News

Put your usernames and passwords in your will, advises Japan's government

The Register - 1 hour 8 min ago
Digital end of life planning saves your loved ones from a little extra anguish

Japan's National Consumer Affairs Center on Wednesday suggested citizens start "digital end of life planning" and offered tips on how to do it.…

Categories: News

Five Scattered Spider suspects indicted for phishing spree and crypto heists

The Register - 5 hours 53 min ago
DoJ also shutters allleged crimeware and credit card mart PopeyeTools

The US Department of Justice has issued an indictment that names five people accused of stealing millions in cryptocurrency – and we are told they are suspected members of cyber-gang Scattered Spider.…

Categories: News

Chinese cyberspies, Musk’s Beijing ties, labelled ‘real risk’ to US security by senator

The Register - Wed, 20/11/2024 - 23:50
Meet Liminal Panda, which prowls telecom networks in South Asia and Africa

A senior US senator has warned that American tech companies’ activities in China represent a national security risk, in a hearing that saw infosec biz CrowdStrike testify it has identified another cyber-espionage crew it believes is backed by Beijing.…

Categories: News

Mega US healthcare payments network restores system 9 months after ransomware attack

The Register - Wed, 20/11/2024 - 18:01
Change Healthcare’s $2 billion recovery is still a work in progress

Still reeling from its February ransomware attack, Change Healthcare confirms its clearinghouse services are back up and running, almost exactly nine months since the digital disruption began.…

Categories: News

Google's AI bug hunters sniff out two dozen-plus code gremlins that humans missed

The Register - Wed, 20/11/2024 - 17:01
OSS-Fuzz is making a strong argument for LLMs in security research

Google's OSS-Fuzz project, which uses large language models (LLMs) to help find bugs in code repositories, has now helped identify 26 vulnerabilities, including a critical flaw in the widely used OpenSSL library.…

Categories: News

D-Link tells users to trash old VPN routers over bug too dangerous to identify

The Register - Wed, 20/11/2024 - 14:32
Vendor offers 20% discount on new model, but not patches

Owners of older models of D-Link VPN routers are being told to retire and replace their devices following the disclosure of a serious remote code execution (RCE) vulnerability.…

Categories: News

Data is the new uranium – incredibly powerful and amazingly dangerous

The Register - Wed, 20/11/2024 - 07:15
CISOs are quietly wishing they had less data, because the cost of management sometimes exceeds its value

I recently got to play a 'fly on the wall' at a roundtable of chief information security officers. Beyond the expected griping and moaning about funding shortfalls and always-too-gullible users, I began to hear a new note: data has become a problem.…

Categories: News

Healthcare org Equinox notifies 21K patients and staff of data theft

The Register - Wed, 20/11/2024 - 00:30
Ransomware scum LockBit claims it did the dirty deed

Equinox, a New York State health and human services organization, has begun notifying over 21 thousand clients and staff that cyber criminals stole their health, financial, and personal information in a "data security incident" nearly seven months ago.…

Categories: News

China-linked group abuses Fortinet 0-day with post-exploit VPN-credential stealer

The Register - Tue, 19/11/2024 - 23:02
No word on when or if the issue will be fixed

Chinese government-linked snoops are exploiting a zero-day bug in Fortinet's Windows VPN client to steal credentials and other information, according to memory forensics outfit Volexity.…

Categories: News

Russian suspected Phobos ransomware admin extradited to US over $16M extortion

The Register - Tue, 19/11/2024 - 21:55
This malware is FREE for EVERY crook ($300 decryption keys sold separately)

A Russian citizen has been extradited from South Korea to the United States to face charges related to his alleged role in the Phobos ransomware operation.…

Categories: News

America's drinking water systems have a hard-to-swallow cybersecurity problem

The Register - Tue, 19/11/2024 - 19:59
More than 100 million rely on systems rife with vulnerabilities, says EPA OIG

Nearly a third of US residents are served by drinking water systems with cybersecurity shortcomings, the Environmental Protection Agency's Office of Inspector General found in a recent study – and the agency lacks its own system to track potential attacks. …

Categories: News

Palo Alto Networks tackles firewall-busting zero-days with critical patches

The Register - Tue, 19/11/2024 - 15:29
Amazing that these two bugs got into a production appliance, say researchers

Palo Alto Networks (PAN) finally released a CVE identifier and patch for the zero-day exploit that caused such a fuss last week.…

Categories: News

Navigating third-party risks

The Register - Tue, 19/11/2024 - 14:33
Strategies for mitigating external access vulnerabilities and safeguarding sensitive data

Webinar  As organizations increasingly rely on third-party contractors, vendors, and service providers, the security risks associated with third-party access can become a top priority.…

Categories: News

Crook breaks into AI biz, points $250K wire payment at their own account

The Register - Tue, 19/11/2024 - 12:31
Fastidious attacker then tidied up email trail behind them

A Maryland AI company has confirmed to the Securities and Exchange Commission (SEC) that it lost $250,000 to a misdirected wire payment.…

Categories: News

Join in the festive cybersecurity fun

The Register - Tue, 19/11/2024 - 09:10
Get hands-on cybersecurity training this seasonal challenge

Sponsored Post  Are you ready to pit your wits against the cyber exercises featured in the Holiday Hack Challenge 2024: Snow-maggedon?…

Categories: News

iOS 18 added secret and smart security feature that reboots iThings after three days

The Register - Tue, 19/11/2024 - 08:31
Security researcher's reverse engineering effort reveals undocumented reboot timer that will make life harder for attackers

Apple's latest mobile operating system, iOS 18, appears to have added an undocumented security feature that reboots devices if they’re not used for 72 hours.…

Categories: News

Ford 'actively investigating' after employee data allegedly parked on leak site

The Register - Mon, 18/11/2024 - 23:58
Plus: Maxar Space Systems confirms employee info stolen in digital intrusion

Ford Motor Company says it is looking into allegations of a data breach after attackers claimed to have stolen an internal database containing 44,000 customer records and dumped the info on a cyber crime souk for anyone to "enjoy."…

Categories: News

Critical 9.8-rated VMware vCenter RCE bug exploited after patch fumble

The Register - Mon, 18/11/2024 - 22:29
If you didn't fix this a month ago, your to-do list probably needs a reshuffle

Two VMware vCenter server bugs, including a critical heap-overflow vulnerability that leads to remote code execution (RCE), have been exploited in attacks after Broadcom’s first attempt to fix the flaws fell short.…

Categories: News

T-Mobile US 'monitoring' China's 'industry-wide attack' amid fresh security breach fears

The Register - Mon, 18/11/2024 - 20:43
Un-carrier said to be among those hit by Salt Typhoon, including AT&T, Verizon

T-Mobile US said it is "monitoring" an "industry-wide" cyber-espionage campaign against American networks – amid fears Chinese government-backed spies compromised the un-carrier among with various other telecommunications providers.…

Categories: News

Sweden's 'Doomsday Prep for Dummies' guide hits mailboxes today

The Register - Mon, 18/11/2024 - 16:03
First in six years is nearly three times the size of the older, pre-NATO version

Residents of Sweden are to receive a handy new guide this week that details how to prepare for various types of crisis situations or wartime should geopolitical events threaten the country.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News