FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayThe Register - Security

Drivers: We'll take that plain dumb car over a flashy data-spilling internet one, thanks

Now that's a smart move

CES Despite all the buzz around internet-connected smart cars at this year's CES in Las Vegas, most folks don't want vehicle manufacturers sharing their personal data with third parties – and even say they'd consider buying an older or dumber car to protect their privacy and security.…

  • January 12th 2024 at 07:25

eBay to cough up $3M after cyber-stalking couple who dared criticize the souk

Staff sent live cockroaches, porno – and more – in harassment campaign to silence pair

eBay will pay $3 million to settle criminal charges that its security team stalked and harassed a Massachusetts couple in retaliation for their website's critical coverage of the online tat bazaar.…

  • January 11th 2024 at 21:55

Mandiant's brute-forced X account exposes perils of skimping on 2FA

Speculation builds over whether a nearly year-old policy change was to blame

Google-owned security house Mandiant's investigation into how its X account was taken over to push cryptocurrency scams concludes the "likely" cause was a successful brute-force password attack.…

  • January 11th 2024 at 17:00

Infoseccers think attackers backed by China are behind Ivanti zero-day exploits

Customers currently left patchless while attacks are expected to increase

Security experts believe Chinese nation-state attackers are actively exploiting two zero-day vulnerabilities in security products made by Ivanti.…

  • January 11th 2024 at 15:06

Fidelity National now says 1.3M customers had data stolen by cyber-crooks

It's still not calling it ransomware

Fidelity National Financial now says criminals got hold of data belonging to 1.3 million customers after breaking into its IT network in November.…

  • January 10th 2024 at 23:16

Uncle Sam tells hospitals: Meet security standards or no federal dollars for you

Expect new rules in upcoming weeks

US hospitals will be required to meet basic cybersecurity standards before receiving federal funding, according to rules the White House is expected to propose in the next few weeks.…

  • January 10th 2024 at 20:32

Be honest. Would you pay off a ransomware crew?

Today us vultures are debating bans on ransom payments, deplorable tactics by extortionists, and more

Kettle Believe us, we wish there was a simple solution that could stop ransomware dead in its tracks for good.…

  • January 10th 2024 at 19:56

Cybercrooks play dress-up as 'helpful' researchers in latest ransomware ruse

Posing as cyber samaritans, scumbags are kicking folks when they're down

Ransomware victims already reeling from potential biz disruption and the cost of resolving the matter are now being subjected to follow-on extortion attempts by criminals posing as helpful security researchers.…

  • January 10th 2024 at 17:01

ShinyHunters chief phisherman gets 3 years, must cough up $5M

Sebastien Raoult developed various credential-harvesting websites over more than 2 years

A key member of the ShinyHunters cybercrime group is facing three years in the slammer and being forced to return $5 million in criminal proceeds.…

  • January 10th 2024 at 15:30

New year, new updates for security holes in Windows, Adobe, Android and more

Nothing under exploit… The calm before the storm?

Patch Tuesday Microsoft rang in the New Year with a relatively calm Patch Tuesday: Just 49 Windows security updates including fixes for two critical-rated bugs, plus four high-severity Chrome flaws in Microsoft Edge.…

  • January 9th 2024 at 22:26

SEC Twitter hijacked to push fake news of hotly anticipated Bitcoin ETF approval

Buy the hype, sell the, wait, what do we do now?!

Updated The SEC today said its Twitter account was hijacked to wrongly claim it had approved a bunch of hotly anticipated Bitcoin ETFs, causing the cryptocurrency to spike and then slip in price.…

  • January 9th 2024 at 21:48

US Navy sailor swaps sea for cell after accepting bribes from Chinese snoops

Petty officer Wenheng Zhao admitted to taking as many as 14 payoffs in return for non-public military information

A US Naval sailor will face more than two years behind bars after pleading guilty to taking bribes from Chinese spies in exchange for sensitive military information.…

