Menu

Gallery

The latest REvil ransomware victim? Sol Oriens. Oh, a US nuclear weapons contractor
When security gets physical: Mossad boss hints at less-than-subtle Stuxnet followup
NATO summit communiqué compares repeat cyberattacks to armed attacks – and stops short of saying ‘one-in, all-in’ rule will always apply
G7 nations call out Russia for harbouring ransomware crims ahead of Biden-Putin powwow
Ex-NSA leaker Reality Winner released from prison early for ‘exemplary’ behavior
Norton dodges UK courts after telling Brit watchdog it will be nicer to consumers
The great cloud computing surge
We’ve been shown time and again that strong encryption puts crims behind bars, so why do politicos hate it?
The AN0M fake secure chat app may have been too clever for its own good
UK tells UN that nation-states should retaliate against cyber badness with no warning
ALPACA – the wacky TLS security vulnerability with a funky name
EA Games looted by intruders: Publisher says ‘no player data accessed’ after reported theft of FIFA 21, Frostbite source
Complexity is the biggest threat to cloud success and security
Seven-year-old make-me-root bug in Linux service polkit patched
China arrests over 1000 for using cryptocurrency to help launder proceeds of phone scams
S3 Ep36: Trickbot coder busted, passwords cracked, and breaches judged [Podcast]
Chrome zero-day, hot on the heels of Microsoft’s IE zero-day. Patch now!
Student Loans Company splashes out on 20,000 cybersecurity training courses – for just 3,300 employees
South Korea’s data watchdog barks warnings at Microsoft and five local firms
Ransomware-skewered meat producer JBS confesses to paying $11m for its freedom
ALPACA gnaws through TLS protection to snarf cookies and steal data
Huawei flings open the doors of its third privacy and security transparency centre
Risk and reward: Nefilim ransomware gang mainly targets fewer, richer companies and that strategy is paying off, warns Trend Micro
PrivacyMic looks to keep your home smart without Google, Alexa, Siri and pals listening in
How could the FBI recover BTC from Colonial’s ransomware payment?
‘I put the interests of the country first’: Colonial Pipeline CEO on why oil biz paid off ransomware crooks
Mysterious Gelsemium APT was behind February compromise of NoxPlayer, says ESET
Intel’s latest patch set plugs some serious holes in CPU, Bluetooth, server, and – ironically – security lines
Security researcher says attacks on Russian government have Chinese fingerprints – and typos, too
Extra urgency in June’s Patch Tuesday: Microsoft warns six more bugs are being exploited
FBI paid renegade developer $180k for backdoored AN0M chat app that brought down drug underworld
Cryptography whizz Phil Zimmermann looks back at 30 years of Pretty Good Privacy
Siloscape malware targets Windows containers, breaks through to the underlying Kubernetes cluster
DoS vulns in 3 open-source MQTT message brokers could leave users literally locked out of their homes or offices
I think therefore IAM: It’s not cool, it’s not sexy, but it’s one of the most important and difficult areas in modern IT
Uncle Sam recovers 63.7 of 75 Bitcoins Colonial Pipeline paid to ransomware crew
Australian cops, FBI created backdoored chat app, told crims it was secure – then snooped on 9,000 users’ plots
FBI drops subpoena to identify readers of USA Today article about shootout with agents
Everything Apple announced: Tor-ish Safari anonymization. Cloaked iCloud addresses. Cloud CI/CD. And more
Google, Facebook, Chaos Computer Club join forces to oppose German state spyware
US House Rep on cyber committees tweets Gmail password, PIN in Capitol riot lawsuit outrage
Latvian woman charged with writing malware for the Trickbot Group
Remember Anonymous? It/they might be back, and it/they are angry with Elon Musk
We’re right behind Computer Misuse Act reforms for busting ransomware gangs, says UK infosec industry
Go fuzz to catch hard-to-find bugs in Go
Military infosec SNAFUs: What WhatsApp and bears in the woods can teach us
Biden expands Chinese tech and military blocklist to 59 companies
Good news for pentesters and network admins: US issues ransomware guidance asking biz to skill up security teams
How to hack into 5500 accounts… just using “credential stuffing”
Android banking malware sharply increased in the first chunk of 2021, reckons ESET
Is it possible to automate all of cloud operations?
