Key Takeaways
- A group called CyberLeek claims to have leaked Grand Theft Auto VI assets and is promoting a memecoin, prompting Rockstar to issue copyright takedowns; experts suspect the material comes from a hacked developer build.
- The FBI warns that hackers are using AI to automate and refine attacks on U.S. water‑system infrastructure, showing that AI‑driven threats are already materialising.
- An Incogni analysis ranks major AI chatbots (ChatGPT, Gemini, Meta AI, Perplexity, Grok, etc.) on privacy transparency, identifying which are most and least trustworthy.
- Retailers often treat shoppers’ personal data as more valuable than the purchase itself; the article offers practical tips for protecting privacy while buying online or in‑store.
- Piracy of popular media remains a malware vector; a new Lumma‑stealer campaign disguises itself as pirated copies of The Odyssey to harvest credentials, payment data, and crypto wallets.
- Research from Gambit shows threat actors are leveraging AI to write custom exploit scripts, speed up debugging, and focus on high‑value targets, increasing the potency and reach of malware campaigns.
- The hacking group ShinyHunters exposed 1.6 million RingCentral accounts after a voice‑phishing breach, underscoring that human error remains the weakest security link.
- Typical “pay‑or‑we’ll ruin your life” email extortion messages are almost always bulk phishing scams; genuine targeted attacks are rare and usually seek personal media without demanding payment.
CyberLeek’s Alleged GTA VI Leak and Memecoin Push
Rumors swirl around an upcoming release of Grand Theft Auto VI, and a self‑styled group named CyberLeek claims to possess a copy of the game. They have been sharing screenshots and short clips online, which prompted Rockstar Games to file copyright takedown notices to curb the distribution. In tandem with the leak, CyberLeek is urging supporters to purchase a memecoin they say will fund a fight against “anti‑consumerism” in the gaming industry. Security observers note that the leaked material most likely originates from a compromised development build rather than a retail version, and the memecoin push appears aimed at financial gain rather than any ideological cause. The episode highlights how game leaks can quickly spawn ancillary monetisation schemes, and it may signal the emergence of another hack‑for‑profit collective if the pattern continues.
FBI Alert: AI‑Enhanced Attacks on Water Infrastructure
The Federal Bureau of Investigation has issued a warning to owners and operators of U.S. water‑system facilities, stating that threat actors are increasingly employing artificial intelligence to streamline their intrusion attempts. By using AI to automate reconnaissance, craft tailored phishing lures, and optimise exploit code, attackers can reduce the time and skill required to breach critical infrastructure. The alert stresses that the danger is not speculative; AI‑assisted campaigns are already observed in the wild, raising the stakes for defenders who must now contend with faster, more adaptive adversaries. Utilities are urged to adopt multi‑factor authentication, network segmentation, and continuous monitoring to mitigate the heightened risk.
Incogni’s Privacy Ranking of Major AI Chatbots
A recent report from privacy‑focused firm Incogni examined the data‑handling policies of thirteen leading AI companies and their associated chatbots, including ChatGPT, Gemini, Meta AI, Perplexity, and Grok. The analysis evaluated transparency, data retention periods, user consent mechanisms, and third‑party sharing practices. Chatbots that scored highest provided clear, concise privacy notices, limited data retention to what is strictly necessary, and offered users easy opt‑out or deletion options. Conversely, the lowest‑ranked services retained user inputs for extended periods, shared data broadly with affiliates for model training, and offered vague or buried privacy disclosures. The findings equip consumers and businesses with a quick reference when choosing which AI assistants to trust with sensitive information.
