FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayThe Register - Security

US government hit by Russia's Clop in MOVEit mass attack

CISA chief tells us exploitation 'largely opportunistic', not on same level of SolarWinds

The US Department of Energy and other federal bodies are among a growing list of organizations hit by Russians exploiting the MOVEit file-transfer vulnerability.…

  • June 15th 2023 at 22:43

Chinese spies blamed for data-harvesting raids on Barracuda email gateways

Snoops 'aggressively targeted' specific govt, academic accounts

Chinese spies are behind the data-stealing malware injected into Barracuda's Email Security Gateway (ESG) devices globally as far back as October 2022, according to Mandiant.…

  • June 15th 2023 at 18:44

North Korea created very phishy evil twin of Naver, South Korea's top portal

Think of it as a fake Google tuned for credential capture and you'll understand why authorities want to kill it

North Korea has created a fake version of South Korea's largest internet portal, Naver, in a large scale phishing attempt, Seoul's National Intelligence Service (NIS) said on Wednesday.…

  • June 15th 2023 at 02:15

Decision to hold women-in-cyber events in abortion-banning states sparks outcry

'Many factors were considered,' WiCyS boss tells The Reg as (ISC)Β² suggests an end to 'girlfriend test' jargon

Global nonprofit Women in Cybersecurity (WiCyS), despite months of controversy over the cities named to host its 2024 and 2025 conferences, says it will move forward as planned with the events in Nashville, Tennessee, and Dallas, Texas, respectively.…

  • June 14th 2023 at 23:48

LockBit victims in the US alone paid over $90m in ransoms since 2020

As America, UK, Canada, Australia and friends share essential bible to detect and thwart infections

Seven nations today issued an alert, plus protection tips, about LockBit, the prolific ransomware-as-a-service gang.…

  • June 14th 2023 at 19:42

Lethal weather

Forecasting the flux and flow of threats to the cloud

Webinar The cloud is floating around everywhere and with the rapid expansion of IT always comes new complexities that alter the threat landscape.…

  • June 14th 2023 at 15:48

Capita wins Β£50M fraud reporting contract with City of London cops

No, the irony isn't lost on us either

Capita, which is still dealing with a digital break-in that exposed customers' data to criminals, has scored a Β£50 million contract with the City of London police to run contact and engagement services for the force's fraud reporting service.…

  • June 14th 2023 at 13:34

Bringing security to account: why identity must be unified

As identity management becomes the new security perimeter, cyber risk underwriters want to see resilient IAM control ID sprawl

Sponsored Feature Many organizations are suffering from an identity crisis. Not in the psychological sense, nor in respect to their branding or culture. But in how their IT systems enable employees to access the applications and data they need for work.…

  • June 14th 2023 at 10:35

Florida man insists he didn't violate the law by keeping Top Secret docs

Populist politician pleads not guilty at Miami arraignment

A Florida man and his valet appeared in a Miami federal courtroom on Tuesday to respond to criminal charges of document hoarding and related claims.…

  • June 14th 2023 at 00:30

June Patch Tuesday: VMware vuln under attack by Chinese spies, Microsoft kinda meh

Plus: Adobe, SAP and Android push updates

Microsoft has released security updates for 78 flaws for June's Patch Tuesday, and luckily for admins, none of these are under exploit.…

  • June 13th 2023 at 20:32

Last of the Gozi 3 sentenced over Windows info-stealing malware ops

Banking trojan still going strong as feds put bulletproof hosting point man behind bars

The last of the three men said to be responsible for infecting Windows computers with the banking trojan Gozi has been sentenced to three years.…

  • June 13th 2023 at 17:33

The commonality of criminal intrusion

Rubrik Zero Lab’s β€˜The Hard Truths’ annual report into the state of data security

Webinar It seems no longer possible to imagine whether it's just a case of if a security breach will occur within your organization, or if malicious actors will exploit a vulnerability to play havoc with your data. Rather, it's just a question of when.…

  • June 13th 2023 at 15:07

These Microsoft Office security signatures are 'practically worthless'

