The Register
Harassment allegations against DEF CON veteran detailed in court filing
Details about the harassment allegations leveled at DEF CON veteran Christopher Hadnagy have now been revealed after a motion for summary judgment was filed over the weekend.…
Data resilience and data portability
Sponsored Feature Considering it has such a large share of the data protection market, Veeam doesn't talk much about backups in meetings with enterprise customers these days.…
China's Silver Fox spoofs medical imaging apps to hijack patients' computers
A Chinese government-backed group is spoofing legitimate medical software to hijack hospital patients' computers, infecting them with backdoors, credential-swiping keyloggers, and cryptominers.…
Malware variants that target operational tech systems are very rare – but 2 were found last year
Two new malware variants specifically designed to disrupt critical industrial processes were set loose on operational technology networks last year, shutting off heat to more than 600 apartment buildings in one instance and jamming communications to gas, water, and sewage network sensors in the other.…
Southern Water takes the fifth over alleged $750K Black Basta ransom offer
Southern Water neither confirms nor denies offering Black Basta a $750,000 ransom payment following its ransomware attack in 2024.…
How nice that state-of-the-art LLMs reveal their reasoning ... for miscreants to exploit
Analysis AI models like OpenAI o1/o3, DeepSeek-R1, and Gemini 2.0 Flash Thinking can mimic human reasoning through a process called chain of thought.…
Google binning SMS MFA at last and replacing it with QR codes
Google has confirmed it will phase out the use of SMS text messages for multi-factor authentication in favor of more secure technologies.…
US Dept of Housing screens sabotaged to show deepfake of Trump sucking Elon's toes
Visitors to the US Department of Housing and Urban Development's headquarters in the capital got some unpleasant viewing on Monday morning after TV screens across the building began showing a deepfake video of President Trump kissing and sucking Elon Musk's toes.…
Shifting the cybersecurity odds
Partner Content Security can feel like fighting a losing battle, but it doesn't have to be.…
The software UK techies need to protect themselves now Apple's ADP won’t
Apple customers, privacy advocates, and security sleuths have now had the weekend to stew over the news of the iGadget maker's decision to bend to the UK government and disable its Advanced Data Protection (ADP) feature.…
Rather than add a backdoor, Apple decides to kill iCloud E2EE for UK peeps
Infosec in brief Apple has responded to the UK government's demand for access to its customers’ data stored in iCloud by deciding to turn off its Advanced Data Protection (ADP) end-to-end encryption service for UK users.…
Experts race to extract intel from Black Basta internal chat leaks
Hundreds of thousands of internal messages from the Black Basta ransomware gang were leaked by a Telegram user, prompting security researchers to bust out their best Russian translations post haste.…
Ivanti endpoint manager can become endpoint ravager, thanks to quartet of critical flaws
Security engineers have released a proof-of-concept exploit for four critical Ivanti Endpoint Manager bugs, giving those who haven't already installed patches released in January extra incentive to revisit their to-do lists.…
Thailand ready to welcome 7,000 trafficked scam call center victims back from Myanmar
Thailand is preparing to receive thousands of people rescued from scam call centers in Myanmar as the country launches a major crackdown on the pervasive criminal activity across its border.…
Linux royalty backs adoption of Rust for kernel code, says its rise is inevitable
Some Linux kernel maintainers remain unconvinced that adding Rust code to the open source project is a good idea, but its VIPs are coming out in support of the language's integration.…
Microsoft expands Copilot bug bounty targets, adds payouts for even moderate messes
Microsoft is so concerned about security in its Copilot products for folks that it’s lifted bug bounty payments for moderate-severity vulnerabilities from nothing to a maximum of $5,000, and expanded the range of vulnerabilities it will pay people to find and report.…
Oops, some of our customers' Power Pages sites were exploited, says Microsoft
Microsoft has fixed a security flaw in its Power Pages website-building SaaS, after criminals got there first – and urged users to check their sites for signs of exploitation.…
US minerals company says crooks broke into email and helped themselves to $500K
A NASDAQ-listed US minerals company says cybercriminals broke into its systems on Valentine's Day and paid themselves around $500,000 – money earmarked for a vendor.…
Critical flaws in Mongoose library expose MongoDB to data thieves, code execution
Security sleuths found two critical vulnerabilities in a third-party library that MongoDB relies on, which means bad guys can potentially steal data and run code.…
Two arrested after pensioner scammed out of six-figure crypto nest egg
Two men are in police custody after being arrested in connection with a July cryptocurrency fraud involving a man in his seventies.…