or so.”
“Regarding the zip, it has been removed, but it was an old version of the site with non-working code and passwords,” Verini said. He declined to offer additional information, stating that the issue is under active investigation and he cannot comment further.
WORLD’S LARGEST STOLEN PASSWORD DATABASE UPLOADED TO CRIMINAL FORUM
Reminder to invest in identity theft protection
News of the NPD data breach surfaced after a California man filed a lawsuit against the company, as reported by Bloomberg. He discovered the breach through his identity theft protection service, which flagged his data in the leaked database. Since then, many people online have reported receiving similar alerts from their protection services, allowing them to take action before it was too late.
In 2024, an identity theft protection service is practically a must-have. If you’ve been keeping up with CyberGuy articles, you’ve probably seen frequent reports on data breaches, whether it’s the AT&T breach, Dell breach or the Advance Auto Parts leak.
One of the best parts of using identity theft protection is that they might include identity theft insurance of up to $1 million to cover losses and legal fees and a white-glove fraud resolution team where a U.S.-based case manager helps you recover any losses. See my tips and best picks on how to protect yourself from identity theft.
4 additional tips to protect yourself from data breaches
Identity theft protection is the first thing I recommend to everyone, but there are also steps you can take to protect yourself.
1. Be careful with passwords: The recordscheck.net leak exposed passwords, and as I discussed, many users didn’t change the auto-assigned passwords. That’s a big mistake. Always create strong passwords for your accounts and devices and avoid using the same password for multiple online accounts.
Consider using a password manager to securely store and generate complex passwords. It will help you to create unique and difficult-to-crack passwords that a hacker could never guess. Second, it also keeps track of all your passwords in one place and fills passwords in for you when you’re logging into an account so that you never have to remember them yourself. Get more details about my best expert-reviewed Password Managers of 2024 here.
2. Remove your personal information from the Internet: While no service can completely erase your data from the Internet, using a data removal service is a smart move, especially in light of recent data breaches like the NPD incident. These services aren’t cheap, but neither is your privacy.
CLICK HERE FOR MORE US NEWS
They handle the heavy lifting by continuously monitoring and systematically removing your personal information from countless websites. This gives peace of mind and is one of the most effective ways to safeguard your data online. Check out my top picks for data removal services here.
3. Be wary of mailbox communications: Bad actors may also try to scam you through snail mail. The data leak gives them access to your address. They may impersonate people or brands you know and use themes that require urgent attention, such as missed deliveries, account suspensions and security alerts.
4. Routinely check your credit reports: Obtain a free copy of your credit report from each of the three credit reporting agencies mentioned earlier. Review the reports carefully for any suspicious or unauthorized activity. If you find any inaccuracies or signs of fraud, report them to the credit reporting agency immediately.
4.3 MILLION AMERICANS EXPOSED IN MASSIVE HEALTH SAVINGS ACCOUNT DATA BREACH
Kurt’s key takeaway
The NPD data breach and the security incident involving its sister website highlight the irresponsibility of these companies in handling sensitive public information. There is an urgent need for governments to step in and impose serious legal consequences, not just a slap on the wrist. Fines should be involved. Anyone dealing with sensitive data must ensure that the data is encrypted and take measures to prevent it from falling into the wrong hands.
Do you believe current regulations are sufficient for handling data breaches or do they need to be more stringent? Let us know by writing us at Cyberguy.com/Contact.
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.
Ask Kurt a question or let us know what stories you’d like us to cover.
Follow Kurt on his social channels:
Answers to the most asked CyberGuy questions:
New from Kurt:
Copyright 2024 CyberGuy.com. All rights reserved.
Technology
Intel still dreams of modular PCs — it brought a tablet laptop gaming handheld to CES
While I was there, I also spotted a heavy metal handheld on a table that didn’t seem… fully attached… to its screen. When I lifted the screen, it came away easily.
It felt suspiciously light to be a real tablet, so I flipped it over and saw three connectors underneath:
Above it, on a shelf, was a laptop with a suspiciously sized chunk of plastic on the bottom that looked like a perfect match. A minute later, Intel gaming evangelist Colin Helms confirmed: I was looking at a concept modular PC.
That module contains a complete Intel Lunar Lake computer, the entire guts you’d need to make one work outside of peripherals and screen. It’s basically a reboot of Intel’s abandoned Compute Card idea, except it’s not all Intel’s doing and you probably shouldn’t ever expect it to ship.
It’s a concept from Quanta, a company whose name you don’t typically see on the laptops and tablets they create, because Quanta is an ODM (like Compal, Pegatron, Wistron, and Apple’s better known iPhone supplier Foxconn) that designs and manufactures hardware on behalf of brand names.
