FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayThe Register - Security

How to give Windows Hello the finger and login as someone on their stolen laptop

Not that we're encouraging anyone to defeat this fingerprint authentication

Hardware security hackers have detailed how it's possible to bypass Windows Hello's fingerprint authentication and login as someone else – if you can steal or be left alone with their vulnerable device.…

  • November 22nd 2023 at 22:36

US nuke reactor lab hit by 'gay furry hackers' demanding cat-human mutants

Staff records swiped, leaked by gang who probably read one too many comics, sorry, graphic novels

The self-described "gay furry hackers" of SiegedSec are back: this time boasting they've broken into America's biggest nuclear power lab's computer systems and stolen records on thousands of employees. Some of that data has already been leaked, it appears.…

  • November 22nd 2023 at 21:38

US cybercops take on 'pig butchering' org, return $9M in scammed crypto

Crims drain wallets of marks after letting them in on 'awesome crypto scheme secret'

The US has seized nearly $9 million in proceeds generated by exploiting more than 70 victims across the nation in so-called "pig butchering" scams.…

  • November 22nd 2023 at 12:43

Microsoft's bug bounty turns 10. Are these kinds of rewards making code more secure?

Katie Moussouris, who pioneered Redmond's program, says folks are focusing on the wrong thing

Interview Microsoft's bug bounty program celebrated its tenth birthday this year, and has paid out $63 million to security researchers in that first decade – with $60 million awarded to bug hunters in the past five years alone, according to Redmond.…

  • November 22nd 2023 at 10:58

UK's cookie crumble: Data watchdog serves up tougher recipe for consent banners

30 days to get compliant with tracking rules or face enforcement action

The UK's Information Commissioner's Office (ICO) is getting tough on website design, insisting that opting out of cookies must be as simple as opting in.…

  • November 22nd 2023 at 10:15

Binance and CEO admit financial crimes, billions coughed up to US govt

Chief quits, pays own penalty after helping crooks launder cash, aiding sanctions evaders

The world's largest cryptocurrency exchange just got a little smaller, with the US Department of Justice announcing Binance and its CEO Changpeng Zhao have both pleaded guilty to a multitude of financial crimes. As a result Binance will fork out $10 billion to Uncle Sam in fines and settlements.…

  • November 22nd 2023 at 01:02

Sumo Logic wrestles with security breach, pins down customer data

Compromised AWS account led to fears that user info could have been exposed to cybercriminals

Sumo Logic has confirmed that no customer data was compromised as a result of the potential security breach it discovered on November 3.…

  • November 21st 2023 at 16:32

The XBOM vs SBOM debate

Why an eXtended Software Bill of Materials could be the next step up in cybersecurity

Webinar A Software Bill of Materials (SBOM) has become a non-negotiable requirement to meet regulatory and buyer requirements. But does this provide enough protection if it can give only a partial view into interconnected and ever-changing application attack surfaces?…

  • November 21st 2023 at 13:56

Third-party data breach affecting Canadian government could involve data from 1999

Any govt staffers who used relocation services over past 24 years could be at risk

The government of Canada has confirmed its data was accessed after two of its third-party service providers were attacked.…

  • November 21st 2023 at 13:21

Maintaining a state of readiness to deal with cyber attacks

Continuous training can help improve EMEA organisations’ ability to fend off the cyber criminals in 2024

Sponsored Post You can never afford to drop your guard when it comes to cyber security – hackers never do. Β Any weakness in your organisation's defence is certain to be tested at some point.…

  • November 21st 2023 at 10:51

MOVEit victim count latest: 2.6K+ orgs hit, 77M+ people's data stolen

Real-life impact of buggy software laid bare – plus: Avast tries to profit from being caught up in attacks

Quick show of hands: whose data hasn't been stolen in the mass exploitation of Progress Software's vulnerable MOVEit file transfer application? Anyone?…

  • November 20th 2023 at 20:39

Former infosec COO pleads guilty to attacking hospitals to drum up business

Admits to taking phones used for 'code blue' emergencies offline and more

An Atlanta tech company's former COO has pleaded guilty to a 2018 incident in which he deliberately launched online attacks on two hospitals, later citing the incidents in sales pitches.…

