The FBI has deleted the PlugX malware from thousands of US computers. Meanwhile, researchers have found vulnerabilities in Windows 11, allowing hackers to bypass protections and execute code at a kernel level. Texas sues Allstate for reportedly collecting, using, and selling driving data without consent. An executive order allows developers of AI to build data centers on federal land, and Meta comes under criticism for profiting while user security suffers.

Mandiant warns of attacks on newly-disclosed Ivanti remote takeover threat
Google’s Mandiant team has issued an alert about a remote code execution flaw in the Ivanti Connect Secure VPN platform. The vulnerability, designated CVE-2025-22457, is