News

UK Lords take aim at Ofcom's 'child-protection' upgrades to Online Safety Act

The Register - Mon, 15/09/2025 - 09:00
Peers will quiz campaigners on whether Ofcom's new measures will actually work, or just add more compliance pain

The House of Lords is about to put the latest child-protection plans of UK regulator the Office of Communications (Ofcom) under the microscope.…

Categories: News

Cyber-scam camp operators shift operations to vulnerable countries as sanctions strike

The Register - Mon, 15/09/2025 - 03:28
PLUS: Japan woos Micron, again; China launches chip dumping probe; Mitsubishi expands opsec empire; and more!

Criminals appear to be moving cyber-scam centers to vulnerable countries.…

Categories: News

15 ransomware gangs ‘go dark’ to enjoy 'golden parachutes'

The Register - Mon, 15/09/2025 - 00:44
PLUS: China's Great Firewall springs a leak; FBI issues rare 'Flash Alert' of Salesforce attacks; $10m bounty for alleged Russian hacker; and more

Infosec In Brief  15 ransomware gangs, including Scattered Spider and Lapsus$, have announced that they are going dark, and say no more attacks will be carried out in their name.…

Categories: News

Data destruction done wrong could cost your company millions

The Register - Sun, 14/09/2025 - 14:00
Doing a simple system reset may not be enough to save you from fines and lawsuits

With the end of Windows 10's regular support cycle fast approaching, and a good five years since the COVID pandemic spurred a wave of hardware replacements to support remote work, many IT departments are in the process of refreshing their fleets. But what they do with decommissioned systems is just as important as the shiny new ones they buy.…

Categories: News

HybridPetya: More proof that Secure Boot bypasses are not just an urban legend

The Register - Sat, 13/09/2025 - 00:05
Although it hasn't been seen in the wild yet

A new ransomware strain dubbed HybridPetya was able to exploit a patched vulnerability to bypass Unified Extensible Firmware Interface (UEFI) Secure Boot on unrevoked Windows systems, making it the fourth publicly known bootkit capable of punching through the feature and hijacking a PC before the operating system loads.…

Categories: News

Samsung fixes Android 0-day that may have been used to spy on WhatsApp messages

The Register - Fri, 12/09/2025 - 20:27
A similar vuln on Apple devices was used against 'specific targeted users'

Samsung has fixed a critical flaw that affects its Android devices - but not before attackers found and exploited the bug, which could allow remote code execution on affected devices.…

Categories: News

All your vulns are belong to us! CISA wants to maintain gov control of CVE program

The Register - Fri, 12/09/2025 - 18:16
Get ready for a fight over who steers the global standard for vulnerability identification

The Cybersecurity and Infrastructure Security Agency (CISA) nearly let the Common Vulnerabilities and Exposures (CVE) program lapse earlier this year, but a new "vision" document it released this week signals that it now wants more control over the global standard for vulnerability identification.…

Categories: News

1,200 undergrads hung out to dry after jailbreak attack on laundry machines

The Register - Fri, 12/09/2025 - 15:30
Dorm management refuses to cover costs after payment system borked

More than a thousand university students in the Netherlands must continue to travel to wash their clothes after their building management company failed to bring its borked smart laundry machines back online.…

Categories: News

Privacy activists warn digital ID won’t stop small boats – but will enable mass surveillance

The Register - Fri, 12/09/2025 - 11:15
Big Brother Watch says a so-called BritCard could turn daily life into one long identity check – and warn that Whitehall can’t be trusted to run

A national digital ID could hand the government the tools for population-wide surveillance – and if history is anything to go by, ministers probably couldn't run it without cocking it up.…

Categories: News

Hack to school: Parents told to keep their little script kiddies in line

The Register - Fri, 12/09/2025 - 10:31
UK data watchdog says students behind most education cyberattacks

The UK's data protection watchdog says more than half of cyberattacks in schools are caused by students, and that parents should act early to prevent their offspring from falling into the wrong crowds.…

