The Mueller investigation has lasted so long, it &# x27; s easy to forget that it &# x27; ll aim at some point. In fact, according to recent reports, it may wrap up as early as next week. But what does that mean precisely? We took a look at seven distinct potentials, from fizzle to fireworks. As though the border wall “national emergency” wasn &# x27; t enough to worry about.

Speaking of Russia, we profiled Roman Dobrokhotov, an investigative journalist in Moscow who hazards everything in pursuit of unmasking members of the Kremlin &# x27; s GRU intelligence agency. And we looked at how, by at least one metric, Russian hackers dominate the competitor.

It wouldn &# x27; t be a week in security without Facebook news. The company introduced a new place privacy defining for Android users that you should not hesitate to toggle. And it &# x27; s so hard to tell fact from fiction these days, in no small portion because Facebook pushes both to its billions of users.

We had some good ol &# x27; fashioned hacking, too. ATM malware is so easy to write that felons have basically turned it into a slot machine. We took a looking at credential stuffing, which is how hackers turn those huge violates into gold( or stolen identities, at least ). And NATO catfished soldiers to prove a phase about, well, how easy it is to catfish soldiers, apparently.

But wait, there &# x27; s more! Each week we round up all the news we didn't break or cover in depth. Click on the headlines to read the full narrations. And bide safe out there.

Google Is Very Sorry It Forgot to Mention the Hidden Microphone

Nest Secure owners got an unpleasant surprise this month when Google announced that the Nest Guard hub could now double as a Google Assistant. Why the concern? Because Google never mentioned that the Nest Guard had a microphone in the first place. Google has since called the omission “an error on our part, ” which, yes, it sure is! It also clarified that the microphone was off by default, and only activated if a user enabled it specifically. Still, though, it &# x27; s hard enough for most people to sort through the various issues of knowingly letting a microphone-enabled device into your home. Finding one there by surprise–in something intended to keep you procure , no less–erodes trust at a time when Google and other voice deputy purveyors have precious little of it to spare.

Facebook Cancels Its Creepy Onavo VPN App Altogether

Facebook &# x27; s Onavo VPN app was always a transparently bad notion, a privacy-eroding market research tool masking as protection. Which is why Apple banned it last summertime. And yet Facebook persisted, skirting the App Store &# x27; s rules and disguising its involvement, relaunching Onavo as a research app that paid kids as young as 13 a small amount of cash to spy on everything they do online. No thanks! Anyways, after getting caught, again, for malfeasance, Facebook has finally pulled Onavo VPN from the Google Play Store as well, and shut off the data spigot it enabled. We &# x27 ;d say better late than never, but none of this should have happened in the first place.

&# x27 ;D rainerBot &# x27; Kills Your Data Plan and Battery for Ad Fraud

Researchers at Oracle this week detailed an ad fraud operation that impacts apps with a combined 10 million Android downloads, including Draw Clash of Clan and Solitaire: 4 Seasons. The infected code sends invisible video ads to the device, which play undetected, draining your battery and using up as much as 10 gigabytes of data each month. You don &# x27; t even have to have the app open to be affected. Ad fraud is a an ever-present scourge, but it &# x27; s rare to see one of quite this scale and impact on your device. At least it &# x27; s not cryptojacking?

A Third of All Chrome Extension Asks For Absurdly Broad Permissions

Chrome extensions can be wonderful period savers and productivity tools. They can also be scary malware cavities. But somewhere in between are the Chrome extensions that ask for a disconcerting sum of data about your browsing habits. When security firm Duo Labs surveyed 120,000 extensions, it found that one in three asked permission to access and read all of your data across every website you visit. Nearly nine in 10 had no privacy policy. That doesn &# x27; t mean each of those is explicitly malicious. But take it as a good reminder to merely install extensions from companies you trust, and only grant them permissions that they need to complete their purported task.

Surprise! Disinfo Campaigns Are Already Attacking 2020 Democratic Candidates

If for some reason you thought that attempts by Russia and others to influence US politics ended in 2016, well, friend, where have you been! But let this most recent news disabuse you of that notion. A “coordinated barrage” of disinformation has targeted resulting Democrat, including Kamala Harris, Elizabeth Warren, Bernie Sanders, and Beto O &# x27; Rourke. It &# x27; s not clear who &# x27; s behind this flourish of activity, but with the presidential election still nearly two years away, expect it only to get worse from here. And for some deepfakes to enter the mixture at some point as well.


Read more: