Menu

Gallery

Some potential: How bad software updates could over-volt, brick remote servers
Zut alors! Raclage crapuleux! Clearview AI in 20% more trouble in France
No more macros? No problem, say miscreants, we’ll adapt
Sigstore: Roots of trust for software artifacts
An important system on project [REDACTED] was all [REDACTED] up
Ransomware corrupts data, so backups can be faster and cheaper than paying up
Arm acknowledges side-channel attack but denies Cortex-M is crocked
Toyota’s bungling of customer privacy is becoming a pattern
‘Top three Balkans drug kingpins’ arrested after cops crack their Sky ECC chats
Why Microsoft just patched a patch that squashed an under-attack Outlook bug
Ex-Ubiquiti dev jailed for 6 years after stealing internal corp data, extorting bosses
Britain’s largest private pension scheme reveals scale of Capita break-in
Whodunnit? Cybercrook gets 6 years for ransoming his own employer
Activists gatecrash Capita’s AGM to protest GPS tracking contract
UK cops score legal win in EncroChat snooping op
India to send official whassup to WhatsApp after massive spamstorm
Let white-hat hackers stick a probe in those voting machines, say senators
Millions of mobile phones come pre-infected with malware, say researchers
S3 Ep134: It’s a PRIVATE key – the hint is in the name!
ENISA leans into EU-based clouds with draft cybersecurity label
Sonatype axes 14 percent of staff, reminds them not to talk to the press
Twitter adds new DM features, and Musk says E2EE is here, starting today
What should protection for your 365 data really look like?
23-year-old Brit linked to 2020 Twitter attack and SIM-swap scheme pleads guilty
Bootkit zero-day fix – is this Microsoft’s most cautious patch ever?
Capita looking at a bill of £20M over breach clean-up costs
Japan’s ubiquitous convenience stores now serving up privacy breaches
Two Microsoft Windows bugs under attack, one in Secure Boot with a manual fix
FBI-led Op Medusa slays NATO-bothering Russian military malware network
Microsoft disarms push notification bombers with number matching in Authenticator
Low-level motherboard security keys leaked in MSI breach, claim researchers
EU proposes spyware Tech Lab to keep Big Brother governments in check
Beijing raids consultancy, State-sponsored media warns more to come
FYI: Intel BootGuard OEM private keys leak from MSI cyber heist
Western Digital: Customer info stolen in that IT attack
WordPress plugin hole puts ‘2 million websites’ at risk
Twitter admits ‘security incident’ made private Circles not so much
Modern Auth comes to on-prem Exchange Server gear
T-Mobile US suffers second data theft within months
DEF CON to set thousands of hackers loose on LLMs
Dump these insecure phone adapters because we’re not fixing them, says Cisco
A right Royal pain in the Dallas: City IT systems crippled by ransomware
PHP Packagist supply chain poisoned by hacker “looking for a job”
Capita admits some pension data ‘likely’ to have been accessed in March breach
Users complain over UK state-owned bank’s services as Atos eyes the exit
China labels USA ‘Empire of hacking’ based on old Wikileaks dumps
Ex-Uber CSO gets probation for covering up theft of data on millions of people
Strike three: FTC says Meta still failing to protect user privacy
World Password Day: 2 + 2 = 4
A practical guide to React Native authentication
Go ahead, forget that password. Use a passkey instead, says Google
Meta does the ‘We found baddies and crushed them’ thing again – this time for AI
Tracked by hidden tags? Apple and Google unite to propose safety and security standards…
Give NotPetya-hit Merck that $1.4B, appeals court tells insurers
Chrome’s HTTPS padlock heads to Google Graveyard
The importance of being certified
Apple pushes first-ever ‘rapid’ patch – and rapidly screws up
Mirai botnet loves exploiting your unpatched TP-Link routers, CISA warns
Apple, Google propose anti-stalking spec for Bluetooth tracker tags
288 arrested in multinational Monopoly Market takedown
In the face of data disaster
Data loss costs are going up – and not just for those who choose to pay thieves
Russia’s APT28 targets Ukraine government with bogus Windows updates
Feds rethink warrantless search stats and – oh look, a huge drop in numbers
Apple delivers first-ever Rapid Security Response “cyberattack” patch – leaves some users confused
IT giant Bitmarck shuts down customer, internal systems after cyberattack
Centralized secrets management picks up pace
Google adds account sync for Authenticator, without E2EE
Your security failure was so bad we have to close the company … NOT!
China has 50 hackers for every FBI cyber agent, says Bureau boss
Mac malware-for-hire steals passwords and cryptocoins, sends “crime logs” via Telegram
Google wins court order to force ISPs to filter botnet traffic
Online Safety Bill age checks? We won’t do ’em, says Wikipedia
Google sues CryptBot slingers, gets court order to shut down malware domains
Microsoft is busy rewriting core Windows code in memory-safe Rust
S3 Ep132: Proof-of-concept lets anyone hack at will
Microsoft probes complaints of Edge leaking URLs to Bing
DoJ, Treasury accuses 3 men of laundering crypto for North Korea
Google leaking 2FA secrets – researchers advise against new “account sync” feature for now
The good, the bad and the generative AI
Apache Superset: A story of insecure default keys, thousands of vulnerable systems, few paying attention
Menaced by miscreants, critical infrastructure needs a good ETHOS. Ah, here’s one
How fiends abuse an out-of-date Microsoft Windows driver to infect victims
PaperCut security vulnerabilities under active attack – vendor urges customers to patch
Double zero-day in Chrome and Edge – check your versions now!
If you haven’t patched Microsoft Process Explorer, prepare to be pwned
That 3CX supply chain attack keeps getting worse: More victims found
Chinese scientists calculate the Milky Way’s mass as 805 billion times that of our Sun
European air traffic control confirms website ‘under attack’ by pro-Russia hackers
Microsoft pushes for more women in cybersecurity
VMware patches break-and-enter hole in logging tools: update now!
International cops urge Meta not to implement secure encryption for all
Healthcare organisations urged to improve system security
Thanks for fixing the computer lab. Now tell us why we shouldn’t expel you?
S3 Ep131: Can you really have fun with FORTRAN?
Capita has ‘evidence’ customer data was stolen in digital burglary
An earlier supply chain attack led to the 3CX supply chain attack, Mandiant says
Designing user management for machine-to-machine interactions
AI defenders ready to foil AI-armed attackers
Protect the Industrial Control Systems (ICS)