FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayThe Register - Security

After injecting cancer hospital with ransomware, crims threaten to swat patients

Remember the good old days when ransomware crooks vowed not to infect medical centers?

Extortionists are now threatening to swat hospital patients β€” calling in bomb threats or other bogus reports to the police so heavily armed cops show up at victims' homes β€” if the medical centers don'tΒ pay the crooks' ransom demands.…

  • January 5th 2024 at 21:54

BreachForums boss busted for bond blunders – including using a VPN

Fitzpatrick faces potentially decades in prison later this month, so may as well get some foreign Netflix in beforehand

The cybercriminal behind BreachForums was this week arrested for violating the terms of his pretrial release and will now be held in custody until his sentencing hearing.…

  • January 5th 2024 at 14:35

Sandworm's Kyivstar attack should serve as a reminder of the Kremlin crew's 'global reach'

'Almost everything' wiped in the telecom attack, says Ukraine's top cyber spy

Russia's Sandworm crew appear to have been responsible for knocking out mobile and internet services to about 24 million users in Ukraine last month with an attack on telco giant Kyivstar.…

  • January 5th 2024 at 07:30

X-ploited: Mandiant restores hijacked Twitter account after attempted crypto heist

Miscreants mock Google-owned security house: 'Change password please'

Miscreants took over security giant Mandiant's Twitter account for several hours on Wednesday in an attempt to steal cryptocurrency, then trolled the Google-owned security shop, telling its admins to change the password.…

  • January 4th 2024 at 20:00

Infosec experts divided over 23andMe's 'victim-blaming' stance on data breach

Users apparently at fault after reusing credentials the company didn't check were already compromised

23andMe users' godawful password practices were supposedly to blame for the biotech company's October data disaster, according to its legal reps.…

  • January 4th 2024 at 18:30

Infostealer malware, weak password leaves Orange Spain RIPE for plucking

No 2FA or special characters to prevent database takeover and BGP hijack

Updated A weak password exposed by infostealer malware is being blamed after a massive outage at Orange Spain disrupted around half of its network's traffic.…

  • January 4th 2024 at 13:15

As lawmakers mull outlawing poor security, what can they really do to tackle online gangs?

Headline-grabbing takedowns are nice, but long-term solutions require short-term sacrifices

Comment In some ways, the ransomware landscape in 2023 remained unchanged from the way it looked in previous years. Vendor reports continue to show a rise in attacks, major organizations are still getting hit, and the inherent issues that enable it as a business model remain unaddressed.…

  • January 4th 2024 at 11:45

Three Chinese balloons float near Taiwanese airbase

Also: Remember that balloon over the US last February? It might have used a US internet provider

Four Chinese balloons have reportedly floated over the Taiwan Strait, three of them crossing over the island's land mass and near its Ching-Chuan-Kang air base before disappearing, according to the Taiwan's defense ministry.…

  • January 4th 2024 at 10:15

Microsoft kills off Windows app installation from the web, again

Unpleasant Christmas package lets malware down the chimney

Microsoft has disabled a protocol that allowed the installation of Windows apps after finding that miscreants were abusing the mechanism to install malware.…

  • January 4th 2024 at 00:02

Freight giant Estes refuses to deliver ransom, says personal data opened and stolen

Pay up, or just decline to submit

One of America's biggest private freight shippers, Estes Express Lines, has told more than 20,000 customers that criminals stole their personal information.…

  • January 3rd 2024 at 21:30

Atos confirms talks with Airbus over cybersecurity wing sale

IT service company's latest move to clear its maturing debts

French IT services provider Atos has entered talks with Airbus to sell its tech security division in an effort to ease its financial burdens.…

  • January 3rd 2024 at 15:45

Copy that? Xerox confirms 'security incident' at subsidiary

Company’s removal from ransomware gang’s leak blog could mean negotiations underway

Xerox has officially confirmed that a cyber baddie broke into the systems of its US subsidiary - a week after INC Ransom claimed to have exfiltrated data from the copier and print giant.…

