News

Memory-safe languages so hot right now, agrees Lazarus Group as it slings DLang malware

The Register - Mon, 11/12/2023 - 18:08
Latest offensive cyber group to switch to atypical programming for payloads

Research into Lazarus Group's attacks using Log4Shell has revealed novel malware strains written in an atypical programming language.…

Categories: News

Two years on, 1 in 4 apps still vulnerable to Log4Shell

The Register - Mon, 11/12/2023 - 15:01
Lack of awareness still blamed for patching apathy despite it being among most infamous bugs of all time

Two years after the Log4Shell vulnerability in the open source Java-based Log4j logging utility was disclosed, circa one in four applications are dependent on outdated libraries, leaving them open to exploitation.…

Categories: News

Read the clouds, reduce the cyber risk

The Register - Mon, 11/12/2023 - 13:52
Why a one-size- fits- all approach to cloud security is unlikely to work in multi-cloud deployments

Webinar  In the natural world, there are ten different kinds of cloud - a rare simplicity in meteorological terms. But in our global business environment, there's no single defining feature to aid classification.…

Categories: News

23andMe responds to breach with new suit-limiting user terms

The Register - Mon, 11/12/2023 - 11:46
Also: 'well-known Bay Area tech' firm's laptops stolen and check out some critical vulns

Security in brief  The saga of 23andMe's mega data breach has reached something of a conclusion, with the company saying its probe has determined millions of leaked records originated from illicit break-ins into just 14,000 accounts.…

Categories: News

VictoriaMetrics takes organic growth over investor pressure

The Register - Mon, 11/12/2023 - 10:15
Keeping the lights on with an enterprise product while staying true to your roots

Interview  Monitoring biz VictoriaMetrics is relatively unusual in its field. It is yet to accept external investment, preferring instead to try to grow organically rather than being forced to through a private equity meat grinder by committing to grow by X every year until the investor exits.…

Categories: News

Hollywood plays unwitting Cameo in Kremlin plot to discredit Zelensky

The Register - Sat, 09/12/2023 - 11:28
Microsoft spots surge in pro-Russia exploits of video platform to spread propaganda

An unknown pro-Russia influence group spent time recruiting unwitting Hollywood actors to assist in smear campaigns against Ukraine and its president Volodymyr Zelensky.…

Categories: News

Competing Section 702 surveillance bills on collision path for US House floor

The Register - Fri, 08/12/2023 - 22:30
End-of-year deadline looms on US surveillance

Two competing bills to reauthorize America's FISA Section 702 spying powers advanced in the House of Representatives committees this week, setting up Congress for a battle over warrantless surveillance before the law lapses in the New Year.…

Categories: News

That call center tech scammer could be a human trafficking victim

The Register - Fri, 08/12/2023 - 15:25
Interpol increasingly concerned as abject abuse of victims scales far beyond Asia origins

Human trafficking for the purposes of populating cyber scam call centers is expanding beyond southeast Asia, where the crime was previously isolated.…

Categories: News

Polish train maker denies claims its software bricked rolling stock maintained by competitor

The Register - Fri, 08/12/2023 - 06:30
Says it was probably hacked, which isn't good news either

A trio of Polish security researchers claim to have found that trains built by Newag SA contain software that sabotages them if the hardware is serviced by competitors.…

Categories: News

Five Eyes nations warn Moscow's mates at the Star Blizzard gang have new phishing targets

The Register - Fri, 08/12/2023 - 01:31
The Russians are coming! Err, they've already infiltrated UK, US inboxes

Russia-backed attackers have named new targets for their ongoing phishing campaigns, with defense-industrial firms and energy facilities now in their sights, according to agencies of the Five Eyes alliance.…

Categories: News

Attacks abuse Microsoft DHCP to spoof DNS records and steal secrets

The Register - Thu, 07/12/2023 - 22:11
Akamai says it reported the flaws to Microsoft. Redmond shrugged

A series of attacks against Microsoft Active Directory domains could allow miscreants to spoof DNS records, compromise Active Directory and steal all the secrets it stores, according to Akamai security researchers.…

Categories: News

US and EU infosec authorities pen intel-sharing pact

The Register - Thu, 07/12/2023 - 18:28
As Cyber Solidarity Act edges closer to full adoption in Europe

The US Cybersecurity and Infrastructure Security Agency (CISA) has signed a working arrangement with its EU counterparts to increase cross-border information sharing and more to tackle criminals.…

Categories: News

Yet another UK public sector data blab, this time info of pregnant women, cancer patients

The Register - Thu, 07/12/2023 - 12:39
NHS Trust admits highly sensitive data left online for nearly three years

More than 22,000 patients of Cambridge University Hospitals NHS Foundation Trust were hit by data leaks that took place between 2020 and 2021.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News