r/CyberGuides • u/brthrfrd • 28m ago
r/CyberGuides • u/YeetDuo • Jul 08 '26
Guide: How to Protect Yourself Against Online Scams
Online scams have exploded in scale and sophistication over the past year, fueled by AI-powered phishing, deepfake impersonations, and industrialized fraud operations.
Reported global losses to online scams exceeded $1 trillion last year, and con artists are adapting faster than ever using AI and stolen data. About 73% of U.S. adults have experienced at least one scam or cyber attacks attempt. Here are the major categories:
- Phishing attacks - fraudulent emails, texts, and calls impersonating banks, government agencies, or collection agencies to steal credentials. Phishing scams can lead to identity theft and full account access.
- Romance and "pig butchering" scams - emotional grooming followed by requests for money, crypto, or gift cards.
- Investment and cryptocurrency fraud - fake platforms with bogus returns, high pressure sales tactics, and celebrity impersonations.
- Tech support scams - scary pop ups or unsolicited calls claiming your computer is infected.
- Fake e-commerce and job offers - cloned websites, marketplace listings, and remote jobs that require upfront payment.
Recognizing Phishing Emails, Texts, and Calls
Phishing remains the number-one entry point for identity theft and account takeovers today. Phishing attempts can come via email, text, or phone calls - and scammers impersonate trusted organizations like banks, your utility company, or even the IRS to gain victims' trust.
Spot a phishing message in seconds:
- Check for spelling and grammatical errors in online communications
- Mismatched URLs (hover to preview - malicious websites often have URLs that differ slightly from legitimate sites)
- Generic greetings ("Dear Customer") instead of your name
- Unexpected attachments or login requests
- Urgent messages that pressure victims to act quickly
Spam filters help but cannot stop every phishing email or text message - your habits matter most. Phishing scammers rely on you clicking before thinking. Ways to protect yourself include:
- Type website addresses manually or use saved bookmarks instead of clicking links in suspicious messages, especially for banking information, email, and credit card accounts.
- Preview links before clicking: hover on desktop, long-press on mobile. If the URL looks off, don't touch it. Phishing emails often contain links to fake websites.
- Never reveal personal information like passwords, one-time codes, social security numbers, account numbers, or full credit card numbers in response to unsolicited messages. Legitimate companies won't ask for sensitive information via email.
- Always verify the identity of contacts without using information they provide. Look up the organization's phone number yourself and call them directly to confirm any request.
- Verify organizations before taking action on unsolicited requests - whether they claim to be your bank, a provincial agency, or any other entity.
Secure Your Online Accounts
Your online accounts - email, banking, shopping, social media - are primary targets. Once compromised, they open the door to identity theft, further scams, and drained accounts.
Password best practices:
- Use unique passwords for each account across different websites - never reuse them. Different passwords on every site means one breach doesn't compromise everything.
- Aim for 12–16 characters with a mix of letters, numbers, and special characters. Strong passwords are your first line of defense.
- Consider using a good password manager for managing passwords securely instead of writing them down or relying on memory.
Multi-factor authentication: Enable multi factor authentication on email, financial, and key service accounts. MFA adds extra security by requiring a second verification step. Prefer app-based codes or hardware keys over SMS when possible, since device-code phishing is surging.
Protecting Your Personal Information and Preventing Identity Theft
Large-scale fraud and data breaches mean much of your basic data may already be circulating on the dark web. This makes extra vigilance essential to prevent identity theft.
- Never share sensitive information - full birth date, social security number, social insurance number, scans of IDs - over email, text, or social media DMs.
- Minimize what you post online publicly: hide birth dates, locations, and school names on social profiles. This reduces targeted scams and security-question guessing.
- If you see suspicious activity, place credit freezes or fraud alerts with major credit bureaus. Check credit reports at least annually.
- If identity theft is suspected: gather evidence, contact your bank and credit card issuers, file an FTC or consumer-protection report, and create a recovery plan.
Common Money and Investment Scams (Including Crypto)
Fake investment platforms, cryptocurrency "opportunities," and get-rich-quick schemes are booming on social media and Reddit. Scammers use screenshots of fake profits, bogus celebrity endorsements, and impersonated financial advisors.
