Menu

Gallery

Apple emits emergency iOS security updates while warning holes may have been exploited in wild by hackers
Ghost hack – criminals use deceased employee’s account to wreak havoc
I was targeted by North Korean 0-day hackers using a Visual Studio project, vuln hunter tells El Reg
UK Cabinet Office spokesman tells House of Lords: We’re not being complacent about impact of SolarWinds hack
North Korea infected infosec bods with backdoors via dodgy blog pages, Visual Studio files – Google
Biden said to be assembling cyber dream team to sort out US govt computer security
Digital burglars break into the Australian Securities and Investments Commission
Man arrested after UK school reports wiped hard drives on devices connected to network
Showering malware-laced laptops on UK schoolchildren is the wrong way to teach them about cybersecurity
ADT techie admits he peeked into women’s home security cams thousands of times to watch them undress, have sex
Scottish enviro bods shrug off ransomware gang’s extortion attempt as 4,000 files dumped online, saying it’s nothing big
Clop ransomware gang clips sensitive files from Atlantic Records’ London ad agency The7stars, dumps them online
Microsoft Edge goes homomorphic: Nobody will see your credentials… but you’ll need to sign in to use it
US administration adds “subliminal” ad to White House website
It’s 2021 and you can hijack a Cisco SD-WAN deployment with malicious IP traffic and a buffer overflow. Patch now
Laptops given to British schoolkids came preloaded with malware and talked to Russia when booted
Microsoft SolarWinds analysis: Attackers hid inside Windows systems by wearing the skins of legit processes
Using OPA with GitOps to speed cloud-native development
Has the coronavirus pandemic affected Apple’s hardware design?
Wherever your apps, users and data are heading, is your backup keeping up?
Malwarebytes says its Office 365, Azure tenancies have been breached, insists its tools are still safe to use
Slack has entered the Matrix: Element builds a bridge to realm of encrypted, decentralised comms
Open banking is the future, so let’s secure the APIs
Dnsmasq, used in only a million or more internet-facing devices globally, patches not-so-secret seven spoofing, hijacking flaws
FireEye publishes details of SolarWinds hacking techniques, gives out free tool to detect signs of intrusion
Labour Party urges UK data watchdog to update its Code of Employment Practices to tackle workplace snooping
AnyVan confirms digital break-in, says customer names, emails and hashed passwords exposed
Scottish Environment Protection Agency refuses to pay ransomware crooks over 1.2GB of stolen data
Bye bye, said Trump admin to Huawei: You give a cheque-ie to our techies, but there’s no licence to ply
Hallowed Bugtraq infosec list killed then resurrected over the weekend: We heard your feedback, says Accenture
Signal boost: Secure chat app is wobbly at the moment. Not surprising after gaining 30m+ users in a week, though
Europol announces bust of “world’s biggest” dark web marketplace
Coming in at number 5, it’s a blast from the past! Tenable’s 2020 security flaw chart show features hits of yesteryear
Ministry of Defence’s cyber warfare drive is helping burn a hole through its budget, warns UK’s National Audit Office
Is a remote workforce making your organisation less secure?
Home schooling – how to stay secure
World’s largest dark-web marketplace shuttered after Euro cybercops cuff Aussie
Microsoft emits 83 security fixes – and miscreants are already exploiting one of the vulns in Windows Defender
SolarWinds malware was sneaked out of the firm’s Orion build environment 6 months before anyone realised it was there – report
Microsoft’s beefed-up take on Linux server security has hit general availability
Kaspersky Lab autopsies evidence on SolarWinds hack
How I found a bug in YouTube that let me watch private videos I wasn’t allowed to, says compsci student
Ubiquiti iniquity: Wi-Fi box slinger warns hackers may have peeked at customers’ personal information
That’s it. It’s over. It’s really over. From today, Adobe Flash Player no longer works. We’re free. We can just leave
Thou shalt not hack indiscriminately, High Court of England tells Britain’s spy agencies
Unauthorised RAC staffer harvested customer details then sold them to accident claims management company
Google Titan security keys hacked by French researchers
SolarWinds takes a leaf out of Zoom’s book, hires A-Team of Stamos and Krebs to sort out its security woes
US courts system fears SolarWinds snafu could have let state hackers poke about in sealed case documents
Red Hat snaps up Kubernetes security specialist StackRox
How good are you at scoring security vulnerabilities, really? Boffins seek infosec pros to take rating skill survey
Intel wheels out new face authentication product that works a lot like Apple’s FaceID
What happens when a Chrome extension with 2m+ users changes hands, raises red flags, doesn’t document updates? Let’s find out
JetBrains’ build automation software eyed as possible enabler of SolarWinds hack
United States Congress stormed by violent followers of defeated president, Biden win confirmation halted
Are security and connectivity on your 2021 to do list, yes? Here’s what to do first
Zyxel hardcoded admin password found – patch now!