  • November 20th 2023 at 17:15

Rhysida ransomware gang: We attacked the British Library

Crims post passport scans and internal forms up for 'auction' to prove it

The Rhysida ransomware group says it's behind the highly disruptive October cyberattack on the British Library, leaking a snippet of stolen data in the process.…

  • November 20th 2023 at 12:05

Your password hygiene remains atrocious, says NordPass

ALSO: FCC cracks down on SIM-swap scams, old ZeroLogon targeted by new ransomware, and critical vulnerabilities

Infosec in brief It's that time of year again – NordPass has released its annual list of the most common passwords. And while it seems some of you took last year's chiding to heart, most of you arguably swapped bad for worse.…

  • November 20th 2023 at 02:33

LockBit redraws negotiation tactics after affiliates fail to squeeze victims

Cybercrime group worried over dwindling payments ... didn't they tell them to Always Be Closing?

In response to growing frustrations inside the LockBit organization, its leaders have overhauled the way they negotiate with ransomware victims going forward.…

  • November 17th 2023 at 18:04

SonicWall swallows Solutions Granted amid cybersecurity demand surge

CEO Bob VanKirk makes near-20-year partnership official, teases big things coming to EMEA

Channel-focused cybersecurity company SonicWall is buying Virginia-based MSSP Solutions Granted – its first acquisition in well over a decade.…

  • November 17th 2023 at 15:01

Samsung UK discloses year-long breach, leaked customer data

Chaebol already the subject of suits for a pair of past indiscretions

Updated The UK division of Samsung Electronics has allegedly alerted customers of a year-long data security breach – the third such incident the South Korean giant has experienced around the world in the past two years.…

  • November 17th 2023 at 05:58

Look out, Scattered Spider. FBI pumps 'significant' resources into snaring data-theft crew

Absence of arrests doesn't mean nothing's happening, cyber-cops insist

The FBI is applying "significant" resources to find members of the infamous Scattered Spider cyber-crime crew, which seemingly attacked a couple of high-profile casinos a few months ago and remains active, according to a senior bureau official.…

  • November 17th 2023 at 00:11

How much to clean up a ransomware infection? For Rackspace, about $11M

And that's not counting the incoming lawsuits. Thank goodness for insurance, eh?

Rackspace's costs from last year's ransomware infection continue to mount. The cloud hosting biz has told America's financial watchdog, the SEC, its total expenses to date regarding that cyberattack have now reached about $11 million, though insurance has helped cover half of that.…

  • November 16th 2023 at 21:23

Windows Server 2022 update gave ESXi host VMs the blue screen blues

Wild idea: Maybe Microsoft could introduce a Quality Copilot to stop pushing broken patches

Something likely to be absent from Microsoft's Ignite event is talk of a fix rolled out to deal with malfunctioning Windows Server 2022 Virtual Machines following a problematic update from the company.…

  • November 16th 2023 at 15:45

BlackCat plays with malvertising traps to lure corporate victims

Ads for Slack and Cisco AnyConnect actually downloaded Nitrogen malware

Updated Affiliates of the ALPHV/BlackCat ransomware-as-a-service operation are turning to malvertising campaigns to establish an initial foothold in their victims' systems.…

  • November 16th 2023 at 14:45

Royal Mail’s recovery from ransomware attack will cost business at least $12M

First time hard figure given on recovery costs for January incident

Royal Mail's parent International Distributions Services has revealed for the first time the infrastructure costs associated with its January ransomware attack.…

  • November 16th 2023 at 12:31

Hundreds of websites cloned to run ads for Chinese football gambling outfits

Linked to org that UK authorities found once failed its anti-money-laundering obligations

Swedish digital rights organization Qurium has discovered around 250 cloned websites and suggested they exist to drive people to China-linked gambling sites.…

  • November 16th 2023 at 03:31

Clorox CISO flushes self after multimillion-dollar cyberattack

Plus: Ransomware crooks file SEC complaint against victim

The Clorox Company's chief security officer has left her job in the wake of a corporate network breach that cost the manufacturer hundreds of millions of dollars.…