  • January 9th 2024 at 16:30

And that's a wrap for Babuk Tortilla ransomware as free decryptor released

Experts' job made 'straightforward' by crooks failing to update encryption schema after three years

Security researchers have put out an updated decryptor for the Babuk ransomware family, providing a free solution for victims of the Tortilla variant.…

  • January 9th 2024 at 13:18

Apache OFBiz zero-day pummeled by exploit attempts after disclosure

Issue has been patched so be sure to check your implementations

SonicWall says it has observed thousands of daily attempts to exploit an Apache OFBiz zero-day for nearly a fortnight.…

  • January 8th 2024 at 17:45

British Library: Finances remain healthy as ransomware recovery continues

Authors continue to lose out on owed payments as rebuild of digital services drags on

The British Library is denying reports suggesting the recovery costs for its 2023 ransomware attack may reach highs of nearly $9 million as work to restore services remains ongoing.…

  • January 8th 2024 at 13:15

Facebook, Instagram now mine web links you visit to fuel targeted ads

Also: Twitter hijackings, BEC arrest, and critical vulnerabilities

Infosec in brief We gather everyone's still easing themselves into the New Year. Deleting screens of unread emails, putting on a brave face in meetings, and slowly getting up to speed. While you're recovering from the Christmas break, Meta has been busy introducing fresh ways to monetize your web surfing habits while dressing it up as a user experience improvement.…

  • January 8th 2024 at 07:27

Ransomware payment ban: Wrong idea at the wrong time

Won't stop the chaos, may lead to attacks with more dire consequences

Opinion A general ban on ransomware payments, as was floated by some this week, sounds like a good idea. Eliminate extortion as a source of criminal income, and the attacks are undoubtedly going to drop. …

  • January 6th 2024 at 13:24

After injecting cancer hospital with ransomware, crims threaten to swat patients

Remember the good old days when ransomware crooks vowed not to infect medical centers?

Extortionists are now threatening to swat hospital patients β€” calling in bomb threats or other bogus reports to the police so heavily armed cops show up at victims' homes β€” if the medical centers don'tΒ pay the crooks' ransom demands.…

  • January 5th 2024 at 21:54

BreachForums boss busted for bond blunders – including using a VPN

Fitzpatrick faces potentially decades in prison later this month, so may as well get some foreign Netflix in beforehand

The cybercriminal behind BreachForums was this week arrested for violating the terms of his pretrial release and will now be held in custody until his sentencing hearing.…

  • January 5th 2024 at 14:35

Sandworm's Kyivstar attack should serve as a reminder of the Kremlin crew's 'global reach'

'Almost everything' wiped in the telecom attack, says Ukraine's top cyber spy

Russia's Sandworm crew appear to have been responsible for knocking out mobile and internet services to about 24 million users in Ukraine last month with an attack on telco giant Kyivstar.…

  • January 5th 2024 at 07:30

X-ploited: Mandiant restores hijacked Twitter account after attempted crypto heist

Miscreants mock Google-owned security house: 'Change password please'

Miscreants took over security giant Mandiant's Twitter account for several hours on Wednesday in an attempt to steal cryptocurrency, then trolled the Google-owned security shop, telling its admins to change the password.…

  • January 4th 2024 at 20:00

Infosec experts divided over 23andMe's 'victim-blaming' stance on data breach

Users apparently at fault after reusing credentials the company didn't check were already compromised

23andMe users' godawful password practices were supposedly to blame for the biotech company's October data disaster, according to its legal reps.…

  • January 4th 2024 at 18:30

Infostealer malware, weak password leaves Orange Spain RIPE for plucking

No 2FA or special characters to prevent database takeover and BGP hijack

Updated A weak password exposed by infostealer malware is being blamed after a massive outage at Orange Spain disrupted around half of its network's traffic.…

  • January 4th 2024 at 13:15

As lawmakers mull outlawing poor security, what can they really do to tackle online gangs?

