News

Salesforce facing multiple lawsuits after Salesloft breach

The Register - Fri, 26/09/2025 - 16:15
CRM giant denies security shortcomings as claims allege stolen data used for ID theft

Salesforce is facing a wave of lawsuits in the wake of a cyberattack that exposed customer data.…

Categories: News

‘An attacker's playground:’ Crims exploit GoAnywhere perfect-10 bug

The Register - Fri, 26/09/2025 - 15:32
Researchers say tens of thousands of instances remain publicly reachable

Security researchers have confirmed that threat actors have exploited the maximum-severity vulnerability affecting Fortra's GoAnywhere managed file transfer (MFT), and chastised the vendor for a lack of transparency.…

Categories: News

LockBit's new variant is 'most dangerous yet,' hitting Windows, Linux and VMware ESXi

The Register - Fri, 26/09/2025 - 15:28
Operation Cronos didn’t kill LockBit – it just came back meaner

Trend Micro has sounded the alarm over the new LockBit 5.0 ransomware strain, which it warns is "significantly more dangerous" than past versions due to its newfound ability to simultaneously target Windows, Linux, and VMware ESXi environments. …

Categories: News

Prompt injection – and a $5 domain – trick Salesforce Agentforce into leaking sales

The Register - Fri, 26/09/2025 - 13:53
More fun with AI agents and their security holes

A now-fixed flaw in Salesforce’s Agentforce could have allowed external attackers to steal sensitive customer data via prompt injection, according to security researchers who published a proof-of-concept attack on Thursday. They were aided by an expired trusted domain that they were able to buy for a measly five bucks.…

Categories: News

Volvo North America confirms staff data stolen following ransomware attack on IT supplier

The Register - Fri, 26/09/2025 - 13:13
The downstream consequences of Miljödata’s ransomware attack continue to affect major organizations

Volvo North America is the latest large organization to announce attackers accessed employee data after a ransomware attack struck its HR system provider.…

Categories: News

UK and US security agencies order urgent fixes as Cisco firewall bugs exploited in wild

The Register - Fri, 26/09/2025 - 11:22
CISA gives feds 24 hours to patch, NCSC urges rapid action as flaws linked to ArcaneDoor spies

Cybersecurity agencies on both sides of the Atlantic are sounding the alarm over Cisco firewall vulnerabilities that are being exploited by an "advanced threat actor."…

Categories: News

UK to roll out mandatory digital ID for right to work by 2029

The Register - Fri, 26/09/2025 - 10:50
Prime Minister Starmer revives controversial scheme despite past denials, sparking civil liberties backlash

The UK government plans to issue all legal residents a digital identity by the end of the current Parliament, which could run until August 2029, with its use required to get a job.…

Categories: News

Brits warned as illegal robo-callers with offshored call centers fined half a million

The Register - Fri, 26/09/2025 - 09:44
It’s amazing the number of calls Jo, Helen, and Ian get through

The UK's data protection watchdog fined two Brit businesses with offshore call centers £550,000 (c $735,000) over illegal automated marketing calls.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News