Menu

Link

Call centres behind fake cryptocurrency scams shut down across Europe
Researchers warn AI-generated phishing attacks are becoming more convincing
Smashing Security podcast #304: Oxford’s dating disaster, cheap security robots, and faking a suicide
Post-ransomware attack, The Guardian warns staff their personal data was accessed
Free decryptor for victims of MegaCortex ransomware released
Does a hybrid model for vulnerability management make sense?
LockBit ransomware gang says sorry, gives free decryptor to SickKids hospital
Google Home smart speaker bug could have allowed hackers to spy on your conversations
Data of over 200 million Deezer users stolen, leaks on hacking forum
LostPass: after the LastPass hack, here’s what you need to know
Don’t click too quick! FBI warns of malicious search engine ads
Smashing Security podcast #303: Secret Roomba snaps, Christmas cab scams, and the future of AI
Data breach at Social Blade confirmed. Hacker offers to sell database on underground website
Backup saves the day after crime author loses laptop in blizzard
Microsoft approved and digitally-signed malicious drivers used in ransomware attacks
Operation Power Off: 50 DDoS-services taken offline in international crackdown
Smashing Security podcast #302: Lensa AI, and a dog called Bob
Hive ransomware gang claims responsibility for attack on Intersport that left cash registers disabled
Rackspace customers rage following ransomware attack, as class-action lawsuits filed
Metaparasites: The cybercriminals who rip each other off
North Korean hackers exploit Seoul Halloween tragedy in zero-day attack
Smashing Security podcast #301: AI chatbot or the start of Skynet? Eufy privacy, and hot desks
Russian courts attacked by CryWiper malware that poses as ransomware
Hacking cars remotely with just their VIN
Whoops! Researchers accidentally crash botnet used to launch DDoS and cryptomining campaigns
Smashing Security podcast #300: Interplanetary file systems, iSpoof, and don’t delete Twitter
Twitter isn’t going to stop people posting COVID-19 misinformation anymore
Flaw allowed man to access private information of other Brinks Home Security customers
Operation Elaborate – UK police text 70,000 people thought to have fallen victim to iSpoof bank fraudsters
Smashing Security podcast #299: EV charging risks, FTX, and an ancient apocalypse
Hive ransomware has extorted $100 million in 18 months, FBI warns
For two years security experts have been secretly decrypting systems for Zeppelin ransomware victims
Ouch! Ransomware gang says it won’t attack AirAsia again due to the “chaotic organisation” and sloppy security of hacked airline’s network
Police force published sexual assault victims’ names and addresses on its website
Smashing Security podcast #298: Housing market scams, Twitter 2FA, and the fesshole
It’s time. Delete your Twitter DMs
Healthcare sector warned of Venus ransomware attacks
Alleged LockBit ransomware operator arrested in Canada
Update your Lenovo laptop’s firmware now! Flaws could help malware survive a hard disk wipe
Smashing Security podcast #297: Mastodon 101, and the Hushpuppi saga
Having refused to pay ransom, health insurer Medibank sees customer data posted online by hackers
Mastodon: What you need to know for your security and privacy
Medibank refuses to pay ransom after 9.7 million health insurance customers have their data stolen
Crime in the metaverse – police face new challenges in a virtual world
Verified users beware! Scammers are exploiting Twitter turmoil caused by Elon Musk’s takeover
Smashing Security podcast #296: Twitter turmoil, AI animal chatters, and metaverse at work
Extortion fears after hacker stole patient files from Dutch mental health clinics
Twilio reveals hackers compromised its systems a month earlier than previously thought
New York Post was hacked from the inside, employee fired after offensive articles posted online
LinkedIn’s new security features fight scammers, deepfakes, and hackers
Cybersecurity event cancelled after scammers disrupt LinkedIn live chat
Seven months after it found out, FamilySearch tells users their personal data has been breached
Car dealer group Pendragon refuses to pay $60 million to ransomware extortionists
Ex-cop abused police tool in Snapshot sextortion plot that stole sexually explicit photos and videos
Microsoft “BlueBleed” data breach: customer details and email content exposed
Smashing Security podcast #294: The Virgin trains swindler, cyber clowns, and AirTag election debacle
Fine for Shein! Fashion site hit with $1.9 million bill after lying about data breach
Kolide, endpoint security for teams that want to meet SOC 2 compliance goals without sacrificing privacy
Heat left by users’ fingertips could help hackers crack passwords, researchers claim
Smashing Security podcast #293: Massive crypto bungle, and the slave scammers
Internet outages hit Ukraine following Russian missile strikes
Patch your iPhone now against mystery Mail crash bug
“Stealing the crown jewels” – see me talk at UK Cyber Week
Kolide gives you real-time fleet visibility across Mac, Windows, and Linux, answering questions MDMs can’t
Smashing Security podcast #292: Trussterflucks and eBay stalking
How a deepfake Mark Ruffalo scammed half a million dollars from a lonely heart
CISA orders federal agencies to catalog their networks, and scan for bugs
Kolide can help you nail audits and compliance goals with endpoint security for your entire fleet
Student data leaked after LA school district says it won’t pay ransom
There’s good and bad news about the Microsoft Exchange server zero-day exploit
Prison for ex-eBay staff who aggressively cyberstalked company’s critics with Craigslist sex party ads and funeral wreaths
Watchfinder warns customers that hackers stole their data
IT admin admits sabotaging ex-employer’s network in bid for higher salary
Smashing Security podcast #291: Deepfake dangers, AI image opt out, and controlling your urges
TAP Air Portugal confirms hack, as Ragnar Locker gang leaks data – including that of Portugese president
Beware Revolut frozen card scams sent via SMS text
Teen hacking suspect charged with computer misuse and breach of bail conditions
See how Pentera identifies and mitigates the risk of your most exploitable exposed credentials
Oxford teen arrested in UK on suspicion of hacking
“Fake crypto millionaire” charged with alleged $1.7M cryptomining scam
Come to the National Information Security Conference in October, and see Smashing Security LIVE!
How to have fun negotiating with a ransomware gang
Smashing Security podcast #290: Uber, Rockstar, and crystal balls
Reflections in your glasses can leak information while you’re on a Zoom call
Energy bill rebate scams spread via SMS and email
Starbucks Singapore warns customers after hacker steals data, offers it for sale on underground forum
Uber’s hacker *irritated* his way into its network, stole internal documents
FBI warns of criminals attacking healthcare payment processors
Smashing Security podcast #289: Printer peeves, health data hangups, and Twitter tussles – with Rory Cellan-Jones
Patch now! Microsoft issues critical security updates as PCs attacked through zero-day flaw
Warning issued about Vice Society ransomware gang after attacks on schools
Smashing Security podcast #288: Chiquita banana, dumb criminals, and detecting ring binders
Massive hotel group IHG struck by cyberattack which disrupts booking systems
QNAP tells NAS users to “take immediate action” after new wave of DeadBolt ransomware attacks
FBI issues warning after crypto-crooks steal $1.3 billion in just three months
Over 900K Kubernetes clusters are misconfigured! Is your cluster a target?
Smashing Security podcast #287: Lost in translation, spiders, and slapping tortillas
Student Loan Breach Exposes 2.5M Records
Watering Hole Attacks Push ScanBox Keylogger
Boots lets down its customers, by only offering SMS-based 2FA