Menu

Gallery

Insider steals 79,000 email addresses at work to promote own business
Vietnam to collect biometrics – even DNA – for new ID cards
LockBit ransomware gang disrupted by global operation
ALPHV gang claims it’s the attacker that broke into Prudential Financial, LoanDepot
Safeguarding cyber-physical systems for a smart future
Feds post $15 million bounty for info on ALPHV/Blackcat ransomware crew
Election security threats in 2024 range from AI to … anthrax?
How to weaponize LLMs to auto-hijack websites
Google open sources file-identifying Magika AI for malware hunters and others
Zeus, IcedID malware kingpin faces 40 years in slammer
Cutting kids off from the dark web – the solution can only ever be social
Quest Diagnostics pays $5M after mixing patient medical data with hazardous waste
Feds dismantle Russian GRU botnet built on 1,000-plus home, small biz routers
Pentagon launches nuke-spotting satellites amid Russian space bomb rumors
Mitigating AI security risks
Zoom stomps critical privilege escalation bug plus 6 other flaws
Cybercriminals are stealing Face ID scans to break into mobile banking accounts
Miscreants turn to ad tech to measure malware metrics
European Court of Human Rights declares backdoored encryption is illegal
North Korea running malware-laden gambling websites as-a-service
OpenAI shuts down China, Russia, Iran, N Korea accounts caught doing naughty things
China’s Volt Typhoon spies broke into emergency network of ‘large’ US city
US Air Force’s new cyber, IT skill recruitment plan: Bring back warrant officer ranks
Prudential Financial finds cybercrims lurking inside its IT systems
Romanian hospital ransomware crisis attributed to third-party breach
Southern Water cyberattack expected to hit hundreds of thousands of customers
Bumblebee malware wakes from hibernation, forgets what year it is, attacks with macros
Australian Tax Office probed 150 staff over social media refund scam
Crims found and exploited these two Microsoft bugs before Redmond fixed ’em
Just one bad packet can bring down a vulnerable DNS server thanks to DNSSEC
QNAP vulnerability disclosure ends up an utter shambles
ALPHV blackmails Canadian pipeline after ‘stealing 190GB of vital info’
Crooks hook hundreds of exec accounts after phishing in Azure C-suite pond
Meta says risk of account theft after phone number recycling isn’t its problem to solve
Infosys subsidiary named as source of Bank of America data leak
Korean eggheads crack Rhysida ransomware and release free decryptor tool
Dutch insurers demand nudes from breast cancer patients despite ban
FCC gets tough: Telcos must now tell you when your personal info is stolen
Jet engine dealer to major airlines discloses ‘unauthorized activity’
Europe’s largest caravan club admits wide array of personal data potentially accessed
Mon Dieu! Nearly half the French population have data nabbed in massive breach
Meet VexTrio, a network of 70K hijacked websites crooks use to sling malware, fraud
Ivanti discloses fifth vulnerability, doesn’t credit researchers who found it
Fortinet’s week to forget: Critical vulns, disclosure screw-ups, and that toothbrush DDoS attack claim
The ever-present state of cyber security alert
India to make its digital currency programmable
Crime gang targeted jobseekers across Asia, looted two million email addresses
Uncle Sam sweetens the pot with $15M bounty on Hive ransomware gang members
FBI: Give us warrantless Section 702 snooping powers – or China wins
Fake LastPass lookalike made it into Apple App Store
Raspberry Robin devs are buying exploits for faster attacks
Cybercrime duo accused of picking $2.5M from Apple’s orchard
Rust can help make software secure – but it’s no cure-all
IT suppliers hacked off with Uncle Sam’s demands in aftermath of cyberattacks
Volt Typhoon not the only Chinese crew lurking in US energy, critical networks
Half of polled infosec pros say their degree was less than useful for real-world work
US says China’s Volt Typhoon is readying destructive cyberattacks
Iran’s cyber operations in Israel a potential prelude to US election interference
Raspberry Pi Pico cracks BitLocker in under a minute
JetBrains urges swift patching of latest critical TeamCity flaw
Martin Hellman: We’re playing Russian roulette
The spyware business is booming despite government crackdowns
DEF CON is canceled! No, really this time – but the show will go on
Mozilla adds paid-for data-deletion tier to Monitor, its privacy-breach radar
MuleSoft unveils policy development kit for API gateway
Verizon says 63K employees’ info fell into the wrong hands – an insider this time
Chinese Coathanger malware hung out to dry by Dutch defense department
EquiLend back in the saddle as ransom payment rumors swirl
Double trouble for Fortinet customers as pair of critical vulns found in FortiSIEM
New kids on the ransomware block in 2023: Akira and 8Base lead dozens of newbies
Google throws $1M at Rust Foundation to build C++ bridges
Ivanti devices hit by wave of exploits for latest security hole
Ignore Uncle Sam’s ‘voluntary’ cybersecurity goals for hospitals at your peril
AnyDesk revokes signing certs, portal passwords after crooks sneak into systems
Lurie Children’s Hospital back to pen and paper after cyberattack
SBF likely off the hook for misplaced FTX funds after cops bust SIM swap ring
Researchers remotely exploit devices used to manage safe aircraft landings and takeoffs
Blackbaud settles with FTC after that IT breach exposed millions of people’s info
Critical vulnerability in Mastodon is pounced upon by fast-acting admins
Interpol’s latest cybercrime intervention dismantles ransomware, banking malware servers
Wikileaks source and former CIA worker Joshua Schulte sentenced to 40 years jail
Managing the hidden risks of shadow APIs
Cloudflare sheds more light on Thanksgiving security breach in which tokens, source code accessed by suspected spies
Rise of deepfake threats means biometric security measures won’t be enough
Biden will veto attempts to rip up SEC breach reporting rule
LockBit shows no remorse for ransomware attack on children’s hospital
Congress told how Chinese attackers plan to incite ‘societal chaos’ in the US
FBI confirms it issued remote kill command to blow out Volt Typhoon’s botnet
Ransomware payment rates drop to new low – only 29% of victims are forking over cash
Nearly 4-year-old Cisco vuln linked to recent Akira ransomware attacks
We know nations are going after critical systems, but what happens when crims join in?
Ivanti releases patches for VPN zero-days, discloses two more high-severity vulns
US shorts China’s Volt Typhoon crew targeting America’s criticals
Jenkins jitters as 45,000 servers still vulnerable to RCE attacks after patch released
Reg story prompts fresh security bulletin, review of Juniper Networks’ CVE process
Protecting against software supply chain attacks
UK biometrics boss bows out, bemoaning bureaucratic blunders
SolarWinds slams SEC lawsuit against it as ‘unprecedented’ victim blaming
Tesla hacks make big bank at Pwn2Own’s first automotive-focused event
750 million Indian mobile subscribers’ info for sale on dark web