The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 11 min 50 sec ago

CISA flags data-theft bug in NSA-built OT networking tool

1 hour 26 min ago
GrassMarlin leaks sensitive information, provided your targeting phishing skills are sharp enough

The Cybersecurity and Infrastructure Security Agency (CISA) is warning anyone who uses GrassMarlin, a tool developed by the National Security Agency (NSA), about a new vulnerability that attackers can use to snoop on sensitive information.…

Categories: News

GitHub: Woah, a genuinely helpful AI-assisted bug report that isn't total slop. Here, Wiz, take this wad of cash

3 hours 59 min ago
Claude ploughs through months of work in rapid time, helps Wiz researchers nab lucrative award

Wiz researchers are set for a tidy payday thanks to their discovery of a high-severity flaw in GitHub's git infrastructure that handed remote attackers full read/write access to private GitHub repositories using a single command.…

Categories: News

EU waves through open source age-check tool to keep kids safe online

4 hours 58 min ago
'Online platforms can rely on our app,' says Commish, 'there are no more excuses'

The European Commission has recommended EU member states adopt an age verification app designed to protect children from harmful online content.…

Categories: News

GoDaddy customer claims registrar transferred 27-year-old domain without any security checks

7 hours 1 min ago
32 phone calls, 17 email chains, a 5-day ordeal, and no help during the daddy of all stuffups, claim those affected

GoDaddy is currently investigating claims that it handed complete control of a valid 27-year-old domain to another customer, without requiring them to pass any authentication processes or upload any supporting documents.…

Categories: News

30 ClawHub skills secretly turn AI agents into a crypto swarm

10 hours 29 min ago
Yet another reason not to feast on OpenClaw

Thirty ClawHub skills published by a single author are silently co-opting AI agents and creating a mass cryptocurrency mining swarm – without any malware or user consent.…

Categories: News

Don't pay Vect a ransom - your data's likely already wiped out

Tue, 28/04/2026 - 19:36
'Full recovery is impossible for anyone, including the attacker'

Organizations hit by the wave of Trivy and LiteLLM supply-chain compromises that paid Vect in hopes of recovering their data likely did not get much back, according to Check Point Research. That's because the ransomware Vect uses isn't actually ransomware at all, but a wiper that destroys any file larger than 128KB.…

Categories: News

Have I Been Pwned claims Pitney Bowes hit by 8.2M email address leak

Tue, 28/04/2026 - 15:15
Names, phone numbers, physical addresses also included in Shiny Hunters alleged data dump

Logistics technology company Pitney Bowes, which makes franking machines for US postage, is the latest scalp claimed by ShinyHunters and its ongoing spree of pay-or-leak attacks against major organizations.…

Categories: News

SUSE's sovereignty pitch meets an inconvenient $6 billion question

Tue, 28/04/2026 - 11:00
Linux vendor touts European independence at SUSECON as majority stakeholder quietly explores its options

European-based SUSE devoted much of the annual SUSECON event to its sovereignty-focused pitch - even as reports swirl that its majority stakeholder is exploring a $6 billion sale which could land the Linux vendor in American hands.…

Categories: News

Ongoing supply-chain attack 'explicitly targeting' security, dev tools

Tue, 28/04/2026 - 00:33
Vendor confirms repo data exposure after Lapsus$ claims source code, secrets dump

Software security testing outfit Checkmarx has become the latest organization caught up in an ongoing attack on security-tool providers. The biz said data posted online appears to have come from one of its GitHub repositories after the Lapsus$ extortion crew claimed to have dumped the company’s source code, secrets, and other sensitive data.…

Categories: News

Medical and utility tech companies hacked by digital intruders

Mon, 27/04/2026 - 18:53
Itron, Medtronic disclose breaches in Friday filings

Digital intruders recently broke into two major tech suppliers - utility-technology firm Itron and medical-device maker Medtronic - according to filings with federal regulators.…

Categories: News

Trump's Golden Dome gets $3.2BN of contractors and an AI sprinkle

Mon, 27/04/2026 - 14:03
Space Force awards 11 firms prototype deals to build orbital interceptors

The United States Space Force (USSF) has awarded eleven companies contracts to develop space-based interceptors for President Trump's Golden Dome program, in agreements worth up to $3.2 billion.…

Categories: News

Cybersec is a thankless job: expanding workload and shrinking pay packet

Mon, 27/04/2026 - 13:22
Global recruitment giant says 71% of human firewalls saw wages stagnate last year as threats and responsibilities grew

Cybersecurity professionals were the most overlooked workers in IT when it came to pay rises in 2025, according to new figures from recruiter Harvey Nash.…

Categories: News

Burglar alarm biz burgled: ADT confirms cyber intrusion after ShinyHunters extortion attempt

Mon, 27/04/2026 - 12:34
Security giant says attackers grabbed 'limited set' of data. Crooks claim 10 million records

A home security biz getting digitally burgled is not a great look - but that's exactly where ADT finds itself. The company has confirmed a cyber intrusion following an extortion attempt by the ShinyHunters crew, which claims to have made off with more than 10 million records.…

Categories: News

Microsoft updates the Windows Update Experience: You can hit pause now

Mon, 27/04/2026 - 12:19
Keep the patches away for as long as you like

Microsoft has devised a solution to the problem of Windows Updates that break customer devices – users are now able to pause them for as long as they like.…

Categories: News

ICO chief John Edwards steps back as workplace probe quietly unfolds

Mon, 27/04/2026 - 10:35
UK’s data watchdog confirms its boss has been off the job since February while an HR investigation runs

The UK's data watchdog is without its chief after John Edwards stepped aside from the Information Commissioner's Office while an independent workplace investigation examines unspecified HR matters.…

Categories: News

Anthropic's magic code-sniffer: More Swiss cheese than cheddar, for now

Mon, 27/04/2026 - 09:30
AI vuln-hunter finds what humans taught it to find. Funny that

Opinion  In retrospect, calling it Mythos made it a hostage to fortune. Anthropic may have hoped that the name implied its AI code security model had mythical god-like powers, but there's an alternate reading. Another definition for Mythos is a set of beliefs of obscure origin which are incompatible with reality.…

Categories: News

Google Cloud Next proves what we suspected: Everything is AI now

Mon, 27/04/2026 - 01:01
Join us for this week's Kettle as we dive into GCN and the latest not-so-alarming revelations about Mythos

KETTLE  If you needed further evidence that AI comes first in pretty much everything nowadays, look no further than this year's Google Cloud Next show, which happened last week.…

Categories: News

Hot take: AI's not going to kill open source code security

Sun, 26/04/2026 - 10:28
Cal.com considers AGPL a license to drill, but not everyone feels that way

Opinion  Cal.com has closed its commercial codebase, abandoning years of AGPL-3.0 licensing in a move that has alarmed the developer community that helped build it and sent ripples through the broader open source world.…

Categories: News

Crime crew impersonates help desk, abuses Microsoft Teams to steal your data

Sat, 25/04/2026 - 10:28
Coming in cold with custom Snow malware

A previously unknown threat group using tried-and-tested social engineering tactics - Microsoft Teams chat invitations and helpdesk staff impersonation - is also using custom malware in its data-stealing attacks, according to Google's Threat Intelligence Group.…

Categories: News

US clarifies mobile hotspots part of foreign router ban despite rarity of American made consumer kit

Fri, 24/04/2026 - 17:03
Silicon often from US, but the kit from APAC and elsewhere

America's telco regulator has clarified its ban on foreign-made routers also includes mobile hotspots and domestic routers that use a 5G cellular connection to the internet.…

Categories: News

Pages