Also, don’t download that ‘ChatGPT Windows client,’ and this week’s critical vulnerabilities to keep an eye on In brief A Russian national has been hit with a five-count indictment alleging he smuggled hardware and software used for counterintelligence operations out…
Tag: The Register – Security
Microsoft: For better security, scan more Exchange server objects
Software giant takes some files and processes off the exclusion list Microsoft is recommending that Exchange server users scan certain objects for viruses and other threats that until now had been excluded.… This article has been indexed from The Register…
‘Ethical hacker’ among ransomware suspects cuffed by Dutch cops
Beware the Dark Side Dutch police have arrested three men for their alleged involvement with a ransomware gang that stole sensitive data and extorted hundreds of thousands of euros from thousands of companies.… This article has been indexed from The…
Kremlin claims Ukraine hackers behind fake missile strike alerts
Ten cities panic after emergency systems start Putin out warnings of an impending attack Millions of Russians in almost a dozen cities throughout the country were greeted Wednesday morning by radio alerts, text messages, and sirens warning of an air…
Telus source code, staff info for sale on dark web forum
$50k buys you ‘1,000 unique repositories’ that may or may not be legit Canadian communications giant Telus is investigating whether crooks have stolen employee data and its source code, all of which is being offered for sale on a criminal…
Google destroyed evidence for antitrust battle, Feds complain
rm -rf’ing staff chat logs can’t go unpunished, says Uncle Sam The US Department of Justice (DoJ) asked the judge hearing its antitrust case against Google to sanction the search advertising giant for destruction of evidence.… This article has been…
Bitcoin mining rig found stashed in school crawlspace
Don’t blame the kids! Ex-city employee charged with $17k power theft Pics A Massachusetts man accused of using his job as a city’s assistant facilities director to hide a cryptocurrency mining operation in the crawlspace of a school has surrendered…
European Commission bans TikTok from staff gadgets
Cyber Europe cyber worried about cyber threats, doesn’t cyber use the other C word (China) The European Commission on Thursday banned the use of the TikTok short video app on corporate devices and on the personal devices of employees enrolled…
Microsoft grows automated assault disruption to cover BEC, ransomware campaigns
There’s no HumOR in cyberattacks At last year’s Ignite show, Microsoft talked up a capability in its 365 Defender that automatically detects and disrupts a cyberattack while still in progress, hopefully stopping or reducing any resulting damage. Now it’s extending…
Ukraine invasion blew up Russian cybercrime alliances
Study: Old pacts ditched the moment Moscow moved in The so-called “brotherhood” or Russian-speaking cybercriminals is yet another casualty of the war in Ukraine, albeit one that few outside of Moscow are mourning.… This article has been indexed from The…
Suspected Russian NLBrute malware boss extradited to US
Dariy Pankov accused of infiltrating systems, selling tool and passwords to other miscreants A Russian national accused of developing the NLBrute brute-force hacking tool has made his first court appearance this week in Florida over accusations that he used the…
Dole production plants crippled by ransomware, stores run short
Yes, we have no bananas, and things aren’t looking peachy on the salad front Irish agricultural megacorp Dole has confirmed that it has fallen victim to a ransomware infection that reportedly shut down some of its North American production plants.……
FTX fiasco founder SBF faces further fraud charges
Fake donors allegedly padded politicians’ pockets, both Republican and Democrat FTX founder Sam Bankman-Fried’s eight-count indictment related to the collapse of his crypto empire has been superseded by a new 12-count indictment unsealed in New York which provide graphic details…
Sensitive DoD emails exposed by unsecured Azure server
AWS, Google and Oracle may benefit as Microsoft blames the Pentagon and the Pentagon blames Microsoft A hole in a Department of Defense email server operated by Microsoft left more than a terabyte of sensitive data exposed less than a…
Datacenters in China, Singapore cracked by crims who then targeted tenants
Infiltrators tried to create fake remote hands tasks, alter visitor lists Criminals have targeted datacenter operators in Singapore and China, tapping into their CCTV cameras, accessing their tenant lists and then attacking those customers.… This article has been indexed from…
Russian authorities claim Ukraine hackers are behind fake missile strike alerts
Ten cities panic after emergency systems start Putin out warnings of an impending attack Millions of Russians in almost a dozen cities throughout the country were greeted Wednesday morning by radio alerts, text messages, and sirens warning of an air…
Datacenters in China, Singapore, cracked by crims who then targeted tenants