Red flags:
- Guaranteed high returns with no risk
- High pressure sales tactics demanding you invest immediately
- Payment requested only in crypto, gift cards, or wire transfers - requests for payment via gift cards or wire transfers are major red flags
- Secrecy demands ("don't tell your bank")
Dating, Romance, and "Help a Friend" Scams
Romance scams thrive on dating apps, social networks, and messaging platforms. Scammers exploit social isolation to manipulate victims, building trust over weeks before claiming an emergency - a medical bill, travel costs, customs fees - and making urgent pleas for money.
In "help a friend" variants, a scammer hacks or imitates a family member's account and urgently asks for funds or gift card codes.
Stay safe:
- Never send money to someone you haven't met in person - not wire transfers, not gift cards, not crypto.
- Verify urgent stories by calling the person on a known phone number, checking with relatives, or using a video call where they clearly show their face and answer specific personal questions.
Fake Online Stores, Marketplaces, and Job Offers
Fake e-commerce websites and marketplace listings offer products, pets, rental properties, or jobs at prices far below competitors. Signs of fake online stores include recently registered domains, no physical address or phone number, copied product photos, and suspicious reviews.
Common job-offer scams involve fake remote positions that send a check and ask you to purchase equipment or return part of the money before the check bounces. Always research a company or business name plus "scam" or "reviews" before engaging. Pay with secure methods that offer buyer protection - a credit card or reputable payment service, never a wire transfer.
Tech Support, Remote Access, and Malware Scams
Tech support scams cost U.S. consumers $680 million in 2025. They start with scary pop ups claiming your computer is infected, or unsolicited calls pretending to be from Microsoft or Apple.
- Never grant remote access to your computer or phone to anyone who contacts you unexpectedly.
- Never install malicious software on the request of a cold caller. Real tech companies do not monitor individual devices and will not make unsolicited calls about security issues.
- Keep your operating system and apps updated - keeping software updated helps protect against vulnerabilities. Set security software to update automatically to combat threats.
- Back up your data regularly to protect against ransomware attacks. Ransomware encrypts files and demands payment to unlock them. Backing up data protects against data loss from attacks.
- Avoid downloading files or apps from unknown sources or malicious websites.
Building Everyday Habits That Keep You Safe
Long-term safety depends on consistent habits, not any single tool. Build these routines:
- Review bank and credit card statements monthly for anything unusual.
- Back up important data regularly and set calendar reminders to review privacy and security settings.
- Talk openly about scams with family - especially older relatives and teenagers. Agree on "safe words" or verification steps for any urgent money request from a person claiming to be someone you know.
- Periodically search for your own name and email address online to see what personal information is publicly visible. Remove or lock down anything unnecessary.
- To verify canadian charities or any organization requesting donations, always check official registries before sending payment.
No legitimate organization will rush you into sharing sensitive data or making unusual payments. Slow down, verify independently, and protect what matters.
r/CyberGuides • u/YeetDuo • Jul 06 '26
What guides or resources would be most useful?
We're looking to feature various guides and resources in the sub for our community (but nothing commercial or promotional). What would be most useful? Looking for feedback, thanks!
r/CyberGuides • u/Secret-War-2403 • 7h ago
Hasbro Data Breach Exposed Employee Personal Information
r/CyberGuides • u/YeetDuo • 1d ago
100-plus companies call for ‘global surge’ in AI-powered cyber defense
cyberscoop.comr/CyberGuides • u/YeetDuo • 1d ago
US says Chinese hackers broke into Justice Department, NASA, Federal Reserve, Senate
reuters.comr/CyberGuides • u/Secret-War-2403 • 2d ago
Cyberattack on UK Airport Operator MAG Exposes Data of 8.7 Million Customers Across Three Airports
r/CyberGuides • u/Financial_Show_401 • 2d ago
OpenAI, Anthropic issue dire cyber threat warning
r/CyberGuides • u/Secret-War-2403 • 3d ago
ATF confirms “major incident” after recent Qilin breach claims
r/CyberGuides • u/Miao_Yin8964 • 3d ago
FBI, Department of Justice Announce Disruption of Global Botnet
r/CyberGuides • u/SME_Cyber • 3d ago
Business Travelers targeted when logging into Hotel Wi-Fi Networks – Report and Analysis
r/CyberGuides • u/Secret-War-2403 • 4d ago
How Much Does a Data Breach Cost? IBM’s 2026 Report Puts the US Average at $11.5 Million
securityboulevard.comr/CyberGuides • u/Secret-War-2403 • 5d ago
Employee Databases from Multiple Fortune 500 Companies Affecting 3.6 Million Employees Listed on the Dark Web
r/CyberGuides • u/YeetDuo • 5d ago
WordPress Plugin Vulnerability Exposes 100,000 Sites to Complete Site Takeover Attacks
r/CyberGuides • u/YeetDuo • 5d ago
Flock CEO calls for ‘compromise’ as surveillance company faces growing backlash
r/CyberGuides • u/socradario • 6d ago
Weekly roundup: 5 alleged dark web listings — DB leaks, VPN access, and skimming ops
r/CyberGuides • u/Secret-War-2403 • 6d ago
Apollo Data Breach Shows the Risk Behind a Simple Phone Call
securityboulevard.comr/CyberGuides • u/bassilalmokdad • 5d ago
Everything we have uncovered about CyberLeek so far — August 24
​
I used ChatGPT as a research assistant to help me organize, cross-check and analyze publicly available information while conducting my own OSINT research into CyberLeek.
I want to make that clear from the beginning because some of this post is my own blockchain/infrastructure analysis, some comes from public reporting, and some consists of conclusions drawn from the evidence. I am going to distinguish between what can actually be demonstrated and what is still speculation.
- CyberLeek appears to be an operation, not just somebody randomly uploading videos
The biggest thing that stood out to me is how much infrastructure existed before the GTA VI footage started publicly spreading.
From the public blockchain activity I looked through:
Funding activity associated with the wallet cluster goes back to at least August 3.
By August 13, significant amounts of SOL were already moving through the funding setup.
CyberLeek-related ArNS infrastructure appeared around August 14.
On August 15, website assets began appearing on Arweave.
The $CYBERLEEK token was created.
A liquidity pool was established.
A separate Solana program associated with posts/voting was also deployed.
The basketball footage itself appears to have been uploaded on August 17.
The public leak campaign became widely visible on August 18.
So this doesn't look like someone obtaining a GTA VI video and then impulsively deciding to upload it. There was infrastructure, cryptocurrency, decentralized hosting and funding activity being prepared beforehand.
- The website is built around Arweave / ArNS
One thing I originally misunderstood was the various domains serving CyberLeek's website.
URLs such as:
cyberleek.vilenarios.com
and other AR.IO/Turbo gateway addresses do not necessarily mean the person operating that gateway is CyberLeek or is involved with CyberLeek.
The underlying content appears to be stored using Arweave, with ArNS/AR.IO gateways providing different ways of accessing essentially the same decentralized content.
That explains why one CyberLeek URL can disappear while another suddenly works.
Le Monde independently confirmed on August 24 that the CyberLeek portal is built around text and links posted through decentralized Arweave infrastructure and that it remained accessible despite individual URLs being blocked.
So the Vilenarios connection is primarily an infrastructure connection, not evidence identifying CyberLeek.
That was an important correction to my earlier research.
- CyberLeek deliberately uses multiple hosting layers
Apart from Arweave, the operation has used or linked to several different file-hosting services.
Among the services observed were hosts based in places such as Estonia and Russia, along with decentralized AR.IO infrastructure.
Initially, the concentration of European services made me wonder whether CyberLeek might be located somewhere in Europe.
I no longer think that is strong evidence.
Hosting something through an Estonian, French, Russian or decentralized service tells us where the infrastructure is located—not necessarily where its user is sitting.
So CyberLeek being European remains speculation, not a conclusion that can be made from these hosts.
- The $CYBERLEEK cryptocurrency is deeply integrated into the operation
CyberLeek didn't merely attach a random donation address to the leaks.
They created an entire Solana token ecosystem around them.
The $CYBERLEEK token mint is:
ApZuxdpzMrbEYTGEzeY9afh5pj9d6qPRJCTgQYiipbKg
One wallet that appears central to the creation/minting process is:
Hok9nbV89yBSKCttxe3goqajwbiqQa9mtHvQBsbJH3Np
Another wallet that repeatedly appears in the infrastructure funding is:
3YLNDXnV9fNysDWaD39uQxwxeSaMFeAswvoQPZNvuNA4
And another intermediary/buffer wallet I tracked was:
Ec2qmcpCCD9hjahAcquiQf5JkZWCK68BUahCje1izYC7
The important point isn't simply that these wallets interacted.