Turns out it's easy to forge documents relying on OOXML

Updated Office Open XML (OOXML) Signatures, an Ecma/ISO standard used in Microsoft Office applications and open source OnlyOffice, have several security flaws and can be easily spoofed.…

  • June 13th 2023 at 10:26

Russia-Ukraine war sending shockwaves into cyber-ecosystem

Conflict could be first shooting war to deploy armies of β€˜citizen hackers’ that cause at-risk organisations to rethink their defensive strategies

Sponsored Feature When military historians come to chronicle the first 15 months of the Russian invasion of Ukraine, they won't find any shortage of battlefront bulletins to inform their accounts.…

  • June 13th 2023 at 08:31

UK telco watchdog Ofcom, Minnesota Dept of Ed named as latest MOVEit victims

As another CVE is assigned

Two more organizations hit in the mass exploitation of the MOVEit file-transfer tool have been named – the Minnesota Department of Education in the US, and the UK's telco regulator Ofcom – just days after security researchers discovered additional flaws in Progress Software's buggy suite.…

  • June 13th 2023 at 06:28

China's cyber now aimed at infrastructure, warns CISA boss

Resilience against threats needs a boost

China's cyber-ops against the US have shifted from espionage activities to targeting infrastructure and societal disruption, the director of the Cybersecurity and Infrastructure Security Agency (CISA) Jen Easterly told an Aspen Institute event on Monday.…

  • June 13th 2023 at 04:45

India probes medical info 'leak' to Telegram

PLUS: Vietnam's free domain names for youngsters; China's Cuba spy base; Hyundai and Samsung team for car chips; and more

Asia In Brief India's government has denied its Co-WIN COVID-19 vaccination management platform has leaked data, but ordered an investigation into the program's security.…

  • June 13th 2023 at 03:26

Unsealed: Charges against Russians blamed for Mt Gox crypto-exchange collapse

What a blast from the past, the past being a year before the pandemic

American prosecutors have unsealed an indictment against two Russians who allegedly had a hand in the ransacking and collapse of Mt Gox a decade ago, an implosion that cost the cryptocurrency exchange's thousands of customers most of their digital coins.…

  • June 12th 2023 at 23:23

Fortinet squashes hijack-my-VPN bug in FortiOS gear

And it's already being exploited in the wild, probably

Fortinet has patched a critical bug in its FortiOS and FortiProxy SSL-VPN that can be exploited to hijack the equipment.…

  • June 12th 2023 at 21:06

Posing as journalists, Pink Drainer pilfers $3.3M in crypto

First the interview, then the phishing attack

Miscreants targeting Discord and Twitter accounts have stolen more than $3.3 million in cryptocurrency from 2,300 victims so far in an ongoing campaign that started in April and saw the highest spike in activity earlier this month.…

  • June 12th 2023 at 20:00

Microsoft stole our stolen dark web data, says security outfit

Suit claims Redmond took far more than allowed from Hold's 360M-credential database

Microsoft stands accused by cyber intelligence firm Hold Security of violating an agreement between the pair by misusing Hold's database of more than 360 million sets of credentials culled from the dark web.…

  • June 12th 2023 at 19:15

Lantum S3 bucket leak is prescription for chaos for thousands of UK doctors

Freelance agency exposed personal details that would be highly valuable in the wrong hands

Updated A UK agency for freelance doctors has potentially exposed personal details relating to 3,200 individuals via unsecured S3 buckets, which one expert said could be used to launch ID theft attacks or blackmail.…

  • June 12th 2023 at 12:34

Hold it – another vulnerability found in MOVEit file transfer software

Also, the FBI's $180k investment in AN0M keeps paying off, and this week's critical vulnerabilities

Infosec in brief Security firms helping Progress Software dissect the fallout from a ransomware attack against its MOVEit file transfer suite have discovered an additional exploitable bug.…

  • June 12th 2023 at 10:33

Online muggers make serious moves on unpatched Microsoft bugs

Win32k and Visual Studio flaws are under attack

Two flaws in Microsoft software are under attack on systems that haven't been patched by admins.…

  • June 9th 2023 at 23:47

FBI: FISA Section 702 'absolutely critical' to spy on, err, protect Americans

No protection without surveillance?

