The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 1 hour 7 min ago

LLM side-channel attack could allow snoops to guess what you're talking about

Tue, 11/11/2025 - 00:09
Encryption protects content, not context

Mischief-makers can guess the subjects being discussed with LLMs using a side-channel attack, according to Microsoft researchers. They told The Register that models from some providers, including Anthropic, AWS, DeepSeek, and Google, haven't been fixed, putting both personal users and enterprise communications at risk.…

Categories: News

Critical federal cybersecurity funding set to resume as government shutdown draws to a close - for now

Mon, 10/11/2025 - 19:01
Resolution acquiesced to by 8 Dems includes CISA Act funding, layoff reversals, and could be easily undone

The US Senate voted on Sunday to advance a short-term funding bill for the federal government, moving the country closer to ending its longest-ever shutdown. Part of the spending bill also restores critical cybersecurity programs that lapsed as the shutdown began. …

Categories: News

Phishers try to lure 5K Facebook advertisers with fake business pages

Mon, 10/11/2025 - 18:34
One company alone was hit with more than 4,200 emails

More than 5,000 businesses that use Facebook for advertising were bombarded by tens of thousands of phishing emails in a credential- and data-stealing campaign.…

Categories: News

Russian broker pleads guilty to profiting from Yanluowang ransomware attacks

Mon, 10/11/2025 - 15:00
Aleksei Volkov faces years in prison, may have been working with other crews

A Russian national will likely face several years in US prison after pleading guilty to a range of offenses related to his work with ransomware crews.…

Categories: News

Allianz UK joins growing list of Clop’s Oracle E-Business Suite victims

Mon, 10/11/2025 - 09:48
Insurance giant’s UK arm says cybercriminals misattributed the real victim

Allianz UK confirms it was one of the many companies that fell victim to the Clop gang's Oracle E-Business Suite (EBS) attack after crims reported that they had attacked a subsidiary.…

Categories: News

As AI enables bad actors, how are 3,000+ teams responding?

Mon, 10/11/2025 - 09:01
Breaking down trends in exposure management with insightsfrom 3,000+ organizations and Intruder's security experts

Partner Content  This year has shown just how quickly new exposures can emerge, with AI-generated code shipped before review, cloud sprawl racing ahead of controls, and shadow IT opening blind spots. Supply chain compromises have disrupted transport, manufacturing, and other critical services. On the attacker side, AI-assisted exploit development is making it faster than ever to turn those weaknesses into working attacks.…

Categories: News

Cisco creating new security model using 30 years of data describing cyber-dramas and saves

Mon, 10/11/2025 - 06:56
Doubles parameters to over 17 billion, to detect threats and recommend actions

Exclusive  Cisco is working on a new AI model that will more than double the number of parameters used to train its current flagship Foundation-Sec-8B.…

Categories: News

Microsoft teases agents that become ‘independent users within the workforce’

Mon, 10/11/2025 - 02:31
Licensing expert worries they’ll be out of control on day one

Microsoft has teased what it’s calling “a new class” of AI agents “that operate as independent users within the enterprise workforce.”…

Categories: News

Data breach at Chinese infosec firm reveals cyber-weapons and target list

Sun, 09/11/2025 - 23:51
PLUS: India’s tech services exports growing fast; South Korea puts the bite on TXT spam; NTT gets into autonomous vehicles; and more!

Asia In Brief  Chinese infosec blog MXRN last week reported a data breach at a security company called Knownsec that has ties to Beijing and Chinas military.…

Categories: News

Louvre's pathetic passwords belong in a museum, just not that one

Sun, 09/11/2025 - 22:34
PLUS: CISA layoffs continue; Lawmakers criticize camera security; China to execute scammers; And more

Infosec in brief  There's no indication that the brazen bandits who stole jewels from the Louvre attacked the famed French museum's systems, but had they tried, it would have been incredibly easy.…

Categories: News

Who's watching the watchers? This Mozilla fellow, and her Surveillance Watch map

Sat, 08/11/2025 - 11:08
Esra'a Al Shafei spoke with The Reg about the spy tech 'global trade'

interview  Digital rights activist Esra'a Al Shafei found FinFisher spyware on her device more than a decade ago. Now she's made it her mission to surveil the companies providing surveillanceware, their customers, and their funders.…

Categories: News

Previously unknown Landfall spyware used in 0-day attacks on Samsung phones

Fri, 07/11/2025 - 21:38
'Precision espionage campaign' began months before the flaw was fixed

A previously unknown Android spyware family called LANDFALL exploited a zero-day in Samsung Galaxy devices for nearly a year, installing surveillance code capable of recording calls, tracking locations, and harvesting photos and logs before Samsung finally patched it in April.…

Categories: News

Cybercrims plant destructive time bomb malware in industrial .NET extensions

Fri, 07/11/2025 - 15:26
Multi-year wait for destruction comes to an end for mystery attackers

Security experts have helped remove malicious NuGet packages planted in 2023 that were designed to destroy systems years in advance, with some payloads not due to hit until the latter part of this decade.…

Categories: News

Microsoft's data sovereignty: Now with extra sovereignty!

Fri, 07/11/2025 - 12:22
Under shadow of US CLOUD Act, Redmond releases raft of services to calm customers in the EU

Microsoft is again banging the data sovereignty drum in Europe, months after admitting in a French court it couldn't guarantee that data will not be transmitted to the US government when it is legally required to do so.…

Categories: News

Bank of England says JLR's cyberattack contributed to UK's unexpectedly slower GDP growth

Fri, 07/11/2025 - 11:44
This kind of material economic impact from online crooks thought to be a UK-first

The Bank of England (BoE) has cited the cyberattack on Jaguar Land Rover (JLR) as one of the reasons for the country's slower-than-expected GDP growth in its latest rates decision.…

Categories: News

How TeamViewer builds enterprise trust through security-first design

Fri, 07/11/2025 - 09:00
What to do when even your espresso machine needs end-to-end encryption

Sponsored Feature  The security landscape is getting more perilous day by day, as both nation-state groups and financially-motivated hackers ramp up their activity.…

Categories: News

Gootloader malware back for the attack, serves up ransomware

Thu, 06/11/2025 - 22:45
Move fast - miscreants compromised a domain controller in 17 hours

Gootloader JavaScript malware, commonly used to deliver ransomware, is back in action after a period of reduced activity.…

Categories: News

Cisco warns of 'new attack variant' battering firewalls under exploit for 6 months

Thu, 06/11/2025 - 18:51
Plus 2 new critical vulns - patch now

Cisco warned customers about another wave of attacks against its firewalls, which have been battered by intruders for at least six months. It also patched two critical bugs in its Unified Contact Center Express (UCCX) software that aren't under active exploitation - yet.…

Categories: News

You'll never guess what the most common passwords are. Oh, wait, yes you will

Thu, 06/11/2025 - 14:00
Most of you still can't do better than 123456?

123456. admin. password. For years, the IT world has been reminding users not to rely on such predictable passwords. And yet here we are with another study finding that those sorts of quickly-guessable, universally-held-to-be-bad passwords are still the most popular ones.…

Categories: News

SonicWall fingers state-backed cyber crew for September firewall breach

Thu, 06/11/2025 - 12:26
Spies, not crooks, were behind digital heist – damage stopped at the backups, says US cybersec biz

SonicWall has blamed an unnamed, state-sponsored collective for the September break-in that saw cybercriminals rifle through a cache of firewall configuration backups.…

Categories: News

Pages