Menu

Gallery

Ukraine security agency shutters Russian disinformation bot farms
Cybercrooks target students with fake job opportunities
Mozilla unveils vision for web evolution
IcedID malware, in the hijacked email thread, with the insecure Exchange servers
Sophos fixes critical hijack flaw in firewall offering
Google Chrome, Microsoft Edge patched in race against exploitation
China APT group using Russia invasion, COVID-19 in phishing attacks
Google Chrome patches mysterious new zero-day bug – update now
Triton malware still a threat to energy sector, FBI warns
The first step to data privacy is admitting you have a problem, Google
Will Chinese giants defy US sanctions on Russia? We asked a ZTE whistleblower
Okta acknowledges ‘mistake’ in handling of Lapsus$ attack
Kaspersky, China Telecom, China Mobile named ‘threats to US national security’
‘Precursor malware’ infection may be sign you’re about to get ransomware, says startup
Unit 42: Ransomware demands we’re aware of averaged $2.2m last year
Atlassian flags Bitbucket and Confluence Data Center flaws
Hackers remotely start, unlock Honda Civics with $300 tech
How AI can fend off supply-chain attacks
US DoJ reveals Russian supply chain attack targeting energy sector
Distributor dumps Kaspersky to show solidarity with Ukraine
UK police arrest 7 hacking suspects – have they bust the LAPSUS$ gang?
We blocked North Korea’s Chrome exploit, says Google
Microsoft Azure developers targeted by 200-plus data-stealing npm packages
British cops arrest seven in Lapsus$ crime gang probe
HP finance manager went on $5m personal spending spree with company card
S3 Ep75: Okta hack, CryptoRom, OpenSSL, and CafePress [Podcast]
UK Ministry of Defence takes recruitment system offline, confirms data leak
IT outage at Scotland’s Heriot-Watt University enters second week
Check Point spreads AI goodness throughout its security portfolio
F-Secure spins out new enterprise security business: WithSecure
VMware fixes command injection, file upload flaws in Carbon Black security tool
US says Russian ran online marketplace of stolen logins
Nestlé says it leaked its own test data, not Anonymous
Serious Security: DEADBOLT – the ransomware that goes straight for for your backups
Cybercriminals made $7bn in pure profit in 2021, says FBI
Lockbit wins ransomware speed test, encrypts 25,000 files per minute
Fresh concerns about ‘indefinite’ UK government access to doctors’ patient data
Okta now says: Lapsus$ may in fact have accessed customer info
Nvidia’s Morpheus AI security framework to land in April
Well done patching Log4j. Now, are you ready for the next zero day disaster?
Authentication oufit Okta investigating Lapsus$ breach report
Biden says Russia exploring revenge cyberattacks
Just how do you build a healthy software pipeline and make sure it’s secure?
This is a BlackCat you don’t want crossing your path
Skyhigh Security rises from McAfee-FireEye’s SSE
What does Go-written malware look like? Here’s a sample under the microscope
Microsoft investigates Lapsus$’s boasts of Bing, Cortana code heist
Web vendor CafePress fined $500,000 for giving cybersecurity a low value
Western Digital tells EdgeRover users to patch app again
FIDO Alliance says it has finally killed the password
Satellite comms networks on alert after US govt warning
AvosLocker group is targeting US critical infrastructure, FBI says
Zoom agrees privacy conditions, gets low-risk rating from Netherlands
This browser-in-browser attack is perfect for phishing
Cyclops Blink malware sets up shop in ASUS routers
OpenSSL patches infinite-loop DoS bug in certificate verification
Exotic Lily is a business-like access broker for ransomware gangs
CISOs face ‘perfect storm’ of ransomware and state-supported cybercrime
SAP community website leaks member data to savvy users
Has Trickbot gang hijacked your router? This scanner may have an answer
S3 Ep74: Cybercrime busts, Apple patches, Pi Day, and disconnect effects [Podcast]
How CAPTCHAs can cloak phishing URLs in emails
Brit data regulator fines five cold-calling fiends £405k
Devil-may-care Lapsus$ gang is not the aspirational brand infosec needs
CafePress fined for covering up 2019 customer info leak
LokiLocker ransomware family spotted with built-in wiper
Linux botnet exploits Log4j flaw to pwn Arm, x86 systems
Beware bogus Betas – cryptocoin scammers abuse Apple’s TestFlight system
Russia-linked attackers breach NGO by exploiting MFA, PrintNightmare vuln
UK regulator puts NortonLifeLock merger with Avast on ice
The Windows malware on Ukraine CERT’s radar
CISA warning: “Russian actors bypassed 2FA” – what happened and how to avoid it
OpenSSL patches crash-me bug triggered by rogue certs
Microsoft Azure DevOps revives TLS 1.0/1.1 with rollback
SentinelOne pays $617m for identity biz Attivo Networks
UK Supreme Court snubs Julian Assange’s anti-extradition bid
Huge DDoS attack temporarily kicks Israeli government sites offline
Apple patches 87 security holes – from iPhones and Macs to Windows
Germany advises citizens to uninstall Kaspersky antivirus
Russian demand for VPNs skyrockets by 2,692%
UK criminal defense lawyer hadn’t patched when ransomware hit
Another data-leaking Spectre bug found, smashes Intel, Arm defenses
NASA in ‘serious jeopardy’ due to big black hole in security
Russia’s invasion of Ukraine tears open political rift between cybercriminals
Happy #PiDay – even if you aren’t in North America!
China thrilled it captured already-leaked NSA cyber-weapon
Cryptocoin ATMs ruled illegal – “Shut down at once”, says regulator
Viasat, Rosneft hit by cyberattacks as Ukraine war spills online
New US law: Cyberattacks to be reported within 72 hours
Brit techie shows us life in Ukraine amid Russian invasion
Is low-code safe and secure?
China: Attacks from US IP addresses hit us, moved on to Russia and Ukraine
Russia labels Meta an ‘extremist’ organization, bans Instagram
Taiwan rounds up 60 Chinese tech workers on suspicion of poaching tech and people
Singapore uncovers four critical vulnerabilities in Riverbed software
Dunno about you, but we’re seeing an 800% increase in cyberattacks, says one MSP
Alleged Kaseya ransomware attacker arrives in Texas for trial
Infosys, Wipro silent on their Russian operations
Moscow to issue HTTPS certs to Russian websites
Extradited Canadian accused of unleashing NetWalker ransomware