  • January 3rd 2024 at 13:15

Formal ban on ransomware payments? Asking orgs nicely to not cough up ain't working

With the average demand hitting $1.5 million, something's gotta change

Emsisoft has called for a complete ban on ransom payments following another record-breaking year of digital extortion.…

  • January 3rd 2024 at 08:30

Google password resets not enough to stop these info-stealing malware strains

Now every miscreant is jumping on Big G's OAuth account security hole

Updated Security researchers say info-stealing malware can still access victims' compromised Google accounts even after passwords have been changed.…

  • January 2nd 2024 at 19:58

Court hearings become ransomware concern after justice system breach

From legal proceedings to potential YouTube fodder

The court system of Victoria, Australia, was subject to a suspected ransomware attack in which audiovisual recordings of court hearings may have been accessed.…

  • January 2nd 2024 at 16:15

Crypto-crook Sam Bankman-Fried spared a second trial

Eighth charge related to campaign contributions would just take too dang long

US prosecutors do not plan to proceed with a second trial of convicted and imprisoned crypto-villain Sam Bankman-Fried (SBF), according to a Southern District of New York court letter filed on December 29.…

  • January 2nd 2024 at 07:30

CEO arranged his own cybersecurity, with predictable results

Cleaning up after hackers is easy compared to surviving the politics of consultancy

On Call It’s the last Friday of 2023, but because the need for tech support never goes away neither does On Call, The Register’s Friday column in which readers share their tales of being asked to fix the unfeasible, in circumstances that are often indefensible.…

  • December 29th 2023 at 08:01

A tale of 2 casino ransomware attacks: One paid out, one did not

What can be learned from MGM's and Caesars' infosec moves

Feature The same cybercrime crew broke into two high-profile Las Vegas casino networks over the summer, infected both with ransomware, and stole data belonging to tens of thousands of customers from the mega-resort chains.…

  • December 28th 2023 at 17:05

Kaspersky reveals previously unknown hardware 'feature' exploited in iPhone attacks

'This is no ordinary vulnerability' sec pros explain

Kaspersky's Global Research and Analysis Team (GReAT) has exposed a previously unknown "feature" in Apple iPhones that allowed malware to bypass hardware-based memory protection.…

  • December 28th 2023 at 15:50

Iranian cyberspies target US defense orgs with a brand new backdoor

Also: International cops crackdown on credit card stealers and patch these critical vulns

Infosec in brief Iranian cyberspies are targeting defense industrial base organizations with a new backdoor called FalseFont, according to Microsoft.…

  • December 23rd 2023 at 12:47

Cyber sleuths reveal how they infiltrate the biggest ransomware gangs

How do you break into the bad guys' ranks? Master the lingo and research, research, research

Feature When AlphV/BlackCat's website went dark this month, it was like Chrimbo came early for cybersecurity defenders, some of whom seemingly believed law enforcement had busted one of the most menacing cyber criminal crews.…

  • December 22nd 2023 at 15:55

Lapsus$ teen sentenced to indefinite detention in hospital for Nvidia, GTA cyberattacks

Arion Kurtaj will remain hospitalized until a mental health tribunal says he can leave

Two British teens who were members of the Lapsus$ gang have been sentenced for their roles in a cyber-crime spree that included compromising Uber, Nvidia, and fintech firm Revolut, and also blackmailing Grand Theft Auto maker Rockstar Games.…

  • December 21st 2023 at 22:15

Four in five Apache Struts 2 downloads are for versions featuring critical flaw

Seriously, people - please check the stuff you fetch more carefully

Security vendor Sonatype believes developers are failing to address the critical remote code execution (RCE) vulnerability in the Apache Struts 2 framework, based on recent downloads of the code.…

  • December 21st 2023 at 14:13

Mozilla decides Trusted Types is a worthy security feature

DOM-XSS attacks have become scarce on Google websites since TT debuted

Mozilla last week revised its position on a web security technology called Trusted Types, which it has decided to implement in its Firefox browser.…

  • December 21st 2023 at 11:03

Data loss prevention isn't rocket science, but NASA hasn't made it work in Microsoft 365