Headline-grabbing takedowns are nice, but long-term solutions require short-term sacrifices

Comment In some ways, the ransomware landscape in 2023 remained unchanged from the way it looked in previous years. Vendor reports continue to show a rise in attacks, major organizations are still getting hit, and the inherent issues that enable it as a business model remain unaddressed.…

  • January 4th 2024 at 11:45

Three Chinese balloons float near Taiwanese airbase

Also: Remember that balloon over the US last February? It might have used a US internet provider

Four Chinese balloons have reportedly floated over the Taiwan Strait, three of them crossing over the island's land mass and near its Ching-Chuan-Kang air base before disappearing, according to the Taiwan's defense ministry.…

  • January 4th 2024 at 10:15

Microsoft kills off Windows app installation from the web, again

Unpleasant Christmas package lets malware down the chimney

Microsoft has disabled a protocol that allowed the installation of Windows apps after finding that miscreants were abusing the mechanism to install malware.…

  • January 4th 2024 at 00:02

Freight giant Estes refuses to deliver ransom, says personal data opened and stolen

Pay up, or just decline to submit

One of America's biggest private freight shippers, Estes Express Lines, has told more than 20,000 customers that criminals stole their personal information.…

  • January 3rd 2024 at 21:30

Atos confirms talks with Airbus over cybersecurity wing sale

IT service company's latest move to clear its maturing debts

French IT services provider Atos has entered talks with Airbus to sell its tech security division in an effort to ease its financial burdens.…

  • January 3rd 2024 at 15:45

Copy that? Xerox confirms 'security incident' at subsidiary

Company’s removal from ransomware gang’s leak blog could mean negotiations underway

Xerox has officially confirmed that a cyber baddie broke into the systems of its US subsidiary - a week after INC Ransom claimed to have exfiltrated data from the copier and print giant.…

  • January 3rd 2024 at 13:15

Formal ban on ransomware payments? Asking orgs nicely to not cough up ain't working

With the average demand hitting $1.5 million, something's gotta change

Emsisoft has called for a complete ban on ransom payments following another record-breaking year of digital extortion.…

  • January 3rd 2024 at 08:30

Google password resets not enough to stop these info-stealing malware strains

Now every miscreant is jumping on Big G's OAuth account security hole

Updated Security researchers say info-stealing malware can still access victims' compromised Google accounts even after passwords have been changed.…

  • January 2nd 2024 at 19:58

Court hearings become ransomware concern after justice system breach

From legal proceedings to potential YouTube fodder

The court system of Victoria, Australia, was subject to a suspected ransomware attack in which audiovisual recordings of court hearings may have been accessed.…

  • January 2nd 2024 at 16:15

Crypto-crook Sam Bankman-Fried spared a second trial

Eighth charge related to campaign contributions would just take too dang long

US prosecutors do not plan to proceed with a second trial of convicted and imprisoned crypto-villain Sam Bankman-Fried (SBF), according to a Southern District of New York court letter filed on December 29.…

  • January 2nd 2024 at 07:30

CEO arranged his own cybersecurity, with predictable results

Cleaning up after hackers is easy compared to surviving the politics of consultancy

On Call It’s the last Friday of 2023, but because the need for tech support never goes away neither does On Call, The Register’s Friday column in which readers share their tales of being asked to fix the unfeasible, in circumstances that are often indefensible.…

  • December 29th 2023 at 08:01

A tale of 2 casino ransomware attacks: One paid out, one did not

What can be learned from MGM's and Caesars' infosec moves

Feature The same cybercrime crew broke into two high-profile Las Vegas casino networks over the summer, infected both with ransomware, and stole data belonging to tens of thousands of customers from the mega-resort chains.…

  • December 28th 2023 at 17:05

Kaspersky reveals previously unknown hardware 'feature' exploited in iPhone attacks

'This is no ordinary vulnerability' sec pros explain

Kaspersky's Global Research and Analysis Team (GReAT) has exposed a previously unknown "feature" in Apple iPhones that allowed malware to bypass hardware-based memory protection.…

  • December 28th 2023 at 15:50

Iranian cyberspies target US defense orgs with a brand new backdoor

Also: International cops crackdown on credit card stealers and patch these critical vulns

