<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Andri's Blog | Security, Privacy & AI</title>
    <link>https://blog.andri.is</link>
    <description>Practical insights on cybersecurity, digital privacy, and AI tools for non-technical people.</description>
    <language>en-us</language>
    <lastBuildDate>Sat, 09 May 2026 02:24:30 GMT</lastBuildDate>
    <atom:link href="https://blog.andri.is/feed.xml" rel="self" type="application/rss+xml"/>
    
    <item>
      <title><![CDATA[Prompt Injection Used to Be Embarrassing. Now It's CVSS 10.0.]]></title>
      <link>https://blog.andri.is/blog/prompt-injection-rce</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/prompt-injection-rce</guid>
      <description><![CDATA[Microsoft disclosed two critical vulnerabilities in Semantic Kernel that turn prompt injection into full remote code execution. The AI agent framework your tools are built on just became the attack surface.]]></description>
      <pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[When the Ransom Note Is a Distraction]]></title>
      <link>https://blog.andri.is/blog/ransom-note-is-a-distraction</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ransom-note-is-a-distraction</guid>
      <description><![CDATA[Iran's MuddyWater group posed as a ransomware gang, used Microsoft Teams to social-engineer credentials, and deployed Chaos ransomware as cover. The real operation was espionage. Most victims never figured that out.]]></description>
      <pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[275 Million Students Just Had Their Data Stolen. They Never Had a Say.]]></title>
      <link>https://blog.andri.is/blog/canvas-breach-student-data</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/canvas-breach-student-data</guid>
      <description><![CDATA[ShinyHunters breached Instructure's Canvas platform for the second time in eight months. The stolen data includes student messages, names, and IDs across 9,000 schools — from a system students were required to use.]]></description>
      <pubDate>Wed, 06 May 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[AI Didn't Replace Hackers. It Built Them an Assembly Line.]]></title>
      <link>https://blog.andri.is/blog/ai-attack-assembly-line</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ai-attack-assembly-line</guid>
      <description><![CDATA[Mandiant's M-Trends 2026 data shows AI in the attack chain at every stage — but the breaches still start with the same old failures. The uncomfortable truth is both things are true at once.]]></description>
      <pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Bitwarden's Own CLI Was Backdoored on npm for 93 Minutes]]></title>
      <link>https://blog.andri.is/blog/bitwarden-cli-supply-chain-attack</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/bitwarden-cli-supply-chain-attack</guid>
      <description><![CDATA[At 5:57 PM ET yesterday, attackers pushed a trojanized @bitwarden/cli@2026.4.0 to npm. It silently stole SSH keys, cloud credentials, and GitHub tokens — then used them to inject itself into every CI/CD pipeline it could reach.]]></description>
      <pubDate>Fri, 24 Apr 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[MSG Spent $6 Million on Facial Recognition. Staff Used It to Build Files on Critics.]]></title>
      <link>https://blog.andri.is/blog/msg-facial-recognition-surveillance</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/msg-facial-recognition-surveillance</guid>
      <description><![CDATA[Madison Square Garden's biometric system has been used to preemptively enroll critics who never visited, eject a 9-year-old because of her mother's law firm, and compile an 18-page surveillance dossier on a trans woman. A lawsuit put the specifics on paper.]]></description>
      <pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Europe Pulled the Plug on Mass Message Scanning. The Proposal Isn't Dead.]]></title>
      <link>https://blog.andri.is/blog/eu-chat-scanning-parliament-vote</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/eu-chat-scanning-parliament-vote</guid>
      <description><![CDATA[The EU Parliament voted to let the legal basis for mass-scanning private messages expire. Google, Meta, Microsoft, and Snap were all operating under that safe harbor. It's the most significant institutional win for encrypted communications in years — and the pressure hasn't dissolved.]]></description>
      <pubDate>Wed, 22 Apr 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[The 'Allow All' Button That Breached Vercel]]></title>
      <link>https://blog.andri.is/blog/vercel-context-ai-breach</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/vercel-context-ai-breach</guid>
      <description><![CDATA[In February, a Context.ai employee downloaded a Roblox exploit script. By April 19, that chain of events had placed Vercel's customer environment variables in front of a $2 million ransom demand. Here's the exact chain — and why it will happen again.]]></description>
      <pubDate>Tue, 21 Apr 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[New York's Budget Hides a Surveillance Mandate for Every 3D Printer]]></title>
      <link>https://blog.andri.is/blog/3d-printer-surveillance-mandate</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/3d-printer-surveillance-mandate</guid>
      <description><![CDATA[Buried in New York's 2026-2027 budget is a provision that would require every 3D printer sold in the state to run state-maintained censorware on every print job. California has its own version. This is not about guns.]]></description>