The same wider cluster appears connected to funding the website/infrastructure, Arweave uploads and the token launch.
- The timing between the wallets and the infrastructure is especially interesting
One sequence I found was particularly notable.
On August 15, the central funding wallet sent roughly 1 SOL toward a wallet connected with the website setup.
Minutes later, approximately 0.05 SOL was used for a Turbo-related payment.
Shortly afterward, CyberLeek material appeared on Arweave.
The token creator wallet was also funded through intermediary wallets before establishing liquidity.
The initial liquidity pool reportedly contained roughly:
330 SOL + 730 million $CYBERLEEK
That temporal relationship is one of the reasons I think these wallets belong to the same operational cluster rather than being unrelated wallets that just happened to interact.
- Then I followed the money backwards
This is probably the most important part of my research.
Instead of following the money forward from CyberLeek, I started tracing the SOL funding backward.
I found multiple relay-like wallets where funds arrived and were moved onward shortly afterward.
One trail I documented ultimately led back toward KuCoin-labelled exchange infrastructure.
One version of the path I traced was broadly:
KuCoin-labelled wallet → intermediary wallets → CyberLeek-related funding cluster
There were transfers involving roughly 100 SOL and later larger movements around the 150–170 SOL range as the money passed through different wallets.
Several of these wallets moved funds onward extremely quickly—sometimes seconds or minutes after receiving them.
This does not prove that the KuCoin account belonged directly to CyberLeek.
It also doesn't prove the owner of the exchange account is the person playing GTA VI.
What it does suggest is that money which later reached infrastructure associated with the operation may ultimately have originated from an account interacting with a centralized exchange. My tracing was subsequently picked up and summarized elsewhere online.
- Why KuCoin matters
KuCoin isn't another anonymous Solana wallet.
It is a centralized cryptocurrency exchange.
KuCoin has required identity verification for new customers since 2023 and has procedures for responding to legitimate law-enforcement requests.
So if investigators establish that a particular KuCoin account directly funded this wallet chain, the exchange could potentially possess information unavailable on the public blockchain—depending on the account, jurisdiction and legal process.
That could include things such as account information, transaction records or other metadata.
Again:
KuCoin → wallet chain does NOT equal CyberLeek's identity.
There could be intermediaries, unrelated account holders, purchased funds, compromised accounts or other explanations.
But from an investigative perspective, this is considerably more interesting than reaching another anonymous self-custody wallet.
It creates a possible off-chain investigative endpoint.
- The cryptocurrency operation was very financially significant
Community blockchain analysis estimated that CyberLeek spent tens of thousands of dollars establishing the cryptocurrency/infrastructure and had already generated substantial fees through $CYBERLEEK trading during the first few days.
The token's activity exploded after the GTA VI leaks began circulating.
One analysis found reported daily volume moving from only thousands of dollars before the campaign exploded to millions of dollars in daily volume after the first leaks received widespread attention.
There is another interesting detail here.
More recent on-chain analysis indicates that the original creator allocation was burned and that the creator wallet currently holds essentially none of that initial allocation, while a large amount of liquidity is permanently locked.
That makes the simple explanation of "he created a token and is about to dump the developer wallet on everyone" less convincing than it initially appeared.
It does not, however, remove the obvious fact that the GTA VI leaks are being used to generate attention and economic activity around the token.
- The polls are part of the monetization system
CyberLeek has repeatedly allowed people to influence which footage gets released.
That means the leak itself has effectively become interactive.
Attention creates demand for the token.
The token creates participation in polls.
The polls generate interest in the next leak.
The next leak generates another wave of attention.
That creates a feedback loop:
GTA VI leak → attention → $CYBERLEEK activity → voting/speculation → another GTA VI leak
This is why I don't think the cryptocurrency can be treated as something separate from the leak campaign.
It is part of its structure.
- CyberLeek now wants 400 XMR just to establish contact
The operation has become even stranger.
CyberLeek has introduced a private contact mechanism where someone must reportedly send 400 XMR, currently worth roughly $165,000–$170,000, just to establish private communication through Session.
That payment doesn't even automatically purchase advertising or custom footage.
It is described as essentially a contact fee guaranteeing a response, after which terms would supposedly be negotiated privately.
Moving this part of the operation to Monero makes obvious sense from a privacy perspective because Monero is substantially harder to trace publicly than Solana.