Infosec in brief Iranian cyberspies are targeting defense industrial base organizations with a new backdoor called FalseFont, according to Microsoft.…

  • December 23rd 2023 at 12:47

Cyber sleuths reveal how they infiltrate the biggest ransomware gangs

How do you break into the bad guys' ranks? Master the lingo and research, research, research

Feature When AlphV/BlackCat's website went dark this month, it was like Chrimbo came early for cybersecurity defenders, some of whom seemingly believed law enforcement had busted one of the most menacing cyber criminal crews.…

  • December 22nd 2023 at 15:55

Lapsus$ teen sentenced to indefinite detention in hospital for Nvidia, GTA cyberattacks

Arion Kurtaj will remain hospitalized until a mental health tribunal says he can leave

Two British teens who were members of the Lapsus$ gang have been sentenced for their roles in a cyber-crime spree that included compromising Uber, Nvidia, and fintech firm Revolut, and also blackmailing Grand Theft Auto maker Rockstar Games.…

  • December 21st 2023 at 22:15

Four in five Apache Struts 2 downloads are for versions featuring critical flaw

Seriously, people - please check the stuff you fetch more carefully

Security vendor Sonatype believes developers are failing to address the critical remote code execution (RCE) vulnerability in the Apache Struts 2 framework, based on recent downloads of the code.…

  • December 21st 2023 at 14:13

Mozilla decides Trusted Types is a worthy security feature

DOM-XSS attacks have become scarce on Google websites since TT debuted

Mozilla last week revised its position on a web security technology called Trusted Types, which it has decided to implement in its Firefox browser.…

  • December 21st 2023 at 11:03

Data loss prevention isn't rocket science, but NASA hasn't made it work in Microsoft 365

Privacy review finds breach response plan is a mess, training could be better, but protection regime mostly holds up

NASA's Office of Inspector General has run its eye over the aerospace agency's privacy regime and found plenty to like – but improvements are needed.…

  • December 21st 2023 at 04:31

Something nasty injected login-stealing JavaScript into 50K online banking sessions

Why keeping your PC secure and free of malware remains paramount

IBM Security has dissected some JavaScript code that was injected into people's online banking pages to steal their login credentials, saying 50,000 user sessions with more than 40 banks worldwide were compromised by the malicious software in 2023.…

  • December 20th 2023 at 23:45

Cybercrooks book a stay in hotel email inboxes to trick staff into spilling credentials

Research highlights how major attacks like those exploiting Booking.com are executed

Cybercriminals are preying on the inherent helpfulness of hotel staff during the sector's busy holiday season.…

  • December 20th 2023 at 21:30

Manchester's finest drowning in paperwork as Freedom of Information requests pile up

Enforcement notice issued months after data regulator schooled police force

Updated Greater Manchester Police (GMP) must clear the backlog of hundreds of Freedom of Information (FOI) Act requests – some years old – or find itself in contempt of court.…

  • December 20th 2023 at 10:28

SSH shaken, not stirred by Terrapin vulnerability

No need to panic, but grab those updates or mitigations anyway just to be safe

A vulnerability in the SSH protocol can be exploited by a well-placed adversary to weaken the security of people's connections, if conditions are right.…

  • December 20th 2023 at 08:34

Philippines, South Korea, Interpol cuff 3,500 suspected cyber scammers, seize $300M

Alleged crims used AI to pose as friends, family, romantic partners – and sold dodgy NFTs

A transnational police operation has resulted in the arrest of 3,500 alleged cybercriminals and the seizure of $300 million in cash and digital assets.…

  • December 20th 2023 at 00:32

Millions of Xfinity customers' info, hashed passwords feared stolen in cyberattack

35M-plus Comcast user IDs accessed by intruder via Citrix Bleed

Millions of Comcast Xfinity subscribers' personal data – including potentially their usernames, hashed passwords, contact details, and secret security question-answers – was likely stolen by one or more miscreants exploiting Citrix Bleed in October.…

  • December 19th 2023 at 20:43

Before you go away for Xmas: You've patched that critical Perforce Server hole, right?

