The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 43 min 12 sec ago

Dems fret over DOGE feeding sensitive data into random AI

Fri, 18/04/2025 - 20:06
Using LLMs to pick programs, people, contracts to cut is bad enough – but doing it with Musk's Grok? Yikes

A group of 48 House Democrats is concerned that Elon Musk's cost-trimmers at DOGE are being careless in their use of AI to help figure out where to slash, creating security risks and giving the oligarch's artificial intelligence lab an inside track to train its models on government info.…

Categories: News

Oracle hopes talk of cloud data theft dies off. CISA just resurrected it for Easter

Fri, 18/04/2025 - 17:28
Some in the infosec world definitely want to see Big Red crucified

CISA – the US government's Cybersecurity and Infrastructure Security Agency – has issued an alert for those who missed Oracle grudgingly admitting some customer data was stolen from the database giant's public cloud infrastructure.…

Categories: News

CVE fallout: The splintering of the standard vulnerability tracking system has begun

Fri, 18/04/2025 - 10:54
MITRE, EUVD, GCVE … WTF?

Comment  The splintering of the global system for identifying and tracking security bugs in technology products has begun.…

Categories: News

Krebs throws himself on the grenade, resigns from SentinelOne after Trump revokes clearances

Thu, 17/04/2025 - 19:56
Illegitimi non carborundum? Nice password, Mr Ex-CISA

Chris Krebs, the former head of the US Cybersecurity and Infrastructure Security Agency (CISA) and a longtime Trump target, has resigned from SentinelOne following a recent executive order that targeted him and revoked the security clearances of everybody at the company.…

Categories: News

Brit soldiers tune radio waves to fry drone swarms for pennies

Thu, 17/04/2025 - 11:45
Truck-mounted demonstration weapon costs 10p a pop, says MOD

British soldiers have successfully taken down drones with a radio-wave weapon.…

Categories: News

Whistleblower describes DOGE IT dept rampage at America's labor watchdog

Thu, 17/04/2025 - 03:46
Ignored infosec rules, exfiltrated data … then the mysterious login attempts from a Russian IP address began – claim

Democratic lawmakers are calling for an investigation after a tech staffer at the US National Labor Relations Board (NLRB) blew the whistle on the cost-trimming DOGE's activities at the employment watchdog – which the staffer claims included being granted superuser status in contravention of standard operating procedures, exfiltrating data, and seemingly leaking credentials to someone with a Russian IP address.…

Categories: News

Free Blue Screens of Death for Windows 11 24H2 users

Wed, 16/04/2025 - 22:16
Microsoft rewards those who patch early with bricks hurled through its operating system

Keeping with its rich history of updates that break Windows in unexpected ways, Microsoft has warned that two recent patches for Windows 11 24H2 are triggering blue screen crashes.…

Categories: News

Signalgate chats vanish from CIA chief phone

Wed, 16/04/2025 - 21:58
Extraordinary rendition of data, or just dropped it out of a helicopter?

CIA Director John Ratcliffe's smartphone has almost no trace left of the infamous Signalgate chat – the one in which he and other top US national security officials discussed a secret upcoming military operation in a group Signal conversation a journalist was inadvertently added to.…

Categories: News

Identifying the cyber risks that matter

Wed, 16/04/2025 - 20:01
From noise to clarity: Why CISOs are shifting to adversarial exposure validation

Partner content  A vast majority of security teams are overwhelmed by the large number of security alerts and vulnerabilities.…

Categories: News

CVE program gets last-minute funding from CISA – and maybe a new home

Wed, 16/04/2025 - 17:54
Uncertainty is the new certainty

In an 11th-hour reprieve, the US government last night agreed to continue funding the globally used Common Vulnerabilities and Exposures (CVE) program.…

Categories: News

Law firm 'didn't think' data theft was a breach, says ICO. Now it's nursing a £60K fine

Wed, 16/04/2025 - 15:45
DPP Law is appealing against data watchdog's conclusions

A law firm is appealing against a £60,000 fine from the UK's data watchdog after 32 GB of personal information was stolen from its systems.…

Categories: News

Russians lure European diplomats into malware trap with wine-tasting invite

Wed, 16/04/2025 - 13:29
Vintage phishing varietal has improved with age

Russia never stops using proven tactics, and its Cozy Bear, aka APT 29, cyber-spies are once again trying to lure European diplomats into downloading malware with a phony invitation to a lux event.…

Categories: News

Guess what happens when ransomware fiends find 'insurance' 'policy' in your files

Wed, 16/04/2025 - 07:25
It involves a number close to three or six depending on the fiend

Ransomware operators jack up their ransom demands by a factor of 2.8x if they detect a victim has cyber-insurance, a study highlighted by the Netherlands government has confirmed.…

Categories: News

Uncle Sam abruptly turns off funding for CVE program. Yes, that CVE program

Wed, 16/04/2025 - 01:00
Because vulnerability management has nothing to do with national security, right?

US government funding for the world's CVE program – the centralized Common Vulnerabilities and Exposures database of product security flaws – ends Wednesday.…

Categories: News

Now 1.6M people had SSNs, life chapter and verse stolen from insurance IT biz

Tue, 15/04/2025 - 21:43
800K? Make that double, and we'll need a double, too, for the pain

A Texas firm that provides backend IT and other services for American insurers has admitted twice as many people had their info stolen from it than previously disclosed.…

Categories: News

4chan, the 'internet’s litter box,' appears to have been pillaged by rival forum

Tue, 15/04/2025 - 19:56
Source code, moderator info, IP addresses, more allegedly swiped and leaked

Thousands of 4chan users reported outages Monday night amid rumors on social media that the edgy anonymous imageboard had been ransacked by an intruder, with someone on a rival forum claiming to have leaked its source code, moderator identities, and users' IP addresses.…

Categories: News

China names alleged US snoops over Asian Winter Games attacks

Tue, 15/04/2025 - 19:02
Beijing claims NSA went for gold in offensive cyber, got caught in the act

China's state-run press has taken its turn in trying to highlight alleged foreign cyber offensives, accusing the US National Security Agency of targeting the 2025 Asian Winter Games.…

Categories: News

All right, you can have one: DOGE access to Treasury IT OK'd judge

Tue, 15/04/2025 - 18:41
Login green-lit for lone staffer if he’s trained, papered up, won’t pull an Elez

A federal judge has partly lifted an injunction against Elon Musk's Trump-blessed cost-trimming DOGE unit, allowing one staff member to access sensitive US Treasury payment systems. This access includes personally identifiable financial information tied to millions of Americans.…

Categories: News

Chinese snoops use stealth RAT to backdoor US orgs – still active last week

Tue, 15/04/2025 - 15:00
Let the espionage and access resale campaigns begin (again)

A cyberspy crew or individual with ties to China's Ministry of State Security has infected global organizations with a remote access trojan (RAT) that's "even better" than Cobalt Strike, using this stealthy backdoor to enable its espionage and access resale campaigns.…

Categories: News

ActiveX blocked by default in Microsoft 365 because remote code execution is bad, OK?

Tue, 15/04/2025 - 13:25
Stopping users shooting themselves in the foot with last century's tech

Microsoft has twisted the knife into ActiveX once again, setting Microsoft 365 to disable all controls without so much as a prompt.…

Categories: News

Pages