Skip to main content

Posts

NordVPN Accused of “Deceptive” Auto-Renewal Subscriptions

NordVPN has been accused of using “deceptive” automatic renewal practices. The law firm Wittels McInturff Palikovic filed a class action lawsuit against the VPN provider, alleging that it intentionally designed a misleading system that, according to the complaint, makes it difficult for customers to cancel the service. The claim filed against NordVPN and its related corporate entities, including Nord Security, was issued on March 28 and formally submitted in two federal courts: the U.S. District Court for the Northern District of California and the Western District of North Carolina. The lawsuit represents NordVPN customers across the United States. “This proposed class action lawsuit challenges Nord Security’s use of deceptive and illegal ‘automatic renewal’ tactics to trick customers into paying for unwanted, pricey subscriptions for the Internet privacy and security products,” states the legal document . “Nord Security intentionally misleads customers into thinking they can subsc...

Hackers Attack Major US Grocery Distributor, Causing Disruptions

The American company United Natural Foods (UNFI) reported a cyberattack to the U.S. Securities and Exchange Commission (SEC) in a recent filing. UNFI stated that it detected unauthorized activity on its Information Technology (IT) systems on June 5 and has been investigating the incident while working to safely restore its systems. According to the official filing , the organic food distributor had to shut down certain systems to contain the attack, which has affected customers’ orders. UNFI serves over 30,000 supermarkets and stores across the United States and Canada, including its main partner, Whole Foods. The company said it is implementing alternative measures to minimize the impact of disruptions—but multiple clients are already experiencing significant consequences. “The incident has caused, and is expected to continue to cause, temporary disruptions to the Company’s business operations,” states the document. “The Company is working actively to assess, mitigate, and remediat...

VR Data Ranking: What Your Headset Company Knows About You

Key Takeaways VR users can be identified with over 94% accuracy using just 100 seconds of head and hand motion data — almost as accurately as a fingerprint. The majority (60%) of the companies behind VR headsets take your biometric data, including Apple and Microsoft. Similarly, 66% of these companies monitor your audio and voice interactions. Qualcomm collects the most data out of all the analyzed VR companies, scoring 16 points in our study. Pico Interactive and Varjo follow close behind with 15 points each. Many VR apps have privacy policies that are vague, incomplete, or outright misleading. 70% of Oculus apps studied had undisclosed or inconsistent data flows. Introduction Virtual reality (VR) devices have rapidly evolved from niche gaming gadgets into mainstream tools reshaping industries in 2025. With millions of users worldwide, they are powerful data goldmines, capturing detailed information about how users move, react, and interact in virtual environments. While VR ...

China-Linked Hackers Target Over 70 Global Organizations

Researchers from SentinelLABS, the threat intelligence and research division of cybersecurity firm SentinelOne, have uncovered a China-linked cyber espionage group. The hackers have been targeting over 70 organizations and cybersecurity companies worldwide since July 2024. According to the report , published on June 9, the SentinelLABS team detected a cyberattack targeting their own company, SentinelOne, in October 2024. The attack was later linked to the PurpleHaze cyber-espionage framework. Earlier this year, SentinelLABS also helped dismantle a widespread ShadowPad operation, which impacted the company responsible for managing SentinelOne’s staff hardware. Fortunately, the cybersecurity company was not compromised, but researchers noticed a connection between the incidents. “The PurpleHaze and ShadowPad activity clusters span multiple partially related intrusions into different targets occurring between July 2024 and March 2025,” state the report. “The victimology includes a Sout...

What Is Background Data Usage and How to Restrict It (2025)

Just because you close an app doesn’t mean it stops running. Most apps keep running quietly in the background — sending and receiving data without you even noticing. This is what’s known as background data usage, and it’s one of the sneakiest ways your phone can burn through your mobile data and battery, and it even puts your privacy at risk. Why is background data important? It helps apps stay updated and responsive — so your inbox is current and your location services work instantly. But there's a tradeoff: it also eats into your data, drains your battery, and can expose more of your personal info than you’d expect. And the impact is growing. In 2022, the average smartphone used around 15GB of data per month. By 2028, that number is expected to triple to 46GB — much of it coming from background activity you don’t even see 1 . In this guide, I’ll break down how background data works, which apps are the biggest offenders, and how you can take back control. I’ll also share som...

Flaw In Microsoft OneDrive Grants Access To External Apps

Researchers at Oasis Security revealed last week that a flaw in Microsoft’s OneDrive File Picker was allowing external apps, such as Zoom, ChatGPT, Trello, Slack, and ClickUp, access to users’ content. The experts warn that millions of users could be affected, with potential risks of data leakage and compliance regulations violations. According to the report , published on May 28 and titled ChatGPT & other web apps may have full read access to your entire OneDrive , external apps were able to access users’ entire document collections during uploads, rather than being limited to specific files. “This issue arises from the lack of fine-grained OAuth scope for OneDrive, which causes the official OneDrive File Picker implementation to request read access to the entire drive — even when uploading just a single file,” states the document. The cybersecurity firm reached out to Microsoft and relevant app vendors before publicly disclosing the vulnerability. Microsoft responded it would...

How to Create a Newsletter in 7 Easy Steps

TL;DR: How to Create an Email Newsletter Pick a reliable email service provider (ESP)  like Constant Contact or HubSpot Use a mobile-friendly template  that matches your brand and goals Create a segmented email list  with clear opt-in forms Follow compliance rules  like GDPR and CAN-SPAM Write value-packed content  with a strong CTA Send and track your first email  to optimize results Pro Tip:  You can automate the entire process and keep growing your list on autopilot with tools like OptinMonster. Do you know how to create a newsletter that will keep your subscribers engaged and turn them into loyal customers? Email newsletters are a vital part of your business’s growth. They give you direct access to your target audience and allow you to keep in touch with all of your leads. At OptinMonster, we have poured a lot of hard work into building an email list of over 235,000 people who  subscribe to our email newsletter : Thanks to the ...