FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayThe Register - Security

Millions of Gigabyte PC motherboards backdoored? What's the actual score?

It's the 2020s and we're still running code automatically fetched over HTTP

FAQ You may have seen some headlines about a supply-chain backdoor in millions of Gigabyte motherboards. Here's the lowdown.…

  • June 2nd 2023 at 02:07

Deployed publicly accessible MOVEit Transfer? Oh no. Mass exploitation underway

Time to MOVEit, MOVEit. We don't like to MOVEit, MOVEit

Security researchers and the US government have sounded the alarm on a flaw in Progress Software's MOVEit Transfer that criminals have been "mass exploiting" for at least a month to break into IT environments and steal data.…

  • June 1st 2023 at 23:39

Kremlin claims Apple helped NSA spy on diplomats via iPhone backdoor

Did we just time warp back to 2013?

Russian intelligence has accused American snoops and Apple of working together to backdoor iPhones to spy on "thousands" of diplomats worldwide.…

  • June 1st 2023 at 21:49

The downside of frenemies

Are DevOps Tools a potential risk to your software supply chain security?

Webinar Popular DevOps tools are great when it comes to helping developers optimize digital infrastructure, but there's a potential downside – the hidden risks they can contain which may compromise your supply chain.…

  • June 1st 2023 at 16:43

Amazon Ring, Alexa accused of every nightmare IoT security fail you can imagine

Staff able to watch customers in the bathroom? Tick! Obviously shabby infosec? Tick! Training AI as an excuse for data retention? Tick!

America's Federal Trade Commission has made Amazon a case study for every cautionary tale about how sloppily designed internet-of-things devices and associated services represent a risk to privacy – and made the cost of those actions, as alleged, a mere $30.8 million.…

  • June 1st 2023 at 06:33

Ukraine war blurs lines between cyber-crims and state-sponsored attackers

This RomCom is no laughing matter

A change in the deployment of the RomCom malware strain has illustrated the blurring distinction between cyberattacks motivated by money and those fueled by geopolitics, in this case Russia's illegal invasion of Ukraine, according to Trend Micro analysts.…

  • June 1st 2023 at 05:40

Dark Pink cyber-spies add info stealers to their arsenal, notch up more victims

Not to be confused with K-Pop sensation BLACKPINK, gang pops military, govt and education orgs

Dark Pink, a suspected nation-state-sponsored cyber-espionage group, has expanded its list of targeted organizations, both geographically and by sector, and has carried out at least two attacks since the beginning of the year.…

  • June 1st 2023 at 01:24

Feds, you'll need a warrant for that cellphone border search

Here's a story with a twist

A federal district judge has ruled that authorities must obtain a warrant to search an American citizen's cellphone at the US border, barring exigent circumstances.…

  • May 31st 2023 at 23:52

Barracuda Email Security Gateways bitten by data thieves

Act now: Sea-themed backdoor malware injected via .tar-based hole

A critical remote command injection vulnerability in some Barracuda Network devices that the vendor patched 11 days ago has been exploited by miscreants – for at least the past seven months.…

  • May 31st 2023 at 18:15

Criminals spent 10 days in US dental insurer's systems extracting data of 9 million

LockBit gang claimed 'trophy' of spilling low income families' details. Their parents must be proud

The criminals who hit one of the biggest government-backed dental care and insurance providers in the US earlier this year hung about for 10 days while they extracted info on nearly 9 million people, including kids from poverty-stricken homes.…

  • May 31st 2023 at 17:32

XFS bug in Linux kernel 6.3.3 coincides with SGI code comeback

G.N.U. Silicon Graphics: a company is not dead while its name is still spoken

SGI may be no more but people are still using its code – and some more of that code may be about to enjoy a revival.…

  • May 31st 2023 at 13:30

When the popular safeguarding tool is anything but

How to stave off software supply chain attacks

Webinar A software supply chain attack is a hugely painful form of infiltration which can paralyse any business or organization. An attack like a lethal snake bite where the poison silently and swiftly infects your whole software base.…

