Connect with us

Published

on

Over the years, travelers have repeatedly been warned to avoid public Wi-Fi in places like airports and coffee shops. Airport Wi-Fi, in particular, is known to be a hacker honeypot, due to what is typically relatively lax security. But even though many people know they should stay away from free Wi-Fi, it proves as irresistible to travelers as it is to hackers, who are now updating an old cybercrime tactic to take advantage.

An arrest in Australia over the summer set off alarm bells in the United States that cybercriminals are finding new ways to profit from what are called “evil twin” attacks. Also classified within a type of cybercrime called “Man in the Middle” attacks, evil twinning occurs when a hacker or hacking group sets up a fake Wi-Fi network, most often in public settings where many users can be expected to connect.

In this instance, an Australian man was charged with conducting a Wi-Fi attack on domestic flights and airports in Perth, Melbourne, and Adelaide. He allegedly set up a fake Wi-Fi network to steal email or social media credentials.

“As the general population becomes more accustomed to free Wi-Fi everywhere, you can expect evil twinning attacks to become more common,” said Matt Radolec, vice president of incident response and cloud operations at data security firm Varonis, adding that no one reads the terms and conditions or checks the URLs on free Wi-Fi.

“It’s almost a game to see how fast you can click “accept” and then ‘sign in’ or ‘connect.’ This is the ploy, especially when visiting a new location; a user might not even know what a legitimate site should look like when presented with a fake site,” Radolec said.

Today’s ‘evil twins’ can more easily hide

One of the dangers of today’s twinning attacks is that the technology is much easier to disguise. An evil twin can be a tiny device and can be tucked behind a display in a coffee shop, and the small device can have a significant impact.

“A device like this can serve up a compelling copy of a valid login page, which could invite unwary device users to enter their username and password, which would then be collected for future exploitation,” said Cincinnati-based IT consultant Brian Alcorn. 

The site doesn’t even have to actually log you in. “Once you’ve entered your information, the deed is done,” Alcorn said, adding that a harried, weary traveler probably would just think the airport Wi-Fi is having issues and not give it another thought.  

People who are not careful with passwords, such as use of pet’s names or favorite sports teams as their password for everything, are even more vulnerable to an evil twin attack. Alcorn says for individuals who reuse username and password combinations online, once the credentials are obtained they can be fed into AI, where its power can quickly give cybercriminals the key.

“You are susceptible to exploitation by someone with less than $500 in equipment and less skill than you might imagine,” Alcorn said. “The attacker just has to be motivated with basic IT skills.”

How to avoid becoming a victim of this cybercrime

When in public places, experts say it’s best to use alternatives to public WiFi networks.

“My favorite way to avoid evil twin attacks is to use your phone’s mobile hotspot if possible,” said Brian Callahan, Director of the Rensselaer Cybersecurity Collaboratory at Rensselaer Polytechnic Institute.

Users would be able to spot an attack if through a phone relying on its mobile data and sharing it via a mobile hotspot.

“You will know the name of that network since you made it, and you can put a strong password that only you know on it to connect,” Callahan said.

If a hotspot isn’t an option, a VPN can also provide some protection, Callahan said, as traffic should be encrypted to and from the VPN.

“So even if someone else can see the data, they can’t do anything about it,” he said.

Airport, airline internet security issues

At many airports, the responsibility for WiFi is outsourced and the airport itself has little if any involvement in safeguarding it. At Dallas Fort Worth International Airport, for example, Boingo is the Wi-Fi provider.

“The airport’s IT team does not have access to their systems, nor can we see usage and dashboards,” For said an airport spokesman. “The network is isolated from DAL’s systems as it is a separate standalone system with no direct connection to any of the City of Dallas’ networks or systems internally.” 

A spokeswoman for Boingo, which provides service to approximately 60 airports in North America, said it can identify rogue Wi-Fi access points through its network management. “The best way passengers can be protected is by using Passpoint, which uses encryption to automatically connect users to authenticated Wi-Fi for a safe online experience,” she said, adding that Boingo has offered Passpoint since 2012 to enhance Wi-Fi security and eliminate the risk of connecting to malicious hotspots.

Alcorn says evil twin attacks are “definitely” occurring with regularity in the United States, it’s just rare for someone to get caught because they are such stealth attacks.  And sometimes hackers use these attacks as a learning model. “Many evil twin attacks may be experimental by individuals with novice-to-intermediate skills just to see if they can do it and get away with it, even if they don’t use the collected information right away,” he said.

The surprise in Australia wasn’t the evil twinning attack itself, but the arrest.

“This incident isn’t unique, but it is unusual that the suspect was arrested,” said Aaron Walton, threat analyst at Expel, a managed services security company. “Generally, airlines are not equipped and prepared to handle or mediate hacking accusations. The typical lack of arrests and punitive action should motivate travelers to exercise caution with their own data, knowing what a tempting and usually unguarded -target it is — especially at the airport.”

