FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayThe Register - Security

First LockBit, now BreachForums: Are cops winning the war or just a few battles?

TLDR: Peace in our time is really really hard

Interview On Wednesday the FBI and international cops celebrated yet another cybercrime takedown – of ransomware brokerage site BreachForums – just a week after doxing and imposing sanctions on the LockBit ransomware crew's kingpin, and two months after compromising the gang's website.…

  • May 17th 2024 at 11:37

Crims abusing Microsoft Quick Assist to deploy Black Basta ransomware

Spoiler alert: it's not really IT support controlling your device

A cybercrime gang has been abusing Microsoft's Quick Assist application in social engineering attacks that ultimately allow the crew to infect victims with Black Basta ransomware.…

  • May 16th 2024 at 23:30

EU probes Meta over its provisions for protecting children

Has social media biz done enough to comply with Digital Services Act? Maybe not

The European Commission has opened formal proceedings to assess whether Meta, the provider of Facebook and Instagram, may have breached the Digital Services Act (DSA) in areas linked to the protection of minors.…

  • May 16th 2024 at 15:45

Stifling Beijing in cyberspace is now British intelligence’s number-one mission

Annual conference of cyber intel unit shows UK's alarm over China blaring louder than ever

CyberUK Regular attendees of CYBERUK, the annual conference hosted by British intelligence unit the National Cyber Security Centre (NCSC), will know that in addition to the expected conference panels, there is usually an interwoven theme to proceedings.…

  • May 16th 2024 at 14:45

NCSC CTO: Broken market must be fixed to usher in new tech

It may take ten years but vendors must be held accountable for the vulnerabilities they introduce

CYBERUK National Cyber Security Centre (NCSC) CTO Ollie Whitehouse kicked off day two of Britain's cyber watchdog's annual shindig, CYBERUK, with a tirade about the tech market, pulling it apart to demonstrate why he believes it's at fault for many of the security problems the industry is facing today. …

  • May 16th 2024 at 09:33

FBI takes down BreachForums ransomware website and Telegram channel

No more illicit gains, for a while at least

The FBI, in combination with police around the world, have taken control of the website and Telegram channel of ransomware brokerage site BreachForums.…

  • May 15th 2024 at 22:31

Crook brags about US Army and $75B defense biz pwnage

More government data allegedly stolen by prolific criminals

An extortionist claims to have stolen files from the US Army Aviation and Missile Command in August 2023, and now claims they are selling access to a $75 billion aerospace and defense company.…

  • May 15th 2024 at 22:30

Improving cyber defense with open source SIEM and XDR

Developing an effective strategy is a continuous process which requires recurring evaluation and refinement

Partner Content A cyber defense strategy outlines policies, procedures, and technologies to prevent, detect, and respond to cyber attacks. This helps avoid financial loss, reputational damage, and legal repercussions.…

  • May 15th 2024 at 17:10

Microsoft fixes a bug abused in QakBot attacks plus a second under exploit

Plus: Google Chrome, Apple bugs also exploited in the wild

Happy May Patch Tuesday. We've got a lot of vendors joining this month's patchapalooza, which includes a handful of bugs that have been exploited β€” either in the wild or at Pwn2Own β€” and now fixed by Microsoft, Apple, Google and VMware.…

  • May 14th 2024 at 22:15

FCC names and shames Royal Tiger AI robocall crew

Agency is on the lookout for a Prince among men

The US Federal Communications Commission has named its first robocall gang, dubbing the crew "Royal Tiger," and detailed its operations in an attempt to encourage international action against the scammers.…

  • May 14th 2024 at 21:30

Cybersec chiefs team up with insurers to say 'no' to ransomware bullies

Guidebook aims to undermine the criminal business model

The latest effort to reduce the number of ransom payments sent to cybercriminals in the UK involves the country's National Cyber Security Centre (NCSC) locking arms with insurance associations.…

