News
Iran's cyber-goons emailed stolen Trump info to Team Biden – which ignored them
The Iranian cyber snoops who stole files from the Trump campaign, with the intention of leaking those documents, tried to slip the data to the Biden camp — but were apparently ignored, according to Uncle Sam.…
1 in 10 orgs dumping their security vendors after CrowdStrike outage
Germany's Federal Office for Information Security (BSI) says one in ten organizations in the country affected by CrowdStrike's outage in July are dropping their current vendor's products.…
Thousands of orgs at risk of knowledge base data leaks via ServiceNow misconfigurations
Security researchers say that thousands of companies are potentially leaking secrets from their internal knowledge base (KB) articles via ServiceNow misconfigurations.…
UK activists targeted with Pegasus spyware ask police to charge NSO Group
Four UK-based proponents of human rights and critics of Middle Eastern states today filed a report with London's Metropolitan Police they hope will lead to charges against Pegasus peddler NSO Group.…
Tor insists its network is safe after German cops convict CSAM dark-web admin
The Tor project has insisted its privacy-preserving powers remain potent, countering German reports that user anonymity on its network can be and has been compromised by police.…
FBI boss says China 'burned down' 260,000-device botnet when confronted by Feds
China-backed spies are said to have tore down their own 260,000-device botnet after the FBI and its international pals went after them.…
LockBit boasts of ransoming IRS-authorized eFile.com
Notorious ransomware gang LockBit claims to have compromised eFile.com, which offers online services for electronically filing tax returns with the US Internal Revenue Service (IRS).…
Putin really wants Trump back in the White House
Russia really wants Donald Trump to be the next US President, judging by reports from American government agencies and now Microsoft's threat intelligence team.…
Lebanon now hit with deadly walkie-talkie blasts as Israel declares ‘new phase’ of war
First it was pagers, now Lebanon is being rocked by Hezbollah's walkie-talkies detonating across the country, leaving more than a dozen dead.…
Chinese spies spent months inside aerospace engineering firm's network via legacy IT
Exclusive Chinese state-sponsored spies have been spotted inside a global engineering firm's network, having gained initial entry using an admin portal's default credentials on an IBM AIX server.…
Cops across the world arrest 51 in orchestrated takedown of Ghost crime platform
Hours after confirming they had pwned the supposedly uncrackable encrypted messaging platform used for all manner of organized crime, Ghost, cops have now named the suspect they cuffed last night, who is charged with being the alleged mastermind.…
Despite Russia warnings, Western critical infrastructure remains unprepared
Feature As Russian special forces push more overtly into online operations, network defenders should be on the hunt for digital intruders looking to carry out cyberattacks that end in physical destruction and harm.…
Australian Police conducted supply chain attack on criminal collaborationware
Australia's Federal Police (AFP) yesterday arrested and charged a man with creating and administering an app named Ghost that was allegedly "a dedicated encrypted communication platform … built solely for the criminal underworld" and which enabled crims to arrange acts of violence, launder money, and traffic illicit drugs.…
WhatsApp fix to make View Once chats actually disappear is beaten in less than a week
A fix deployed by Meta to stop people repeatedly viewing WhatsApp’s so-called View Once messages – photos, videos, and voice recordings that disappear from chats after a recipient sees them – has been defeated in less than a week by white-hat hackers.…
VMware patches remote make-me-root holes in vCenter Server, Cloud Foundation
Broadcom has emitted a pair of patches for vulnerabilities in VMware vCenter Server that a miscreant with network access to the software could exploit to completely commandeer a system. This also affects Cloud Foundation.…
Google Cloud Document AI flaw (still) allows data theft despite bounty payout
Overly permissive settings in Google Cloud's Document AI service could be abused by data thieves to break into Cloud Storage buckets and steal sensitive information.…
Lebanon: At least nine dead, thousands hurt after Hezbollah pagers explode
Lebanon says at least nine people, including an eight-year-old girl, were killed today after pagers used by Hezbollah members exploded across the country. Israel has been blamed.…
Rhysida ransomware gang ships off Port of Seattle data for $6M
The trend of ransomware crews claiming to sell stolen data privately instead of leaking it online continues with Rhysida marketing the data allegedly belonging to Port of Seattle for 100 Bitcoin (around $5.9 million).…
Secure your organization
Sponsored Event Join us on October 24 in Boston for an exclusive event designed for IT professionals and industry leaders dedicated to mastering cybersecurity in multi-cloud environments.…
Predator spyware kingpins added to US sanctions list
Five individuals and one company with ties to spyware developer Intellexa are the latest to earn sanctions as the US expands efforts to stamp out spyware.…