Menu

Gallery

Medusa ransomware crew brags about spreading Bing, Cortana source code
Appeals court spares Google from $20m patent payout over Chrome
Spyware slinger QuaDream’s reported demise may be the canary in the coal mine
GitHub debuts pedigree check for npm packages via Actions
Prioritize what matters most
US citizens charged with pushing pro-Kremlin disinfo, election interference
Russian snoops just love invading unpatched Cisco gear, America and UK warn
Microsoft opens up Defender threat intel library with file hash, URL search
Payments firm accused of aiding ‘contact Microsoft about a virus’ scammers must cough $650k
Ex-CEO of breached pyschotherapy clinic gets prison sentence for bad data security
Brit cops rapped over app that recorded 200k phone calls
Wrong time to weaken encryption, UK IT chartered institute tells government
Capita IT breach gets worse as Black Basta claims it’s now selling off stolen data
US alleges China created troll army that tried to have dissidents booted from Zoom
Military helicopter crash blamed on failure to apply software patch
LockBit crew cooks up half-baked Mac ransomware
FBI and FCC warn about “Juicejacking” – but just how useful is their advice?
Marketing biz sent 107 million spam emails… to just 437k people
Firmware is on shaky ground – let’s see what it’s made of
Student requested access to research data. And waited. And waited. And then hacked to get root
Update now: Google emits emergency fix for zero-day Chrome vulnerability
Russia-pushed UN Cybercrime Treaty may rewrite global law. It’s … not great
US extradites Nigerian charged in $6m email fraud scam
Compatibility mess breaks not one but two Windows password tools
While Twitter wants to sell its verification, Microsoft will do it for free on LinkedIn
Linux kernel logic allowed Spectre attack on ‘major cloud provider’
To improve security, consider how the aviation world stopped blaming pilots
Pentagon super-leak suspect cuffed: 21-year-old Air National Guardsman
S3 Ep130: Open the garage bay doors, HAL [Audio + Text]
How insecure is America’s FirstNet emergency response system? No one’s sure
FBI: How fake Xi cops prey on Chinese nationals in the US
Google launches dependency API and curated package repository with security metadata
Microsoft fixes a zero-day – and two curious bugs that take the Secure out of Secure Boot
OpenAI starts bug bounty program with cash rewards up to $20,000
Mission possible
3CX teases security-focused client update, plus password hashing
US cyber chiefs warn AI will help crooks, China develop nastier cyberattacks faster
Another zero-click Apple spyware maker just popped up on the radar again
April Patch Tuesday: Ransomware gangs already exploiting this Windows bug
Attention gamers! Motherboard maker MSI admits to breach, issues “rogue firmware” alert
Azure admins warned to disable shared key access as backdoor attack detailed
GitGuardian’s honeytokens in codebase to fish out DevOps intrusion
40% of IT security pros say they’ve been told not to report a data leak
3 overlooked cloud security attack vectors
How much to infect Android phones via Google Play store? How about $20k
Inside FTX: Jokes about misplaced funds, diabolical IT, poor oversight, and worse
Apple squashes iOS, macOS zero-day bugs already exploited by snoops
Apple zero-day spyware patches extended to cover older Macs, iPhones and iPads
Google to kill Dropcam, Nest Secure hardware next year
Microsoft, Fortra are this fed up with cyber-gangs abusing Cobalt Strike
When it comes to technology, securing your future means securing your present
Popular server-side JavaScript security sandbox “vm2” patches remote execution hole
Apple issues emergency patches for spyware-style 0-day exploits – update now!
MSI hit in cyberattack, warns against installing knock-off firmware
Welcome to open source, Elon. Your Twitter code just got a CVE for shadow ban bug
It’s this easy to seize control of someone’s Nexx ‘smart’ home plugs, garage doors
With ICMP magic, you can snoop on vulnerable HiSilicon, Qualcomm-powered Wi-Fi
S3 Ep129: When spyware arrives from someone you trust
Russia has a stash of scary malware? We’re shocked
CAN do attitude: How thieves steal cars using network bus
Criminal records office yanks web portal offline amid ‘cyber security incident’
Cops cuff teenage ‘Robin Hood hacker’ suspected of peddling stolen info
Cops put the squeeze on Genesis crime souk denizens, not just the admins this time
US government warning! What if anyone could open your garage door?
Microsoft tells admins to autoreview your Autopatch alerts or autolose the service
Notorious stolen credential warehouse Genesis Market seized by FBI
Feds seize $112m in cryptocurrency linked to ‘pig-butchering’ finance scams
Can ChatGPT bash together some data-stealing code? With the right prompts, sure
Snyk bolsters developer security with fresh devsecop, cloud capabilities
Einstein tilings – the amazing “Hat” shape that never repeats!
UK data regulator issues warning over generative AI data protection concerns
UK data watchdog fines TikTok £12.7M for failing to protect kids
Bank rewrote ads for infosec jobs to stop scaring away women
Hey Siri, use this ultrasound attack to disarm a smart-home system
Uber driver info stolen yet again: This time from law firm
April brings tulips, taxes … and phisherfolk scammers
Researchers claim they can bypass Wi-Fi encryption (briefly, at least)
Keeping secrets safe
Western Digital confirms digital burglary, calls the cops
3CX thought supply chain attack was a false positive
Vietnam threatens to cut off two million mobile subscribers
School principal resigns after writing $100,000 check to Elon Musk impersonator
Ukrainian cops nab suspects accused of stealing $4.3m from victims across Europe
NYPD blues: Cops ignored 93 percent of surveillance law rules
Psst! Infosec bigwigs: Wanna be head of security at HM Treasury for £50k?
NHS Highland ‘reprimanded’ by data watchdog for BCC blunder with HIV patients
Pro-Russia cyber gang Winter Vivern puts US, Euro lawmakers in line of fire
Leaked IT contractor files detail Kremlin’s stockpile of cyber-weapons
World Backup Day is here again – 5 tips to keep your precious data safe
Azure blunder left Bing results editable, MS 365 accounts potentially exposed
AlienFox malware caught in the cloud hen house
Supply chain blunder puts 3CX telephone app users at risk
Do you use comms software from 3CX? What to do next after biz hit in supply chain attack
S3 Ep128: So you want to be a cyber­criminal? [Audio + Text]
Microsoft uses carrot and stick with Exchange Online admins
The most important email conversation you will ever have
Warning: Your wireless networks may leak data thanks to Wi-Fi spec ambiguity
Another year, another North Korean malware-spreading, crypto-stealing gang named
Smugglers busted sneaking tech into China
Malware disguised as Tor browser steals $400k in cryptocash