  • May 14th 2024 at 16:15

Telegram CEO calls out rival Signal, claiming it has ties to US government

Drama between two of the leading secure messaging services

Telegram CEO Pavel Durov issued a scathing criticism of Signal, alleging the messaging service is not secure and has ties to US intelligence agencies.…

  • May 14th 2024 at 14:30

Google, Apple gear to raise tracking tag stalker alarm

After years of people being victimized, it's about time

Google and Apple are rolling out an anti-stalking feature for Android 6.0+ and iOS 17.5 that will issue an alert if some scumbag is using a gadget like an AirTag or similar to clandestinely track the user.…

  • May 14th 2024 at 13:30

Visualize your critical cyber risks

How to empower CISOs and mitigate cyber security risks in a rapidly evolving threat landscape

Sponsored Post Defending against the cyber threats of today isn't dissimilar to protecting a medieval castle from attack a thousand years ago.…

  • May 14th 2024 at 09:39

NHS Digital hints at exploit sightings of Arcserve UDP vulnerabilities

When PoC code is released within a day of disclosure, it's only a matter of time before attacks kick off

The UK's NHS is warning of the possibility that vulnerabilities in Arcserve Unified Data Protection (UDP) software are being actively exploited.…

  • May 14th 2024 at 09:29

'Cyberattack' shutters Christie's website days before $840M art mega-auction

Going once, going twice, going offline

Christie's website remains offline as of Monday after a "technology security issue" shut it down Thursday night – just days before the venerable auction house planned to flog $840 million of art.…

  • May 13th 2024 at 19:36

Uncle Sam urges action after Black Basta ransomware infects Ascension

Emergency ambulances diverted while techies restore systems

US information security agencies have published advisories on how to detect and thwart the Black Basta ransomware gang – after the crew claimed responsibility for the recent attack on US healthcare provider Ascension.…

  • May 13th 2024 at 18:30

AI red-teaming tools helped X-Force break into a major tech manufacturer 'in 8 hours'

Hint: It's the 'the largest' maker of a key computer component

RSAC An unnamed tech business hired IBM's X-Force penetration-testing team to break into its network to test its security. With the help of AI automation, Big Blue said it was able to do so within hours.…

  • May 13th 2024 at 14:00

Europol confirms incident following alleged auction of staff data

Intelligence-sharing platform remains down for maintenance

Europol is investigating a cybercriminal's claims that they stole confidential data from a number of the agency's sources.…

  • May 13th 2024 at 11:45

Facing down the triple threat

The Register’s Tim Philips gets down and dirty on cyber security in this interview with Rubrik CISO Richard Cassidy

Sponsored Post There were hard words about the state of Britain's cyber security in parliament recently, but it's not just the country's critical national infrastructure which may be underprepared to tackle the army of hackers and nation state-backed cyber criminals intent on causing it disruption.…

  • May 13th 2024 at 09:24

You want us to think of the children? Couldn't agree more

But breaking E2EE and blanket bans aren't thinking at all

Opinion If your cranky uncle was this fixated about anything, you'd always be somewhere else at Christmas. Yet here we are again. Europol has been sounding off at Meta for harming children. Not for the way it's actually harming children, but because – repeat after me – end-to-end encryption is hiding child sexual abuse material from the eyes of the law. "E2EE = CSAM" is the new slogan of fear.…

  • May 13th 2024 at 08:30

ASEAN organizations dealing with growing cyber menace

Cloudflare’s Everywhere Security platform offers unified protection for on and off-premise applications

Sponsored Post Organizations across the Asia Pacific need to urgently ramp up their IT security infrastructures in response to a significantly increasing level of cyber threats, security experts have warned.…

  • May 13th 2024 at 02:47

Encrypted mail service Proton hands suspect's personal info to local cops

Plus: Google patches another Chrome security hole, and more

Infosec in brief Encrypted email service Proton Mail is in hot water again from some quarters, and for the same thing that earned it flack before: Handing user data over to law enforcement. …