The FBI doesn't want to lose its favorite codified way to spy, Section 702 of the US Foreign Intelligence Surveillance Act. In its latest salvo, the agency's deputy director Paul Abbate called it "absolutely critical for the FBI to continue protecting the American people."…

  • June 9th 2023 at 20:30

Ransomware scum hit Japanese pharma giant Eisai Group

Some servers encrypted in weekend attack, but product supply not affected

Japanese pharma giant Eisai today confirmed to The Register that "there is no imminent risk of stock shortage" after it was hit by ransomware at the weekend.…

  • June 9th 2023 at 17:30

Seven steps for using zero trust to protect your multicloud estate

Your multicloud environment is complex. You need an uncompromising zero trust approach to manage and secure it.

Commissioned Commissioned: If you're like most IT leaders, you are facing two uncomfortable realities. The first is that external and internal cybersecurity threats are proliferating from individuals, independent collectives and nation-state attackers. The second is that your computing operating models are becoming more complex, as their tentacles spread across multicloud environments.…

  • June 9th 2023 at 13:22

Brit data watchdog fines sleazy sales ops Β£250K for 'bombarding' folk with calls

Crown Glazing and Maxen Power Supply fall foul of PECR

Britain's data watchdog has slapped a financial penalty on two energy companies it claims were posing as third parties, including the National Grid and UK government, when making unsolicited marketing calls.…

  • June 9th 2023 at 11:30

Darkweb credit card marts in decline across Asia, researchers claim

India tops the charts for document theft

The number of stolen Asian credit card numbers appearing on darkweb crime marts has fallen sharply, cyber security firm Group-IB told Singapore's ATxSG conference on Thursday.…

  • June 9th 2023 at 03:31

Google changes email authentication after spoof shows a bad delivery for UPS

Google's blue tick proves untrustworthy

Google says it has fixed a flaw that allowed a scammer to impersonate delivery service UPS on Gmail, after the data-hoarding web behemoth labeled the phony email as authentic.…

  • June 9th 2023 at 01:02

Robot can rip the data out of RAM chips with chilling technology

'The more important a thing is for the world, the less security it has' says inventor

Cold boot attacks, in which memory chips can be chilled and data including encryption keys plundered, were demonstrated way back in 2008 – but they just got automated.…

  • June 9th 2023 at 00:01

North Korea's Lazarus Group linked to Atomic Wallet heist

Users' cryptocurrency wallets look unlikely to be refilled

The North Korean criminal gang Lazarus Group has been blamed for last weekend's attack on Atomic Wallet that drained at least $35 million in cryptocurrency from private accounts.…

  • June 8th 2023 at 23:04

Barracuda tells its ESG owners to 'immediately' junk buggy kit

That patch we issued? Yeah, it wasn't enough

Barracuda has now told customers to "immediately" replace infected Email Security Gateway (ESG) appliances β€” even if they have received a patch to fix a critical bug under exploit.…

  • June 8th 2023 at 21:04

Google puts $1M behind its promise to detect cryptomining malware

If the chocolate factory's scans don't stop the miners, customers don't foot the bill

Google Cloud has put $1 million on the table to cover customers' unauthorized compute expenses stemming from cryptomining attacks if its sensors don't spot these illicit miners.…

  • June 8th 2023 at 15:00

New York City latest to sue Hyundai and Kia claiming their cars are too easy to steal

What started as a TikTok craze has become a 'public nuisance'

Hyundai and Kia cars were stolen 977 times in New York City in the first four months of 2023, and authorities have had enough.…

  • June 8th 2023 at 14:32

On the frontline of cyber threats

Watch it here: the unvarnished truth about the state of data security

Webinar Rubrik Zero Lab's annual report on the state of data security is not a comfortable read. And as if to prepare you for what lies inside, the company has called it 'The Hard Truths.'…

  • June 8th 2023 at 13:00

Microsoft says share the wealth with cyber-info for business

It's better to take action than wait for attacks

The timeworn adage that "those who don't learn from history are doomed to repeat it" can certainly be applied to cyber security. Microsoft is hoping to spare enterprises that use its cloud services from repeating history by sharing what it has learned.…