Retail Data: More Valuable Than the Purchase Itself
When shoppers hand over personal details—name, email, address, payment info—to complete a transaction, many retailers treat that data as a commodity that can outweigh the profit margin of the sold goods. The article explains how companies aggregate purchase histories, browsing behavior, and demographic data to build detailed consumer profiles, which are then used for targeted advertising, dynamic pricing, and sold to data brokers. To protect oneself, the piece recommends: using masked or virtual email addresses, limiting the amount of personal information supplied at checkout, opting out of marketing communications where possible, employing payment methods that mask card numbers (e.g., virtual cards or services like Apple Pay), and regularly reviewing privacy settings on retailer accounts. Vigilance can reduce the unintended exposure of personal data in the commercial ecosystem.
Malware Campaign Targeting The Odyssey Pirates
Illicit downloads of popular media continue to serve as a launchpad for malware, as demonstrated by a new campaign that baits users seeking pirated copies of Homer’s The Odyssey. The attackers disguise the Lumma information‑stealer as ripped Blu‑ray releases or other seemingly legitimate video files. Once executed, Lumma harvests browser sessions, saved passwords, authentication cookies, autofill data, payment details, and cryptocurrency wallet keys from the infected machine. The scheme follows a familiar playbook: broad distribution via torrent trackers and piracy forums, aiming to collect as much data as possible from a large number of victims while avoiding persistence mechanisms that could attract forensic attention. Users are advised to steer clear of unofficial download sources, keep anti‑malware tools up‑to‑date, and verify file integrity before opening any media obtained from questionable sites.
How Hackers Use AI to Amplify Malware Operations
A study by threat‑intelligence firm Gambit investigated three unrelated cyber‑criminal groups to understand how they incorporate AI into their malware campaigns. Researchers found that the attackers employ AI to: generate custom scripts that match a target’s specific operating system and software environment; rapidly prototype and test new exploitation tools; automate debugging and refinement of existing malware; and prioritize high‑value victims such as executives or individuals with privileged access. In one case, an AI‑assisted intrusion came close to compromising an organization’s backup recovery layer, threatening the ability to restore critical services. The findings underscore that AI is not just a defensive tool but a force multiplier for offensive operations, making attacks faster, more precise, and harder to detect without equally advanced defenses.
ShinyHunters Dumps 1.6 Million RingCentral Accounts After Voice‑Phish
The notorious hacking collective ShinyHunters announced the release of a massive data set containing 1.6 million unique email addresses, together with associated names, physical addresses, and phone numbers harvested from RingCentral accounts. RingCentral confirmed the breach in late July, describing it as a “sophisticated social engineering campaign” that affected a limited subset of its customers. According to ShinyHunters, the intrusion began with a simple voice‑phishing call that tricked an employee into divulging their password; the group then exfiltrated over 623 GB of data and threatened to publish it unless a ransom was paid. When RingCentral declined to meet the demand, the data was leaked publicly. The incident reinforces two critical lessons: human beings remain the weakest link in security chains, and emerging AI‑driven voice‑deepfake tools make such phishing attempts easier to execute and harder to detect.
Are “Pay‑or‑We’ll Ruin Your Life” Email Extortions Real?
A reader asked whether threatening emails demanding payment to prevent the release of compromising photos or videos are legitimate. The response clarifies that the overwhelming majority of these messages are bulk phishing scams. Attackers harvest large lists of email addresses, then send out templated threats hoping that a tiny fraction of recipients will panic and pay. Because the cost of sending tens of thousands of emails is low, even a few payments yield a profit. Genuine targeted extortion—where an attacker truly possesses personal media and seeks money—is rare and usually lacks the theatrical email demand; instead, the perpetrator may infiltrate accounts or devices directly to obtain the content. The advice is simple: treat such emails as spam, delete them, and report them if desired. Only if there is evidence of a specific compromise (e.g., unknown login activity, unexplained files) should one consider further investigation or involve law‑enforcement.
By distilling the week’s security headlines into these concise sections, readers can quickly grasp the evolving threats—from AI‑enhanced infrastructure attacks and data‑privacy concerns to persistent piracy‑linked malware and social‑engineering scams—and take informed steps to protect themselves and their organizations.