  • May 13th 2024 at 02:21

Ransomware negotiator weighs in on the extortion payment debate with El Reg

As gang tactics get nastier while attacks hit all-time highs

Interview Ransomware hit an all-time high last year, with more than 60 criminal gangs listing at least 4,500 victims – and these infections don't show any signs of slowing.…

  • May 12th 2024 at 20:03

Critical infrastructure security will stay poor until everyone pulls together

Claroty CEO Yaniv Vardi tells us what's needed to defend vital networks

Interview Take a glance at the cybersecurity headlines of late, and you'll see a familiar phrase that keeps cropping up: Critical infrastructure. …

  • May 11th 2024 at 17:15

Iran most likely to launch destructive cyber-attack against US – ex-Air Force intel analyst

But China's the most technologically advanced

Interview China remains the biggest cyber threat to the US government, America's critical infrastructure, and its private-sector networks, the nation's intelligence community has assessed.…

  • May 10th 2024 at 21:01

Cybercriminals hit jackpot as 500k+ Ohio Lottery lovers lose out on their personal data

Not a lotto luck for these powerball hunters

More than half a million gamblers with a penchant for powerballs will be receiving some fairly unwelcome news very soon, if not already, as cybercriminals have made off with their personal data.…

  • May 10th 2024 at 18:15

Microsoft's Brad Smith summoned by Homeland Security committee over 'cascade' of infosec failures

Major intrusions by both China and Russia leave a lot to be answered for

The US government wants to make Microsoft's vice chair and president, Brad Smith, the latest tech figurehead to field questions from a House committee on its recent cybersecurity failings.…

  • May 10th 2024 at 15:01

GhostStripe attack haunts self-driving cars by making them ignore road signs

Cameras tested are specced for Baidu's Apollo

Six boffins mostly hailing from Singapore-based universities say they can prove it's possible to interfere with autonomous vehicles by exploiting the machines' reliance on camera-based computer vision and cause them to not recognize road signs.…

  • May 10th 2024 at 14:04

'Four horsemen of cyber' look back on 2008 DoD IT breach that led to US Cyber Command

'This was a no sh*tter'

RSAC A malware-laced USB stick, inserted into a military laptop at a base in Afghanistan in 2008, led to what has been called the worst military breach in US history, and to the creation of the US Cyber Command.…

  • May 10th 2024 at 13:00

Ex-White House election threat hunter weighs in on what to expect in November

Spoiler alert: We're gonna talk about AI

Interview Mick Baccio, global security advisor at Splunk, has watched the evolution of election security threats in real time.…

  • May 9th 2024 at 21:03

US faith-based healthcare org Ascension says 'cybersecurity event' disrupted clinical ops

Sources claim ransomware is to blame

Healthcare organization Ascension is the latest of its kind in the US to say its network has been affected by what it believes to be a "cybersecurity event."…

  • May 9th 2024 at 19:15

Dell customer order database of '49M records' stolen, now up for sale on dark web

IT giant tries to downplay leak as just names, addresses, info about kit

Dell has confirmed information about its customers and their orders has been stolen from one of its portals. Though the thief claimed to have swiped 49 million records, which are now up for sale on the dark web, the IT giant declined to say how many people may be affected.…

  • May 9th 2024 at 17:55

America's enemies targeting US critical infrastructure should be 'wake-up call'

Having China, Russia, and Iran routinely rummaging around is cause for concern, says ex-NSA man

RSAC Digital intruders from China, Russia, and Iran breaking into US water systems this year should be a "wake-up call," according to former National Security Agency cyber boss Rob Joyce.…

  • May 9th 2024 at 17:45

What do Europeans, Americans and Australians have in common? Scammed $50M by fake e-stores

BogusBazaar ripped off shoppers and scraped card details, but not in China

A crime ring dubbed BogusBazaar has scammed 850,000 people out of tens of millions of dollars via a network of dodgy shopping websites.…

  • May 8th 2024 at 23:22

Undersea cables must have high-priority protection before they become top targets

It's 'essential to national security' ex-Navy intel officer tells us

Interview As undersea cables carry increasing amounts of information, cyber and physical attacks against them will cause a greater impact on the wider internet.…

