Menu

Gallery

US offers $15m reward for information about Conti ransomware gang
RubyGems supply chain rip-and-replace bug fixed – check your logs!
Ransomware plows through farm machinery giant AGCO
Microsoft Security Experts: Humans and automation to fight off cyber threats
Colonial Pipeline faces nearly $1m fine one year after ransomware attack
China wants its youth to stop giving livestreamers money
India’s ongoing outrage over Pegasus malware tells a bigger story about privacy law problems
False-flag cyberattacks a red line for nation-states, says Mandiant boss
Cryptocurrency laundromat Blender shredded by US Treasury in sanctions first
You didn’t leave enough space between ROSE and AND, and AND and CROWN
Walking away from ransomware unscathed. Can you? Really?
Bank for International Settlements calls for reform of data governance
F5, Cisco admins: Stop what you’re doing and check if you need to install these patches
FBI: Cyber-scams cost victims $6.9b-plus worldwide in 2021
Microsoft, Apple, Google accelerate push to eliminate passwords
World Password Day – the 1960s just called and gave you your passwords back
S3 Ep81: Passwords (still with us!), Github, Firefox at 100, and network worms [Podcast]
Google chases sovereignty market with EU Workspace Data product
Phishing operation hits NHS email accounts to harvest Microsoft credentials
Biden orders new quantum push to ensure encryption isn’t cracked by rivals
Beijing-backed gang looted IP around the world for years, claims Cybereason
GitHub to require two factor authentication for code contributors by late 2023
US Cyber Command shored up nine nations’ defenses last year
Android monthly updates are out – critical bugs found in critical places!
Communication around Heroku security incident dubbed ‘train wreck’
Putin threatens supply chains with counter-sanction order
Cyber-spies target Microsoft Exchange to steal M&A info
SEC nearly doubles cryptocurrency cop roles in special cyber unit
Firefox hits 100*, fixes bugs… but no new zero-days this month
Zero trust is more than just vendors and products – it requires process
Microsoft’s standalone Defender for Business hits GA
Critical vulnerabilities found in ‘millions of Aruba and Avaya switches’
Privacy pathology: It’s time for the users to gather a little data – evidence
Google starts testing fenced frames to guard its Privacy Sandbox
Security is a pain for American Dental Association: Ransomware infection feared
SSE kicks the ‘A’ out of SASE
Dell brings data recovery tools to Apex and the cloud
Spanish PM, defense minister latest Pegasus spyware victims
Facebook’s Meta, tracking code, and the student financial aid website
Data-wiper malware strains surge as Ukraine battles ongoing invasion
GitHub issues final report on supply-chain source code intrusions
Microsoft Edge’s ‘Secure Network’ sounds a lot like a built-in VPN
Don’t expect to get your data back from the Onyx ransomware group
Interpol: We can’t arrest our way out of cybercrime
India gives local techies 60 days to hit 6-hour deadline for infosec incident reporting
Sina Weibo, China’s Twitter analog, reveals users’ locations and IP addresses
Bumblebee malware loader emerges as Conti’s BazarLoader fades
Cloudflare stomps huge DDoS attack on crypto platform
S3 Ep80: Ransomware news, phishing woes, NAS bugs, and a giant hole in Java [Podcast]
Money or your business: Ensure your ransomware defense strategy beats off disruptions, extortions
Five Eyes nations reveal 2021’s fifteen most-exploited flaws
Microsoft points at Linux and shouts: Look, look! Privilege-escalation flaws here, too!
Looking for the latest insight to ensure cyber security in the long term? It’s right here
Feds offer big rewards for info on suspected Russian Sandworm intel officers
Ransomware Survey 2022 – like the Curate’s Egg, “good in parts”
China turns cyber-espionage eyes to Russia as Ukraine invasion grinds on
Chinese drone-maker DJI suspends ops in Russia, Ukraine
Should security teams be giving service with a smile?
Study: How Amazon uses Echo smart speaker conversations to target ads
Who is exploiting VMware right now? Probably Iran’s Rocket Kitten, to name one
Coca-Cola probes pro-Kremlin gang’s claims of 161GB data theft
USA’s plan to decouple its tech with China lacks a strategy – report
DDoS attacks at an all-time-high in Q1 2022, says Kaspersky
Microsoft fixes Point of Sale bug that delayed Windows 11 startup for 40 minutes
India inks tech pact with EU – only the US has the same deal
Crooks steal NFTs worth ‘$3m’ in Bored Ape Yacht Club heist
Intuit sued over alleged cryptocurrency thefts via Mailchimp intrusion
Homeland Security bug bounty program uncovers 122 holes in its systems
Phishing goes KISS: Don’t let plain and simple messages catch you out!
Flaw could have granted criminals control over Ever Surf crypto wallets
FBI: BlackCat ransomware scratched 60-plus orgs
Now Mandiant says 2021 was a record year for exploited zero-day security bugs
US DOJ probes Google’s $5.4b Mandiant acquisition
Hive ransomware affiliate zeros in on Exchange servers
QNAP warns of new bugs in its Network Attached Storage devices
The new Elastic CEO puts cloud front and center
REvil resurrected? Ransomware crew appears to be back. Keyword: Appears
S3 Ep79: Chrome hole, a bad place for a cybersecurity holiday, and crypto-dodginess [Podcast]
YouTube terminates account for Hong Kong’s presumed next head of government
Emotet reestablishes itself at the top of the malware world
Five Eyes nations fear wave of Russian attacks against critical infrastructure
AWS’s Log4j patches blew holes in its own security
Oracle already wins ‘crypto bug of the year’ with Java digital signature bypass
Critical cryptographic Java security blunder patched – update now!
Russian-linked Shuckworm crew ramps up Ukraine attacks
Criminals adopting new methods to bypass improved defenses, says Zscaler
US warns North Korean Lazarus gang rises against cryptocurrency outfits
Google tracked record 58 exploited-in-the-wild zero-day security holes in 2021
Kaspersky cracks Yanluowang ransomware, offers free decryptor
GitHub repositories compromised by stolen OAuth tokens
Beanstalk cryptocurrency heist: scammer votes himself all the money
ESET uncovers vulnerabilities in Lenovo laptops
Funky Pigeon pauses all orders after ‘security incident’
7 ways to avoid a cloud misconfiguration attack
UK Prime Minister, Catalan groups ‘targeted by NSO Pegasus spyware’
Microsoft ups bug bounties 30% for cloud lines, pays more for ‘scenario-based’ exploits
Yet another Chrome zero-day emergency update – patch now!
Feds offer $5m reward for info on North Korean cyber crooks
Star loses $500,000 NFT after crooks exploit Rarible market
Cybercriminals are doing their homework in latest banking scam