Privacy review finds breach response plan is a mess, training could be better, but protection regime mostly holds up

NASA's Office of Inspector General has run its eye over the aerospace agency's privacy regime and found plenty to like – but improvements are needed.…

  • December 21st 2023 at 04:31

Something nasty injected login-stealing JavaScript into 50K online banking sessions

Why keeping your PC secure and free of malware remains paramount

IBM Security has dissected some JavaScript code that was injected into people's online banking pages to steal their login credentials, saying 50,000 user sessions with more than 40 banks worldwide were compromised by the malicious software in 2023.…

  • December 20th 2023 at 23:45

Cybercrooks book a stay in hotel email inboxes to trick staff into spilling credentials

Research highlights how major attacks like those exploiting Booking.com are executed

Cybercriminals are preying on the inherent helpfulness of hotel staff during the sector's busy holiday season.…

  • December 20th 2023 at 21:30

Manchester's finest drowning in paperwork as Freedom of Information requests pile up

Enforcement notice issued months after data regulator schooled police force

Updated Greater Manchester Police (GMP) must clear the backlog of hundreds of Freedom of Information (FOI) Act requests – some years old – or find itself in contempt of court.…

  • December 20th 2023 at 10:28

SSH shaken, not stirred by Terrapin vulnerability

No need to panic, but grab those updates or mitigations anyway just to be safe

A vulnerability in the SSH protocol can be exploited by a well-placed adversary to weaken the security of people's connections, if conditions are right.…

  • December 20th 2023 at 08:34

Philippines, South Korea, Interpol cuff 3,500 suspected cyber scammers, seize $300M

Alleged crims used AI to pose as friends, family, romantic partners – and sold dodgy NFTs

A transnational police operation has resulted in the arrest of 3,500 alleged cybercriminals and the seizure of $300 million in cash and digital assets.…

  • December 20th 2023 at 00:32

Millions of Xfinity customers' info, hashed passwords feared stolen in cyberattack

35M-plus Comcast user IDs accessed by intruder via Citrix Bleed

Millions of Comcast Xfinity subscribers' personal data – including potentially their usernames, hashed passwords, contact details, and secret security question-answers – was likely stolen by one or more miscreants exploiting Citrix Bleed in October.…

  • December 19th 2023 at 20:43

Before you go away for Xmas: You've patched that critical Perforce Server hole, right?

Microsoft bug hunters highlight weaknesses in source-wrangling suite

Four vulnerabilities in Perforce Helix Core Server, including one critical remote code execution bug, should be patched "immediately," according to Microsoft, which spotted the flaws and disclosed them to the software vendor.…

  • December 19th 2023 at 19:57

FBI develops decryptor for BlackCat ransomware, seizes gang's website

Crims laugh it off and resume their activity

Updated The FBI created a decryption tool for the ransomware used by the gang known as BlackCat and/or AlphV, as part of a wider disruption campaign against the extortionists.…

  • December 19th 2023 at 14:59

Qakbot's backbot: FBI-led takedown keeps crims at bay for just 3 months

Experts say malware strain make take years to die off completely

Multiple sources are confirming the resurgence of Qakbot malware mere months after the FBI and other law enforcement agencies shuttered the Windows botnet.…

  • December 19th 2023 at 09:26

Hacktivists boast: We shut down Iran's gas pumps today

Predatory Sparrow previously knocked out railways and a steel plant

Hacktivists reportedly disrupted services at about 70 percent of Iran's gas stations in a politically motivated cyberattack.…

  • December 18th 2023 at 22:45

Mr Cooper cyberattack laid bare: 14.7M people's info stolen, costs hit $25M

Mortgage lender says no evidence of identity theft (yet) after SSNs, DoBs, addresses, more swiped

Mortgage lender Mr Cooper has now admitted almost 14.7 million people's private information, including addresses and bank account numbers, were stolen in an earlier IT security breach, which is expected to cost the business at least $25 million to clean up.…

  • December 18th 2023 at 20:54

Cyber-crooks slip into Vans, trample over operations

IT systems encrypted, personal data pilfered from North Face parent, we're told

A digital break-in has disrupted VF Corp's operations and its ability to fulfill orders, according to the apparel and footwear giant.…

