The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 1 hour 43 min ago

'Limited' data leak at Aussie telco turns out to be 280K customer details

Wed, 20/08/2025 - 17:45
iiNet breach blamed on single stolen login, with emails, phone numbers, and addresses exposed

Aussie telco giant TPG Telecom has opened an investigation after confirming a cyberattack at subsidiary iiNet.…

Categories: News

McDonald's not lovin' it when hacker exposes nuggets of rotten security

Wed, 20/08/2025 - 08:34
Burger slinger gets a McRibbing, reacts by firing staffer who helped

A white-hat hacker has discovered a series of critical flaws in McDonald's staff and partner portals that allowed anyone to order free food online, get admin rights to the burger slinger's marketing materials, and could allow an attacker to get a corporate email account with which to conduct a little filet-o-phishing.…

Categories: News

Don't want drive-by Ollama attackers snooping on your local chats? Patch now

Tue, 19/08/2025 - 22:57
Reconfigure local app settings via a 'simple' POST request

A now-patched flaw in popular AI model runner Ollama allows drive-by attacks in which a miscreant uses a malicious website to remotely target people's personal computers, spy on their local chats, and even control the models the victim's app talks to, in extreme cases by serving poisoned models.…

Categories: News

Like burglars closing a door, Apache ActiveMQ attackers patch critical vuln after breaking in

Tue, 19/08/2025 - 21:28
Intruders hoped no one would notice their presence

Criminals exploiting a critical vulnerability in open source Apache ActiveMQ middleware are fixing the flaw that allowed them access, after establishing persistence on Linux servers.…

Categories: News

Casino tech outfit Bragg cops to intrusion but says data jackpot untouched

Tue, 19/08/2025 - 16:31
Toronto company says weekend cyber raid hit internal IT, not punters' wallets

Canadian casino software slinger Bragg Gaming Group has disclosed a "cybersecurity incident," though it's adamant the intruders never got their hands on customer data.…

Categories: News

US spy chief claims UK backed down over Apple backdoor demand

Tue, 19/08/2025 - 10:17
Tulsi Gabbard boasts Washington forced Blighty to drop iPhone encryption fight

The UK government has reportedly abandoned its attempt to strong-arm Apple into weakening iPhone encryption after the White House forced Blighty into a quiet climb-down.…

Categories: News

More customers asking for Google's Data Boundary, says Cloud Experience boss

Tue, 19/08/2025 - 09:30
Developer demand for sovereign cloud from tech giant is on the rise, says exec

Interview  Google's President of Customer Experience, Hayete Gallot, offered some words of comfort to developers who are looking nervously at the rise of AI assistants while also laying out her vision for cloud sovereignty.…

Categories: News

Browser wars are back, predicts Palo Alto, thanks to AI

Tue, 19/08/2025 - 07:33
CEO says if you buy all your infosec stuff from him, life under assault from bots will be less painful

Brace for a new round of browser wars, according to Palo Alto Networks CEO Nikesh Arora.…

Categories: News

Facial recognition works better in the lab than on the street, researchers show

Mon, 18/08/2025 - 23:39
High accuracy scores come from conditions that don't reflect real-world usage

Facial recognition technology has been deployed publicly on the basis of benchmark tests that reflect performance in laboratory settings, but some academics are saying that real-world performance doesn't match up.…

Categories: News

Pot calls kettle black as China dubs US 'surveillance empire' over chip tracking

Mon, 18/08/2025 - 21:04
Spy vs spy in the chips

Comment  Chinese state media called the US an aspiring "surveillance empire" over its proposed use of asset tracking tags to crack down on black-market GPU shipments to the Middle Kingdom.…

Categories: News

Microsoft's Nuance coughs up $8.5M to rid itself of MOVEit breach suit

Mon, 18/08/2025 - 17:04
Supply chain breach has been a major target of legal action

Microsoft-owned talk-to-text outfit Nuance has agreed to cough up $8.5 million to settle a class action lawsuit over the sprawling MOVEit Transfer mega-breach – although it admits no liability.…

Categories: News

Workday warns of CRM breach after social engineers make off with business contact details

Mon, 18/08/2025 - 15:31
HR SaaS giant insists core systems untouched

Workday has admitted that attackers gained access to one of its third-party CRM platforms, but insists its core systems and customer tenants are untouched.…

Categories: News

Boffins say tool can sniff 5G traffic, launch 'attacks' without using rogue base stations

Mon, 18/08/2025 - 11:45
Sni5Gect research crew targets sweet spot during device / network handshake pause

Security boffins have released an open source tool for poking holes in 5G mobile networks, claiming it can do up- and downlink sniffing and a novel connection downgrade attack - plus "other serious exploits" they're keeping under wraps, for now.…

Categories: News

Every question you ask, every comment you make, I'll be recording you

Mon, 18/08/2025 - 11:00
When you're asking AI chatbots for answers, they're data-mining you

Opinion  Recently, OpenAI ChatGPT users were shocked – shocked, I tell you! – to discover that their searches were appearing in Google search. You morons! What do you think AI chatbots are doing? Doing all your homework for free or a mere $20 a month? I think not!…

Categories: News

Someone's poking the bear with infostealers targeting Russian crypto developers

Mon, 18/08/2025 - 07:36
If you wanted to hurt Putin’s ransomware racketeers, these info-stealing npm packages are one way to do it

Researchers at software supply chain security outfit Safety think they’ve found malware that targets Russian cryptocurrency developers, and perhaps therefore Russia’s state-linked ransomware crews…

Categories: News

P2P payment service Zelle sued for enabling payment fraud hell

Mon, 18/08/2025 - 00:03
PLUS: Kryptos solution up for auction; Canadian parliament springs a leak; Fake crypto lawyers; And more

Infosec In Brief  New York State is suing bank-owned peer-to-peer payment app Zelle, claiming that the banks behind it knew fraud was rampant on the platform but allowed scammers to conduct business with impunity.…

Categories: News

Election workers fear threats and intimidation without feds' support in 2026

Sat, 16/08/2025 - 17:16
'Hope for the best, but prepare for the worst,' one tells The Reg

Feature  Bill Gates, an Arizona election official and former Maricopa County supervisor, says that the death threats started shortly after the 2020 presidential election.…

Categories: News

Typhoon-adjacent Chinese crew broke into Taiwanese web host

Fri, 15/08/2025 - 22:47
Is that a JuicyPotato on your network?

A suspected Chinese-government-backed cyber crew recently broke into a Taiwanese web hosting provider to steal credentials and plant backdoors for long-term access, using a mix of open-source and custom software tools, Cisco Talos reports.…

Categories: News

Cisco's Secure Firewall Management Center now not-so secure, springs a CVSS 10 RCE hole

Fri, 15/08/2025 - 18:37
Switchzilla's summer of perfect 10s

Cisco has issued a patch for a maximum-severity bug in its Secure Firewall Management Center (FMC) software that could allow an unauthenticated, remote attacker to inject arbitrary shell commands on vulnerable systems.…

Categories: News

Cyberattack on Dutch prosecution service is keeping speed cameras offline

Fri, 15/08/2025 - 12:45
Who knew zero-days could be so useful to highway speedsters?

The lingering effects of a cyberattack on the Public Prosecution Service of the Netherlands are preventing it from reactivating speed cameras across the country.…

Categories: News

Pages