Quanta’s calling the whole modular system the “AI8A,” and the aforementioned module at its heart is the “Detachable AI Core.” Helms told me it plugs into other concept computers as well, including an all-in-one desktop that Intel didn’t have to show off. And presumably, like the Compute Card idea, you could upgrade your computer just by putting a new new module into it.
The modular laptop has lots of concept-y bells and whistles too, so many that Intel’s CES staff hadn’t even worked them all out yet.
For starts, the laptop has a motorized hinge, so you can tell it to open and close its own lid; it also claims to offer eye-tracking that lets you sling around multitasking windows just by looking at where you’d like them to be. It apparently comes with a mouse integrated into a ring that you could wear.
The most mundane: a built-in Qi wireless charging pad in the palmrest, with indicator lights to show your battery’s remaining capacity.
I couldn’t try any of it working, unfortunately, nor did I manage to ask what “AI8A” means, because I mistakenly thought it said Aiba until I checked my photos closely just now. Nor could we hotswap the module between the handheld and laptop, since the module apparently doesn’t have a battery inside.
Again, this is a cool computing concept car: it’s not likely that this computer will ever ship, even in a more practical / less gadgety form. Thankfully, we have begun to see some real, practical modularity in the laptop space since the death of Intel’s Compute Card. Framework just celebrated its fifth anniversary this week, and Dell took a smaller step forward at CES with its first modular repairable USB-C port.
Photos by Sean Hollister / The Verge
Technology
AI isn’t going anywhere: Prompts to make life easier
I was having dinner with my husband in Paris. We got the wine menu and all the names, of course, were in French. Barry wanted something equivalent to a Napa cabernet, so I took a picture of the menu and asked ChatGPT. In seconds, it recommended a wine. I double-checked with the waiter, and he gave it a thumbs-up.
Win a pair of $329 Ray-Ban Meta smart glasses. Enter here, no purchase necessary!
You might think AI is just for businesses, programmers, or the ultra tech-savvy, but it’s not. It’s for anyone willing to give it a try.
AI EXPERT: CHATGPT PROMPTS YOU’LL WISH YOU KNEW SOONER
Instead of ignoring this powerful tool, make this the year you embrace AI. It’s easier and more helpful than you think.
Let’s start with the basics
“So, uh, where do I find ChatGPT?” I get that in my email every day. Use it on the web or download it for iPhone or Android.
The free tier works for most people. I pay $20 a month for ChatGPT Plus. It’s worth it to me for access to the better features and faster response times. Start with free. If you find yourself relying on your favorite AI tool regularly, consider upgrading. It is worth considering.
ChatGPT isn’t the only option, but it is my preference (at least for now) and the most popular. You can also try Google Gemini, Perplexity and Claude.
With all these, the workflow is the same. Think of it like Google, but instead of punching in one search term and scrolling through results, you have a “conversation” with the bot to get exactly the output you want.
Like any tool, you need to use AI wisely and triple-check its results. Trust me, you don’t want to end up like those lawyers who used AI to draft court documents, only to have the judge catch the glaring mistakes.
BIOMETRIC DATA: IS IT SAFE TO HAND IT OVER TO ANY COMPANY THAT ASKS?
You’ve heard of prompts, right?
This is what we call the text, question or command you provide an AI system to guide its response or action. It’s your instruction on what you want, so the better your prompt, the more useful and accurate the response will be.
“Priming” is the insider term for telling a chatbot exactly what you want from it. With ChatGPT or any other, the more constraints you give, the better your answer. Examples: “Limit your response to 250 words,” “Give me the list in bullet points,” “Format the results as a table,” “Use this data to create a bar chart.”
Remember, AI can’t read your mind. It only knows what you tell it. Use “do” and “don’t” in your prompts to get the results you want. Say you’re cooking for friends, and some have allergies. Say, “Create a recipe for six people. Do include protein, fruits, vegetables and carbs. Don’t include dairy products, shellfish or nuts.”
7 prompts to make life easier
Make your goals actionable: “I have a goal for 2025 to [fill in the blank]. Can you help me make it SMART?” (SMART is an acronym for Specific, Measurable, Assignable, Realistic and Time-related.) Maybe you’re not there yet. Try this: “I want to [fill in the blank], but it feels overwhelming, and I don’t know where to start. Can you help me by breaking it down into more manageable tasks?”
“Give me 10 more examples”: That’s a prompt I use with ChatGPT all the time to make the chatbot a better brainstorming buddy. Some of its “ideas” are downright bad, but it might spark something creative in your brain, too.
