News
Wyden blocks Trump's CISA boss nominee, blames cyber agency for 'actively hiding info' about telecom insecurity
Uncle Sam's Cybersecurity and Infrastructure Security Agency, aka CISA, has been "actively hiding information" about American telecommunications networks' weak security for years, according to Senator Ron Wyden.…
Sensitive financial files feared stolen from US bank watchdog
A US banking regulator fears sensitive financial oversight data was stolen from its IT systems in what's been described as "a major information security incident."…
Google's got a hot cloud security startup, a new unified platform — and its eye on Microsoft's $20B+ security biz
Google will today reveal a new unified security platform that analysts think can help it battle Microsoft for a bigger chunk of the enterprise infosec market.…
Pharmacist accused of using webcams to spy on women in intimate moments at work, home
A now-former pharmacist at the University of Maryland Medical Center (UMMC) has been accused of compromising the US healthcare organization's IT systems to ogle female clinicians using webcams at their workplace and at their homes.…
Tough luck, Windows 10 users. No fix yet for ransomware-exploited OS bug
Patch Tuesday Patch Tuesday has arrived, and Microsoft has revealed one flaw in its products under active exploitation and 11 critical issues in its code to fix.…
Don't open that JPEG in WhatsApp for Windows. It might be an .EXE
A bug in WhatsApp for Windows can be exploited to execute malicious code by anyone crafty enough to persuade a user to open a rigged attachment - and, to be fair, it doesn't take much craft to pull that off.…
Scattered Spider stops the Rickrolls, starts the RAT race
Despite several arrests last year, Scattered Spider's social engineering attacks are continuing into 2025 as the cybercrime collective targets high-profile organizations and adds another phishing kit to its arsenal along with a new version of Spectre RAT malware.…
As CISA braces for more cuts, threat intel sharing takes a hit
Analysis Slashing staff at the US govt's Cybersecurity and Infrastructure Security Agency, aka CISA, and scrapping vital programs, isn’t exactly boosting national security, say infosec and national security officials watching America’s digital defenses unravel in real time.…
Oracle says its cloud was in fact compromised
Oracle has briefed some customers about a successful intrusion into its public cloud, as well as the theft of their data, after previously denying it had been compromised.…
That massive GitHub supply chain attack? It all started with a stolen SpotBugs token
That massive GitHub supply chain attack that spilled secrets from countless projects? It traces back to a stolen token from a SpotBugs workflow - exposed way back in November, months earlier than previously suspected.…
Alleged Scattered Spider SIM-swapper must pay back $13.2M to 59 victims
Noah Michael Urban, 20, of alleged Scattered Spider infamy, has pleaded guilty to various charges and potentially faces decades in prison.…
Chrome to patch decades-old flaw that let sites peek at your history
A 23-year-old side-channel attack for spying on people's web browsing histories will get shut down in the forthcoming Chrome 136, released last Thursday to the Chrome beta channel.…
Tribunal denies UK's attempt to keep details of Apple 'backdoor' case secret
Details of Apple's appeal against the UK's so-called "backdoor order" will now play out in public after the Home Office failed in its bid to keep them secret on national security grounds.…
What native cloud security tools won’t catch
Partner Content : AWS provides a number of security services, such as GuardDuty, Inspector, Config, and Security Hub, designed to protect your cloud environment.…
Asian tech players react to US tariffs with delays, doubts, deal-making
Asia In Brief Asian nations and tech companies are trying to come to terms with the USA’s new universal import tariffs and additional “reciprocal tariffs”.…
Signalgate solved? Report claims journalist’s phone number accidentally saved under name of Trump official
Infosec in Brief How did journalist Jeffrey Goldberg’s phone number end up in a Signal group chat? According to The Guardian, US national security adviser Mike Waltz accidentally saved it into the contact file of a campaign staffer who later took a job at the US National Security Council official.…
Trump fires NSA boss, deputy
President Trump yesterday fired the head of the NSA and US Cyber Command and his deputy.…
30 minutes to pwn town: Are speedy responses more important than backups for recovery?
Maintaining good-quality backups is often seen as the spine of any organization's ability to recover from cyberattacks quickly. Naturally, given the emphasis placed on them by experts of all stripes, you'd be forgiven for thinking that prioritizing them over anything else would be the way to go.…
Alan Turing Institute: UK can't handle a fight against AI-enabled crims
The National Crime Agency (NCA) will "closely examine" the recommendations made by the Alan Turing Institute after it claimed the UK was ill-equipped to tackle AI-enabled crime.…
Ex-ASML, NXP staffer accused of stealing chip secrets, peddling them to Moscow
A Russian national appeared in a Netherlands court on Thursday accused of industrial espionage against ASML, the world’s leading manufacturer of chip factory equipment and a key supplier that helps the likes of TSMC pump out top-drawer processors.…
Pages
