The Register
This free IGA tool boosts your identity security
Partner Content In a world where one wrong click can set off a catastrophic breach, organizations must control what their users have access to if they want to stop mission-critical assets from being leaked or stolen. Identity governance and administration (IGA) is as essential to the survival of your business as malware protection and secure backups.…
Forking confusing: Vulnerable Rust crate exposes uv Python packager
A vulnerability in the popular Rust crate async-tar has affected the fast uv Python package manager, which uses a forked version that's now patched – but the most widely downloaded version remains unfixed.…
Jaguar Land Rover cyber-meltdown tipped to cost the UK almost £2B
The Jaguar Land Rover (JLR) cyberattack could end up being the costliest such incident in UK history, billed at an estimated £1.9 billion and affecting over 5,000 organizations.…
UK data regulator defends decision not to investigate MoD Afghan data breach
The UK's data protection regulator declined to launch an investigation into a leak at the Ministry of Defence that risked the lives of thousands of Afghans connected with the British Armed Forces.…
Restructuring risk operations: building a business-aligned cyber strategy
Partner Content As cyber risk continues to escalate, many organizations face a disconnect between cybersecurity investments and actual risk reduction. Despite increased security budgets, formal cyber risk programs, and adoption of new frameworks, recent data shows these efforts often fail to lower risk profiles.…
Muji's minimalist calm shattered as ransomware takes down logistics partner
Japanese retailer Muji is suspending online orders after logistics partner Askul was knocked offline by a ransomware attack.…
Feds flag active exploitation of patched Windows SMB vuln
Uncle Sam's cyber wardens have warned that a high-severity flaw in Microsoft's Windows SMB client is now being actively exploited – months after it was patched.…
A shot in the dark: Can malware vaccines stop ransomware's rampage?
Feature What's better, prevention or cure? For a long time the global cybersecurity industry has operated by reacting to attacks and computer viruses. But given that ransomware has continued to escalate, more proactive action is needed.…
Zero Trust Everywhere: a new era in cybersecurity for European organizations
Partner Content Many organizations across Europe have taken steps to implement Zero Trust principles, securing users, devices, workloads, and applications. But while these efforts are critical, they can leave significant gaps in resilience and security if applied too narrowly.…
Anti-fraud body leaks dozens of email addresses in invite mishap
Anti-fraud nonprofit Cifas was left red-faced after sending out a calendar invite that exposed the email addresses of dozens of individuals working across the fraud space.…
UK calls up Armed Forces veterans for digital ID soft launch
The UK's Armed Forces veterans are being tasked with one last mission – proving the government can successfully roll out a digital ID card scheme.…
Have I Been Pwned logs 17.6M victims in Prosper breach
Data breach tracker HaveIBeenPwned claims the victim count of peer-to-peer lender Prosper's September cyberattack stands at 17.6 million.…
Labor unions sue Trump administration over social media surveillance
Lawyers at the Electronic Frontier Foundation (EFF) are helping three US labor unions sue the Trump administration over a social media surveillance program that threatens to punish those who publicly express views that are not harmonious with the government's position.…
Carmakers fear chip crunch as Dutch sanctions hit Nexperia
Major car, van, truck and bus manufacturers are warning that the Dutch government placing semiconductor biz Nexperia under special administrative measures could result in a shortage of automotive chips.…
Vulnerability scores, huh, what are they good for? Almost nothing
Aram Hovespyan, co-founder and CEO of security biz Codific, says that the rating systems for identifying security vulnerabilities and assessing threat risk need to be overhauled.…
Chinese cyberspies snoop on Russian IT biz in rare east-on-east attack
China's cyberspies quietly broke into a Russian IT service provider in what researchers say is a rare example of Beijing turning its digital gaze on Moscow.…
Locked out of your Gmail account? Google says phone a friend
The latest security feature for Gmail enables users to recover their accounts with a little help from their friends.…
Microsoft kills 9.9-rated ASP.NET Core bug – 'our highest ever' score
Microsoft has patched an ASP.NET Core vulnerability with a CVSS score of 9.9, which security program manager Barry Dorrans said was "our highest ever." The flaw is in the Kestrel web server component and enables security bypass.…
Senator presses Cisco over firewall flaws that burned US agency
US Senator Bill Cassidy has fired off a pointed letter to Cisco over the firewall flaws that allegedly let hackers breach "at least one federal agency."…
Auction house Sotheby's finds its data on the block after cyberattack
Auction house Sotheby's says it was breached on July 24, and those behind the intrusion stole an unspecified amount of data, including Social Security numbers and financial account information.…