  • May 31st 2023 at 13:11

Thinking straight in the SoC: How AI erases cognitive bias

The whispering voice presents an alternative point of view to steer cyber security pros in the right direction

Sponsored Feature What do bears and cyber criminals have in common? Both of them are scary, and they both have the same effect on security teams.…

  • May 31st 2023 at 08:59

1. This crypto-coin is called Jimbo. 2. $8m was stolen from its devs in flash loan attack

3. It's asked for 90% of the digital dosh back, or else it'll beg the cops for help

Just days after releasing the second – and supposedly more stable and secure – version of its decentralized finance (DeFi) app, Jimbos Protocol over the weekend was hit by attackers who stole stole 4,090 ETH tokens from the project worth about $7.5 million.…

  • May 30th 2023 at 23:56

90+ orgs tell Slack to stop slacking when it comes to full encryption

Protests planned for Wednesday in San Francisco and Denver

A coalition of 90-plus groups, including Fight for the Future and Mozilla, will descend upon Slack's offices in San Francisco and Denver on Wednesday to ask on the collaboration app to protect users' conversations via end-to-end encryption (E2EE).…

  • May 30th 2023 at 22:53

Pegasus-pusher NSO gets new owner keen on the commercial spyware biz

Investors roll the dice against government sanctions and lawsuits

Spyware maker NSO Group has a new ringleader, as the notorious biz seeks to revamp its image amid new reports that the company's Pegasus malware is targeting yet more human rights advocates and journalists.…

  • May 30th 2023 at 19:15

New York county still dealing with ransomware eight months after attack

Also: iSpoof no more, Edmodo fined more than it can pay, UK is #1 (in CC theft), and the week's critical vulns

security in brief The fallout from an eight-month-old cyber attack on a county in Long Island, New York has devolved into mud-slinging as leaders try to figure out just what is going on.…

  • May 29th 2023 at 06:30

Alien versus Predator? No, this Android spyware works together

Phone-hugging code can record calls, read messages, track geolocation, access camera, other snooping

The Android Predator spyware has more surveillance capabilities than previously suspected, according to analysis by Cisco Talos, with an assist from non-profit Citizen Lab in Canada.…

  • May 27th 2023 at 01:23

US govt pushes spyware to other countries? Senator Wyden would like a word

Uncle Sam confirms it's saying nothing

The US International Trade Administration (ITA) has admitted it promotes the sale of American-approved commercial spyware to foreign governments, and won't answer questions about it, according to US Senator Ron Wyden (D-OR).…

  • May 26th 2023 at 21:03

BlackByte ransomware crew lists city of Augusta after cyber 'incident'

Mayor promises to comment on Friday

BlackByte ransomware crew has claimed Augusta, Georgia, as its latest victim, following what the US city's mayor has, so far, only called a cyber "incident."…

  • May 26th 2023 at 01:34

It's 2023 and Sri Lanka doesn't have a cyber security authority

All should change this year as the country passes its Cyber Security Bill

Sri Lanka's Ministry of Technology has confirmed it will have a cyber security authority – at some point.…

  • May 26th 2023 at 00:42

Spotted: Suspected Russian malware designed to disrupt Euro, Asia energy grids

For simulation or for real, we don't like the vibes from this CosmicEnergy

Malware designed to disrupt electric power grids was likely developed by a Russian contractor, according to Mandiant's threat intel team that discovered the malicious software and dubbed it CosmicEnergy.…

  • May 25th 2023 at 21:07

So the FBI 'persistently' abused its snoop powers. What's to worry about?

When is warrantless surveillance warranted?

