Menu

Gallery

Biden warns ‘real shooting war’ will be sparked by severe cyber attack
Tencent suspends signups to WeChat, citing ‘security upgrade’ and need to comply with Chinese laws
eBay ex-security boss sent down for 18 months for cyber-stalking, witness tampering
Misconfigured Azure Blob at Raven Hengelsport exposed records of 246,000 anglers – and took months to tackle, claim infosec researchers
Scam-baiting YouTube channel Tech Support Scams taken offline by tech support scam
Tech biz must tell us about more security breaches, says UK.gov as it ponders lowering report thresholds
Apple emergency zero-day fix for iPhones and Macs – get it now!
Compsci student walks off with $50,000 after bug bounty report blows gaping hole in Shopify software repos
It takes intuition and skill to find hidden evidence and hunt for elusive threats
SSD belonging to Euro-cloud Scaleway was stolen from back of a truck, then turned up on YouTube
Apple patches zero-day vulnerability in iOS, iPadOS, macOS under active attack
You, too, can be a Windows domain controller and do whatever you like, with this one weird WONTFIX trick
Windows “PetitPotam” network attack – how to protect against it
Somebody is destined for somewhere hot, and definitely not Coventry
DEF CON offers beginner-level Spot the Fed this year: He’ll be on stage giving a keynote
US court gets UK Twitter hack suspect arrested in Spain
Hole blasted in Guntrader: UK firearms sales website’s CRM database breached, 111,000 users’ info spilled online
Tech support scams subside somewhat, but Millennials and Gen Z think they’re bulletproof and suffer
BT tries to crack cyber crime, grabs stake in Safe Security
Kaseya obtains REvil decryptor, starts sharing it with afflicted customers
Never mind the trolls, Discord hosts ‘significant volumes of malware’ in its CDN
Cyber-attacks really ramp up after Halloween – so why not start preparing now?
Microsoft has a workaround for ‘HiveNightmare’ flaw: Nuke your shadow copies from orbit
Securing the cloud while Windows burns: Microsoft pops CloudKnox in trolley
Respect in Security initiative aims to build reporting lines for infosec bods suffering harassment at work, conferences and online
S3 Ep42: Viruses, Nightmares, patches, rewards and scammers [Podcast]
Thales launches payment card with onboard fingerprint scanner
China pushes back against Exchange attack sponsorship claims
NSO Group ‘will no longer be responding to inquiries’ about misuse of its software
US senators warn China’s Digital Yuan could compromise Olympic athletes
Spanish cops cuff Brit bloke accused of playing role in 2020 celeb Twitter hijacking
Google Cloud’s Intrusion Detection Service attempts to make security ‘invisible’ but cost will be the big giveaway
Windows “HiveNightmare” bug could leak passwords – here’s what to do!
Make-me-admin holes found in Windows, Linux kernel
Journo who went to prison for 2 years for breaking US cyber-security law is jailed again
Fortinet’s security appliances hit by remote code execution vulnerability
Apple iPhone patches are out – no news if recent Wi-Fi bug is fixed
Northern Train’s ticketing system out to lunch as ransomware attack shuts down servers
Verified: UK.gov launching plans for yet another digital identity scheme
US legal eagles representing Apple, IBM, and more take 5 months to inform clients of ransomware data breach
Cloudstar – IT provider for real estate, finance, insurance worlds – downed by ransomware
UK and chums call out Chinese Ministry of State Security for Hafnium Microsoft Exchange Server attacks
Amnesty International and French media protection org claim massive misuse of NSO spyware
S3 Ep41: Crashing iPhones, PrintNightmares, and Code Red memories [Podcast]
You’ll want to shut down the Windows Print Spooler service (yes, again): Another privilege escalation bug found
Wanted: State-backed bandits planning cyberattacks on US infrastructure. Reward: $10m
More PrintNightmare: “We TOLD you not to turn the Print Spooler back on!”
Want to earn $10 million? Snitch on a cybercrook!
Microsoft, Google, Citizen Lab blow lid off zero-day bug-exploiting spyware sold to governments
The Code Red worm 20 years on – what have we learned?