Infiltrators tried to create fake remote hands tasks, alter visitor lists Criminals have targeted datacenter operators in Singapore and China, tapping into their CCTV cameras, accessing their tenant lists and then attacking those customers.… This article has been indexed from…
Lawyers join forces to fight common enemy: The SEC and its probes into cyber-victims
Did the financial watchdog just do the impossible and herd cats? More than 80 law firms say they are “deeply troubled” by the US Securities and Exchange Commission’s demand that Covington & Burling hand over names of its clients whose…
Open source software has its perks, but supply chain risks can’t be ignored
While app development is faster and easier, security is still a concern Analysis Open source components play an increasingly central role in the software development scene, proving to be a boon in a time of continuous integration and deployment, DevOps,…
DNA testing biz vows to improve infosec after criminals break into database it didn’t know it had
Settles lawsuit with two states after wider leak that affected millions A DNA diagnostics company will pay $400,000 and tighten its security in the wake of a 2021 attack where criminals broke into its network and swiped personal data on…
Global threats fuel cyber defence training
SANS Institute ramps up delivery of new security training courses to help keep info sec pros ahead of cyber criminals Sponsored Post The global impact of cyber threats on businesses, governments, organisations and individuals around the world is ramping up…
Accidental WhatsApp account takeovers? It’s a thing
Blame it on phone number recycling (yes, that’s a thing, too) A stranger may be receiving your private WhatsApp messages, and also be able to send messages to all of your contacts – if you have changed your phone number…
Locking down the remote printer
No longer a blind spot, printer security is now a grown up conversation says Brother Sponsored Feature As businesses journey deeper into an era of restless digital change, it’s surprising how inventions from past decades still define the office environment.……
DNA testing biz vows to improve infosec after criminals break into database it forgot it had
Settles lawsuit with two states after wider leak that affected millions A DNA diagnostics company will pay $400,000 and tighten its security in the wake of a 2021 attack where criminals broke into its network and swiped personal data on…
What Mary, Queen of Scots, can teach today’s cybersec royalty
Tech has changed in 400 years. The rules haven’t Opinion Mary, Queen of Scots, was a hapless CEO, even by the standards of 1600s Europe. Mother of the first Stuart King of England, James I (and VI of Scotland; let’s…
GoDaddy joins the dots and realizes it’s been under attack for three years
Also: Russia may legalize hacking; Oakland declares ransomware emergency; the CVEs you should know about this week In brief Web hosting and domain name concern GoDaddy has disclosed a fresh attack on its infrastructure, and concluded that it is one…
If you’re struggling to secure email forwarding, it’s not you, it’s … the protocols
Eggheads prove they can mimic messages and bag bug bounty bucks Analysis Over the past two decades, efforts have been made to make email more secure. Alas, defensive protocols implemented during this period, such as SPF, DKIM, and DMARC, remain…
EU lawmakers argue against signing US data-transfer pact
Committee: Something about complaints process being dealt with in total secrecy doesn’t sit right Lawmakers in the European Parliament have urged the European Commission not to issue the “adequacy decision” needed for the EU-US Data Privacy Framework (DPF) to officially…
‘Russian hacktivists’ brag of flooding German airport sites
In other words, script kiddies up to shenanigans again A series of distributed denial-of-service (DDoS) attacks shut down seven German airports’ websites on Thursday, a day after a major IT glitch at Lufthansa grounded flights.… This article has been indexed…
Intruder alert: FBI tackles ‘isolated’ IT security breach
Move along, totally nothing to see here The FBI says it has dealt with a cybersecurity “incident” that reportedly involved computer systems being used to investigate child sexual exploitation.… This article has been indexed from The Register – Security Read…
FBI contains ‘isolated cyber incident’ on its network
Move along, totally nothing to see here The FBI has confirmed a cyber “incident” that reportedly involved computer systems being used to investigate child sexual exploitation.… This article has been indexed from The Register – Security Read the original article:…
FBI says its contained an ‘isolated cyber incident’ on its network
Move along, nothing to see here The FBI confirmed a cyber “incident” that reportedly involved computer systems being used to investigate child sexual exploitation.… This article has been indexed from The Register – Security Read the original article: FBI says…
Hyundai and Kia issue software upgrades to thwart killer TikTok car theft hack
Gone in 60 seconds using a USB-A plug and brute force instead of a key Korean car-makers Hyundai and Kia will issue software updates to some of their models after a method of stealing them circulated on TikTok, leading to…