Register Kettle If there's one thing that's more all the rage these days than this AI hype, it's warrantless spying by the Feds.…

  • May 25th 2023 at 14:30

Facial recog system used by Met Police shows racial bias at low thresholds

Tech used at King's Coronation employs higher thresholds on once-only watch-lists, Met tells MPs

The UK Parliament has heard that a facial recognition system used by the Metropolitan police during the King’s Coronation can exhibit racial bias at certain thresholds.…

  • May 25th 2023 at 10:34

Five Eyes and Microsoft accuse China of attacking US infrastructure again

Defeating Volt Typhoon will be hard, because the attacks look like legit Windows admin activity

China has attacked critical infrastructure organizations in the US using a "living off the land" attack that hides offensive action among everyday Windows admin activity.…

  • May 25th 2023 at 03:30

This legit Android app turned into mic-snooping malware – and Google missed it

File-stealing nasty in my Play store? Preposterous!!1

Google Play has been caught with its cybersecurity pants down yet again after a once-legit Android screen-and-audio recorder app was updated to include malicious code that listened in on device microphones.…

  • May 24th 2023 at 23:58

Philly Inquirer says Cuba ransomware gang's data leak claims are fake news

Now that's a Rocky relationship

The Philadelphia Inquirer has punched back at the Cuba ransomware gang after the criminals leaked what they said were files stolen from the newspaper.…

  • May 24th 2023 at 20:26

IT security analyst admits hijacking cyber attack to pocket ransom payments

Ashley Liles altered blackmail emails in bid to make off with Β£300,000 in Bitcoin

A former IT security analyst at Oxford Biomedica has admitted, five years after the fact, to turning to the dark side – by hijacking a cyber attack against his own company in an attempt to divert any ransom payments to himself.…

  • May 24th 2023 at 08:30

US bans North Korean outsourcer and its feisty freelancers

They do your work – usually from Russia and China – then send their wages home to pay for missiles

When businesses go shopping for IT services, North Korea-controlled companies probably struggle to make it into many lists.…

  • May 24th 2023 at 02:58

Apria Healthcare says potentially 2M people caught up in IT security breach

Took two years to tell us 'small number of emails' accessed

Personal and financial data describing almost 1.9 million Apria Healthcare patients and employees may have been accessed by crooks who breached the company's networks over a series of months in 2019 and 2021.…

  • May 23rd 2023 at 23:58

Dish confirms 300,000 people's data was exposed in February's attack

But don't worry – we know it was deleted. Hmm. How would you know that?

Dish Network has admitted that a February cybersecurity incident and associated multi-day outage led to the extraction of data on nearly 300,000 people, while also appearing to indirectly admit it may have paid cybercriminals to delete said data.…

  • May 23rd 2023 at 16:43

TikTok to let Oracle view source code, algorithm, and content moderation

It's all in the name of national security as Trump-era collab continues in Project Texas

TikTok, the social video platform used by around 150 million people in the US, is set to hand access to its source code, algorithm and content moderation material to Oracle in a bid to allay data protection and national security concerns stateside.…

  • May 23rd 2023 at 14:36

Ads for lucrative jobs in Asia fail to mention chance of slavery as crypto-scammer

FBI warns jobseekers to be very skeptical of working holidays in Cambodia

The FBI has issued a warning about fake job ads that recruit workers into forced labor operations in Southeast Asia – some of which enslave visitors and force them to participate in cryptocurrency scams.…

  • May 23rd 2023 at 05:58

China hasn't told Micron why it failed security review, or what its ban means

US memory-maker forecasts single-digit revenue impact, and ongoing gloom in PC and smartmobe markets

US memory-maker Micron has no idea why Chinese authorities have decided its products represent a security risk, or which customers it's not allowed to sell to.…

  • May 23rd 2023 at 02:58

Uncle Sam strangles criminals' cashflow by reining in money mules

Tech support scammer among those targeted by recent crackdowns

Uncle Sam announced its commenced over 4,000 legal actions in three months β€” mostly harshly worded letters β€” to rein in "money mules" involved in romance scams, business email compromise, and other fraudulent schemes.…

  • May 23rd 2023 at 00:01

Google settles location tracking lawsuit for only $39.9M

Also, more OEM Android malware, Google's bug reports (mostly) ditch CVEs, and this week's critical vulns

in brief Google has settled another location tracking lawsuit, yet again being fined a relative pittance.…

  • May 22nd 2023 at 14:45

More UK councils caught by Capita's open AWS bucket blunder

As for March megabreach? M&S and Guinness maker Diageo warn pension members about data risks