In the Australian case, according to Australian Federal Police, dozens of people had their credentials stolen.

According to a press release from the AFP, “When people tried to connect their devices to the free WiFi networks, they were taken to a fake webpage requiring them to sign in using their email or social media logins. Those details were then allegedly saved to the man’s devices.”  

Once those credentials were harvested, they could be used to extract more information from the victims, including bank account information.

For hackers to be successful, they don’t have to dupe everyone. If they can persuade only a handful of people – statistically easy to do when thousands of harried and hurried people are milling around an airport – they will succeed.

“We expect WI-Fi to be everywhere. When you go to a hotel, or an airport, or a coffee shop, or even just out and about, we expect there to be Wi-Fi and often freely available WI-FI,” Callahan said. “After all, what’s yet another network name in the long list when you’re at an airport? An attacker doesn’t need everyone to connect to their evil twin, only some people who go on to put credentials into websites that can be stolen.”

The next time you’re at the airport, the only way to be 100% sure you’re safe is to bring your own Wi-Fi.

Continue Reading

Technology

Satya Nadella says as much as 30% of Microsoft code is written by AI

Published

on

By

Satya Nadella says as much as 30% of Microsoft code is written by AI

Facebook’s CEO Mark Zuckerberg (L) speaks with Microsoft’s CEO Satya Nadella after posing for a family picture with guests who attend the “Tech for Good” Summit at the Elysee Palace in Paris, on May 23, 2018.

Charles Platiau | AFP | Getty Images

Microsoft CEO Satya Nadella on Tuesday said that as much as 30% of the company’s code is now written by artificial intelligence.

“I’d say maybe 20%, 30% of the code that is inside of our repos today and some of our projects are probably all written by software,” Nadella said during a conversation before a live audience with Meta CEO Mark Zuckerberg.

The pair of CEOs were speaking at Meta’s inaugural LlamaCon AI developer event in Menlo Park, California. Nadella added that the amount of code being written by AI at Microsoft is going up steadily. 

Nadella asked Zuckerberg how much of Meta’s code was coming from AI. Zuckerberg said he didn’t know the exact figure off the top of his head, but he said Meta is building an AI model that can in turn build future versions of the company’s Llama family of AI models.

“Our bet is sort of that in the next year probably … maybe half the development is going to be done by AI, as opposed to people, and then that will just kind of increase from there,” Zuckerberg said.

Microsoft and Meta together employ tens of thousands of software developers, but they’re the latest companies to discuss how AI is replacing some of the work written by human software developers. 

Since OpenAI’s launch of ChatGPT in late 2022, people have turned to AI for a number of tasks, including customer service work, generating sales pitches and software development itself. 

Google CEO Sundar Pichai in October said that more than 25% of new code was written by AI. Earlier this month, Shopify CEO Tobi Lutke told employees that they will have to prove AI cannot do a job before asking for more headcount. Similarly, Duolingo CEO Luis von Ahn on Monday announced in a memo that the language-teaching company will gradually turn to AI in lieu of human contractors. 

Earlier this month CNBC and other outlets reported that OpenAI was in talks to acquire Windsurf, a startup with “vibe coding” software that spits out whole programs with a few words of input. The dream is that with machines helping to write code, organizations will be able to produce more and better software.

WATCH: Amazon forms new unit focused on Agentic AI

Amazon forms new unit focused on Agentic AI

Continue Reading

Technology

Samsung flags uncertain economic climate after smartphone, chip sales power quarterly results beat

Published

on

By

Samsung flags uncertain economic climate after smartphone, chip sales power quarterly results beat

Photo illustration showing the Samsung Group company logo displayed on a smartphone screen.

Sopa Images | Lightrocket | Getty Images

Samsung Electronics‘ operating profit and revenue beat analysts’ estimates Wednesday, as sales of its flagship Galaxy S25 smartphones as well as memory chips rose.

The South Korean company posted a record quarterly revenue, up 10% from a year earlier, while its first-quarter operating profit climbed 1.5%.

Here are Samsung’s first-quarter results compared with LSEG SmartEstimates, which are weighted toward forecasts from analysts who are more consistently accurate:

  • Revenue: 79.1 trillion Korean won ($55.4 billion) vs. 78.1 trillion Korean won
  • Operating profit: 6.7 trillion Korean won vs. 6.4 trillion Korean won

First-quarter revenue marginally topped Samsung’s forecast of 79 trillion Korean won, while operating profit also came in higher than the company’s expectations of 6.6 trillion Korean won.

Samsung is a leading manufacturer of memory chips, which are utilized in devices such as laptops and servers, and is also the world’s second-largest smartphone maker.

