Menu

Gallery

Bad news: Windows security cert SNAFU exploits are all over the web now. Also bad: Citrix gateway hole mitigations don’t work for older kit
NSA and Github ‘rickrolled’ using Windows CryptoAPI bug
Update now! Popular WordPress plugins have password bypass flaws
Apps are sharing more of your data with ad industry than you may think
Google to kill third-party Chrome cookies in two years
College students call for ban on facial recognition on campus
Spanking the pirates of corporate security? Try a Plimsoll
Attention security startup founders: Give your fledgling Brit biz a boost with Tech Nation’s free Cyber 2.0 school
Top Euro court advised: Cops, spies yelling ‘national security’ isn’t enough to force ISPs to hand over massive piles of people’s private data
What do Brit biz consultants and X-rated cam stars have in common? Wide open… AWS S3 buckets on public internet
Yo, sysadmins! Thought Patch Tuesday was big? Oracle says ‘hold my Java’ with huge 334 security flaw fix bundle
Microsoft fixes critical bugs in CryptoAPI, RD Gateway and .NET
Malicious npm package taken down after Microsoft warning
Peekaboo Moments baby-recording app has a bad database booboo
Apple says no to unlocking shooter’s phone; AG and Trump lash back
Today’s webcast: Hackers don’t care if you’re big or small. Tune in to find out how to protect your mid-sized biz
Updated your WordPress plugins lately? Here are 320,000 auth-bypassing reasons why you should
Serious Microsoft crypto vulnerability – patch right now
Welcome to the 2020s: Booby-trapped Office files, NSA tipping off Windows cert-spoofing bugs, RDP flaws…
Apple calls BS on FBI, AG: We’re totally not dragging our feet in murder probe iPhone decryption. PS: No backdoors
US hands UK ‘dossier’ on Huawei: Really! Still using their kit? That’s just… one… step… beyond
Windows 7 computers will no longer be patched after today
Fleeceware is back in Google Play – massive fees for not much at all
‘Cable Haunt’ vulnerability exposes 200 million cable modem users
Google tests biometric authentication for Android autofill
Lottery hacker gets 9 months for his £5 cut of the loot
Microsoft now reviewing Skype audio in ‘secure’ places (not China)
Relying on AT&T, Verizon and T-Mob US to protect you from SIM swapping? You better get used to disappointment
Someone needs to go back to school: Texas district fleeced for $2.3m after staff fall for devious phishing email
Privacy activists beg Google to ban un-removable bloatware from Android
Whirlybird-driving infosec boss fined after ranty Blackpool Airport air traffic control antics
Snake alert! This ransomware is not a game…
Powerful GPG collision attack spells the end for SHA-1
Reddit bans ‘impersonation,’ but satire and parody are still OK
Google urged to tame privacy-killing Android bloatware
Lawmakers look to spread COPPA out to cover kids up to 16
UK data watchdog kicks £280m British Airways and Marriott GDPR fines into legal long grass
If you haven’t shored up that Citrix hole, you were probably hacked over the weekend: Exploit code now available
Hundreds of millions of Broadcom-based cable modems at risk of remote hijacking, eggheads fear
Is the Y2K bug alive after all?
National Lottery Sentry MBA hacker given nine months in jail after swiping just £5
Hackers use system weakness to rattle doors on Citrix systems
Ransomware pounces on California schools, Las Vegas trounces attack
Fake-review purge: Facebook boots 188 groups, eBay bans 140 shills
Ding-dong: Cisco delivers your Patch Tuesday warm-up with WebEx, IOS fixes for a few irritating security holes
Google scolded for depriving the poor of privacy after Chinese malware bundled on phones for hard-up Americans
Why is a 22GB database containing 56 million US folks’ personal details sitting on the open internet using a Chinese IP address? Seriously, why?
Dixons fined £500,000 by ICO for crap security that exposed 5.6 million customers’ payment cards
Browser zero day: Update your Firefox right now!