Apple splats zero-day bug, other gremlins in macOS, iOS
WebKit flaw ‘may have been exploited’ – just like Tim Cook ‘may have’ made a million bucks this week Apple this week released bug-splatting updates to its operating systems and Safari browser, to fix a zero-day vulnerability in its WebKit…
‘Russian hacktivists’ claim responsibility for DDoSing German airport websites
In other words, script kiddies up to shenanigans again A series of distributed denial-of-service (DDoS) attacks shut down seven German airports’ websites on Thursday, a day after a major IT glitch at Lufthansa grounded flights.… This article has been indexed…
EU lawmakers argue against signing US data pact
Committee: Something about complaints process being dealt with in total secrecy doesn’t sit right Lawmakers in the European Parliament have urged the European Commission not to issue the “adequacy decision” needed for the EU-US Data Privacy Framework (DPF) to officially…
Russian crook made $90M exploiting stolen info on Tesla, Roku, Avnet, Snap, more
Undisclosed earnings reports swiped, exploited A Russian national with ties to the Kremlin exploited stolen upcoming financial filings belonging to hundreds of companies to help him and his associates net more than $90 million.… This article has been indexed from…
Cry Havoc and let slip dogs of war … there’s an upgraded malware server in town
ThreatLabz finds free alternative to Cobalt Strike and other tools used in the wild There’s a fresh open-source command-and-control (C2) framework on the loose, dubbed Havoc, as an alternative to the popular Cobalt Strike, and other mostly legitimate tools, that…
EU lawmakers advise against signing US data pact
Committee: Something about complaints process being dealt with in total secrecy doesn’t sit right Lawmakers in the European Parliament have urged the European Commission not to issue the “adequacy decision” needed for the EU-US Data Privacy Framework (DPF) to officially…
Antivirus apps are there to protect you – Cisco’s ClamAV has a heckuva flaw
Switchzilla hardware and software need attention, unless you fancy arbitrary remote code execution Antivirus software is supposed to be an important part of an organization’s defense against the endless tide of malware.… This article has been indexed from The Register…
Norway finds a way to recover crypto North Korea pinched in Axie heist
Meanwhile South Korea’s Do Kwon is sought for fraud by US authorities Norwegian authorities announced on Thursday that they had recovered $5.9 million of cryptocurrency stolen in the Axie Infinity hack – an incident widely held to have been perpetrated…
Google’s big security cert log overhaul broke Android apps. Now it’s hit undo
Devs missed warnings plus tons of code relying on a lone open source maintainer Google this week reversed an overhaul of one of its security-related file formats after the transition broke Android apps.… This article has been indexed from The…
VMware, Windows 11 shafted by Windows Server 2022
OS won’t start on some systems with ESXi VMs, while Win11 updates may not make it to devices Microsoft is sorting through two issues with Windows Server 2022 that affect VMware virtual machines and updates not getting passed on to…
Romance scam targets security researcher, hilarity ensues
Happy Valentine’s Day! Now don’t get fooled It sounds like the plot of a somewhat far-fetched romcom-slash-thriller Netflix series, maybe billed as You meets Your Place or Mine, dropping just in time for Valentine’s Day.… This article has been indexed…
More victims of fake crypto investor scam speak to The Register
UK-based Coin Publishers were conned out of $206,000 after meeting in a Barcelona hotel Exclusive When Ahad Shams detailed on Twitter how his company was scammed out of $4 million in cryptocurrency after a face-to-face meeting, Chris Hunter immediately recognized…
Pepsi Bottling Ventures says info-stealing malware swiped sensitive data
That’s not what I like Crooks have breached Pepsi Bottling Ventures’ network and, after deploying info-stealing malware, made off with sensitive personal and financial information according to a notification sent to consumers.… This article has been indexed from The Register…
ESXiArgs ransomware fights off Team America’s data recovery script
Want a clue to what you’re dealing with? Check the ransom note That didn’t take long.… This article has been indexed from The Register – Security Read the original article: ESXiArgs ransomware fights off Team America’s data recovery script
Intel patches up SGX best it can after another load of security holes found
Plus bugs squashed in Server Platform Services and more Intel’s Software Guard Extensions (SGX) are under the spotlight again after the chipmaker disclosed several newly discovered vulnerabilities affecting the tech, and recommended users update their firmware.… This article has been…
Storage security toughen-up for compliance and cyberwar in 2023