This is the data watchdog! Surrender your Matt Hancock smoochy-kiss pics right now!
Regulating facial recognition technology? It’s the ‘Wild West out there,’ says US law boffin
NortonLifeLock sniffs around Avast, announces ‘advanced discussions’ for acquisition
Report sheds light on ‘cocky’ but ‘creative’ Mespinoza ransomware group
Restoring your privacy costs money, which makes it a marker of class
So nice of China to put all of its network zero-day vulns in one giant database no one will think to break into
Facial-recognition technology gets a smack in the chops from civil rights campaigners
Home delivery scams get smarter – don’t get caught out
Hong Kong working to share its digital IDs with mainland China
What follows Patch Tuesday? Exploit Wednesday. Grab this bumper batch of security updates from Microsoft
Cybercriminals took advantage of WFH to target financial services companies, say financial bods
Microsoft names Chinese group as source of new attack on SolarWinds
Outrun the cyber-crooks with information security training from SANS Institute
REvil ransomware gang’s websites vanish soon after Kaseya fiasco, Uncle Sam threatens retaliation
UK govt draws a blank over vaccine certification app – no really, the report is half-empty
You’ll never Guess whose data has been nicked as US fashion firm confirms systems breach
Microsoft to beef up security portfolio with reported half-billion-dollar RiskIQ buyout
Researchers warn of unpatched remote code execution flaws in Schneider Electric industrial gear
We’re terrified of sharing information, but the benefits of talking about IT and infosec outweigh the negatives
Kaseya restores SaaS, then ‘performance issues’ force a do-over
With a straight face, Putin agrees to do something about ransomware coming out of Russia, apparently
SolarWinds issues software update – one it wrote for a change – to patch hole exploited in the wild
Don’t get tricked by this crashtastic iPhone Wi-Fi hack!
Looking for some up close and personal cybersecurity training? Well, look to London
Kaseya claims SaaS restoration going swimmingly
Where do all those cybercrime payments go?
Don’t be a ransomware victim
Kaseya delays SaaS restore to Sunday, CEO says ‘this sucks’ but decision was his alone
US offers Julian Assange time in Australian prison instead of American supermax if he loses London extradition fight
S3 Ep40: Kaseya breach, PrintNightmare 0-day, and hacking versus the law [Podcast]
ICO survey on data flouters: 50% say they receive more unwanted calls than before pandemic
Criminals prefer to WFH too: Singapore infosec agency says 43% of all crimes in the city-state happened online in 2020
In conversation with Gene Hoffman, co-creator of the internet’s first ad blocker
India under attack by rapidly-evolving advanced persistent threat actor SideCopy, says Cisco Talos
White hats reported key Kaseya VSA flaw months ago. Ransomware outran the patch
You’ve patched that critical Sage X3 ERP security hole, yeah? Not exposing the suite to the internet, either, yeah?
Bogus Kaseya VSA patches circulate, booby-trapped with remote-access tool
British Airways data breach lawsuit settled: Airline coughs up potentially millions to make sueball bounce away
Microsoft struggles to wake from its PrintNightmare: Latest print spooler patch can be bypassed, researchers say
Report shines light on REvil’s depressingly simple tactics: Phishing, credential-stuffing RDP servers… the usual
PrintNightmare official patch is out – update now!
UK’s data watchdog probes use of private email to discuss government business at the Department of Health
Mega-distie SYNNEX attacked and Microsoft cloud accounts it tends tampered
Microsoft patches PrintNightmare – even on Windows 7 – but the terror isn’t over
Kaseya’s VSA SaaS restart fails, service restoration delayed by at least ten hours
Kaspersky Password Manager’s random password generator was about as random as your wall clock
Ransomware-hit law firm gets court order asking crooks not to publish the data they stole
British Airways data breach lawsuit settled: Airline coughs up around £30m to make sueball bounce away
Quantum Key Distribution: Is it as secure as claimed and what can it offer the enterprise?
DARPA nails cash to project ‘FENCE’ — a smart camera that only sends pics when pixels change