  • June 8th 2023 at 09:30

Helping Windows 11 fight the hackers

How Intel is using hardware-assisted security to beef up Microsoft OS protection

Sponsored Feature When Windows 11 launched in October 2021, one of its big selling points was a new security architecture. Microsoft designed it from the ground up with zero-trust principles in mind, refusing to trust the legitimacy of any single system component. Instead, everything must prove that it has not been compromised.…

  • June 8th 2023 at 09:07

UK government to set deadline for removal of Chinese surveillance cams

And compile a list of vendors considered threats to national security

The UK government will set a deadline for removing made-in-China surveillance cameras from "sensitive sites."…

  • June 8th 2023 at 07:30

Deepfakes being used in 'sextortion' scams, FBI warns

AI technology raises the bar in an already troubling crime

Miscreants are using AI to create faked images of a sexual nature, which they then employ in sextortion schemes.…

  • June 8th 2023 at 00:45

Clop ransomware crew sets June extortion deadline for MOVEit victims

Plus: The Feds weigh in with advice, details

Clop, the ransomware crew that has exploited the MOVEit vulnerability extensively to steal corporate data, has given victims a June 14 deadline to pay up or the purloined information will be leaked.…

  • June 7th 2023 at 19:46

10 years after Snowden's first leak, what have we learned?

Spies gonna spy

Feature The world got a first glimpse into the US government's far-reaching surveillance of American citizens' communications – namely, their Verizon telephone calls – 10 years ago this week when Edward Snowden's initial leaks hit the press.…

  • June 7th 2023 at 13:25

Police use of PayPal records under fire after raid on 'Cop City' protest fund trio

Nearly anything can look like money laundering if you squint hard enough

Three supporters of activists against a $90 million police training facility dubbed Cop City were arrested after the cops used PayPal data to bring money-laundering charges against the trio.…

  • June 6th 2023 at 23:03

Malwarebytes may not be allowed to label rival's app as 'potentially unwanted'

Legal prof warns: 'This case is like a wrecking ball for internet law'

The US Ninth Circuit Court of Appeals last week ruled that Enigma Software Group can pursue its long standing complaint against rival security firm Malwarebytes for classifying its software as "potentially unwanted programs" or PUPs.…

  • June 6th 2023 at 19:56

US govt now bans TikTok from contractors' work gear

BYODALAINGTI (as long as it's not got TikTok installed)

The US federal government's ban on TikTok has been extended to include devices used by its many contractors - even those that are privately owned. The bottom line: if some electronics are used for government work, it better not have any ByteDance bits on it. …

  • June 6th 2023 at 19:25

Microsoft cops $20M slap on the wrist for mishandling kids' Xbox data

Pocket change, in other words

Microsoft is being fined $20 million by the US Federal Trade Commission for violating the Children's Online Privacy Protection Act (COPPA) by illegally gathering kids' personal information and retaining it without parental consent.…

  • June 6th 2023 at 18:24

Identity thieves can hunt us for 'rest of our lives,' claims suit after university data leak

Crooks steal Social Security numbers and post them on dark web, victims blame holes in Mercer's security

An American university founded in 1833 is facing a bunch of class action lawsuits after the personal data of nearly 100,000 people was stolen from its tech infrastructure.…

  • June 6th 2023 at 17:34

SEC drops 42 cases after staff bungle data protection

Corporate watchdog fouled its info-separation regime, let the wrong people read sensitive docs

The US Securities and Exchange Commission (SEC) has dismissed proceedings against 42 companies and individuals after admitting that its enforcement staff accessed documents that were supposed to be for judges' eyes only.…

  • June 6th 2023 at 04:02

Microsoft stashes nearly half a billion in case LinkedIn data drama hits

Irish regulators sniffing around Facebook-for-suits subsidiary have threatened fine

Microsoft has warned investors about a "non-public" draft decision by Irish regulators against LinkedIn for allegedly dodgy ad data practices, explaining it had set aside some cash to pay off any potential fine.…

