News

Malware-pwned laptop gifts cybercriminals Nikkei's Slack

The Register - 52 min 43 sec ago
Stolen creds let miscreants waltz into 17K employees' chats, spilling info on staff and partners

Japanese media behemoth Nikkei has admitted to a data breach after miscreants slipped into its internal Slack workspace, exposing the personal details of more than 17,000 employees and business partners.…

Categories: News

Why UK businesses are paying ICO millions for password mistakes you're probably making right now

The Register - 2 hours 43 min ago
Strongly-worded emails to staff telling them to be more careful aren't going to cut it anymore

Partner Content  UK GDPR Article 32 mandates "appropriate security measures". The ICO has defined what that means: multi-million-pound fines for password failures. The violations that trigger them? Small, familiar, and happening in your organization right now.…

Categories: News

Uncle Sam lets Google take Wiz for $32B

The Register - Wed, 05/11/2025 - 17:48
Second time's the charm for after Wiz rejected Google's $23B offer last year

Google's second attempt to acquire cloud security firm Wiz is going a lot better than the first, with the Department of Justice clearing the $32 billion deal, which ranks as Google's largest-ever acquisition.…

Categories: News

AMD red-faced over random-number bug that kills cryptographic security

The Register - Wed, 05/11/2025 - 15:01
Local privileges required to exploit flaw in Ryzen and Epyc CPUs. Some patches available, more on the way

AMD will issue a microcode patch for a high-severity vulnerability that could weaken cryptographic keys across Epyc and Ryzen CPUs.…

Categories: News

Attackers abuse Gemini AI to develop ‘Thinking Robot’ malware and data processing agent for spying purposes

The Register - Wed, 05/11/2025 - 14:00
Meanwhile, others tried to social-engineer the chatbot itself

Nation-state goons and cybercrime rings are experimenting with Gemini to develop a "Thinking Robot" malware module that can rewrite its own code to avoid detection, and build an AI agent that tracks enemies' behavior, according to Google Threat Intelligence Group.…

Categories: News

M&S pegs cyberattack cleanup costs at £136M as profits slump

The Register - Wed, 05/11/2025 - 11:54
Retailer's tech systems aren’t down anymore, but the same can’t be said for its rocky financials

Marks & Spencer says its April cyberattack will cost around £136 million ($177.2 million) in total.…

Categories: News

Famed software engineer DJB tries Fil-C… and likes what he sees

The Register - Wed, 05/11/2025 - 10:01
A ‘three-letter person’ experiments with the new type-safe C, and is impressed

Famed mathematician, cryptographer and coder Daniel J. Bernstein has tried out the new type-safe C/C++ compiler, and he's given it a favorable report.…

Categories: News

UK agri dept spent hundreds of millions upgrading to Windows 10 – just in time for end of support

The Register - Wed, 05/11/2025 - 09:21
After a £312M upgrade to the retiring OS, Defra still has 24,000 devices to replace

The UK's Department for Environment, Food & Rural Affairs (Defra) has spent £312 million (c $407 million) modernizing its IT estate, including replacing tens of thousands of Windows 7 laptops with Windows 10 – which officially reached end of support last month.…

Categories: News

Uncle Sam wants to scan your iris and collect your DNA, citizen or not

The Register - Tue, 04/11/2025 - 22:20
DHS rule would expand biometric collection to immigrants and some citizens linked to them

If you're filing an immigration form - or helping someone who is - the Feds may soon want to look in your eyes, swab your cheek, and scan your face. The US Department of Homeland Security wants to greatly expand biometric data collection for immigration applications, covering immigrants and even some US citizens tied to those cases.…

Categories: News

Russian spies pack custom malware into hidden VMs on Windows machines

The Register - Tue, 04/11/2025 - 18:53
Curly COMrades strike again

Russia's Curly COMrades is abusing Microsoft's Hyper-V hypervisor in compromised Windows machines to create a hidden Alpine Linux-based virtual machine that bypasses endpoint security tools, giving the spies long-term network access to snoop and deploy malware.…

Categories: News

Consumer Financial Protection Bureau's security falls apart amid layoffs

The Register - Tue, 04/11/2025 - 17:52
Security program fails to meet federal standards as government cuts drain resources

The infosec program run by the US' Consumer Financial Protection Bureau (CFPB) "is not effective," according to a fresh audit published by the Office of the Inspector General (OIG).…

Categories: News

Invasion of the message body snatchers! Teams flaw allowed crims to impersonate the boss

The Register - Tue, 04/11/2025 - 14:01
Check Point lifts lid on a quartet of Teams vulns that made it possible to fake the boss, forge messages, and quietly rewrite history

Microsoft Teams, one of the world's most widely used collaboration tools, contained serious, now-patched vulnerabilities that could have let attackers impersonate executives, rewrite chat history, and fake notifications or calls – all without users suspecting a thing.…

Categories: News

Cybercrooks getting violent more often to secure big payouts in Europe

The Register - Tue, 04/11/2025 - 13:03
France-based victims hit especially hard, while UK named most-targeted country generally

Researchers are seeing a "dramatic" increase in cybercrime involving physical violence across Europe, with at least 18 cases reported since the start of the year.…

Categories: News

OpenAI API moonlights as malware HQ in Microsoft’s latest discovery

The Register - Tue, 04/11/2025 - 12:08
Redmond uncovers SesameOp, a backdoor hiding its tracks by using OpenAI’s Assistants API as a command channel

Hackers have found a new use for OpenAI's Assistants API – not to write poems or code, but to secretly control malware.…

Categories: News

China's president Xi Jinping jokes about backdoors in Xiaomi smartphones

The Register - Tue, 04/11/2025 - 06:26
South Korea's president laughed, so perhaps it was funny? Unlike China's censorship and snooping

Chinese president Xi Jinping has joked that smartphones from Xiaomi might include backdoors.…

Categories: News

AN0M, the backdoored ‘secure’ messaging app for criminals, is still producing arrests after four years

The Register - Tue, 04/11/2025 - 03:23
55 cuffed last week after court ruled sting operation was legal

Australian police last week made 55 arrests using evidence gathered with a backdoored messaging app that authorities distributed in the criminal community.…

Categories: News

MIT Sloan quietly shelves AI ransomware study after researcher calls BS

The Register - Mon, 03/11/2025 - 22:31
Even AI has doubts about the claim that '80% of ransomware attacks are AI-driven'

Do 80 percent of ransomware attacks really come from AI? MIT Sloan has now withdrawn a working paper that made that eyebrow-raising claim after criticism from security researcher Kevin Beaumont.…

Categories: News

Ransomware negotiator, pay thyself! Rogues committed extortion while working for infosec firms

The Register - Mon, 03/11/2025 - 22:06
This is not what people mean when they say: 'You should get a side hustle'

A ransomware negotiator and an incident response manager at two separate cybersecurity firms have been indicted for allegedly carrying out ransomware attacks of their own against multiple US companies.…

Categories: News

AWS, Nvidia, CrowdStrike seek security startups to enter the arena

The Register - Mon, 03/11/2025 - 20:11
Last year's winner scored a $65M funding round on a $300M valuation

Cloud and AI security startups have two weeks to apply for a program that fast-tracks access to investors and mentors from Amazon Web Services, CrowdStrike, and Nvidia.…

Categories: News

Cybercrooks team up with organized crime to steal pricey cargo

The Register - Mon, 03/11/2025 - 17:38
Old-school cargo heists reborn in the cyber age

Cybercriminals are increasingly orchestrating lucrative cargo thefts alongside organized crime groups (OCGs) in a modern-day resurgence of attacks on freight companies.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News