News
Deepen your knowledge of Linux security
Event The security landscape is constantly shifting. If you're running Linux, staying ahead may rely on understanding the challenges - and opportunities - unique to Linux environments.…
Teen serial swatter-for-hire busted, pleads guilty, could face 20 years
Infosec in brief A teenager has pleaded guilty to calling in more than 375 fake threats to law enforcement, and now faces years in prison.…
Will passkeys ever replace passwords? Can they?
Systems Approach I have been playing around with passkeys, or as they are formally known, discoverable credentials.…
Rust haters, unite! Fil-C aims to Make C Great Again
Developers looking to continue working in the C and C++ programming languages amid the global push to promote memory-safe programming now have another option that doesn't involve learning Rust.…
Swiss cheesed off as postal service used to spread malware
Switzerland's National Cyber Security Centre (NCSC) has issued an alert about malware being spread via the country's postal service.…
Bloke behind Helix Bitcoin launderette jailed for three years, hands over $400M
An Ohio man, who operated the Grams dark-web search engine and the Helix cryptocurrency money-laundering service associated with it, has been sentenced to three years in prison.…
Letting chatbots run robots ends as badly as you'd expect
Science fiction author Isaac Asimov proposed three laws of robotics, and you'd never know it from the behavior of today's robots or those making them.…
Mystery Palo Alto Networks hijack-my-firewall zero-day now officially under exploit
A critical zero-day vulnerability in Palo Alto Networks' firewall management interface that can allow an unauthenticated attacker to remotely execute code is now officially under active exploitation.…
Keyboard robbers steal 171K customers' data from AnnieMac mortgage house
A major US mortgage lender has told customers looking to make the biggest financial transaction of their lives that an intruder broke into its systems and saw data belonging to 171,000 of them.…
Simplifying endpoint security
Webinar As organizations expand their digital footprint, the range of endpoints - spanning from laptops to IoT devices - continues to grow.…
Bitfinex burglar bags 5 years behind bars for Bitcoin heist
The US is sending the main figure behind the 2016 intrusion at crypto exchange Bitfinex to prison for five years after he stole close to 120,000 Bitcoin.…
Microsoft Power Pages misconfigurations exposing sensitive data
Private businesses and public-sector organizations are unwittingly exposing millions of people's sensitive information to the public internet because they misconfigure Microsoft’s Power Pages website creation problem.…
Fortinet patches VPN app flaw that could give rogue users, malware a privilege boost
A now-patched, high-severity bug in Fortinet's FortiClient VPN application potentially allows a low-privilege rogue user or malware on a vulnerable Windows system to gain higher privileges from another user, execute code and possibly take over the box, and delete log files.…
Cybercriminal devoid of boundaries gets 10-year prison sentence
A rampant cybercrook and repeat attacker of medical facilities in the US is being sentenced to a decade in prison, around seven years after the first of his many crimes.…
Kids' shoemaker Start-Rite trips over security again, spilling customer card info
Children's shoemaker Start-Rite is dealing with a nasty "security incident" involving customer payment card details, its second significant lapse during the past eight years.…
NatWest blocks bevy of apps in clampdown on unmonitorable comms
The full list of messaging apps officially blocked by Brit banking and insurance giant NatWest Group is more extensive than WhatsApp, Meta's Messenger, and Skype – as first reported.…
Asda security chief replaced, retailer sheds jobs during Walmart tech divorce
The head of tech security at Asda, the UK's third-largest food retailer, has left amid an ongoing tech divorce from US grocery giant Walmart.…
Five Eyes infosec agencies list 2024's most exploited software flaws
The cyber security agencies of the UK, US, Canada, Australia, and New Zealand have issued their annual list of the 15 most exploited vulnerabilities, and warned that attacks on zero-day exploits have become more common.…
Reminder: China-backed crews compromised 'multiple' US telcos in 'significant cyber espionage campaign'
The US government has confirmed there was "a broad and significant cyber espionage campaign" conducted by China-linked snoops against "multiple" American telecommunications providers' networks.…
ShrinkLocker ransomware scrambled your files? Free decryption tool to the rescue
Bitdefender has released a free decryption tool that can unlock data encrypted by the ShrinkLocker ransomware.…