Apple’s scanning iCloud photos for child abuse images
Google voice Assistant gets new privacy ‘undo’ commands
FBI asks Apple to help it unlock iPhones of naval base shooter
Google’s Project Zero highlights patch quality with policy tweak
Hash snag: Security shamans shame SHA-1 standard, confirm crucial collisions citing circa $45k chip cost
In a desperate bid to stay relevant in 2020’s geopolitical upheaval, N. Korea upgrades its Apple Jeus macOS malware
TikTok on the clock, and the hacking won’t stop: SMS spoofing vuln let baddies twiddle teens’ social media videos
REvil ransomware exploiting VPN flaws made public last April
YouTube to treat all kid-aimed videos like they’re COPPA-liable
US warns of Iranian cyber threat
Facebook bans deepfakes, but not cheapfakes or shallowfakes
What if everyone just said ‘Nah’ to tracking?
The Six Million Dollar Scam: London cops probe Travelex cyber-ransacking amid reports of £m ransomware demand, wide-open VPN server holes
If at first you don’t succeed, pry, pry again: Feds once again demand Apple unlock encrypted iPhones in yet another terrorism case
That Pulse Secure VPN you’re using to protect your data? Better get it patched – or it’s going to be ransomware time
Yeah, says Google Project Zero, when you think about it, going public with exploit deets immediately after a patch is emitted isn’t such a great idea
Accenture pays for CSS injection from Symantec parent Broadcom: Yep, it bought its cybersecurity arm
Wheelie bad end to 2019 for Canyon Bicycles as hackers puncture IT systems
Google suspends Xiaomi from Home Hub over camera privacy glitch
‘Maze’ ransomware threatens data exposure unless $6m ransom paid
I’m the queen of Gibraltar and will never get a traffic ticket… just two of the things anyone could have written into country’s laws thanks to unsanitised SQL input vuln
IT exec sets up fake biz to scam his employer out of $6m
US military branches ban TikTok following Pentagon’s warning
Here we go again: Software nasties slip into Google Play, exploit make-me-root Android flaw for maximum pwnage
Cyber-warnings, cyber-speculation over cyber-Iran’s cyber-retaliation cyber-plans post-Soleimani assassination
Don’t fall for the “Start your 2020 with a gift from us” scam…
GCHQ: A cyber-what-now? Rumours of our probe into London Stock Exchange ‘cyberattack’ have been greatly exaggerated
Monday review – the hot stories of the holidays
Tune in this month: What every small-to-medium biz can do to fend off cyber-crooks
Rowhammer rides again as FPGA attack, RSA again reportedly up for sale, anti-theft kit to nuke laptops, etc
IT exec sets up fake biz, uses it to bill his bosses $6m for phantom gear, gets caught by Microsoft Word metadata
New year, new critical Cisco patches to install – this time for a dirty dozen of bugs that can be exploited to sidestep auth, inject commands, etc
TikTok boom: US Army bans squaddies from using trendy app on govt-issued phones
Cryptocurrency exchange Poloniex issues password reset warning
Brit banking sector hasn’t gone a single day of 2020 without something breaking
Python is dead. Long live Python!
Don’t Xiaomi pics of other people’s places! Chinese kitmaker fingers dodgy Boxing Day cache update after Google banishes it from Home
This page is currency unavailable… Travelex scrubs UK homepage, kills services, knackers other sites amid ‘software virus’ infection
And we now go live to Apple v Corellium, where the iTitan is still lobbing copyright fireballs at the virtual iPhone upstart
Oddly specific ‘cyber attack’ hits Alaskan airline RavnAir and one plane type
TikTok boom: US Army bans squaddies from using platform on government-issued phones
Mitigating the risks of AI transparency in the next decade
Most popular tech stories of 2019
Celebrity addresses posted online in New Year’s Honours List leak
Monday review – the hot 12 stories of the week
7 types of virus – a short glossary of contemporary cyberbadness
Christmas malware uses “Support Greta Thunberg” as a lure
Beware the three-finger-salute, or ‘How I Got The Keys To The Kingdom’
Apple iCloud “data dump” extortionist avoids prison
Happy Holidays – and big thanks to everyone who’s working today!
Sextortionists return for Christmas – price goes down, threats go up