  • June 2nd 2023 at 15:28

Taking the art of email security to the next level

AI is beefing up the cyber arsenals of both attackers and defenders

Sponsored Feature Email is a popular target for cybercriminals, offering an easy way of launching an attack disguised as an innocent message. One moment of inattention on the part of the recipient and the door is open to malware, spam, phishing, perhaps even a dose of the dreaded ransomware. Entire organisations can suffer, not just individual victims.…

  • June 6th 2023 at 08:28

British Airways, Boots, BBC payroll data stolen in MOVEit supply-chain attack

Microsoft blames Russian Clop ransomware crew for theft of staff info

British Airways, the BBC, and UK pharmacy chain Boots are among the companies whose data has been compromised after miscreants exploited a critical vulnerability in deployments of the MOVEit document-transfer app.…

  • June 5th 2023 at 19:29

Crypto catastrophe strikes some Atomic Wallet users, over $35M thought stolen

Victims nursing huge losses haven't the foggiest how heist happened, yet

As much as $35 million worth of cryptocurrency may have been stolen in a large-scale attack on Atomic Wallet users, with one investigator claiming losses could potentially exceed $50 million.…

  • June 5th 2023 at 18:31

Qbot malware adapts to live another day … and another …

Operators stay ahead of defenders with new access methods and C2 infrastructure

The Qbot malware operation – which started more than a decade ago as banking trojan only to evolve into a backdoor and a delivery system for ransomware and other threats – continues to deftly adapt its techniques to stay ahead of security pros, according to a new report.…

  • June 5th 2023 at 12:15

Australian cyber-op attacked ISIL with the terrifying power of Rickrolling

Commanders in the field persuaded to give up, let their guard down, run around and desert their posts

Australia's Signals Directorate, the signals intelligence organization, has revealed it employed zero-click attacks on devices used by fighters for Islamic State of Iraq and the Levant (ISIL) – then unleashed the terrifying power of Rick Astley.…

  • June 5th 2023 at 04:29

Toyota admits to yet another cloud leak

Also, hackers publish RaidForum user data, Google's $180k Chrome bug bounty, and this week's vulnerabilities

infosec in brief Japanese automaker Toyota is again apologizing for spilling customer records online due to a misconfigured cloud environment – the same explanation it gave when the same thing happened a couple of weeks ago. It's like a pattern.…

  • June 5th 2023 at 03:30

Meet TeamT5, the Taiwanese infosec outfit taking on Beijing and defeating its smears

Living in the eye of the geopolitical storm is not easy, but is good for business

In late September 2021, staff at Taiwanese threat intelligence company TeamT5 noticed something very nasty: a fake news report accusing it of conducting phishing attacks against Japan's government and local tech companies.…

  • June 5th 2023 at 02:33

Uncle Sam wants DEF CON hackers to pwn this Moonlighter satellite in space

'World's first and only' orbiting infosec playpen due to blast off Sunday

Feature Assuming the weather and engineering gods cooperate, a US government-funded satellite dubbed Moonlighter will launch at 1212 EDT (1612 UTC) on Sunday, hitching a ride on a SpaceX rocket before being releasing into Earth's orbit.…

  • June 3rd 2023 at 08:25

Malaysia goes its own Huawei, won't ban Chinese vendor from 5G network

Country to have two networks as first buildout falls behind schedule

Malaysia could be putting itself on a collision course with the EU and US as the country looks set to allow Chinese suppliers including Huawei a chance to play a part in its planned 5G network rollout.…

  • June 2nd 2023 at 18:33

This malicious PyPI package mixed source and compiled code to dodge detection

Oh cool, something else to scan for

Researchers recently uncovered the following novel attack on the Python Package Index (PyPI).…

  • June 2nd 2023 at 06:24

You might have been phished by the gang that stole North Korea’s lousy rocket tech

US, South Korea, warn 'Kimsuky' is a very sophisticated social engineer

The United States and the Republic of Korea have issued a joint cyber security advisory [PDF] about North Koreas "Kimsuky" cyber crime group.…

  • June 2nd 2023 at 05:15
❌