  • November 16th 2023 at 00:43

Google Workspace weaknesses allow plaintext password theft

Exploits come with caveats, but Google says no fixes as user security should do the heavy lifting here

Novel weaknesses in Google Workspace have been exposed by researchers, with exploits potentially leading to ransomware attacks, data exfiltration, and password decryption.…

  • November 15th 2023 at 18:30

FBI Director: FISA Section 702 warrant requirement a 'de facto ban'

War of words escalates as deadline draws near

FBI director Christopher Wray made yet another impassioned plea to US lawmakers to kill a proposed warrant requirement for so-called "US person queries" of data collected via the Feds' favorite snooping tool, FISA Section 702.…

  • November 15th 2023 at 14:00

How cyber training can help you beat the bad guys

No matter what stage your security career is at, SANS has resources that will add to your knowledge

Sponsored Post Fighting cybercrime demands constant vigilance and can be a huge drain on time and resources. So it's good to know that not every weapon in the armory of the cybersecurity professional has to cost the earth. In fact, there's quite a bit of free stuff out there if you know where to look for it.…

  • November 15th 2023 at 13:52

Ransomware more efficient than ever, and baddies are still after your logs

Trying times for incident responders who battle fastest-ever ransomware blitz as attackers keep scrubbing evidence clean

Organizations are still failing to implement adequate logging measures, increasing the difficulty faced by defenders and incident responders to identify the cause of infosec attacks.…

  • November 15th 2023 at 09:30

Another month, another bunch of fixes for Microsoft security bugs exploited in the wild

Plus: VMware closes critical hole, Adobe fixes a whopping 76 flaws

Patch Tuesday Heads up: Microsoft's November Patch Tuesday includes fixes for about 60 vulnerabilities – including three that have already been found and abused in the wild.…

  • November 15th 2023 at 00:36

Russian national pleads guilty to building now-dismantled IPStorm proxy botnet

23K nodes earned operator more than $500K – and now perhaps jail time

The FBI says it has dismantled another botnet after collaring its operator, who admitted hijacking tens of thousands of machines around the world to create his network of obedient nodes.…

  • November 14th 2023 at 23:23

AMD SEV OMG: Trusted execution in VMs undone by bad hypervisors' cache meddling

Let's do the CacheWarp again

Boffins in Germany and Austria have found a flaw in AMD's SEV trusted execution environment that makes it less than trustworthy.…

  • November 14th 2023 at 18:30

Intel emits patch to squash chip bug that lets any guest VM crash host servers

Sapphire Rapids, Alder Lake, Raptor Lake chip families treated for 'Redundant Prefix'

Intel on Tuesday issued an out-of-band security update to address a privilege escalation vulnerability in recent server and personal computer chips.…

  • November 14th 2023 at 18:00

Ransomware royale: US confirms Royal, BlackSuit are linked

Royal alone scored $275M in past year as FBI, other agencies hot on merging trail

The FBI and the US govt's Cybersecurity and Infrastructure Security Agency (CISA) have released fresh guidance on the Royal ransomware operation, saying that evidence suggests it may soon undergo a long-speculated rebrand.…

  • November 14th 2023 at 14:45

Novel backdoor persists even after critical Confluence vulnerability is patched

Got a Confluence server? Listen up. Malware said to have wide-ranging capabilities

A new backdoor was this week found implanted in the environments of organizations to exploit the recently disclosed critical vulnerability in Atlassian Confluence.…

  • November 14th 2023 at 11:00

Bug hunters on your marks: TETRA radio encryption algorithms to enter public domain

Emergency comms standard had five nasty flaws but will be opened to academic research

A set of encryption algorithms used to secure emergency radio communications will enter the public domain after an about-face by the European Telecommunications Standards Institute (ETSI).…

  • November 14th 2023 at 08:00

NCSC says cyber-readiness of UK’s critical infrastructure isn’t up to scratch

And the world's getting more and more dangerous

The UK's National Cyber Security Centre (NCSC) has once again sounded its concern over the rising threat level to the nation's critical national infrastructure (CNI).…

  • November 14th 2023 at 07:02

Beijing reportedly asked Hikvision to identify fasting students in Muslim-majority province

