News

Fortinet unearths another critical bug as SSO accounts borked post-patch

The Register - 3 hours 46 min ago
More work for admins on the cards as they await a full dump of fixes

Things aren't over yet for Fortinet customers – the security shop has disclosed yet another critical FortiCloud SSO vulnerability.…

Categories: News

Old Windows quirks help punch through new admin defenses

The Register - 7 hours 40 sec ago
Google researcher sits on UAC bypass for ages, only for it to become valid with new security feature

Microsoft patched a bevy of bugs that allowed bypasses of Windows Administrator Protection before the feature was made available earlier this month.…

Categories: News

Paranoid WhatsApp users rejoice: Encrypted app gets one-click privacy toggle

The Register - Tue, 27/01/2026 - 22:15
Meta also replaces a legacy C++ media-handling security library with Rust

Users of Meta's WhatsApp messenger looking to simplify the process of protecting themselves are in luck, as the company is rolling out a new feature that combines multiple security settings under a single, toggleable option. …

Categories: News

Let them eat sourdough: ShinyHunters claims Panera Bread as stolen credentials victim

The Register - Tue, 27/01/2026 - 19:49
Plus, the gang says it got in via Microsoft Entra SSO

ShinyHunters says it stole several slices of data from Panera Bread, but that's just the yeast of everyone's problems. The extortionist gang also claims to have stolen data from CarMax and Edmunds, in addition to three other organizations it posted to its blog last week.…

Categories: News

China-linked group accused of spying on phones of UK prime ministers' aides – for years

The Register - Tue, 27/01/2026 - 15:50
Reports say Salt Typhoon attackers accessed handsets of senior govt folk

Chinese state-linked hackers are accused of spending years inside the phones of senior Downing Street officials, exposing private communications at the heart of the UK government.…

Categories: News

France to replace US videoconferencing wares with unfortunately named sovereign alternative

The Register - Tue, 27/01/2026 - 13:11
French govt says state-run service 'Visio' will be more secure. Now where have we heard that name before?

France has officially told Zoom, Teams, and the rest of the US videoconferencing herd to take a hike in favor of its own homegrown app.…

Categories: News

Microsoft illegally installed cookies on schoolkid's tech, data protection ruling finds

The Register - Tue, 27/01/2026 - 12:21
Austrian education ministry unaware of tracking software until campaigners launched case

Updated  Microsoft illegally installed cookies on a school pupil's devices without consent, according to a ruling by the Austrian data protection authority (DSB).…

Categories: News

High Court to grill London cops over live facial recognition creep

The Register - Tue, 27/01/2026 - 11:24
Victim and Big Brother Watch will argue the Met's policies are incompatible with human rights law

The High Court will hear from privacy campaigners this week who want to reshape the way the Metropolitan Police is allowed to use live facial recognition (LFR) tech.…

Categories: News

Office zero-day exploited in the wild forces Microsoft OOB patch

The Register - Tue, 27/01/2026 - 10:35
Another actively abused Office bug, another emergency patch – Office 2016 and 2019 users are left with registry tweaks instead of fixes.

Microsoft has issued an emergency Office patch after confirming a zero-day flaw is already being used in real world attacks.…

Categories: News

Canva among ~100 targets of ShinyHunters Okta identity-theft campaign

The Register - Mon, 26/01/2026 - 22:33
Atlassian, RingCentral, ZoomInfo also among tech targets

ShinyHunters has targeted around 100 organizations in its latest Okta single sign-on (SSO) credential stealing campaign, according to researchers and the criminal group itself.…

Categories: News

EU looking into Elon Musk's X after Grok produces deepfake sex images

The Register - Mon, 26/01/2026 - 13:17
Probe follows outcry over use of creepy image generation tool

The European Commission has launched an investigation into X amid concerns that its GenAI model Grok offered users the ability to generate sexually explicit imagery, including sexualized images of children.…

Categories: News

Data thieves borrow Nike's 'Just Do It' mantra, claim they ran off with 1.4TB

The Register - Mon, 26/01/2026 - 12:24
US sports brand launches probe after extortion crew WorldLeaks claims it stole huge dataset

Nike says it is probing a possible breach after extortion crew WorldLeaks claimed to have lifted 1.4TB of internal data from the sportswear giant and posted samples on its leak site.…

Categories: News

Moscow likely behind wiper attack on Poland’s power grid, experts say

The Register - Mon, 26/01/2026 - 11:54
Cyber sleuths believe Sandworm up to its old tricks with a brand-new sabotage toy

Russia was probably behind the failed attempts to compromise the systems of Poland's power companies in December, cybersecurity researchers claim.…

Categories: News

Oracle AI sailed the world on Royal Navy flagship via cloud-at-the-edge kit

The Register - Mon, 26/01/2026 - 10:15
Big Red says 'sovereign' platform supports decision-making and operational learning at sea

Britain's Royal Navy is using Oracle Cloud edge infrastructure to operate AI-driven defenses on the aircraft carrier HMS Prince of Wales.…

Categories: News

UK digital ID goes in-house, government swears it isn't an ID card

The Register - Mon, 26/01/2026 - 09:30
Minister dodges cost questions while promising smartphone-free access and 'robust' verification

The UK government has revealed some thinking about digital identity in response to written questions from MPs, while continuing to say next to nothing about the scheme's cost.…

Categories: News

Pwn2Own Automotive 2026 uncovers 76 zero-days, pays out more than $1M

The Register - Sun, 25/01/2026 - 23:40
Also, cybercriminals get breached, Gemini spills the calendar beans, and more

infosec in brief  T'was a dark few days for automotive software systems last week, as the third annual Pwn2Own Automotive competition uncovered 76 unique zero-day vulnerabilities in targets ranging from Tesla infotainment to EV chargers.…

Categories: News

UK border tech budget swells by £100M as Home Office targets small boat crossings

The Register - Sat, 24/01/2026 - 09:29
Drone, satellite, and other data combined to monitor unwanted vessels

The UK Home Office is spending up to £100 million on intelligence tech in part to tackle the so-called "small boats" issue of refugees and irregular immigrants coming across the English Channel.…

Categories: News

CISA won't attend infosec industry's biggest conference this year

The Register - Sat, 24/01/2026 - 00:22
But ex-CISA boss and new RSAC CEO Jen Easterly will be there

exclusive  The US Cybersecurity and Infrastructure Security Agency won't attend the annual RSA Conference in March, an agency spokesperson confirmed to The Register.…

Categories: News

Patch or die: VMware vCenter Server bug fixed in 2024 under attack today

The Register - Fri, 23/01/2026 - 22:04
If you skipped it back then, now’s a very good time

You've got to keep your software updated. Some unknown miscreants are exploiting a critical VMware vCenter Server bug more than a year after Broadcom patched the flaw.…

Categories: News

Surrender as a service: Microsoft unlocks BitLocker for feds

The Register - Fri, 23/01/2026 - 20:41
If you're serious about encryption, keep control of your encryption keys

If you think using Microsoft's BitLocker encryption will keep your data 100 percent safe, think again. Last year, Redmond reportedly provided the FBI with encryption keys to unlock the laptops of Windows users charged in a fraud indictment.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News