Microsoft bug hunters highlight weaknesses in source-wrangling suite

Four vulnerabilities in Perforce Helix Core Server, including one critical remote code execution bug, should be patched "immediately," according to Microsoft, which spotted the flaws and disclosed them to the software vendor.…

  • December 19th 2023 at 19:57

FBI develops decryptor for BlackCat ransomware, seizes gang's website

Crims laugh it off and resume their activity

Updated The FBI created a decryption tool for the ransomware used by the gang known as BlackCat and/or AlphV, as part of a wider disruption campaign against the extortionists.…

  • December 19th 2023 at 14:59

Qakbot's backbot: FBI-led takedown keeps crims at bay for just 3 months

Experts say malware strain make take years to die off completely

Multiple sources are confirming the resurgence of Qakbot malware mere months after the FBI and other law enforcement agencies shuttered the Windows botnet.…

  • December 19th 2023 at 09:26

Hacktivists boast: We shut down Iran's gas pumps today

Predatory Sparrow previously knocked out railways and a steel plant

Hacktivists reportedly disrupted services at about 70 percent of Iran's gas stations in a politically motivated cyberattack.…

  • December 18th 2023 at 22:45

Mr Cooper cyberattack laid bare: 14.7M people's info stolen, costs hit $25M

Mortgage lender says no evidence of identity theft (yet) after SSNs, DoBs, addresses, more swiped

Mortgage lender Mr Cooper has now admitted almost 14.7 million people's private information, including addresses and bank account numbers, were stolen in an earlier IT security breach, which is expected to cost the business at least $25 million to clean up.…

  • December 18th 2023 at 20:54

Cyber-crooks slip into Vans, trample over operations

IT systems encrypted, personal data pilfered from North Face parent, we're told

A digital break-in has disrupted VF Corp's operations and its ability to fulfill orders, according to the apparel and footwear giant.…

  • December 18th 2023 at 19:45

National Grid latest UK org to zap Chinese kit from critical infrastructure

Move reportedly made after consulting with National Cyber Security Centre

The National Grid is reportedly the latest organization in the UK to begin pulling China-manufactured equipment from its network over cybersecurity fears.…

  • December 18th 2023 at 12:36

MongoDB warns breach of internal systems exposed customer contact info

PLUS: Cancer patients get ransom notes for Christmas, Delta Dental is the latest MOVEit victim, and critical vulns

Infosec in brief MongoDB on Saturday issued an alert warning of "a security incident involving unauthorized access to certain MongoDB corporate systems, which includes exposure of customer account metadata and contact information."…

  • December 18th 2023 at 02:25

Pro-China campaign targeted YouTube with AI avatars

PLUS: Beijing wants ten-minute reporting of infosec incidents; Infosys CFO bails; TikTok's Indonesia comeback approved, for now

Asia In Brief Think tank Australian Strategic Policy Institute (ASPI) last week published details of a campaign that spreads English language pro-China and anti-US narratives on YouTube.…

  • December 18th 2023 at 01:06

Hundreds of thousands of dollars in crypto stolen after Ledger code poisoned

Former worker phished then NPM repo hijacked

Cryptocurrency wallet maker Ledger says someone slipped malicious code into one of its JavaScript libraries to steal more than half a million dollars from victims.…

  • December 16th 2023 at 00:13

Kraft Heinz suggests we simmer down about Snatch ransomware attack claims

Ah, beans

The Kraft Heinz Company says its systems are all up and running as usual as it probes claims that some of its data was stolen by ransomware crooks.…

  • December 15th 2023 at 19:59

NKabuse backdoor harnesses blockchain brawn to hit several architectures

Novel malware adapts delivers DDoS attacks and provides RAT functionality

Incident responders say they've found a new type of multi-platform malware abusing the New Kind of Network (NKN) protocol.…

  • December 15th 2023 at 14:28
❌