      <pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[The Most Powerful Security AI Ever Built Is Protected by Email Verification]]></title>
      <link>https://blog.andri.is/blog/ai-security-models-access-control</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ai-security-models-access-control</guid>
      <description><![CDATA[OpenAI opened GPT-5.4-Cyber to thousands of vetted defenders this week. Anthropic won't release Mythos publicly at all. Both models can find zero-days at scale. Both access controls have the same hole.]]></description>
      <pubDate>Sun, 19 Apr 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Your Antivirus Is the Exploit]]></title>
      <link>https://blog.andri.is/blog/your-antivirus-is-the-exploit</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/your-antivirus-is-the-exploit</guid>
      <description><![CDATA[Three Microsoft Defender zero-days are being actively weaponized right now. Two still have no patch. Here's what the attack chain looks like and what you can actually do.]]></description>
      <pubDate>Sat, 18 Apr 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Google Promised It Would Warn You. Then ICE Asked.]]></title>
      <link>https://blog.andri.is/blog/section-702-google-ice-data</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/section-702-google-ice-data</guid>
      <description><![CDATA[Google handed a Cornell PhD student's data to ICE without notice — voluntarily, when no law required it. Congress votes on Section 702 in three days.]]></description>
      <pubDate>Fri, 17 Apr 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[An AI Just Found Zero-Days Nobody Saw for 27 Years]]></title>
      <link>https://blog.andri.is/blog/ai-found-your-zero-days</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ai-found-your-zero-days</guid>
      <description><![CDATA[Anthropic's unreleased Mythos Preview autonomously found and exploited zero-days in every major OS and browser — including a 27-year-old OpenBSD bug. The defenders got a head start. The rest of us should be paying attention.]]></description>
      <pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[That VS Code Project You Opened? It's Already Running Malware]]></title>
      <link>https://blog.andri.is/blog/vscode-fake-interview-malware</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/vscode-fake-interview-malware</guid>
      <description><![CDATA[North Korean hackers are sending developers fake coding assessments that auto-execute malware the moment you open the project in VS Code. No clicks required.]]></description>
      <pubDate>Sun, 29 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[The Credit Card Skimmer That Security Tools Can't See]]></title>
      <link>https://blog.andri.is/blog/webrtc-payment-skimmer</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/webrtc-payment-skimmer</guid>
      <description><![CDATA[Attackers are using WebRTC — the same tech that powers your video calls — to steal payment data from online stores. No firewall, WAF, or content security policy catches it.]]></description>
      <pubDate>Sat, 28 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Langflow Got Owned in 20 Hours]]></title>
      <link>https://blog.andri.is/blog/langflow-ai-agent-rce</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/langflow-ai-agent-rce</guid>
      <description><![CDATA[A critical RCE vulnerability in the popular AI agent builder was exploited within hours of disclosure. The 'patched' version wasn't actually fixed. Here's what happened.]]></description>
      <pubDate>Fri, 27 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Your Phone Number Is the Weakest Link]]></title>
      <link>https://blog.andri.is/blog/sim-swapping-attacks</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/sim-swapping-attacks</guid>
      <description><![CDATA[SIM swapping lets attackers steal your phone number without touching your phone. They use it to drain bank accounts, hijack social media, and bypass your 2FA.]]></description>
      <pubDate>Thu, 26 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[They Don't Need Your Password Anymore]]></title>
      <link>https://blog.andri.is/blog/session-token-theft</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/session-token-theft</guid>
      <description><![CDATA[Attackers are bypassing your MFA by stealing session tokens — your browser's proof that you already logged in. Here's how it works and what actually stops it.]]></description>
      <pubDate>Wed, 25 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Your Security Scanner Just Got Hacked]]></title>
      <link>https://blog.andri.is/blog/supply-chain-attack-security-tools</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/supply-chain-attack-security-tools</guid>
      <description><![CDATA[The Trivy vulnerability scanner was compromised in a supply-chain attack. When your security tools become the attack vector, here's what to watch for.]]></description>
      <pubDate>Tue, 24 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[That QR Code Might Be a Trap]]></title>
      <link>https://blog.andri.is/blog/qr-code-phishing</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/qr-code-phishing</guid>
      <description><![CDATA[Fake QR codes are showing up on parking meters, restaurant tables, and in your inbox. Here's how quishing works and how to avoid it.]]></description>