The policy of truth: As ransomware claims rise, what’s a cyber insurer to do?
Brit retailer Furniture Village confirms ‘cyber-attack’ as systems outage rolls into Day 7
How to use Google’s new dependency mapping tool to find security flaws buried in your projects
Supreme Court narrows Computer Fraud and Abuse Act: Misusing access not quite the same as breaking in
FireEye sold to McAfee’s new owners for $1.2bn as Mandiant split into standalone firm again
S3 Ep35: Apple chip flaw, Have I Been Pwned, and Covid tracker trouble [Podcast]
European Parliament’s data adequacy objection: Doubts cast on UK’s commitment to privacy protection
Antivirus that mines Ethereum sounds a bit wrong, right? Norton has started selling it
Deadline draws near to avoid auto-joining Amazon’s mesh network Sidewalk
Ahem, Huawei, your USB LTE stick has a vuln. I SAID AHEM, Huawei, are you listening?
JBS Foods ransomware gang: White House ‘engaging directly’ with Russia about attack on massive meat producer
UK Special Forces soldiers’ personal data was floating around WhatsApp in a leaked Army spreadsheet
OpenPGP library RNP updates after Thunderbird decrypt-no-recrypt bug squashed
Feds seize two domains used by SolarWinds intruders for malware spear-phishing op
“Have I Been Pwned” breach site partners with… the FBI!
There’s a lesson here for us all: A third of healthcare orgs in Sophos survey ‘hit with ransomware in 2020’
Remember those wacky cyberpunk costumes in Hackers? They’re on display in London this week
Increase confidence in public cloud security: Integrate Intel SGX, says G-Core Labs Cloud
Have I Been Pwned goes open source, bags help from FBI
US nuclear weapon bunker security secrets spill from online flashcards since 2013
Most cloud security problems breathe
Russian gang behind SolarWinds hack returns with phishing attack disguised as mail from US aid agency
Hong Kong recorded phishing surge in 2020 as scum sought to cash in on viral worries
“Unpatchable” vuln in Apple’s new Mac chip – what you need to know
Fujitsu pulls ProjectWEB tool offline after apparent supply chain attack sees Japanese infosec agency data stolen
Unfixable Apple M1 chip bug enables cross-process chatter, breaking OS security model
S3 Ep34: Apple bugs, scammers busted, and how crooks bypass 2FA [Podcast]
What to do about open source vulnerabilities? Move fast, says Linux Foundation expert
Computer Misuse Act: Tell the Home Office infosec needs a public interest defence in law, says CyberUp campaign
In-person cybersec training? Yes, it’s back on the agenda this year
Contract killer: Certified PDFs can be secretly tampered with during the signing process, boffins find
VMware reveals critical vCenter hole it says ‘needs to be considered at once’
Snowden was right, rules human rights court as it declares UK spy laws broke ECHR
Brit watchdog shows some teeth over McAfee antivirus auto-renewals
Apple patches dangerous security holes, one in active use – update now!
What ‘cross-cloud’ architects need to know
South Korea plans large scale quantum cryptography adoption, thanks in part to tech partnership with USA
Hard cheese: Stilton snap shared via EncroChat leads to drug dealer’s downfall
China’s Digital Yuan not aimed at challenging US dollar, says former People’s Bank governor
Eight suspects busted in raid on “home delivery” scamming operation
Apple patches macOS flaw exploited by malware to secretly snap screenshots
Legacy data protection and modern ransomware? The odds are not in your favor
Icarus moment: Mozilla Thunderbird was saving OpenPGP keys in plaintext after encryption snafu
Naked Security Live – Jacked and hacked: how safe are tracking tags?
ProxyJump is safer than SSH agent forwarding
Apple is happy to diss the desktop – it knows who’s got the most to lose
Air India admits to data breach impacting 4.5m customers, sat on the news for five weeks
Indonesia’s national health insurance scheme leaks at least a million citizens’ records
American insurance giant CNA reportedly pays $40m to ransomware crooks