News

Over 40 million Kakao Pay users' data somehow ended up with Alipay

The Register - Thu, 15/08/2024 - 07:30
Payment arm of Korean messaging app denies any illegal activity

Kakao Pay, a subsidiary of Korea's WhatsApp analog Kakao, handed over data from more than 40 million users to the Singaporean arm of Chinese payment platform Alipay, without user consent, Korea's financial watchdog revealed Tuesday.…

Categories: News

China-linked cyber-spies infect Russian govt, IT sector

The Register - Thu, 15/08/2024 - 03:50
No, no, go ahead, don't let us stop you, Xi

Cyber-spies suspected of connections with China have infected "dozens" of computers belonging to Russian government agencies and IT providers with backdoors and trojans since late July, according to Kaspersky.…

Categories: News

Russian cyber snoops linked to massive credential-stealing campaign

The Register - Wed, 14/08/2024 - 19:45
Citizen Lab also spots a COLDWASTREL swimming in the Rivers of Phish

Russia's Federal Security Service (FSB) cyberspies, joined by a new digital snooping crew, have been conducting a massive online phishing espionage campaign via phishing against targets in the US and Europe over the past two years, according to the University of Toronto's Citizen Lab.…

Categories: News

Texas sues GM for selling driver data to analytics, insurance companies

The Register - Wed, 14/08/2024 - 19:06
Lone Star State alleges GM cashed in with "millions in lump sum payments" from the sale

Texas has sued General Motors for what it said is a years-long scheme to collect and sell drivers' data to third parties - including insurance companies - without their knowledge or consent. …

Categories: News

Enzo Biochem ordered to cough up $4.5 million over lousy security that led to ransomware disaster

The Register - Wed, 14/08/2024 - 18:02
Three state attorneys general probed the company and found plenty to chastise

Biotech biz Enzo Biochem is being forced to pay three state attorneys general a $4.5 million penalty following a 2023 ransomware attack that compromised the data of more than 2.4 million people.…

Categories: News

Palo Alto Networks execs apologize for 'hostesses' dressed as lamps at Black Hat booth

The Register - Wed, 14/08/2024 - 15:00
Company admits turning human women into faceless, sexualized furniture was a 'tone deaf' marketing ploy

If you attended the Black Hat conference in Vegas last week and found yourself over in Palo Alto Networks' corner of the event, you may have encountered a marketing gimmick that has since been heavily criticized for misogyny.…

Categories: News

Is Lenovo a blind spot in US anti-China security measures?

The Register - Wed, 14/08/2024 - 10:37
Questions raised as one of the world's largest PC makers joins America's critical defense team

Opinion  Lenovo's participation in a cybersecurity initiative has reopened old questions over the company's China origins, especially in light of the growing mistrust between Washington and Beijing over technology.…

Categories: News

Indian telcos to cut off scammy, spammy, telemarketers for two whole years

The Register - Wed, 14/08/2024 - 07:29
There's a blockchain involved so it's totally going to stop you getting those calls

India’s Telecom Regulatory Authority (TRAI) on Tuesday directed telcos to stop calls from unregistered telemarketers – and prevent them from using networks again for up to two years – as part of an effort to curb spam and scams.…

Categories: News

NIST finalizes trio of post-quantum encryption standards

The Register - Wed, 14/08/2024 - 02:44
Nicely ahead of that always-a-decade-away moment when all our info becomes an open book

The National Institute of Standards and Technology (NIST) today released the long-awaited post-quantum encryption standards, designed to protect electronic information long into the future – when quantum computers are expected to break existing cryptographic algorithms.…

Categories: News

Patch Tuesday brings 90 new Microsoft CVEs, six already under exploit

The Register - Wed, 14/08/2024 - 01:45
Plus more pain for Intel which fixed 43 bugs, SAP and Adobe also in on the action

Patch Tuesday  Microsoft has disclosed 90 flaws in its products – six of which have already been exploited – and four others that are listed as publicly known.…

Categories: News

Six ransomware gangs behind over 50% of 2024 attacks

The Register - Tue, 13/08/2024 - 21:00
Plus many more newbies waiting in the wings

Despite a law enforcement takedown six months ago, LockBit 3.0 remains the most prolific encryption and extortion gang, at least so far, this year, according to Palo Alto Networks' Unit 42.…

Categories: News

US accuses man of being 'elite' ransomware pioneer they've hunted for years

The Register - Tue, 13/08/2024 - 18:30
Authorities allege 'J.P. Morgan' practiced ‘extreme operational and online security’

The US has charged a suspect they claim is a Belarusian-Ukrainian cybercriminal whose offenses date back to 2011.…

Categories: News

Feds bust minor league Radar/Dispossessor ransomware gang

The Register - Tue, 13/08/2024 - 16:23
The takedown may be small but any ransomware gang sent to the shops is good news in our book

The Dispossessor ransomware group is the latest to enter the cybercrime graveyard with the Feds proudly laying claim to the takedown.…

Categories: News

Orion SA says scammers conned company out of $60 million

The Register - Tue, 13/08/2024 - 12:27
Incident sounds like a BEC fraud targeting an unwitting staffer

Luxembourg-based chemicals and manufacturing giant Orion SA is telling US regulators that it will lose out on around $60 million after it was targeted by a criminal wire fraud scheme.…

Categories: News

Who uses LLM prompt injection attacks IRL? Mostly unscrupulous job seekers, jokesters and trolls

The Register - Tue, 13/08/2024 - 11:46
Because apps talking like pirates and creating ASCII art never gets old

Despite worries about criminals using prompt injection to trick large language models (LLMs) into leaking sensitive data or performing other destructive actions, most of these types of AI shenanigans come from job seekers trying to get their resumes past automated HR screeners – and people protesting generative AI for various reasons, according to Russian security biz Kaspersky.…

Categories: News

'Digital arrest' scams are big in India and may be spreading

The Register - Tue, 13/08/2024 - 06:37
Bad guys claim they're cops, keep you on hold for hours until you pay to make loved ones' crimes go away

A woman in the Indian city of Delhi last week found herself under "digital arrest" – a form of scam in which victims make payments to criminals posing as law enforcement officers.…

Categories: News

AMD won’t patch Sinkclose security bug on older Zen CPUs

The Register - Tue, 13/08/2024 - 04:14
Kernel mode not good enough for you? Maybe you'll like SMM of this

Some AMD processors dating back to 2006 have a security vulnerability that's a boon for particularly underhand malware and rogue insiders, though the chip designer is only patching models made since 2020.…

Categories: News

Attacker steals personal data of 200k+ people with links to Arizona tech school

The Register - Mon, 12/08/2024 - 17:25
Nearly 50 different data points were accessed by cybercrim

An Arizona tech school will send letters to 208,717 current and former students, staff, and parents whose data was exposed during a January break-in that allowed an attacker to steal nearly 50 types of personal info.…

Categories: News

Mega money, unfathomable violence pervade thriving underground doxxing scene

The Register - Mon, 12/08/2024 - 15:24
It also attracts exactly the type of unempathetic people you would think it does

Black Hat  Recently published interviews with known doxxers reveal the incredible finances behind the practice and how their extortion tactics are becoming increasingly violent.…

Categories: News

Evolve your cloud security knowledge

The Register - Mon, 12/08/2024 - 09:52
Let SANS help you get to grips with the shifting landscape of cloud security

Sponsored Post  Our reliance on the cloud continues to grow steadily, with a greater variety of services than ever being hosted in it.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News