  • May 8th 2024 at 21:01

CISA boss: Secure code is the 'only way to make ransomware a shocking anomaly'

And it would seriously inconvenience the Chinese and Russians, too

RSAC There's a way to vastly reduce the scale and scope of ransomware attacks plaguing critical infrastructure, according to CISA director Jen Easterly: Make software secure by design.…

  • May 8th 2024 at 16:00

One year on, universities org admits MOVEit attack hit data of 800K people

Nearly 95M people in total snagged by flaw in file transfer tool

Just short of a year after the initial incident, the state of Georgia's higher education government agency has confirmed that it was the victim of an attack on its systems affecting the data of 800,000 people.…

  • May 8th 2024 at 14:00

UK opens investigation of MoD payroll contractor after confirming attack

China vehemently denies involvement

UK Government has confirmed a cyberattack on the payroll system used by the Ministry of Defence (MoD) led to "malign" forces accessing data on current and a limited number of former armed forces personnel.…

  • May 8th 2024 at 11:15

Ten years since the first corp ransomware, Mikko HyppΓΆnen sees no end in sight

On the plus side, infosec's a good bet for a long, stable career

Interview This year is an unfortunate anniversary for information security: We're told it's a decade since ransomware started infecting corporations.…

  • May 8th 2024 at 07:31

From infosec to skunks, RSA Conference SVP spills the tea

Keynotes, physical security, playlists … the buck stops with Linda Gray Martin

Interview The 33rd RSA Conference is underway this week, and no one feels that more acutely than the cybersecurity event's SVP Linda Gray Martin.…

  • May 8th 2024 at 04:03

UnitedHealth's 'egregious negligence' led to Change Healthcare ransomware infection

'I'm blown away by the fact that they weren't using MFA'

Interview The cybersecurity practices that led up to the stunning Change Healthcare ransomware infection indicate "egregious negligence" on the part of parent company UnitedHealth, according to Tom Kellermann, SVP of cyber strategy at Contrast Security.…

  • May 8th 2024 at 02:58

America's War on Drugs and Crime will be AI powered, says Homeland Security boss

Or at least it might well be if these trial programs work out, with some civil lib oversight etc etc etc

RSAC AI is a double-edged sword in that the government can see ways in which the tech can protect and also be used to attack Americans, says US Homeland Security Secretary Alejandro Mayorkas.…

  • May 7th 2024 at 23:47

Watch out for rogue DHCP servers decloaking your VPN connections

Avoid traffic-redirecting snoops who have TunnelVision

A newly discovered vulnerability undermines countless VPN clients in that their traffic can be quietly routed away from their encrypted tunnels and intercepted by snoops on the network.…

  • May 7th 2024 at 21:50

CISA's early-warning system helped critical orgs close 852 ransomware holes

In the first year alone, that's saved us all a lot of money and woe

Interview As ransomware gangs step up their attacks against healthcare, schools, and other US critical infrastructure, CISA is ramping up a program to help these organizations fix flaws exploited by extortionists in the first place.…

  • May 7th 2024 at 19:58

TikTok sues America to undo divest-or-die law

Nothing like folks in Beijing lecturing us on the Constitution

TikTok and its China-based parent ByteDance sued the US government today to prevent the forced sale or shutdown of the video-sharing giant.…

  • May 7th 2024 at 19:02

Cops finally unmask 'LockBit kingpin' after two-month tease

Dmitry Yuryevich Khoroshev's $10M question is answered at last

Updated Police have finally named who they firmly believe is the kingpin of the LockBit ransomware ring: Dmitry Yuryevich Khoroshev.…

  • May 7th 2024 at 15:08

The truth about KEV: CISA’s vuln deadlines good influence on private-sector patching

More work to do as most deadlines are missed and worst bugs still take months to fix

The deadlines associated with CISA's Known Exploited Vulnerabilities (KEV) catalog only apply to federal agencies, but fresh research shows they're having a positive impact on private organizations too.…

