The Register
You have one week to opt out or become fodder for LinkedIn AI training
If you thought living in Europe, Canada, or Hong Kong meant you were protected from having LinkedIn scrape your posts to train its AI, think again. You have a week to opt out before the Microsoft subsidiary assumes you're fine with it.…
Researchers exploit OpenAI's Atlas by disguising prompts as URLs
Researchers have found more attack vectors for OpenAI's new Atlas web browser – this time by disguising a potentially malicious prompt as an apparently harmless URL.…
X says passkey reset isn't about a security issue – it's to finally kill off twitter.com
X (formerly Twitter) sparked security concerns over the weekend when it announced users must re-enroll their security keys by November 10 or face account lockouts — without initially explaining why.…
Ex-CISA head thinks AI might fix code so fast we won't need security teams
Ex-CISA head Jen Easterly claims AI could spell the end of the cybersecurity industry, as the sloppy software and vulnerabilities that criminals rely on will be tracked down faster than ever.…
UN Cybercrime Treaty wins dozens of signatories, to go with its many critics
The United Nations on Saturday staged a signing ceremony for the Convention against Cybercrime, the world’s first agreement to combat online crime. And while 72 nations picked up the pen, critics continue to point out the convention’s flaws.…
Shaq's new ride gets jaq'ed in haq attaq
Infosec In Brief Former basketball star Shaquille O'Neal is 7'1" (215 cm), and therefore uses car customization companies to modify vehicles to fit his frame. But it appears cybercriminals have targeted Shaq’s preferred motor-modder.…
MPs urge government to stop Britain's phone theft wave through tech
The UK's Home Secretary should use her powers to push the tech industry to deploy stronger technical measures against the surge in phone thefts, according to a House of Commons committee.…
Sneaky Mermaid attack in Microsoft 365 Copilot steals data
Microsoft fixed a security hole in Microsoft 365 Copilot that allowed attackers to trick the AI assistant into stealing sensitive tenant data – like emails – via indirect prompt injection attacks.…
Microsoft drops surprise Windows Server patch before weekend downtime
Microsoft has released an out-of-band update to patch a critical vulnerability in Windows Server Update Services (WSUS).…
Digital ID is now less about illegal working, more about rummaging through drawers
UK Prime Minister Keir Starmer has relaunched his digital ID scheme as something that will make people's lives easier, less than four weeks after announcing it as a measure to tackle illegal working.…
Shield AI shows off not-at-all-terrifying autonomous VTOL combat drone
US defense technology biz Shield AI claims it can build a jet-powered vertical take-off and landing (VTOL) autonomous fighter drone that doesn't need a runway to operate.…
Iran's MuddyWater wades into 100+ government networks in latest spying spree
Iran's favorite muddy-footed cyberespionage crew is at it again, this time breaching more than 100 government entities across the Middle East and North Africa, according to researchers at Group-IB.…
Cyber exec with lavish lifestyle charged with selling secrets to Russia
Federal prosecutors have charged a former general manager of US government defense contractor L3Harris's cyber arm Trenchant with selling secrets to an unidentified Russian buyer for $1.3 million.…
Playtime’s over: Crooks swipe Toys R Us Canada customer data and dump it online
The Canadian outpost of retailer Toys R Us on Thursday notified customers that attackers accessed a database, stole some of their personal information, then posted the data online.…
Trump's workforce cuts blamed as America's cyber edge dulls
America's once-ambitious cyber defences are starting to rust, according to the latest annual report from the US Cyberspace Solarium Commission (CSC), which warns that policy momentum has slowed and even slipped backwards thanks to Trump-era workforce and budget cuts.…
Google nukes 3,000 YouTube videos that sowed malware disguised as cracked software
Google has taken down thousands of YouTube videos that were quietly spreading password-stealing malware disguised as cracked software and game cheats.…
SpaceX pulls plug on 2,500 Starlink terminals tied to Myanmar fraud farms
SpaceX says it has shut down thousands of Starlink terminals that were powering Myanmar's notorious scam compounds after its satellite network was found to be keeping human trafficking and cyber-fraud operations online in the country's lawless border zones.…
This free IGA tool boosts your identity security
Partner Content In a world where one wrong click can set off a catastrophic breach, organizations must control what their users have access to if they want to stop mission-critical assets from being leaked or stolen. Identity governance and administration (IGA) is as essential to the survival of your business as malware protection and secure backups.…
Forking confusing: Vulnerable Rust crate exposes uv Python packager
A vulnerability in the popular Rust crate async-tar has affected the fast uv Python package manager, which uses a forked version that's now patched – but the most widely downloaded version remains unfixed.…
Jaguar Land Rover cyber-meltdown tipped to cost the UK almost £2B
The Jaguar Land Rover (JLR) cyberattack could end up being the costliest such incident in UK history, billed at an estimated £1.9 billion and affecting over 5,000 organizations.…