Giving storage platforms enhanced built-in security features will be a significant step toward counteracting the impacts of cybercrime in 2023, Dell experts predict Sponsored Feature Cybercriminals tend not to discriminate when it comes to the type of data they steal.…
Hyundai and Kia issue software upgrades to thwart killer TikTok car theft hack
Gone in 60 seconds using a USB-A plug and brute force instead of a key Korean car-makers Hyundai and Kia will issue software updates to some of their models after a method of stealing them circulated on TikTok, leading to…
Apple splats zero-day bug, other gremlins in macOS, iOS
WebKit flaw ‘may have been exploited’ just like Tim Cook ‘may have’ made a million bucks this week Apple this week released bug-splatting updates to its operating systems and Safari browser, to fix a zero-day vulnerability in its WebKit browser…
Russian crook made $90M exploiting stolen info on Tesla, Roku, Avnet, Snap, more
Undisclosed earnings reports swiped, exploited A Russian national with ties to the Kremlin exploited stolen upcoming financial filings belonging to hundreds of companies to help him and his associates net more than $90 million.… This article has been indexed from…
Microsoft delivers 75-count box of patches for Valentine’s Day
Adobe, SAP, Intel, AMD, Android also show up with bouquet of fixes Patch Tuesday Happy Patch Tuesday for February, 2023, which falls on Valentine’s Day.… This article has been indexed from The Register – Security Read the original article: Microsoft…
Record-breaking number of record-breaking DDoS attacks confirmed
And growing abuse of cloud – because using hijacked Brazilian cable modems to down sites is so 2013 Dozens of companies over the weekend were hit by distributed denial-of-service (DDoS) attacks, including the largest one yet recorded, or so Cloudflare…
Google lets a few Android devices into its Privacy Sandbox
Chocolate Factory’s ad tech renovation is moving ahead, like it or not Google on Tuesday began rolling out a beta test of its Privacy Sandbox software for a small portion of Android 13 devices to learn how its purportedly privacy-protecting…
Romance scam targets security researcher, hilarity ensues
Happy Valentine’s Day! Now don’t get fooled It sounds like the plot of a somewhat far-fetched romcom-slash-thriller Netflix series, maybe billed as You meets Your Place or Mine, dropping just in time for Valentine’s Day.… This article has been indexed…
Pepsi Bottling Ventures says info-stealing malware swiped sensitive data
That’s not what I like Crooks have breached Pepsi Bottling Ventures’ network and, after deploying info-stealing malware, made off with sensitive personal and financial information according to a notification sent to consumers.… This article has been indexed from The Register…
Namecheap admits ‘unauthorized emails’ pwning its customers
Blames ‘third-party provider’ as phishers drain Ethereum wallets Domain registrar Namecheap blamed a “third-party provider” that sends its newsletters after customers complained of receiving phishing emails from Namecheap’s system.… This article has been indexed from The Register – Security Read…
LockBit’s Royal Mail ransom deadline flies by. No data released
Also: Russian wiper malware authors turn to data theft, plus this week’s critical vulns in brief The notorious LockBit ransomware gang has taken credit for an attack on the Royal Mail – but a deadline it gave for payment has…
Learn the art of malicious compliance: doing exactly what you were asked, even when it’s wrong
Smart-alec worker found a way to avoid nasty, boring jobs – by doing what he was told Who, Me? Ah, gentle reader, welcome back once again to the comfortable backwater of The Register we call Who, Me? in which readers’…
China’s spy balloon barrage earns six of its companies a spot on US entity list
US Commerce Department can’t just let red balloons go by The US Department of Commerce added six more entities to its blacklist on Friday on grounds of national security after an errant Chinese surveillance balloon was shot down over the…
Uncle Sam wants to strip the IoS out of IoT with light crypto
NIST weighs up algorithms for small devices – and an architecture for massive systems The US National Institute of Standards and Technology wants to protect all devices great and small, and is getting closer to settling on next-gen cryptographic algorithms…
Ransomware crooks steal 3m+ patients’ medical records, personal info
All that data coming soon to a darkweb crime forum near you? Several California medical groups have sent security breach notification letters to more than three million patients alerting them that crooks may have stolen a ton of their sensitive…
Scammers steal $4 million in crypto during face-to-face meeting
Demand to display wallet full of coin facilitated mystery heist Ahad Shams, the co-founder of Web3 metaverse gaming engine startup Webaverse, discovered in late November 2022 that someone had stolen $4 million of his cryptocurrency – during a real world…
Suspect in Finnish psychotherapy center blackmail hack arrested
Suomi sentence expected for shrink records theft French police have arrested a 25-year-old Finnish man accused of hacking a psychotherapy clinic, stealing more than 22,000 patients’ therapy notes, demanding ransom payments from them and also leaking this very private info…