The bad news train keeps rolling for Capita, with more local British councils surfacing to say their data was put on the line by an unsecured AWS bucket, and, separately, pension clients warning of possible data theft in March's mega breach.…

  • May 22nd 2023 at 12:13

Fighting the five

Hear SANS cyber security experts share advice on how to defend your organization against the latest threats

Sponsored Post Cyber criminals never stop learning so nor should you. Fresh security hacks are being concocted and deployed every week, so it's a good idea for cyber security professionals to pool their knowledge when working out how best to defend against them.…

  • May 22nd 2023 at 10:36

Rigorous dev courageously lied about exec's NSFW printouts – and survived long enough to quit with dignity

Log files don't lie and in this case one nasty incident spoke to a far deeper malaise

Who, Me? Wait? What? Is it Monday already? Not to fear, gentle readerfolk, for Uncle Reg is here with another instalment of Who, Me? – tales of readers having a much worse day than you. Enjoy the schadenfreude.…

  • May 22nd 2023 at 07:32

Teen in court after '$600K swiped from DraftKings gamblers'

Bet he didn't expect these computer hacking charges

An 18-year-old Wisconsin man has been charged with allegedly playing a central role in the theft of $600,000 from DraftKings customer accounts.…

  • May 19th 2023 at 23:56

Russian IT guy sent to labor camp for DDoSing Kremlin websites

Pro-Ukraine techie gets hard time

A Russian IT worker accused of participating in pro-Ukraine denial of service attacks against Russian government websites has been sentenced to three years in a penal colony and ordered to pay 800,000 rubles (about $10,000). …

  • May 19th 2023 at 20:14

UK's GDPR replacement could wipe out oversight of live facial recognition

Question not whether UK police should use facial recog, but how, says surveillance chief

Biometrics and surveillance camera commissioner Professor Fraser Sampson has warned that independent oversight of facial recognition is at risk just as the policing minister plans to "embed" it into the force.…

  • May 19th 2023 at 09:34

Apple warns of three WebKit vulns under active exploitation, dozens more CVEs across its range

High school student and Amnesty International named among bug-finders

Apple has issued a bushel of security updates and warned that three of the flaws it's fixed are under active attack.…

  • May 19th 2023 at 02:59

Cisco squashes critical bugs in small biz switches

You'll want to patch these as proof-of-concept exploit code is out there already

Cisco rolled out patches for four critical security vulnerabilities in several of its network switches for small businesses that can be exploited to remotely hijack the equipment.…

  • May 18th 2023 at 22:31

Microsoft decides it will be the one to choose which secure login method you use

Certificate-based authentication comes first and phones last

Microsoft wants to take the decision of which multi-factor authentication (MFA) method to use out of the users' hands and into its own.…

  • May 18th 2023 at 17:32

Six million patients' data feared stolen from PharMerica

Cue the inevitable class action lawsuit

PharMerica, one of the largest pharmacy service providers in the US, has revealed its IT systems were breached – and it's feared the intruders stole personal and healthcare data belonging to more than 5.8 million past customers…

  • May 18th 2023 at 00:20

'Strictly limit' remote desktop – unless you like catching BianLian ransomware

Do it or don't. We're not cops. But the FBI are, and they have this to say

The FBI and friends have warned organizations to "strictly limit the use of RDP and other remote desktop services" to avoid BianLian infections and the ransomware gang's extortion attempts that follow the data encryption.…

  • May 17th 2023 at 20:32

Another security calamity for Capita: An unsecured AWS bucket

Colchester City Council says it and others caught up in new incident, reckons benefits data of local citizens exposed

Capita is facing criticism about its security hygiene on a new front after an Amazon cloud bucket containing benefits data on residents in a south east England city council was left exposed to the public web.…

  • May 17th 2023 at 12:48

Don't panic. Google offering scary .zip and .mov domains is not the end of the world

Did we forget about .pl, .sh and oh yeah, .com ?

