Menu

Gallery

World Password Day – what (NOT!) to do
DHS policies allow unlimited, warrantless device search
Is a sticky label the answer to the IoT’s security problems?
Extortionists leak data of huge firms after IT provider refuses to pay
US Government halves deadline for applying critical patches to 15 days
‘I do not wish to surrender’ Julian Assange tells court over US extradition bid
We dunno what’s worse: Hackers ransacked Citrix for FIVE months, or that Equifax was picked to help mop up the mess
Sinister secret backdoor found in networking gear perfect for government espionage: The Chinese are – oh no, wait, it’s Cisco again
Crypto-chaps on scam rap in a flap over Slack chat tap, want court case zapped: ‘Attorney-client priv info’ in messages
Hey, those warrantless smartphone searches at the US border? Unconstitutional, yeah? Civil-rights warriors ask court to settle this
May Day! PM sacks UK Defence Secretary Gavin Williamson for Huawei 5G green-light ‘leak’
Keeping your data safe when traveling
Millions of consumer smart devices exposed by serious security flaw
Julian Assange jailed for 50 weeks over Ecuador embassy bail-jumping
Diabetics are hunting down obsolete insulin pumps with a security flaw
Mystery database exposes data on 80 million US households
NordVPN rapped by ad watchdog over insecure public Wi-Fi claims
Crooks using hacked Microsoft email accounts to steal cryptocurrency
If you’re using Oracle’s WebLogic Server, check for security fixes: Bug exploited in the wild to install ransomware
Don’t be Russian to judgement but… Bloke accused of $1.5m+ tax filing biz hack, fraud
Extortionist hacks IT provider used by the stars of tech and big biz, leaks customer info after ransom goes unpaid
Android users: watch out for this fake address bar trick
Oh dear. Sneaky Huawei enterprise router ‘backdoor’ was Telnet service, sighs Vodafone
Securing edge devices – how to keep the crooks out of your network
Docker breach of 190,000 users exposes lack of two-factor authentication
Facebook under investigation for harvesting 1.5m users’ contact lists
Man posing as Hollywood superstar scams woman out of a ‘fortune’
Chinese dev jailed and fined for posting DJI’s private keys on Github
From Docker Hub hack to Facebook’s burglar-friendly API to phone fingerprint bypasses…
America’s anti-hacking laws are so loose, even Donald Trump Jr broke them. So, what do we do about it?
Brit events and info biz Incisive Media admits open server port may have left readers deets exposed
NIST tool boosts chances of finding dangerous software flaws
Cryptocurrency giants in $850m fraud allegations
Cops need warrant for both location history and phone pinging, says judge
Piracy streaming apps are stuffed with malware
Train up to navigate the diverse, chaotic cyber security landscape at SANS Munich
Powershell, the Gandcrab infection and the long-forgotten server
NSA asks to end mass phone surveillance
Fingerprint glitch in passports swapped left and right hands
Microsoft drops password expiration from Windows 10 security
Cops can try suspect’s fingers on locked iPhones found at crime scene
Thank you, your DNA data will help secure your… oh dear, we’ve lost that too
There’s NordVPN odd about this, right? Infosec types concerned over strange app traffic
Zuck it up: Facebook hit with triple whammy of legal probes, action in Canada, US, Ireland
NSA: That ginormous effort to slurp up Americans’ phone records that Snowden exposed? Ehhh, we don’t need that no more
Microsoft: Yo dawg, we heard you liked Windows password expiry policies. So we expired your expiry policy
ExtraPulsar backdoor based on leaked NSA code – what you need to know
Blochainbandit stole $54 million of Ethereum by guessing weak keys
Atlanta Hawks fall prey to Magecart credit card skimming group
Teen sues Apple for $1 billion over Apple stores’ facial recognition
It’s your what in a box? Here’s a thing to make your bosses think about malware responses
FYI: Yeah, the cops can force your finger onto a suspect’s iPhone to see if it unlocks, says judge
Sophos antivirus tools. Working Windows box. Latest Patch Tuesday fixes. Pick two: ‘Puters knackered by bad combo
‘We’re not omnipotent,’ trills National Cyber Security Centre in open-armed pitch to UK biz
Brit spy chief: We need trust or we won’t have a ‘licence to operate in cyberspace’
Ex-student records himself using USB Killer to fry college computers
NYPD forgets to redact facial recognition docs, asks for them back
Gunpoint domain hijack turns out to have been a family affair
DNS over HTTPS is coming whether ISPs and governments like it or not
Phone fingerprint scanner fooled by chewing gum packet
Hotspot finder app blabs 2 million Wi-Fi network passwords
Once again, it’s 123456: the password that says ‘I give up’
Like that other bloke who rose from the grave, the El Reg security desk is back this week…
Can you get hit by someone else’s ransomware? [VIDEO]
WannaCry hero Hutchins now officially a convicted cybercriminal
Wannacry-slayer Marcus Hutchins pleads guilty to two counts of banking malware creation
Defense against the Darknet, or how to accessorize to defeat video surveillance
Not one of the 12 steps: Rehab patients’ details exposed in publicly visible database
Facebook: we logged 100x more Instagram plaintext passwords than we thought
Old-school cruel: Dodgy PDF email attachments enjoying a renaissance
We’ve read the Mueller report. Here’s what you need to know: ██ ██ ███ ███████ █████ ███ ██ █████ ████████ █████
Who’s using Mueller Report Day to bury bad news? If you guessed Facebook, you’re right: Millions more passwords stored in plaintext
Serious Security: Ransomware you’ll never find – and how to stop it
Facebook: Yeah, we hoovered up 1.5 million email address books without permission. But it was an accident!
Facebook user data used as bargaining chip, according to leaked docs
Google plays Whack-A-Mole with naughty Android developers
Chrome flaw on iOS leads to 500 million unwanted pop-up ads
Oracle issues nearly 300 patches in quarterly update
Google hits brand slam stamping AMP with more crypto glam
Insane in the domain: Sea Turtle hackers pwn DNS orgs to dash web surfers on the rocks of phishing pages
Enough about me, why do you hate Kaspersky so much? Revealed: Insp Clouseau-esque bid to smear critics as shills
Mozilla to Apple: Protect user privacy with rotating phone IDs
Ad blocker firms rush to fix security bug
Internet Explorer browser flaw threatens all Windows users
Microsoft confirms Outlook.com and Hotmail accounts were breached
Cyber-sec biz Fortinet coughs up $545,000 after ‘flogging’ rebadged Chinese kit to Uncle Sam – but why so low? We may be able to explain
Oracle splats 300 vulns in MySQL, Database, Fusion, etc, pours fresh brew of Java SE terms
The curious case of Spamhaus, a port scanning scandal, and an apparent U-turn
Kaspersky updates its cybercrook look book: Smashing Office is hot, browser vulns are not
Hackers bragged that pretty vanilla breach included FBI watchlist? Well, colour us shocked
Watch out! Don’t fall for the Instagram ‘Nasty List’ phishing attack
Google’s location history data shared routinely with police
US feds’ names, home and email addresses hacked and posted online
Indian outsourcing giant Wipro confirms flushing phishers from systems
Security weakness in popular VPN clients
What’s long, hard, and full of seamen? The US Navy’s latest cybersecurity war gaming classes
Just a little FYI: Filtering doodad in Adblock Plus opens door to third-party malware injection
Brit Watchkeeper drone fell in the sea because blocked sensor made algorithms flip out
Flood of exploits targetting ancient WinRAR flaw continues
Microsoft’s Edge browser reborn after Chromium makeover