  • May 7th 2024 at 11:30

Brit security guard biz exposes 1.2M files via unprotected database

Thousands of ID cards plus CCTV snaps of suspects found online

Exclusive A UK-based physical security business let its guard down, exposing nearly 1.3 million documents via a public-facing database, according to an infosec researcher.…

  • May 7th 2024 at 10:30

Ransomware crooks now SIM swap executives' kids to pressure their parents

Extortionists turning to 'psychological attacks', Mandiant CTO says

RSAC Ransomware infections have morphed into "a psychological attack against the victim organization," as criminals use increasingly personal and aggressive tactics to force victims to pay up, according to Google-owned Mandiant.…

  • May 7th 2024 at 02:10

Meta, Spotify break Apple's device fingerprinting rules – new claim

And the iOS titan doesn't seem that bothered with data leaking out

Updated Last week, Apple began requiring iOS developers justify the use of a specific set of APIs that could be used for device fingerprinting.…

  • May 7th 2024 at 01:05

Fed-run LockBit site back from the dead and vows to really spill the beans on gang

After very boring first reveal, this could be the real deal

Updated Cops around the world have relaunched LockBit's website after they shut it down in February – and it's now counting down the hours to reveal documents that could unmask the ransomware group.…

  • May 6th 2024 at 23:42

Mastodon delays firm fix for link previews DDoSing sites

Decentralization is great until everyone wants to grab data from your web server

Updated Mastodon has pushed back an update that's expected to fully address the issue of link previews sparking accidental distributed denial of service (DDoS) attacks.…

  • May 6th 2024 at 19:50

Consultant charged over $1.5M extortion scheme against IT giant

Accused of stealing data after losing his job

A cybersecurity expert could face a 20-year prison sentence after being accused of trying to extort a multinational IT infrastructure services biz to the tune of $1.5 million.…

  • May 6th 2024 at 17:00

CISA says 'no more' to decades-old directory traversal bugs

Recent attacks on healthcare thrust infosec agency into alert mode

CISA is calling on the software industry to stamp out directory traversal vulnerabilities following recent high-profile exploits of the 20-year-old class of bugs.…

  • May 6th 2024 at 13:37

Germany points finger at Fancy Bear for widespread 2023 hacks, DDoS attacks

Also: Microsoft promises to git gud on cybersecurity; unqualified attackers are targeting your water systems, and more

Infosec in brief It was just around a year ago that a spate of allegedly Russian-orchestrated cyberattacks hit government agencies in Germany, and now German officials claim to know for a fact who did it: APT28, or Fancy Bear, a Russian threat actor linked to the GRU intelligence service.…

  • May 6th 2024 at 02:30

End-to-end encryption may be the bane of cops, but they can't close that Pandora's Box

Internet Society's Robin Wilton tells us the war on privacy won't be won by the plod

interview Police can complain all they like about strong end-to-end encryption making their jobs harder, but it doesn't matter because the technology is here and won't go away. …

  • May 5th 2024 at 13:30

Dating apps kiss'n'tell all sorts of sensitive personal info

Privacy Not Included label slapped on 22 of 25 top lonely-hearts corners

Interview Dating apps ask people to disclose all kinds of personal information in the hope of finding them love, or at least a hook-up.…

  • May 4th 2024 at 18:00

Kaspersky hits back at claims its AI helped Russia develop military drone systems

Ready, set, sanctions?

AI built by Russian infosec firm Kaspersky was used in Russian drones for its war on Ukraine, volunteer intelligence gatherers claim.…

  • May 3rd 2024 at 21:30

It may take decade to shore up software supply chain security, says infosec CEO

Sure, we're waking to the risk, but we gotta get outta bed, warns Endor Labs founder Varun Badhwar

interview The more cybersecurity news you read, the more often you seem to see a familiar phrase: Software supply chain (SSC) vulnerabilities. Varun Badhwar, founder and CEO at security firm Endor Labs, doesn't believe that's by coincidence. …

  • May 3rd 2024 at 17:30
❌