Menu

Gallery

Alert: Crims hijack these DrayTek routers to attack biz
Serious Security: TPM 2.0 vulns – is your super-secure data at risk?
Pro-Putin scammers trick politicians and celebrities into low-tech hoax video calls
EPA orders US states to check cyber security of public water supplies
DoppelPaymer ransomware suspects cuffed, alleged ringleaders escape
DoppelPaymer ransomware supsects arrested in Germany and Ukraine
Where are the women in cyber security? On the dark side, study suggests
Secret Service, ICE break the law over and over with fake cell tower spying
Snap CISO: I rate software supply chain risk 9.9 out of 10
FTC: BetterHelp pushed users to share mental health info then gave it to Facebook
Frankenstein malware stitched together from code of others disguised as PyPI package
Feds warn about right Royal ransomware rampage that runs the gamut of TTPs
Warning on SolarWinds-like supply-chain attacks: ‘They’re just getting bigger’
German Digital Affairs Committee hearing heaps scorn on Chat Control
Smart security
Insecure software pushers in Biden’s crosshairs
CI/CD: Necessary for modern software development, yet it carries a lot of risk
S3 Ep124: When so-called security apps go rogue [Audio + Text]
Intruder alert: UK retailer WH Smith hit by another cyber attack
Forget ChatGPT, the most overhyped security tool is technology itself, Wiz warns
It’s official: BlackLotus malware can bypass Secure Boot on Windows machines
Top 10 open source software risks for 2023
PlugX RAT masquerades as legit Windows debugger to slip past security
Google: You get crypto, you get crypto, almost everyone gets email crypto!
US government sets a 30-day deadline for wiping TikTok from feds’ phones
US cybersecurity chief: Software makers shouldn’t lawyer their way out of security responsibilities
Dish: Someone snatched our data, if you’re wondering why our IT systems went down
News Corp outfoxed by IT intruders for years
Russian hacktivists DDoS hospitals, with pathetic results
US Marshals Service leaks ‘law enforcement sensitive information’ in ransomware incident
LastPass: Keylogger on home PC led to cracked corporate password vault
Feeling VEXed by software supply chain security? You’re not alone
Dish multi-day outage rolls on as ransomware fears grow
Beware rogue 2FA apps in App Store and Google Play – don’t get hacked!
Dutch police arrest three cyberextortion suspects who allegedly earned millions
China makes it even harder for data to leave its shores
Russian charged with smuggling US counterintel tech to Motherland
Microsoft: For better security, scan more Exchange server objects
‘Ethical hacker’ among ransomware suspects cuffed by Dutch cops
Telus source code, staff info for sale on dark web forum
Bitcoin mining rig found stashed in school crawlspace
Google destroyed evidence for antitrust battle, Feds complain
European Commission bans TikTok from staff gadgets
Microsoft grows automated assault disruption to cover BEC, ransomware campaigns
Ukraine invasion blew up Russian cybercrime alliances
Suspected Russian NLBrute malware boss extradited to US
Dole production plants crippled by ransomware, stores run short
FTX fiasco founder SBF faces further fraud charges
At least one open source vulnerability found in 84% of code bases: Report
Sensitive DoD emails exposed by unsecured Azure server
S3 Ep123: Crypto company compromise kerfuffle [Audio + Text]
Russian authorities claim Ukraine hackers are behind fake missile strike alerts
Datacenters in China, Singapore cracked by crims who then targeted tenants
Lawyers join forces to fight common enemy: The SEC and its probes into cyber-victims
NPM JavaScript packages abused to create scambait links in bulk
Open source software has its perks, but supply chain risks can’t be ignored
Global threats fuel cyber defence training
Coinbase breached by social engineers, employee data stolen
Accidental WhatsApp account takeovers? It’s a thing
Locking down the remote printer
DNA testing biz vows to improve infosec after criminals break into database it forgot it had
Twitter tells users: Pay up if you want to keep using insecure 2FA
What Mary, Queen of Scots, can teach today’s cybersec royalty
GoDaddy joins the dots and realizes it’s been under attack for three years
GoDaddy admits: Crooks hit us with malware, poisoned customer websites
If you’re struggling to secure email forwarding, it’s not you, it’s … the protocols
Intruder alert: FBI tackles ‘isolated’ IT security breach
‘Russian hacktivists’ claim responsibility for DDoSing German airport websites
Cry Havoc and let slip dogs of war … there’s an upgraded malware server in town
EU lawmakers argue against signing US data pact
Antivirus apps are there to protect you – Cisco’s ClamAV has a heckuva flaw
Norway finds a way to recover crypto North Korea pinched in Axie heist
Google’s big security cert log overhaul broke Android apps. Now it’s hit undo
VMware, Windows 11 shafted by Windows Server 2022
More victims of fake crypto investor scam speak to The Register
S3 Ep122: Stop calling every breach “sophisticated”! [Audio + Text]
ESXiArgs ransomware fights off Team America’s data recovery script
Intel patches up SGX best it can after another load of security holes found
Cybersecurity startup Oligo debuts with new application security tech
Storage security toughen-up for compliance and cyberwar in 2023
Hyundai and Kia issue software upgrades to thwart killer TikTok car theft hack
Apple splats zero-day bug, other gremlins in macOS, iOS
Russian crook made $90M exploiting stolen info on Tesla, Roku, Avnet, Snap, more
Microsoft delivers 75-count box of patches for Valentine’s Day
Microsoft Patch Tuesday: 36 RCE bugs, 3 zero-days, 75 CVEs
Record-breaking number of record-breaking DDoS attacks confirmed
Google lets a few Android devices into its Privacy Sandbox
EnterpriseDB adds Transparent Data Encryption to PostgreSQL
Apple fixes zero-day spyware implant bug – patch now!
Romance scam targets security researcher, hilarity ensues
Pepsi Bottling Ventures says info-stealing malware swiped sensitive data
Serious Security: GnuTLS follows OpenSSL, fixes timing attack bug
Namecheap admits ‘unauthorized emails’ pwning its customers
LockBit’s Royal Mail ransom deadline flies by. No data released
Learn the art of malicious compliance: doing exactly what you were asked, even when it’s wrong
China’s spy balloon barrage earns six of its companies a spot on US entity list
Ransomware crooks steal 3m+ patients’ medical records, personal info
Reddit admits it was hacked and data stolen, says “Don’t panic”
3 reasons not to repatriate cloud-based apps and data sets
US, UK slap sanctions on Russians linked to Conti, Ryuk, Trickbot malware