  • December 18th 2023 at 19:45

National Grid latest UK org to zap Chinese kit from critical infrastructure

Move reportedly made after consulting with National Cyber Security Centre

The National Grid is reportedly the latest organization in the UK to begin pulling China-manufactured equipment from its network over cybersecurity fears.…

  • December 18th 2023 at 12:36

MongoDB warns breach of internal systems exposed customer contact info

PLUS: Cancer patients get ransom notes for Christmas, Delta Dental is the latest MOVEit victim, and critical vulns

Infosec in brief MongoDB on Saturday issued an alert warning of "a security incident involving unauthorized access to certain MongoDB corporate systems, which includes exposure of customer account metadata and contact information."…

  • December 18th 2023 at 02:25

Pro-China campaign targeted YouTube with AI avatars

PLUS: Beijing wants ten-minute reporting of infosec incidents; Infosys CFO bails; TikTok's Indonesia comeback approved, for now

Asia In Brief Think tank Australian Strategic Policy Institute (ASPI) last week published details of a campaign that spreads English language pro-China and anti-US narratives on YouTube.…

  • December 18th 2023 at 01:06

Hundreds of thousands of dollars in crypto stolen after Ledger code poisoned

Former worker phished then NPM repo hijacked

Cryptocurrency wallet maker Ledger says someone slipped malicious code into one of its JavaScript libraries to steal more than half a million dollars from victims.…

  • December 16th 2023 at 00:13

Kraft Heinz suggests we simmer down about Snatch ransomware attack claims

Ah, beans

The Kraft Heinz Company says its systems are all up and running as usual as it probes claims that some of its data was stolen by ransomware crooks.…

  • December 15th 2023 at 19:59

NKabuse backdoor harnesses blockchain brawn to hit several architectures

Novel malware adapts delivers DDoS attacks and provides RAT functionality

Incident responders say they've found a new type of multi-platform malware abusing the New Kind of Network (NKN) protocol.…

  • December 15th 2023 at 14:28

To BCC or not to BCC – that is the question data watchdog wants answered

The dos and don'ts of bulk emailing

A data regulator has reminded companies they need to take care while writing emails to avoid unintentionally blurting out personal data.…

  • December 15th 2023 at 09:59

Microsoft seizes websites used to sell phony email accounts to Scattered Spider and other crims

That should solve the global cybercrime problem, right?

Microsoft has taken down US-based infrastructure and websites used by a cybercrime group to sell fraudulent online accounts to other crooks including Scattered Spider, the infamous social-engineering and extortion crew that hacked two Las Vegas casinos over the summer.…

  • December 14th 2023 at 21:54

Russia joins North Korea in sending state-sponsored cyber troops to pick on TeamCity users

National security and infosec authorities band together to help victims sniff out stealthy Russian baddies hiding in networks

Updated The offensive cyber unit linked to Russia's Foreign Intelligence Service (SVR) is exploiting the critical vulnerability affecting the JetBrains TeamCity CI/CD server at scale, and has been since September, authorities warn.…

  • December 14th 2023 at 14:12

Money-grubbing crooks abuse OAuth – and baffling absence of MFA – to do financial crimes

Business email compromise, illicit cryptomining, phishing ... if it makes a dollar, this lot do it

Multiple miscreants are misusing OAuth to automate financially motivated cyber crimes – such as business email compromise (BEC), phishing, large-scale spamming campaigns – and deploying virtual machines to illicitly mine for cryptocurrencies, according to Microsoft.…

  • December 14th 2023 at 11:03

Surprise! Email from personal. <br> information.reveal@gmail.com is not going to contain good news

Internet plod highlight tactics used by cruel Karakurt crime gang

Karakurt, a particularly nasty extortion gang that uses "extensive harassment" to pressure victims into handing over millions of dollars in ransom payments after compromising their IT infrastructure, pose a "significant challenge" for network defenders, we're told.…

  • December 14th 2023 at 09:55

The SANS Holiday Hack Challenge is back!