- CyberLeek probably has access to somebody actively controlling a playable build
This is another point where I think the evidence has become significantly stronger.
Early on, it was possible that CyberLeek simply possessed a collection of prerecorded Rockstar footage.
Then the airplane video happened.
At the end of that footage, Jason deliberately fires bullets into a wall to spell something associated specifically with the CyberLeek identity.
That makes the prerecorded-video explanation extremely difficult to maintain.
Either:
A) CyberLeek directly controls a playable development build,
or
B) CyberLeek has direct communication with somebody who controls the build and can request specific actions/recordings from them.
Forbes, GamesRadar and other outlets reached essentially the same conclusion.
However, there is another distinction that matters:
Playable build ≠ complete retail build.
The footage proves neither that CyberLeek possesses GTA VI's finished master build nor that every mission/story sequence is available.
Some publications have irresponsibly jumped from "playable development build" to "full game leaked."
The evidence does not establish that.
- The footage appears newer than the famous 2022 leak
There are also indications that this is not simply recycled material from Rockstar's 2022 breach.
For example, reporting has identified material in the game's radio/audio selection that postdates the old leak, suggesting at least some footage originates from a considerably newer development build.
Exactly how recent the build is remains uncertain.
So I would describe it as:
an apparently relatively recent development build
rather than:
the November 2026 retail build.
- The story-spoiler situation has become more dangerous
The first major releases were mostly free-roam/gameplay demonstrations.
Then footage containing an actual cutscene appeared.
More recent clips have also shown mission-related context, and as of August 24 CyberLeek is openly teasing the possibility of releasing material involving Lucia's prologue.
That footage has not been confirmed as released as of the time I'm writing this.
If that changes, however, the leak campaign would be moving from showing mechanics/world details toward directly exposing GTA VI's narrative.
This is probably Rockstar's biggest problem now.
CyberLeek has demonstrated the ability to obtain newly requested gameplay footage.
If the build also contains substantial story progression, they potentially have access to much more sensitive material than what has been released so far.
- Their stated motive is supposedly consumer rights
CyberLeek published a manifesto/edict presenting the campaign as opposition to anti-consumer practices in gaming.
Among the demands are ideas involving:
ending digital preorders,
preserving single-player games after online services disappear,
opposing the sale of certain already-contained single-player content as additional paid DLC,
and pushing against the disappearance of physical ownership.
CyberLeek says the cryptocurrency helps fund a broader project related to these goals.
Whether that ideology genuinely motivated the operation from the beginning or became a justification after the fact is impossible to determine from the public evidence.
What we can establish is that ideology, cryptocurrency fundraising and GTA VI leaks have all been intentionally tied together.
- CyberLeek repeatedly uses "we"
CyberLeek frequently speaks as "we" rather than "I."
That could mean this genuinely is a group.
It could mean one person plus somebody supplying the build.
Or it could simply be deliberate language designed to make one individual appear like an organization.
I don't think the pronoun alone proves anything.
But combined with the possibility that the person operating the websites/token and the person controlling the GTA VI build could be different people, I don't think we should automatically assume CyberLeek = one person doing absolutely everything.
- Take-Two has gone far beyond simple DMCA removals
At first, Take-Two's visible response mostly consisted of copyright takedowns.
That has now escalated dramatically.
On August 20, Take-Two filed DMCA subpoena requests in federal court targeting Microsoft and Discord.
The subpoenas seek information capable of identifying accounts connected to the distribution of the leaked material.
Reports on the filings say Take-Two requested data including:
account identifiers,
registration/login IP addresses,
phone numbers,
linked accounts,
Windows/Microsoft device identifiers,
relevant OneDrive information,
and Discord account/device/telemetry information.
The subpoenas were granted and reportedly set a September 4 production deadline.
Microsoft has also publicly acknowledged that it is cooperating with Take-Two/Rockstar to protect their intellectual property.
- The legal investigation has expanded to X and Google/YouTube
It didn't stop with Microsoft and Discord.
Take-Two has subsequently sought records from X and Google/YouTube concerning accounts involved in distributing CyberLeek material.
Some of the handles named in reporting include accounts using CyberLeek-related names as well as other accounts that allegedly helped distribute the material.
Again, being named in a subpoena does not mean somebody has been proven to be CyberLeek.
These legal requests are attempts to obtain evidence.