University managment app also tracked library activity, holidays, and much more

US-based research group IPVM has accused Chinese video surveillance equipment company Hikvision of engaging with a contract to develop technology that can identify Muslim students that are fasting during Ramadan, based on their dining records.…

  • November 14th 2023 at 05:59

Passive SSH server private key compromise is real ... for some vulnerable gear

OpenSSL, LibreSSL, OpenSSH users, don't worry – you can sit this one out

An academic study has shown how it's possible for someone to snoop on certain devices' SSH connections and, with a bit of luck, impersonate that equipment after silently figuring out the hosts' private RSA keys.…

  • November 14th 2023 at 02:38

Google sues scammers peddling fake malware-riddled Bard chatbot download

Plus: Chocolate Factory launches second lawsuit against false DMCA takedowns

Updated Google has sued three scammers for offering a fake download of its Bard AI chatbot that contained malware capable of stealing credentials for small business' social media accounts.…

  • November 14th 2023 at 00:59

Inside Denmark’s hell week as critical infrastructure orgs faced cyberattacks

Zyxel zero days and nation-state actors (maybe) had a hand in the sector’s worst cybersecurity event on record

Danish critical infrastructure faced the biggest online attack in the country's history in May, according to SektorCERT, Denmark's specialist organization for the cybersecurity of critical kit.…

  • November 13th 2023 at 14:33

Introducing the tech that keeps the lights on

Genuinely new ideas are rare in IT – this superhero is ready to make a real difference

Opinion Cybersecurity has many supremely annoying aspects. It soaks up talent, time, and money like the English men's football squad, and like that benighted institution, the results never seem to change.…

  • November 13th 2023 at 10:15

When traditional AV solutions are not enough

Preventing cybercriminals from exfiltrating your data with ADX technology

Webinar It seems counterintuitive to want to lock in a cybercriminal who has crept past all your defences to smuggle data out from under your nose.…

  • November 13th 2023 at 10:10

Royal Mail cybersecurity still a bit of a mess, infosec bods claim

Also: Most Mainers are MOVEit victims, NY radiology firm fined for not updating kit, and some critical vulnerabilities

Infosec in brief After spending almost a year cleaning up after various security snafus, the UK's Royal Mail had an open redirect flaw on one of its sites, according to infosec types. We're told this vulnerability potentially exposes customers to malware infections and phishing attacks.…

  • November 13th 2023 at 06:31

Australia declares 'nationally significant cyber incident' after port attack

PLUS: Citrix quits China; Cambodia deports Japanese scammers; Chinese tech CEO disappears; and more

Asia in brief Australia's National Cyber Security Coordinator has described an attack on logistics company DP World as a "nationally significant cyber incident."…

  • November 13th 2023 at 00:45

Impatient LockBit says it's leaked 50GB of stolen Boeing files after ransom fails to land

Aerospace titan pores over data to see if dump is legit

The LockBit crew is claiming to have leaked all of the data it stole from Boeing late last month, after the passenger jet giant apparently refused to pay the ransom demand.…

  • November 10th 2023 at 20:21

Poloniex crypto-exchange offers 5% cut to thieves if they return that $120M they nicked

White hat bounty looks more like a beg bounty

The founder of the Poloniex has offered to pay off thieves who drained an estimated $120 million of user funds from the cryptocurrency exchange in a raid on Friday.…

  • November 10th 2023 at 18:51

Strangely enough, no one wants to buy a ransomware group that has cops' attention

Ransomed.vc shuts after 20% discount fails to entice bids

Short-lived ransomware outfit Ransomed.vc claims to have shut down for good after a number of suspected arrests.…

  • November 10th 2023 at 15:36

China's top bank ICBC hit by ransomware, derailing global trades

CitrixBleed patch has been available for around a month

China's largest bank, ICBC, was hit by ransomware that resulted in disruption of financial services (FS) systems on Thursday Beijing time, according to a notice on its website.…

  • November 10th 2023 at 08:00

Downfall fallout: Intel knew AVX chips were insecure and did nothing, lawsuit claims

Billions of data-leaking processors sold despite warnings and patch just made them slower, punters complain