Trump administration bans eight Chinese apps
Ah, right on time: Hacker-slammed SolarWinds sued by angry shareholders
Blackberry Cylance’s consumer antivirus product won’t work with macOS Big Sur until end of January
Bug? No, Telegram exposing its users’ precise location is a feature working as ‘expected’
Chrome browser has a New Year’s resolution: HTTPS by default
Scotland waves £15m for low-code partner to help with social security overhaul as technical debt mounts
Think you’re hot stuff when it comes to infosec? Prove it
Singapore changes the rules and will now use COVID-19 contact-tracing app data in criminal cases
Happy New Year: Jan 1, 2021 security cert expiration causes havoc for some Check Point VPN users
New year, new rant: Linus Torvalds rails at Intel for ‘killing’ the ECC industry
Julian Assange will NOT be extradited to the US over WikiLeaks hacking and spy charges, rules British judge
SolarWinds mess that flared in the holidays: Biz confirms malware targeted crocked Orion product
Get back into the cybersecurity groove for 2021
The curse of knowing a bit about IT: ‘Could you just…?’ and ‘No I haven’t changed anything’
How to bring zero-trust security to microservices
US Department of Homeland Security warns American business not to use Chinese tech or let data behind the Great Firewall
Does a friend “need money urgently”? Check your facts before paying out…
UK firm NOW: Pensions tells some customers a ‘service partner’ leaked their data all over ‘public software forum’
Dell Wyse Thin Client scores two perfect 10 security flaws
SolarWinds releases known attack timeline but new data suggests hackers may have done a dummy run last year
‘Best tech employer of the year’ threatened trainee with £15k penalty fee for quitting to look after his sick mum
Well, on the bright side, the SolarWinds Sunburst attack will spur the cybersecurity field to evolve all over again
Trump administration says Russia behind SolarWinds hack. Trump himself begs to differ
Unsecured Azure blob exposed 500,000+ highly confidential docs from UK firm’s CRM customers
‘Long-standing vulns’ in 5G protocols open the door for attacks on smartphone users
US nuke agency hacked by suspected Russian SolarWinds spies, Microsoft also installed backdoor
“Is it you in the video?” – don’t fall for this Messenger scam
Ethical power supplier People’s Energy hacked, 250,000 customers’ personal info accessed
Google, Qualcomm team up to make long-term Android updates easier on Snapdragon
When zombie malware leads to big-money ransomware attacks
Whistleblowers have come to us alleging spy agency wrongdoing, says UK auditor IPCO
How cyber-attackers are coming after you in 2021
UK Home Office chucks US firm Leidos £30m for help snooping on comms data
Passwords begone: GitHub will ban them next year for authenticating Git operations
Dutch officials say Donald Trump really did protect his Twitter account with MAGA2020! password
SolarWinds’ shares drop 22 per cent. But what’s this? $286m in stock sales just before hack announced?
Log right in, the water’s fine, whispers Microsoft as it adds autofill to Authenticator app
UK proposes new powers for comms regulator to legally unleash avenging hordes on security-breached telcos
Your ship comms app is ‘secured’ with a Flash interface, doesn’t sanitise SQL inputs and leaks user data, you say?
How to leak data via Wi-Fi when there’s no Wi-Fi chip: Boffin turns memory bus into covert data transmitter
We’re not saying this is how SolarWinds was backdoored, but its FTP password ‘leaked on GitHub in plaintext’
Twitter scores a first for big tech after being fined €450,000 by Ireland’s data watchdog for violating the EU’s GDPR
Phishing tricks that really work – and how to avoid them