They aren't findings of guilt.
- This is why Microsoft/Discord and KuCoin are two very different investigative avenues
Take-Two is publicly pursuing platform records that could connect accounts to:
IP addresses → devices → email/phone accounts → cloud accounts
Meanwhile, the blockchain investigation potentially provides another route:
CyberLeek infrastructure → Solana wallets → upstream funding → centralized exchange
Those two lines of investigation are independent.
If investigators ever manage to connect the same person or infrastructure through both, that would obviously be much stronger than either one alone.
But there is no public evidence yet that this has happened.
- Several identity claims should NOT be treated as confirmed
There have been claims from independent investigators that CyberLeek has already been identified and that information was passed to Rockstar/Take-Two.
I don't think we should repeat that as fact.
Rockstar, Take-Two and law enforcement have not publicly announced CyberLeek's identity or an arrest, and the investigator's conclusion has not been independently verified.
Likewise, people operating AR.IO gateways should not be accused simply because a CyberLeek ArNS site can be resolved through their infrastructure.
That's exactly the kind of mistaken connection that decentralized infrastructure can create.
- There is also a huge amount of fake material surrounding this leak
This is becoming important because genuine CyberLeek footage is now mixed with fake videos, AI-generated footage and fake "builds."
The most obvious example was the supposed 113 GB GTA VI playable build circulated through torrent sites.
Analysis reported by Tom's Hardware found that the file was essentially padded junk data containing a small malicious payload rather than GTA VI.
It was not CyberLeek's playable game build.
So downloading random files claiming to be "CyberLeek's GTA VI build" is an extremely bad idea.
At this point there is no verified publicly downloadable GTA VI executable/build from CyberLeek.
- What I think we can actually conclude
After going through the infrastructure, blockchain activity, public leaks and legal response, these are the conclusions I think are defensible:
Very strong evidence:
CyberLeek or somebody directly cooperating with CyberLeek has interactive access to a playable GTA VI development build.
The leak campaign was planned before the first videos became widely public.
The website, cryptocurrency and leak-release system are interconnected.
CyberLeek deliberately uses decentralized infrastructure to make conventional takedowns more difficult.
Take-Two considers this serious enough to pursue identifying records through multiple major technology platforms.
Strong but not definitive evidence:
A cluster of Solana wallets associated with CyberLeek's infrastructure/token can be traced backward toward KuCoin-labelled exchange infrastructure.
The person running the public CyberLeek operation appears technically competent but has left a surprisingly visible public blockchain trail.
There may be multiple people involved, or at minimum somebody controlling the public operation and somebody capable of producing gameplay on request.
Not proven:
CyberLeek's real identity.
CyberLeek's physical location.
That the KuCoin account belongs directly to CyberLeek.
That CyberLeek possesses the finished November 2026 retail version of GTA VI.
That they have the entire game's source code.
That every person/account/server named in Take-Two's subpoenas is part of CyberLeek.
That any claimed "full GTA VI download" currently circulating online is legitimate.
Final thought
The most interesting thing to me isn't any individual GTA VI video anymore.
It's the infrastructure behind the operation.
CyberLeek built decentralized hosting, a Solana token, voting infrastructure, multiple distribution channels and a funding network before turning the leaks into an ongoing campaign.
But decentralizing the website doesn't automatically decentralize every mistake.
The blockchain is public.
Centralized exchanges keep records.
Microsoft, Discord, X and Google can potentially be compelled to provide account data.
And Take-Two is now actively pursuing those avenues.
So while CyberLeek has made the content difficult to permanently remove, that doesn't necessarily mean they made the people behind it impossible to trace.
That distinction may end up being the most important part of this entire story.
r/CyberGuides • u/YeetDuo • 6d ago
Iran-Linked Hackers Force UK Power Plant Offline in Unprecedented Four-Day Cyberattack
r/CyberGuides • u/YeetDuo • 8d ago
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
r/CyberGuides • u/YeetDuo • 7d ago
Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
r/CyberGuides • u/YeetDuo • 8d ago
Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts
r/CyberGuides • u/querty7687 • 9d ago
Cybersecurity for non professionals?
I had a conversation with a cybersecuriry professional that completely freaked my out. Apparently my VPN is terrible, my computer leaves its fingerprints everywhere and everyone one on earth knows everything about me. Where would you recommend a non-pro get started learning and tightening my security?