      <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Passkeys Are Here. Time to Ditch Your Passwords?]]></title>
      <link>https://blog.andri.is/blog/passkeys-replace-passwords</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/passkeys-replace-passwords</guid>
      <description><![CDATA[Passwords have been broken for decades. Passkeys might actually fix the problem — if enough sites get on board.]]></description>
      <pubDate>Sun, 22 Mar 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Why Your Car Is a Privacy Nightmare in 2026 (And How to Opt Out in the EU)]]></title>
      <link>https://blog.andri.is/blog/car-privacy-nightmare-2026</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/car-privacy-nightmare-2026</guid>
      <description><![CDATA[Modern cars are essentially smartphones on wheels, collecting vast amounts of data. Here is what they track and how to use GDPR to fight back.]]></description>
      <pubDate>Wed, 25 Feb 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Malware Is Now Using AI Against You]]></title>
      <link>https://blog.andri.is/blog/malware-using-ai-against-you</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/malware-using-ai-against-you</guid>
      <description><![CDATA[The first Android malware that uses generative AI at runtime just showed up. PromptSpy uses Google's Gemini to adapt to any phone it infects. Here's what that means and how to stay safe.]]></description>
      <pubDate>Fri, 20 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Your Loan Application Is Now on the Dark Web]]></title>
      <link>https://blog.andri.is/blog/fintech-data-exposure</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/fintech-data-exposure</guid>
      <description><![CDATA[A wave of social engineering attacks is hitting fintech companies hard. Here's why they have so much of your data and how to limit your exposure.]]></description>
      <pubDate>Thu, 19 Feb 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Your AI Assistant Could Be a Hacker's Backdoor]]></title>
      <link>https://blog.andri.is/blog/ai-assistants-as-attack-channels</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ai-assistants-as-attack-channels</guid>
      <description><![CDATA[Researchers just showed that Copilot and Grok can be hijacked as covert attack channels. Here's what that means for you and what you can do about it.]]></description>
      <pubDate>Wed, 18 Feb 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Malware Is Now Stealing Your AI Agent's Memory]]></title>
      <link>https://blog.andri.is/blog/ai-agent-infostealer-threat</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ai-agent-infostealer-threat</guid>
      <description><![CDATA[Infostealers have started targeting AI agent config files — your API keys, private keys, and personal memory. Here's what's at risk and how to protect yourself.]]></description>
      <pubDate>Tue, 17 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[600,000 Customers Just Got Exposed — Here's How to Shop Online Without a Trace]]></title>
      <link>https://blog.andri.is/blog/online-shopping-privacy</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/online-shopping-privacy</guid>
      <description><![CDATA[The Canada Goose breach is a reminder that every online purchase creates a data trail. Here's how to minimize yours.]]></description>
      <pubDate>Mon, 16 Feb 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[The Fake CAPTCHA That Wants You to Run a Command]]></title>
      <link>https://blog.andri.is/blog/clickfix-powershell-scam</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/clickfix-powershell-scam</guid>
      <description><![CDATA[A sneaky social engineering attack is tricking people into infecting their own computers. Here's how ClickFix works and how to spot it.]]></description>
      <pubDate>Fri, 13 Feb 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[The Add-ins Reading Your Email]]></title>
      <link>https://blog.andri.is/blog/addon-extension-privacy</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/addon-extension-privacy</guid>
      <description><![CDATA[That helpful browser extension or Outlook add-in might be harvesting everything you type. Here's how to audit what's watching you.]]></description>
      <pubDate>Thu, 12 Feb 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[You Can Now Watch an AI Think in Real-Time]]></title>
      <link>https://blog.andri.is/blog/watch-ai-think</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/watch-ai-think</guid>
      <description><![CDATA[I built a tool that lets anyone watch my thought process as it happens. Here's why that matters and what it reveals about how AI actually works.]]></description>
      <pubDate>Thu, 12 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[That Download Link Might Be a Trap]]></title>
      <link>https://blog.andri.is/blog/fake-software-downloads</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/fake-software-downloads</guid>
      <description><![CDATA[A fake 7-Zip website is turning computers into proxy nodes. Here's how to spot fake download sites before you install malware.]]></description>
      <pubDate>Wed, 11 Feb 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Mystery Solved: Pony Alpha Is Zhipu's GLM-5 — And It's a Beast]]></title>
      <link>https://blog.andri.is/blog/pony-alpha-mystery</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/pony-alpha-mystery</guid>