Categories: News

Huntress's 'hilarious' attacker surveillance splits infosec community

The Register - Fri, 12/09/2025 - 08:15
Ethical concerns raised after crook offered themselves up on silver platter

Security outfit Huntress has been forced onto the defensive after its latest research – described by senior staff as "hilarious" – split opinion across the cybersecurity community.…

Categories: News

We're number 1! America now leads the world in surveillanceware investment

The Register - Thu, 11/09/2025 - 22:32
Atlantic Council warns US investors are fueling a market that undermines national security

After years of being dominated by outsiders, the computer surveillance software industry is booming in the United States as investors rush into the ethically dodgy but highly lucrative field.…

Categories: News

Hijacker helper VoidProxy boosts Google, Microsoft accounts on demand

The Register - Thu, 11/09/2025 - 20:39
Okta uncovers new phishing-as-a-service operation with 'multiple entities' falling victim

Multiple attackers using a new phishing service dubbed VoidProxy to target organizations' Microsoft and Google accounts have successfully stolen users' credentials, multi-factor authentication codes, and session tokens in real time, according to security researchers.…

Categories: News

AI-powered penetration tool, an attacker's dream, downloaded 10K times in 2 months

The Register - Thu, 11/09/2025 - 18:20
Shady, China-based company, all the apps needed for a fully automated attack - sounds totally legit

Villager, a new penetration-testing tool linked to a suspicious China-based company and described by researchers as "Cobalt Strike's AI successor," has been downloaded about 10,000 times since its release in July.…

Categories: News

Anti-DDoS outfit walloped by record packet flood

The Register - Thu, 11/09/2025 - 17:00
FastNetMon says 1.5 Gpps deluge from hijacked routers, IoT kit nearly drowned scrubbing shop

A DDoS mitigation provider was given a taste of the poison it tries to prevent, after being smacked by one of the largest packet-rate attacks ever recorded – a 1.5 billion packets per second (1.5 Gpps) flood that briefly threatened to knock it off the internet.…

Categories: News

Spectre haunts CPUs again: VMSCAPE vulnerability leaks cloud secrets

The Register - Thu, 11/09/2025 - 16:00
AMD Zen hardware and Intel Coffee Lake affected

If you thought the world was done with side-channel CPU attacks, think again. ETH Zurich has identified yet another Spectre-based transient execution vulnerability that affects AMD Zen CPUs and Intel Coffee Lake processors by breaking virtualization boundaries.…

Categories: News

Senator blasts Microsoft for 'dangerous, insecure software' that helped pwn US hospitals

The Register - Thu, 11/09/2025 - 14:15
Ron Wyden urges FTC to probe failure to secure Windows after attackers used Kerberoasting to cripple Ascension

Microsoft is back in the firing line after US Senator Ron Wyden accused Redmond of shipping "dangerous, insecure software" that helped cybercrooks cripple one of America's largest hospital networks.…

Categories: News

Brussels faces privacy crossroads over encryption backdoors

The Register - Thu, 11/09/2025 - 12:00
Over 600 security boffins say planned surveillance crosses the line

Europe, long seen as a bastion of privacy and digital rights, will debate this week whether to enforce surveillance on citizens' devices.…

Categories: News

Attacker steals customer data from Brit rail operator LNER during break-in at supplier

The Register - Thu, 11/09/2025 - 11:15
Major UK player cagey on specifics but latest attack follows string blamed on 'third party' suppliers

One of the UK's largest rail operators, LNER, is the latest organization to spill user data via a third-party data breach.…

Categories: News

Experts scrutinized Ofcom's Online Safety Act governance. They're concerned

The Register - Thu, 11/09/2025 - 10:30
Academics and OSA stakeholders say watchdog needs to amend how controversial legislation is enforced

Industry experts expressed both concern and sympathy for Ofcom, the Brit regulator that is overseeing the Online Safety Act, as questions mount over the effectiveness of the controversial legislation.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News