Menu

Gallery

Ukraine’s cyber chief comes to Black Hat in surprise visit
Let there be ambient light sensing, without fear of data theft
Palo Alto bug used for DDoS attacks and there’s no fix yet
Starlink satellite dish cracked on stage at Black Hat
US reveals ‘Target’ pic of Conti man with $10m reward offer
Microsoft trumps Google for 2021-22 bug bounty payouts
Intel ups protection against physical chip attacks in Alder Lake
Emergency services call-handling provider: Ransomware forced it to pull servers offline
FAANGs failing on keeping user data safe from bug hunters
Higher risks and premiums are creating critical gap in cyber insurance
Security needs to learn from the aviation biz to avoid crashing
Russian invasion has dangerously destabilized cyber security norms
AWS and Splunk partner for faster cyberattack response
Ex-CIA security boss predicts coming crackdown on spyware
Sonatype spots another PyPI package behaving badly
Keeping the enemy at the gate
Don’t be surprised if your organization suffers multiple cyberattacks
S3 Ep95: Slack leak, Github onslaught, and post-quantum crypto [Audio + Text]
Making the cloud a safer place with SANS
Cisco admits corporate network compromised by gang with links to Lapsus$
Meta privacy red team lead: Does your business know its privacy adversaries?
Boffins rate npm and PyPI package security and it’s not good
Ex-CISA chief Krebs calls for US to get serious on security
As Black Hat kicks off, the US government is getting the message on hiring security talent
Maui ransomware linked to North Korean group Andariel
APIC/EPIC! Intel chips leak secrets even the kernel shouldn’t see…
Google’s bug bounty boss: Finding and patching vulns? ‘Totally useless’
Cloudflare: Someone tried to pull the Twilio phishing tactic on us too
Businesses should dump Windows for the Linux desktop
Patch Tuesday: Yet another Microsoft RCE bug under active exploit
Slack admits to leaking hashed passwords for five years
APIC fail: Intel ‘Sunny Cove’ chips with SGX spill secrets
Malicious deepfakes used in attacks up 13% from last year, VMware finds
Microsoft’s fix for ‘data damage’ risk hits PC performance
Chinese scammers target kids with promise of extra gaming hours
China-linked spies used six backdoors to steal info from defense, industrial enterprise orgs
US treasury whips up sanctions for crypto mixer Tornado Cash
Twilio customer data exposed after its staffers got phished
Microsoft tightens Edge security for less visited websites
Slack leaked hashed passwords from its servers for years
Dark Utilities C2 service draws thousands of cyber criminals
DuckDuckGo says Hell, Hell, No to those Microsoft trackers after web revolt
Hi, I’ll be your ransomware negotiator today – but don’t tell the crooks that
Nomad to crypto thieves: Please give us back 90%, keep 10% as a reward. Deal?
Warning! Critical flaws found in US Emergency Alert System
Traffic Light Protocol for cybersecurity responders gets a revamp
Critical flaws found in four Cisco SMB router ranges – for the second time this year
Bloke robbed of $800,000 in cryptocurrency by fake wallet app wants payback from Google
S3 Ep94: This sort of crypto (graphy), and the other sort of crypto (currency!) [Audio + Text]
Taiwanese military reports DDoS in wake of Pelosi visit
Zero-knowledge proof finds new life in the blockchain
India scraps data protection law in favor of better law coming … sometime
Student crashes Cloudflare beta party, redirects email, bags a bug bounty
UK Parliament bins its TikTok account over China surveillance fears
Solana, Phantom blame Slope after millions in crypto-coins stolen from 8,000 wallets
GitHub blighted by “researcher” who created thousands of malicious projects
Microsoft widens enterprise access to its threat intelligence pool
Ex-T-Mobile US store owner phished staff, raked in $25m from unlocking phones
Sonatype shines light on typosquatting ransomware threat in PyPI
Post-quantum cryptography – new algorithm “gone in 60 minutes”
You can’t choose when you’ll be hit by ransomware, but you can choose how you prepare
NortonLifeLock and Avast $8.6b deal gets provisional yes from UK regulator
Post-quantum crypto cracked in an hour with one core of an ancient Xeon
Nancy Pelosi ties Chinese cyber-attacks to need for Taiwan visit
VMware patches critical ‘make me admin’ auth bypass bug, plus nine other flaws
How a crypto bridge bug led to a $200m ‘decentralized crowd looting’
Robinhood’s crypto unit hit with $30m fine over security, anti-crime misses
Threat groups embrace messaging apps to spread malware, communicate
Cryptocoin “token swapper” Nomad loses $200 million in coding blunder
Bot army risk as 3,000+ apps found spilling Twitter API keys
Miscreants aim to cause Discord discord with malicious npm packages
Charges filed over $300m ‘textbook pyramid and Ponzi scheme’ crypto startup
GnuTLS patches memory mismanagement bug – update now!
Defence against the dark arts of ransomware
How Cloudflare emerged to take on AWS, Azure, and GCP
Akamai: We stopped record DDoS attack in Europe
Spyware developer charged by Australian Police after 14,500 sales
Tim Hortons offer free coffee and donut to settle data privacy invasion claims
This is what to expect when a managed service provider gets popped
S3 Ep93: Office security, breach costs, and leisurely patches [Audio + Text]
Critical Samba bug could let anyone become Domain Admin – patch now!
Feds put $10m bounty on Putin pal accused of bankrolling US election troll farm
Decentralized IPFS networks forming the ‘hotbed of phishing’
How to celebrate SysAdmin Day!
It’s past time to figure out cross-cloud security
BreachForums booms on the back of billion-record Chinese data leak
Businesses confess: We pass cyberattack costs onto customers
US court system suffered ‘incredibly significant attack’ – sealed files at risk
JPMorgan, UBS among trio accused of shoddy ID theft protection
Suspected radiation alert saboteurs cuffed by cops after sensors disabled
Google brings Street View back to India following 2016 ban
FileWave fixes bugs that left 1,000+ orgs open to ransomware, data theft
We’re likely only seeing ‘the tip of the iceberg’ of Pegasus spyware use against the US
US puts $10 million bounty on North Korean cyber-crews
Apple network traffic takes mysterious detour through Russia
AWS ups security for Elastic Block Store, Kubernetes service
Knotweed Euro cyber mercenaries attacking private sector, says Microsoft
Time from vulnerability disclosures to exploits is shrinking
Weak data protection helped China attack US Federal Reserve, report says
Build SBOMs with Microsoft’s internal tool