Comment In early May, Google Domains added support for eight new top-level domains, two of which – .zip, and .mov – raised the hackles of the security community.…

  • May 17th 2023 at 09:22

Upstart encryption app walks back privacy claims, pulls from stores after probe

Try not leaving a database full of user info, chats, keys exposed, eh?

A new-ish messaging service that claimed to put privacy first has pulled its end-to-end encryption claims from its website and its app from both the Apple and Google software stores after being called out online.…

  • May 17th 2023 at 06:30

Ransomware-as-a-service groups rain money on their affiliates

Qilin gang crims can earn up to 85 percent of extortion cash, or jail

Business is very good for affiliates of the Qilin ransomware-as-a-service (RaaS) group, which is very bad for the rest of us.…

  • May 17th 2023 at 01:58

Feds offer $10m reward for info on alleged Russian ransomware crim

Infecting cops' computers is one way to put a target on your back

The Feds have sanctioned a Russian national accused of using LockBit, Babuk, and Hive ransomware to extort a law enforcement agency and nonprofit healthcare organization in New Jersey, and the Metropolitan Police Department in Washington DC, among "numerous" other victim organizations in the US and globally.…

  • May 17th 2023 at 00:30

US Dept of Transport security breach exposes info on a quarter-million people

Not the first time Uncle Sam has had the wheels come off its IT systems

A US Department of Transportation computer system used to reimburse federal government employees for commuting costs somehow suffered a security breach that exposed the personal info for 237,000 current and former workers.…

  • May 16th 2023 at 21:30

Compliance automation to confound cyber criminals

How you can streamline the auditing process while improving compliance and security

Sponsored Post Eminent US businessman Norman Ralph Augustine - who served as United States Under Secretary of the Army, as well as chairman and CEO of the Lockheed Martin Corporation - pointed to the importance of audit and compliance when he famously commented: "Two-thirds of the Earth's surface is covered with water. The other third is covered with auditors from headquarters."…

  • May 16th 2023 at 14:03

Cops crack gang that used bots to book and resell immigration appointments

Keeping files that mention 'robot rental' may not have been the best way to cover their tracks

Police have arrested 69 people alleged to have used bots to book up nearly all of Spain's available appointments with immigration officials, and then sold those meeting slots for between €30 and €200 ($33 to $218) to aspiring migrants.…

  • May 16th 2023 at 07:18

FTC sues VoIP provider over 'billions of illegal robocalls'

XCast knew it was breaking the law and didn't hold back, watchdog says

A VoIP provider was at the heart of billions of robocalls made over the past five years that broke a slew of US regulations, from enabling telemarketing scams to calling numbers on the National Do Not Call Registry, it is claimed.…

  • May 16th 2023 at 00:27

Intel says Friday's mystery 'security update' microcode isn't really a security update

We're all for encouraging people to squash bugs but this is an odd way to do it

False alarm: despite a patch notes suggesting otherwise, that mysterious blob of microcode released for many Intel microprocessors last week was not a security update, the x86 giant says.…

  • May 15th 2023 at 22:15

Extra! Extra! Don’t quite read all about it: Cyber attack hits Philadelphia Inquirer

Breaking news, literally

A cyber "incident" stopped The Philadelphia Inquirer's presses over the weekend, halting the Sunday edition's print edition and shutting down the newspaper's offices to staff until at least Tuesday.…

  • May 15th 2023 at 21:44

Some potential: How bad software updates could over-volt, brick remote servers

PMFault – from the eggheads who brought you Plundervolt and Voltpillager

Video Presenting at Black Hat Asia 2023, two infosec researchers detailed how remote updates can be exploited to modify voltage on a Supermicro motherboard and remotely brick machines.…

  • May 15th 2023 at 18:39

No more macros? No problem, say miscreants, we'll adapt

Microsoft blocking 'net scripts sparked 'monumental shift' in attacks

Microsoft's decision to block internet-sourced macros by default last year is forcing attackers to find new and creative ways to compromise systems and deliver malware, according to threat researchers at Proofpoint.…

  • May 15th 2023 at 16:32
❌