The company flagged macroeconomic uncertainties due to trade tensions and a slowdown in global growth. Samsung expects performance to improve in the second half of the year, “assuming that the uncertainties are diminished.”

South Korea-listed shares of Samsung Electronics were trading down about 0.4%.

Memory business

A report from Counterpoint Research earlier this month said that SK Hynix had overtaken Samsung in overall DRAM market revenue for the first time, with a 36% global market share as compared to Samsung’s 34%.

The report added that this had resulted, in part, from SK Hynix’s dominance in high bandwidth memory or HBM — a type of DRAM used in artificial intelligence servers in which chips are vertically stacked to save space and reduce power consumption.

SK Hynix last week topped quarterly revenue and operating profit estimates on strong demand for its high bandwidth memory offerings.

In its first quarter earnings, Samsung said it experienced deferred HBM demand from customers anticipating the rollout of its latest HBM products.

For the current quarter, Samsung anticipates continued strong demand for AI servers and will seek to strengthen its position in high-value-added products, including HBM. 

Smartphones 

Samsung’s mobile experience and networks businesses, tasked with developing and selling smartphones, tablets, wearables and other devices, reported a increase in sales and profit from the prior year and quarter.

The company credited the growth to the launch of its latest Galaxy S25 smartphone series, which includes AI features.

In the current quarter, the company plans to sustain sales through the launch of a new Galaxy S25 Edge smartphone and said it will continue to expand the AI-powered features offered on its smartphone lineup.

Correction: This story has been revised to reflect that operating profit in the chip segment declined both on a quarter-on-quarter as well as year-on-year basis.

Continue Reading

Technology

Waymo, Toyota strike partnership to bring self-driving tech to personal vehicles

Published

on

By

Waymo, Toyota strike partnership to bring self-driving tech to personal vehicles

A Waymo self-driving car, seen with a driver, stops at a red light outside the U.S. Capitol in Washington, D.C., on Friday, March 31, 2025.

Bill Clark | CQ-Roll Call, Inc. | Getty Images

Alphabet-owned Waymo and Toyota on Tuesday announced a preliminary partnership to explore bringing robotaxi tech to personally-owned vehicles.

“The companies will explore how to leverage Waymo’s autonomous technology and Toyota’s vehicle expertise to enhance next-generation personally owned vehicles,” the two companies announced.

The companies said they aim to use the partnership to more quickly develop driver assistance and autonomous vehicle technologies for personal vehicles. Toyota is the world’s largest automaker by sales. 

Waymo co-CEO Tekedra Mawakana said the strategic partnership could also result in the Google-owned company incorporating Toyota’s “vehicles into our ride-hailing fleet.”

The Toyota tie-up is the latest automotive partnership for Waymo.

The self-driving company has previously worked with automakers such as Jaguar Land Rover, Stellantis predecessor Fiat Chrysler, Daimler Trucks, Mercedes-Benz parent Daimler, Hyundai Motor and China’s Geely Zeekr. The partnerships, many of which touted long-term tie-ups, largely resulted in automakers producing modified vehicles for testing or for Waymo to use in its fleets.

The partnership with Toyota will not affect Waymo’s plans to deploy Hyundai and Zeekr vehicles through the Waymo One service in the future, a spokesman for the Alphabet-owned company told CNBC.

Waymo is now serving 250,000 paid rides per week, up from 200,000 in February, before Waymo opened in Austin and expanded in the San Francisco Bay Area in March. Waymo is already running its commercial, driverless ride-hailing services in the San Francisco, Los Angeles, Phoenix and Austin regions.

Alphabet CEO Sundar Pichai noted in first-quarter earnings last week that Waymo has not entirely defined its long-term business model, and there is “future optionality around personal ownership” of vehicles equipped with Waymo’s self-driving technology.

Waymo and Toyota are not the only companies turning their focus to personally-owned autonomous vehicles. When GM announced in December that it was abandoning its Cruise robotaxi business, the company said it would instead focus on the development of autonomous systems for use in personal vehicles.

Toyota previously invested in and partnered with Tesla, Elon Musk’s automaker which now aims to compete with Waymo on driverless tech. Toyota sold the its stake in the EV maker in June 2017.

Tesla, once seen as a pioneer in self-driving tech, does not yet produce cars that are safe to use without a human driver at the wheel, ready to steer or brake at any time.

Elon Musk, Tesla CEO, criticized Waymo on a recent earnings call claiming the robotaxis are too expensive for mass-production. Musk also promised Tesla will be “selling fully autonomous rides in June in Austin,” using Model Y vehicles with a new “unsupervised” version of the company’s “Full Self-Driving” or FSD systems installed.

— CNBC reporter Michael Wayland contributed to this report.

WATCH: Pichai: Google may offer personal Waymo robotaxis

Pichai: Google may offer personal Waymo robotaxis

Continue Reading

Trending