News

Euro cops arrest 4 including suspected LockBit dev chilling on holiday

The Register - Tue, 01/10/2024 - 18:35
And what looks like proof stolen data was never deleted even after ransom paid

Building on the success of what's known around here as LockBit Leak Week in February, the authorities say they've arrested a further four individuals with ties to the now-scuppered LockBit ransomware empire.…

Categories: News

Evil Corp's deep ties with Russia and NATO member attacks exposed

The Register - Tue, 01/10/2024 - 16:35
Ransomware criminals believed to have taken orders from intel services

The relationship between infamous cybercrime outfit Evil Corp and the Russian state is thought to be extraordinarily close, so close that intelligence officials allegedly ordered the criminals to carry out cyberattacks on NATO members.…

Categories: News

NCA unmasks man it suspects is both 'Evil Corp kingpin' and LockBit affiliate

The Register - Tue, 01/10/2024 - 15:08
Aleksandr Ryzhenkov alleged to have extorted around $100M from victims, built 60 LockBit attacks

The latest installment of the National Crime Agency's (NCA) series of ransomware revelations from February's LockBit Leak Week emerges today as the agency identifies a man it not only believes is a member of the long-running Evil Corp crime group but also a LockBit affiliate.…

Categories: News

Australian e-tailer digiDirect customers' info allegedly stolen and dumped online

The Register - Tue, 01/10/2024 - 01:26
Full names, contact details, and company info – all the fixings for a phishing holiday

Data allegedly belonging to more than 304,000 customers of Australian camera and tech e-tailer digiDirect has been leaked to an online cyber crime forum.…

Categories: News

Rackspace monitoring systems hit by zero-day

The Register - Tue, 01/10/2024 - 00:08
Intruders accessed internal web servers, limited info ... customers told not to worry

Exclusive  Rackspace has told customers intruders exploited a zero-day bug in a third-party application it was using, and abused that vulnerability to break into its internal performance monitoring environment. That intrusion forced the cloud-hosting outfit to temporarily take its monitoring dashboard offline for customers.…

Categories: News

Ransomware forces hospital to turn away ambulances

The Register - Mon, 30/09/2024 - 23:16
Only level-one trauma unit in 400 miles crippled

Ransomware scumbags have caused a vital hospital to turn away ambulances after infecting its computer systems with malware.…

Categories: News

T-Mobile US to cough up $31.5M after that long string of security SNAFUs

The Register - Mon, 30/09/2024 - 22:59
At least seven intrusions in five years? Yeah, those promises of improvement more than 'long overdue'

T-Mobile US has agreed to fork out $31.5 million to improve its cybersecurity and pay a fine after a string of network intrusions affected millions of customers between 2021 and 2023.…

Categories: News

If you're holding important data, Iran is probably trying spearphish it

The Register - Mon, 30/09/2024 - 14:35
It's election year for more than 50 countries and the Islamic Republic threatens a bunch of them

US and UK national security agencies are jointly warning about Iranian spearphishing campaigns, which remain an ongoing threat to various industries and governments.…

Categories: News

Remote ID verification tech is often biased, bungling, and no good on its own

The Register - Mon, 30/09/2024 - 13:40
Only 2 out of 5 tested products were equitable across demographics

A study by the US General Services Administration (GSA) has revealed that five remote identity verification (RiDV) technologies are unreliable, inconsistent, and marred by bias across different demographic groups.…

Categories: News

Cloud threats have execs the most freaked out because they're not prepared

The Register - Mon, 30/09/2024 - 12:30
Ransomware? More like 'we don't care' for everyone but CISOs

Efficiency and scalability are key benefits of enterprise cloud computing, but they come at a cost. Security threats specific to cloud environments are the leading cause of concern among top executives and they're also the ones organizations are least prepared to address.…

Categories: News

AI code helpers just can't stop inventing package names

The Register - Mon, 30/09/2024 - 04:59
LLMs are helpful, but don't use them for anything important

AI models just can't seem to stop making things up. As two recent studies point out, that proclivity underscores prior warnings not to rely on AI advice for anything that really matters.…

Categories: News

Forget the Kia Boyz: Hackers could hijack your car with just a smartphone

The Register - Mon, 30/09/2024 - 04:02
PLUS: UK man charged with hacking US firms for stock secrets; ransomware actor foils self; and more

Infosec In Brief  Put away that screwdriver and USB charging cable – the latest way to steal a Kia just requires a cellphone and the victim's license plate number.…

Categories: News

Binance claims it helped to bust Chinese crypto scam app in India

The Register - Mon, 30/09/2024 - 02:28
Plus: SpaceX plans Vietnam investment; Yahoo! Japan content moderation secrets; LG offloads Chinese display factory; and more

ASIA IN BRIEF  It's not often The Register writes about a cryptocurrency outfit being on the right side of a scam or crime, but last week crypto exchange Binance claimed it helped Indian authorities to investigate a scam gaming app.…

Categories: News

Red team hacker on how she 'breaks into buildings and pretends to be the bad guy'

The Register - Sun, 29/09/2024 - 17:39
Alethe Denis exposes tricks that made you fall for that return-to-office survey

Interview  A hacker walked into a "very big city" building on a Wednesday morning with no keys to any doors or elevators, determined to steal sensitive data by breaking into both the physical space and the corporate Wi-Fi network.…

Categories: News

Feds charge 3 Iranians with 'hack-and-leak' of Trump 2024 campaign

The Register - Fri, 27/09/2024 - 22:45
Snoops allegedly camped out in inboxes well into September

The US Department of Justice has charged three Iranians for their involvement in a "wide-ranging hacking campaign" during which they allegedly stole massive amounts of materials from Donald Trump's 2024 presidential campaign and then leaked the information to media organizations.…

Categories: News

Recall the Recall recall? Microsoft thinks it can make that Windows feature palatable

The Register - Fri, 27/09/2024 - 21:18
AI screengrab service to be opt-in, features encryption, biometrics, enclaves, more

Microsoft has revised the Recall feature for its Copilot+ PCs and insists that the self-surveillance system is secure.…

Categories: News

Ransomware gang using stolen Microsoft Entra ID creds to bust into the cloud

The Register - Fri, 27/09/2024 - 14:35
Defenders beware: Data theft, extortion, and backdoors on Storm-0501's agenda

Microsoft's latest threat intelligence blog issues a warning to all organizations about Storm-0501's recent shift in tactics, targeting, and backdooring hybrid cloud environments.…

Categories: News

Patch now: Critical Nvidia bug allows container escape, complete host takeover

The Register - Thu, 26/09/2024 - 22:42
33% of cloud environments using the toolkit impacted, we're told

A critical bug in Nvidia's widely used Container Toolkit could allow a rogue user or software to escape their containers and ultimately take complete control of the underlying host.…

Categories: News

HPE patches three critical security holes in Aruba PAPI

The Register - Thu, 26/09/2024 - 20:30
More 9.8 bugs? Ay, papi!

Aruba access points running AOS-8 and AOS-10 need to be patched urgently after HPE emitted fixes for three critical flaws in its networking subsidiary's networking access points.…

Categories: News

Doomsday '9.9 RCE bug' could hit every Linux system

The Register - Thu, 26/09/2024 - 18:34
No fix yet plus criticalness plus uncertainty plus talk of example exploit equals nightmare

Details about an as-yet-non-public critical 9.9-out-of-10-severity unauthenticated remote-code execution vulnerability affecting all GNU/Linux systems could be revealed today.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News