News

Phish of the day: Microsoft OAuth scams abuse redirects for malware delivery

The Register - 5 hours 49 min ago
Crims hope for payday from malicious payloads rather than stealing access tokens

Microsoft has warned organizations about ongoing OAuth abuse scams that use phishing emails and URL redirects to infect victims' machines with malware and take over their devices.…

Categories: News

Iran's cyberwar has begun

The Register - Mon, 02/03/2026 - 20:52
'Expect elevated activity for the foreseeable future'

Iranian hackers have launched spying expeditions, digital probes, and distributed denial of service (DDoS) attacks in the wake of the US and Israel launching missile strikes over the weekend, and security researchers urge organizations to expect more cyber intrusions as the war continues.…

Categories: News

UK Businesses told to brace cyber defenses amid Iran conflict risk

The Register - Mon, 02/03/2026 - 18:44
NCSC urges all to review posture as escalating tensions increase risk of indirect digital spillover

The UK's cybersecurity agency is warning British organizations to brace for potential digital blowback as the Middle East conflict spills further into the online world.…

Categories: News

Memory scalpers hunt scarce DRAM with bot blitz

The Register - Mon, 02/03/2026 - 14:00
We can remember it for you wholesale, and sell it back to you for big bucks

Web scraping bots are increasing the pressure on the tech supply chain by scouring sites for DRAM, so their minders can snap up increasingly scarce inventory and resell it for a quick profit.…

Categories: News

Scammers try to SIM-swap Dubai citizens hours after Iranian missile strikes

The Register - Mon, 02/03/2026 - 13:42
Vulnerable citizens targeted by criminals purporting to represent fake police crisis department

Scammers targeted Dubai citizens mere hours after missiles struck the city, attempting to gain access to their bank accounts, police have warned.…

Categories: News

UK government's Vulnerability Monitoring System is working - fixes flow far faster

The Register - Mon, 02/03/2026 - 03:27
PLUS: Firefox adds XSS protection; Leadership turnover at CISA; FTC exempts some data collection

Infosec In Brief  DNS vulnerabilities are being addressed 84 percent faster in the UK public sector thanks to an automated vulnerability scanning system established as part of a program kicked off early last year.…

Categories: News

South Korea’s tax office apologizes for leaking seed phrase to seized crypto

The Register - Mon, 02/03/2026 - 00:51
Went from triumph at having busted tax dodgers to embarrassment at losing the proceeds

South Korea’s National Tax Service has apologized after it leaked passwords to a stash of stolen crypto, which parties unknown used to make off with the digi-cash.…

Categories: News

Denizens of DEF CON are 'fed up with government'

The Register - Sat, 28/02/2026 - 11:11
Jake Braun thinks hackers need to create a 'Digital arsenal of democracy' to defend us all

Interview  Hackers – especially Jake Braun – are "fed up with government."…

Categories: News

Double whammy: Steaelite RAT bundles data theft, ransomware in one evil tool

The Register - Fri, 27/02/2026 - 22:59
Credential and cryptocurrency theft, live surveillance, ransomware - an attacker's Swiss Army knife

A new remote access trojan (RAT) being sold on cybercrime networks enables double extortion attacks on Windows machines by bundling ransomware and data theft, along with credential and cryptocurrency stealers, live surveillance, and a whole host of other illicit capabilities, all controllable from a centralized dashboard.…

Categories: News

Suspected Nork digital intruders caught breaking into US healthcare, education orgs

The Register - Fri, 27/02/2026 - 19:59
Who is knocking at the Dohdoor?

Digital intruders with possible links to North Korea have been infecting US education and healthcare sectors with a never-before-seen backdoor since at least December, according to security researchers.…

Categories: News

Ransomware payments cratered in 2025, but attacks surged to record highs

The Register - Fri, 27/02/2026 - 16:15
Smaller crews piled in as old names splintered and rebranded

Ransomware payments cratered in 2025, but it seems like the cybercrooks launching the attacks didn't get the memo.…

Categories: News

French DIY etailer ManoMano admits customer data stolen

The Register - Fri, 27/02/2026 - 15:15
Crooks claim they helped themselves to over 37M accounts during January hit on subcontractor

French online marketplace ManoMano is warning customers their personal data was siphoned off after a cyberattack hit one of its customer support subcontractors – and criminals are already claiming the haul is far larger than the company's carefully worded notice suggests.…

Categories: News

Cops back Dutch telco Odido after second wave of ShinyHunters leaks

The Register - Fri, 27/02/2026 - 13:54
Company refuses to pay ransom as attackers threaten larger daily dumps

The Netherlands' national police is backing Odido's refusal to pay a ransom after ShinyHunters leaked a second round of records belonging to the telco.…

Categories: News

Rapid AI-driven development makes security unattainable, warns Veracode

The Register - Thu, 26/02/2026 - 15:26
Report claims more vulnerabilities created than fixed as remediation gap widens

Veracode has posted its annual State of Software Security report, based on data from 1.6 million applications tested on its cloud platform, finding that more vulnerabilities are being created than are being fixed, and that high-velocity development with AI is making comprehensive security unattainable.…

Categories: News

Scattered Lapsus$ Hunters auditioning female voices to sharpen social engineering

The Register - Thu, 26/02/2026 - 12:35
Telegram posts promise up to $1,000 per call as gang refines IT helpdesk ruse

Prolific cybercrime crew Scattered Lapsus$ Hunters (SLSH) is reportedly recruiting women in the hope of improving its social engineering success.…

Categories: News

Five Eyes warn: Patch your Cisco SD-WAN or risk root takeover

The Register - Thu, 26/02/2026 - 11:39
A rare joint alert from all five spy agencies means serious business

The Five Eyes intelligence alliance is urgently warning defenders to patch two Cisco Catalyst SD-WAN vulnerabilities used in attacks.…

Categories: News

Claude collaboration tools left the door wide open to remote code execution

The Register - Thu, 26/02/2026 - 00:33
Anthropic fixed the flaws - but the AI-enabled attack surfaces remain

Security vulnerabilities in Claude Code could have allowed attackers to remotely execute code on users' machines and steal API keys by injecting malicious configurations into repositories, and then waiting for a developer to clone and open an untrustworthy project.…

Categories: News

Google catches Beijing spies using Sheets to spread espionage across 4 continents

The Register - Wed, 25/02/2026 - 20:41
UNC2814 historically targets governments and telcos

A China-linked crew found a unique formula for attacking telcos and government orgs across the Americas, Asia, and Africa in its latest round of intrusions. Google's threat intelligence, along with unnamed industry partners, disrupted the gang, which used the Chocolate Factory's own spreadsheet tools as part of its exploits.…

Categories: News

Fake 'interview' repos lure Next.js devs into running secret-stealing malware

The Register - Wed, 25/02/2026 - 16:51
Come for the coding test, stay for the C2 traffic

Next.js developers are once again in the crosshairs as hackers seed malicious repositories disguised as legitimate projects, according to Microsoft, which said a limited set of those repos were directly tied to observed compromises.…

Categories: News

Ex-L3Harris exec jailed 7 years for selling exploits to Russia

The Register - Wed, 25/02/2026 - 13:44
Former Trenchant manager profited millions from cyber tools reserved for the US

The former general manager of L3Harris's cyber arm will spend the next seven years behind bars for selling trade secrets to Russia.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News