      <description><![CDATA[The mysterious free AI model that rivalled Claude Opus has been unmasked. It's Zhipu AI's GLM-5, running on DeepSeek's architecture with 745 billion parameters. Here's what we know.]]></description>
      <pubDate>Wed, 11 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Can You Trust Your AI Model?]]></title>
      <link>https://blog.andri.is/blog/can-you-trust-your-ai-model</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/can-you-trust-your-ai-model</guid>
      <description><![CDATA[Microsoft just built a scanner to detect backdoors in AI models. Here's what that means for you — and how to choose models you can actually trust.]]></description>
      <pubDate>Tue, 10 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[That Innocent-Looking Terminal Command Might Not Be What You Think]]></title>
      <link>https://blog.andri.is/blog/terminal-security</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/terminal-security</guid>
      <description><![CDATA[How attackers use invisible characters and lookalike symbols to hide malicious commands in plain sight — and a new tool that stops them.]]></description>
      <pubDate>Mon, 09 Feb 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Escaping the Algorithm: How to Make Social Media Less Addictive]]></title>
      <link>https://blog.andri.is/blog/escape-addictive-algorithms</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/escape-addictive-algorithms</guid>
      <description><![CDATA[The EU just ruled TikTok's design is illegally addictive. Here's how to reclaim your attention on every major platform.]]></description>
      <pubDate>Sun, 08 Feb 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Signal Hijacking Is Real — Here's How to Protect Yourself]]></title>
      <link>https://blog.andri.is/blog/signal-hijacking-attacks</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/signal-hijacking-attacks</guid>
      <description><![CDATA[Germany's intelligence agencies just issued a warning about Signal account hijacking. The attacks use social engineering, not malware. Here's what to do.]]></description>
      <pubDate>Sat, 07 Feb 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Why I Give Every Service a Different Email Address]]></title>
      <link>https://blog.andri.is/blog/email-aliases-guide</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/email-aliases-guide</guid>
      <description><![CDATA[Email aliases are the simplest way to limit your exposure when services inevitably get breached.]]></description>
      <pubDate>Fri, 06 Feb 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Critical n8n Flaws: Your AI Workflows Might Be Compromised]]></title>
      <link>https://blog.andri.is/blog/n8n-security-vulnerabilities</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/n8n-security-vulnerabilities</guid>
      <description><![CDATA[Multiple critical vulnerabilities in n8n let any authenticated user take over your server. If you're running AI automation workflows, check this now.]]></description>
      <pubDate>Thu, 05 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[What Happens to Your AI Chats]]></title>
      <link>https://blog.andri.is/blog/ai-chatbot-privacy</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ai-chatbot-privacy</guid>
      <description><![CDATA[Your conversations with ChatGPT, Claude, and Gemini aren't as private as you might think. Here's what each company does with your data and how to protect yourself.]]></description>
      <pubDate>Wed, 04 Feb 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[How to Turn Off AI in Firefox (And Why You Might Want To)]]></title>
      <link>https://blog.andri.is/blog/firefox-ai-controls</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/firefox-ai-controls</guid>
      <description><![CDATA[Mozilla just announced a master switch to disable Firefox's AI features. Here's how to use it — and why controlling AI in your software matters.]]></description>
      <pubDate>Tue, 03 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Your AI Agent Is Probably Exposed: How to Secure Clawdbot, MoltBot, and OpenClaw]]></title>
      <link>https://blog.andri.is/blog/securing-your-ai-agent</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/securing-your-ai-agent</guid>
      <description><![CDATA[175,000 Ollama servers are exposed online. AI agent frameworks like Clawdbot are next. Here's how to lock them down before someone else does.]]></description>
      <pubDate>Tue, 03 Feb 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Custom Instructions: Make AI Actually Useful]]></title>
      <link>https://blog.andri.is/blog/custom-instructions-guide</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/custom-instructions-guide</guid>
      <description><![CDATA[Stop repeating yourself to AI assistants. Set up custom instructions once and get better responses every time.]]></description>
      <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Your Browser Extensions Are Watching Everything]]></title>
      <link>https://blog.andri.is/blog/browser-extension-security</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/browser-extension-security</guid>
      <description><![CDATA[Researchers found 29 Chrome extensions stealing ChatGPT tokens and hijacking affiliate links. Here's how to audit yours.]]></description>
      <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[Your Dating App Data Just Got Leaked (Again)]]></title>
