Brussels launched an age verification app designed to comply with EU digital regulations, but security researchers bypassed it in just two minutes, exposing fundamental flaws in the implementation.
The app, intended to verify user age for restricted content access, fell to basic security testing almost immediately. Hackers demonstrated that the verification mechanism lacked proper cryptographic protections and relied on easily manipulated client-side validation.
The vulnerability highlights a recurring problem in government tech projects: rushing deployment without adequate security review. The app was meant to address EU requirements for age verification across digital services, but the quick compromise suggests insufficient testing before launch.
Security researchers on Hacker News noted that the flaw was elementary—the kind of vulnerability that should be caught during basic code review. The incident raises questions about the vetting process for applications handling sensitive user data.
Brussels officials have not yet announced a timeline for fixes. The failure underscores broader challenges in implementing age verification systems that balance privacy, security, and usability across EU member states.
Authorities have arrested two alleged members of TeamPCP, a hacking group responsible for infecting over 1,000 organizations through supply-chain attacks.
A Georgia police officer used Flock surveillance technology to track the movements of his ex-partner and another officer after their affair ended, according to internal investigation records.
McKesson, a major healthcare and pharmaceutical distributor, confirmed a cybersecurity incident involving unauthorized access to third-party applications. Extortion group ShinyHunters claims responsibility for stealing 284 million patient data records.
Fraudsters are exploiting Microsoft Teams and similar enterprise chat apps to deceive Chinese users into sending large sums of money. The trend has sparked a wave of complaints across the region.