Skip the sleigh and sail with Santa in this year’s fun, hands-on SANS cybersecurity event

Sponsored Post Whether you are considering a career in cyber security or you already work in the industry, the 2023 SANS Holiday Hack Challenge is a great way of combining festive fun and learning. Who knows, the skills you acquire this holiday season might even help you foil a nefarious hacker at Yuletide next year.…

  • December 14th 2023 at 09:07

Learning the safety language of the cloud

Protecting your cloud from cyber security threats starts by understanding what it’s telling you

Webinar In China, clouds are a symbol of luck. See multiple layering of clouds in a blue sky can mean you are in line to receive eternal happiness.…

  • December 13th 2023 at 14:19

Nearly a million non-profit donors' details left exposed in unsecured database

Trusted by major charities, DonorView publicly exposed children’s names and addresses, among other data

Close to a million records containing personally identifiable information belonging to donors that sent money to non-profits were found exposed in an online database.…

  • December 13th 2023 at 10:30

Cyber security isn’t simple, but it could be

The biggest problem is a tendency to ignore problems you can’t see or haven’t looked for, says SecurityHQ

Sponsored Feature Most experts agree cybersecurity is now so complex that managing it has become a security problem in itself.…

  • December 13th 2023 at 08:59

Think tank report labels NSO, Lazarus as 'cyber mercenaries'

Sure, they do crimes. But the plausible deniability governments adore means they deserve a different label

Cybercrime gangs like the notorious Lazarus group and spyware vendors like Israel's NSO should be considered cyber mercenaries – and become the subject of a concerted international response – according to a Monday report from Delhi-based think tank Observer Research Foundation (ORF).…

  • December 13th 2023 at 06:05

Final Patch Tuesday of 2023 goes out with a bang

Microsoft fixed 36 flaws. Adobe addressed 212. Apple, Google, Cisco, VMware and Atlassian joined the party

It's the last Patch Tuesday of 2023, which calls for celebration – just as soon as you update Windows, Adobe, Google, Cisco, FortiGuard, SAP, VMware, Atlassian and Apple products, of course.…

  • December 13th 2023 at 00:41

Cloud engineer wreaks havoc on bank network after getting fired

Now he's got two years behind bars to think about his bad choices

An ex-First Republic Bank cloud engineer was sentenced to two years in prison for causing more than $220,000 in damage to his former employer's computer network after allegedly using his company-issued laptop to watch pornography.…

  • December 12th 2023 at 19:43

Discord in the ranks: Lone Airman behind top-secret info leak on chat platform

Poor cybersecurity hygiene in the military? Surely not!

There was only one US Air National Guardsman behind the leak of top-secret US military documents on Discord, but his chain of command bears some responsibility for letting it happen on their watch.…

  • December 12th 2023 at 18:00

Northern Ireland cops count human cost of August data breach

Officers potentially targeted by dissidents can't afford to relocate for their safety, while others seek support to change their names

An official review of the Police Service of Northern Ireland's (PSNI) August data breach has revealed the full extent of the impact on staff.…

  • December 12th 2023 at 13:46

BlackBerry squashes plan to spin out its IoT biz

Board and incoming CEO decide reorganizing is better than splitting

BlackBerry has decided its plan to split into two separate companies is not a good idea and will instead reorganize itself into two independent divisions.…

  • December 12th 2023 at 08:23

Interpol moves against human traffickers who enslave people to scam you online

Scum lure folks with promises of good jobs in crypto and then won't let them leave

Hundreds of suspected people smugglers have been arrested, and 163 potential victims rescued from servitude, as part of an Interpol-coordinated operation dubbed "Turquesa V" that targeted cyber criminals who lure workers into servitude to carry out their scams.…

  • December 12th 2023 at 06:30

Proposed US surveillance regime would enlist more businesses

Expanded service provider definition could force cafes and hotels to spy for the feds

Many US businesses may be required to assist in government-directed surveillance – depending upon which of two reform bills before Congress is approved.…

  • December 12th 2023 at 01:45
❌