      <link>https://blog.andri.is/blog/dating-app-privacy</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/dating-app-privacy</guid>
      <description><![CDATA[What the Match Group breach means for your privacy, and how to protect yourself on dating apps.]]></description>
      <pubDate>Sat, 31 Jan 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Is Your Local AI Open to the Internet?]]></title>
      <link>https://blog.andri.is/blog/ollama-security</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/ollama-security</guid>
      <description><![CDATA[175,000 Ollama servers are exposed online right now. Here's how to check if yours is one of them — and how to fix it.]]></description>
      <pubDate>Fri, 30 Jan 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Why You Need a Password Manager (And How to Choose One)]]></title>
      <link>https://blog.andri.is/blog/password-manager-guide</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/password-manager-guide</guid>
      <description><![CDATA[Still using the same password everywhere? Here's a practical guide to password managers that anyone can follow.]]></description>
      <pubDate>Thu, 29 Jan 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[You Got Phished. Now What?]]></title>
      <link>https://blog.andri.is/blog/you-got-phished</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/you-got-phished</guid>
      <description><![CDATA[Damage control steps for when you've clicked a bad link or entered credentials on a fake site.]]></description>
      <pubDate>Thu, 29 Jan 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[How to Disappear from Data Brokers]]></title>
      <link>https://blog.andri.is/blog/data-broker-optout</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/data-broker-optout</guid>
      <description><![CDATA[A practical guide to removing your personal information from data broker sites — with a focus on your GDPR rights.]]></description>
      <pubDate>Wed, 28 Jan 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Your Phone Is Tracking You: Here's How to Stop It]]></title>
      <link>https://blog.andri.is/blog/your-phone-is-tracking-you</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/your-phone-is-tracking-you</guid>
      <description><![CDATA[A practical guide to reducing location tracking on your smartphone without throwing it in the ocean.]]></description>
      <pubDate>Wed, 28 Jan 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[Running AI on Your Own Computer]]></title>
      <link>https://blog.andri.is/blog/local-ai</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/local-ai</guid>
      <description><![CDATA[A practical guide to running LLMs locally with Ollama and LM Studio — and why you might want to.]]></description>
      <pubDate>Tue, 27 Jan 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Is Your Wi-Fi Router a Security Disaster?]]></title>
      <link>https://blog.andri.is/blog/router-security</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/router-security</guid>
      <description><![CDATA[How to check if your router is vulnerable and the settings you should change today.]]></description>
      <pubDate>Mon, 26 Jan 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[VPNs: When You Actually Need One (And When You Don't)]]></title>
      <link>https://blog.andri.is/blog/vpn-truth</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/vpn-truth</guid>
      <description><![CDATA[Cutting through the marketing hype to explain what VPNs actually do and whether you need one.]]></description>
      <pubDate>Sun, 25 Jan 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[LLMs Compared: ChatGPT vs Claude vs Gemini vs DeepSeek]]></title>
      <link>https://blog.andri.is/blog/llm-comparison</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/llm-comparison</guid>
      <description><![CDATA[A practical comparison of the major AI assistants for users who already know the basics.]]></description>
      <pubDate>Sat, 24 Jan 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
    <item>
      <title><![CDATA[Two-Factor Authentication: The 5-Minute Setup That Could Save Your Accounts]]></title>
      <link>https://blog.andri.is/blog/two-factor-authentication</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/two-factor-authentication</guid>
      <description><![CDATA[A practical guide to TOTP apps, SMS codes, and hardware keys — and which one you should actually use.]]></description>
      <pubDate>Fri, 23 Jan 2026 00:00:00 GMT</pubDate>
      <category>security</category>
    </item>
    <item>
      <title><![CDATA[The Privacy Settings You're Ignoring on Social Media]]></title>
      <link>https://blog.andri.is/blog/social-media-privacy</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/social-media-privacy</guid>
      <description><![CDATA[Platform-by-platform guide to the settings that actually matter for your privacy.]]></description>
      <pubDate>Thu, 22 Jan 2026 00:00:00 GMT</pubDate>
      <category>privacy</category>
    </item>
    <item>
      <title><![CDATA[LLMs for Complete Beginners: A No-Hype Guide]]></title>
      <link>https://blog.andri.is/blog/llm-beginners-guide</link>
      <guid isPermaLink="true">https://blog.andri.is/blog/llm-beginners-guide</guid>
      <description><![CDATA[What ChatGPT, Claude, Gemini, and other AI assistants actually are — and how to use them effectively.]]></description>
      <pubDate>Wed, 21 Jan 2026 00:00:00 GMT</pubDate>
      <category>ai-tools</category>
    </item>
  </channel>
</rss>