“How can I make this better?” Add in anything you’ve written — a blog post, a travel plan, a resume or even a heartfelt email. This prompt works wonders for polishing your work and pointing out improvements, like a personal editor at your fingertips.
DO THIS WITH YOUR FAMILY VIDEOS BEFORE IT’S TOO LATE
Your very own free assistant: Say you have messy notes from a meeting. By hand, you’d spend 15 minutes turning those into an email fit for your boss or team. Instead, open a chatbot and say, “Turn these notes into a professional, friendly email to my team.” Paste your notes at the end and voila. Pro tip: Ask your bot of choice, “Is there anything that needs more details?” to fill in any missing info.
Shortcut your inbox: When you get a really long email, open your AI chatbot of choice, and type in the prompt, “Summarize this email for me. Tell me what I need to do, then write a thoughtful reply. Here is the email.” Paste in the email and let AI do its magic.
Wanna get in shape? Ask your AI to create a custom fitness plan. Try this: “Create a 30-day fitness plan for fat loss and muscle gain tailored to a [male/female] beginner at [your age].” Or get specific: “Create a four-week fitness plan to help me run a mile for the first time.” Don’t sweat it.
Spouse forgot to load the dishes again? Instead of firing off a rage-filled text, let AI step in. Ask your fave chatbot to reframe your frustration into something a bit more … constructive. I like this prompt: “Make this message sound more friendly.”
Don’t forget about privacy
It’s easy to think your bot is a trusted ally, especially when it’s pumping out helpful answers all day long. But it’s definitely not. It’s a data-collecting tool like any other.
Be smart about what you say. Never type in passwords, sensitive financial data, or confidential work or business information. My rule of thumb: Don’t tell a chatbot anything you wouldn’t want made public.
With a free ChatGPT or Perplexity account, you can turn off memory features in the app settings that remember everything you type in. For Google Gemini, you need a paid account to do this.
Get tech-smarter on your schedule
Award-winning host Kim Komando is your secret weapon for navigating tech.
Copyright 2025, WestStar Multimedia Entertainment. All rights reserved.
Technology
Amazon is ‘winding down’ some of its DEI programs
As we head toward the end of the year, I want to give another update on the work we’ve been doing around representation and inclusion.
As a large, global company that operates in different countries and industries, we serve hundreds of millions of customers from a range of backgrounds and globally diverse communities. To serve them effectively, we need millions of employees and partners that reflect our customers and communities. We strive to be representative of those customers and build a culture that’s inclusive for everyone.
In the last few years we took a new approach, reviewing hundreds of programs across the company, using science to evaluate their effectiveness, impact, and ROI – identifying the ones we believed should continue. Each one of these addresses a specific disparity, and is designed to end when that disparity is eliminated. In parallel, we worked to unify employee groups together under one umbrella, and build programs that are open to all. Rather than have individual groups build programs, we are focusing on programs with proven outcomes – and we also aim to foster a more truly inclusive culture. You can read more about this on our Together at Amazon page on A to Z.
This approach – where we move away from programs that were separate from our existing processes, and instead integrating our work into existing processes so they become durable— is the evolution to “built in” and “born inclusive,” instead of “bolted on.” As part of this evolution, we’ve been winding down outdated programs and materials, and we’re aiming to complete that by the end of 2024. We also know there will always be individuals or teams who continue to do well-intentioned things that don’t align with our company-wide approach, and we might not always see those right away. But we’ll keep at it.
We’ll continue to share ongoing updates, and appreciate your hard work in driving this progress. We believe this is important work, so we’ll keep investing in programs that help us reflect those audiences, help employees grow, thrive, and connect, and we remain dedicated to delivering inclusive experiences for customers, employees, and communities around the world.
-
Sports1 week ago
The top out-of-contract players available as free transfers: Kimmich, De Bruyne, Van Dijk…
-
Politics1 week ago
New Orleans attacker had 'remote detonator' for explosives in French Quarter, Biden says
-
Politics1 week ago
Carter's judicial picks reshaped the federal bench across the country
-
Politics7 days ago
Who Are the Recipients of the Presidential Medal of Freedom?
-
Health6 days ago
Ozempic ‘microdosing’ is the new weight-loss trend: Should you try it?
-
World1 week ago
South Korea extends Boeing 737-800 inspections as Jeju Air wreckage lifted
-
News1 week ago
21 states are getting minimum wage bumps in 2025
-
Technology2 days ago
Meta is highlighting a splintering global approach to online speech