Intel has been sued by a handful of PC buyers who claim the x86 goliath failed to act when informed five years ago about faulty chip instructions that allowed the recent Downfall vulnerability, and during that period sold billions of insecure chips.…

  • November 9th 2023 at 22:20

SolarWinds says SEC sucks: Watchdog 'lacks competence' to regulate cybersecurity

IT software slinger publishes fierce response to lawsuit brought last month

SolarWinds has come out guns blazing to defend itself following the US Securities and Exchange Commission's announcement that it will be suing both the IT software maker and its CISO over the 2020 SUNBURST cyberattack.…

  • November 9th 2023 at 17:03

MOVEit cybercriminals unearth fresh zero-day to exploit on-prem SysAid hosts

Second novel zero-day exploited by Lace Tempest this year offers notable demonstration of skill, especially for a ransomware affiliate

The cybercriminals behind the stream of MOVEit attacks from earlier this year are making use of a zero-day vulnerability in on-prem instances of IT service and help desk software-slinger SysAid.…

  • November 9th 2023 at 12:36

Russia's Sandworm – not just missile strikes – to blame for Ukrainian power blackouts

Online attack coincided with major military action, Mandiant says

Blackouts in Ukraine last year were not just caused by missile strikes on the nation but also by a seemingly coordinated cyberattack on one of its power plants. That's according to Mandiant's threat intel team, which said Russia's Sandworm crew was behind the two-pronged power-outage and data-wiping attack.…

  • November 9th 2023 at 08:00

What to do with a cloud intrusion toolkit in 2023? Slap a chat assistant on it, duh

Don't worry, this half-baked Python script is for educational purposes onl-hahaha

Infosec bods have detailed an underground cybersecurity tool dubbed Predator AI that not only can be used to compromise poorly secured cloud services and web apps, but has an optional chat-bot assistant that only kinda works.…

  • November 9th 2023 at 06:56

Microsoft, Meta detail plans to fight election disinformation in 2024

Strategies differ, though both have gaps that could hurt efficacy

Microsoft and Meta have very different initiatives to combat misinformation in 2024, slated to be a busy election year all over the globe, but whether they'll be effective is another issue.…

  • November 8th 2023 at 19:01

Atlassian cranks up the threat meter to max for Confluence authorization flaw

Attackers secure admin rights after vendor said they could only steal data

Atlassian reassessed the severity rating of the recent improper authorization vulnerability in Confluence Data Center and Server, raising the CVSS score from 9.1 to a maximum of 10.…

  • November 8th 2023 at 14:00

Monero Project admits thieves stole 6-figure sum from a wallet in mystery breach

It's the latest in a string of unusual wallet-draining attacks that began in April

The Monero Project is admitting that one of its wallets was drained by an unknown source in September, losing the equivalent of around $437,000 at today's exchange rate.…

  • November 8th 2023 at 11:46

Preventing data theft with ADX technology

Ensuring data stays secure even after cyberattack infiltration

Webinar Daily incursions are underway with the aim of removing every bit of data that you've got - the cyber criminals' aim is to break in and get out again laden with digital booty.…

  • November 8th 2023 at 09:17

Bad eIDAS: Europe ready to intercept, spy on your encrypted HTTPS connections

EFF warns incoming rules may return web 'to the dark ages of 2011'

Lawmakers in Europe are expected to adopt digital identity rules that civil society groups say will make the internet less secure and open up citizens to online surveillance.…

  • November 8th 2023 at 08:27

Microsoft likens MFA to 1960s seatbelts, buckles admins in yet keeps eject button

Admins have 90 days to opt out before MFA is deployed automatically

Microsoft is introducing three Conditional Access policies for sysadmins as it continues to promote the implementation of multi-factor authentication (MFA) in organizations.…

  • November 7th 2023 at 17:45

UK may demand tech world tell it about upcoming security features

Campaigners say proposals to reform laws are 'dangerous' and an attack on safety

The UK government has set in train plans to introduce legislation requiring tech companies to let it know when they plan to introduce new security technologies and could potentially force them to disable when required.…

  • November 7th 2023 at 16:34
❌