US, UK slap sanctions on Russians linked to Conti, Ryuk, Trickbot malware
Any act that sends so much as a ruble to seven named netizens now forbidden The US and UK have sanctioned seven Russians for their alleged roles in disseminating Conti and Ryuk ransomware and the Trickbot banking trojan.… This article…
US teases more China tech sanctions, this time to deflate balloon-makers
State Dept already has one target, FBI is identifying sources of floating surveillance platform’s components The Chinese surveillance balloon that drifted across the US last week looks set to spark a new round of sanctions against Middle Kingdom tech firms.……
Australian government gives made-in-China CCTV cams the boot
The usual suspects – Hikvision and Dahua – named as a risk to national security, prompting the usual denials Australia’s Defence Department removed all Chinese manufactured surveillance cameras after an audit detailed the number of Hikvision and Dahua devices installed…
Romance scammers’ favorite lies cost victims $1.3B last year
Don’t trust your super-hot military boyfriend you’ve never met. He doesn’t exist As Valentine’s Day approaches, if your offshore oil rig worker “boyfriend” – who looks like Bradley Cooper in his online pics and has hinted at proposing to you…
Reddit reveals security incident that looks more SNAFU than TIFU
Phishing hooked internal documents, code, and some internal business systems accessed, users’ personal info safe Colourful web forum Reddit has revealed it has suffered a security breach.… This article has been indexed from The Register – Security Read the original…
Eurocops shut down Exclu encrypted messaging app, arrest dozens
German and Dutch authorities say the app was a favorite of organized criminals and drug smugglers An encrypted messaging service that has been on law enforcement’s radar since a 2019 raid on an old NATO bunker has been shut down…
Codebreakers decipher Mary, Queen of Scots’ secret letters 436 years after her execution
Digital sleuths chop through crypto challenge in ‘surreal’ search A team of codebreakers discovered – and then cracked – more than 50 secret letters written by Mary Stuart, Queen of Scots while she was imprisoned in England by her cousin, Queen…
Uncle Sam wants to strip the IoS out of IoT with light crypto
NIST weighs up algorithms for small devices – and an architecture for massive systems The US National Institute of Standards and Technology wants to protect all devices great and small, and is getting closer to settling on next-gen cryptographic algorithms…
Among the thousands of ESXiArgs ransomware victims? FBI and CISA to the rescue
Evil code hits more than 3,800 servers globally, according to the Feds The US Cybersecurity and Infrastructure Security Agency (CISA) has released a recovery script to help companies whose servers were scrambled in the recent ESXiArgs ransomware outbreak.… This article…
Among the thousands of ESXiArgs ransomware victim orgs? FBI and CISA to the rescue
The malware has hit more than 3,800 servers globally, according to the Feds The US Cybersecurity and Infrastructure Security Agency (CISA) has released a recovery script to help companies whose servers were scrambled in the recent ESXiArgs ransomware outbreak.… This…
Scammers steal $4 million in crypto during face-to-face meeting
Demand to display wallet full of coin facilitated mystery heist Ahad Shams, the co-founder of Web3 metaverse gaming engine startup Webaverse, discovered in late November 2022 that someone had stolen $4 million of his cryptocurrency – during a real world…
Suspect in Finnish psychotherapy center blackmail hack arrested
Suomi sentence expected for shrink records theft French police have arrested a 25-year-old Finnish man accused of hacking a psychotherapy clinic, stealing more than 22,000 patients’ therapy notes, demanding ransom payments from them and also leaking this very private info…
Eurocops shut down Exclu encrypted messaging app, arrest dozens
German and Dutch authorities say the app was a favorite of organized criminals and drug smugglers An encrypted messaging service that has been on law enforcement’s radar since a 2019 raid on an old NATO bunker has been shut down…
Embarrassment as US cyber ambassador’s Twitter account is hacked
‘Perils of the job’ we’re told A top US cyber diplomat said his Twitter account was compromised over the weekend.… This article has been indexed from The Register – Security Read the original article: Embarrassment as US cyber ambassador’s Twitter…
Here’s a list of proxy IPs to help block KillNet’s DDoS bots
Put pro-Putin bots on the do not call list A free tool aims is helping organizations defend against KillNet distributed-denial-of-service (DDoS) bots and comes as the US government issued a warning that the Russian cybercrime gang is stepping up its…
Keeping unstructured data safe and sound
How Dell PowerScale helps defend against information breaches Webinar There was a time when data was stored in cardboard files inside metal filing cabinets. The drawers were locked with a little key in the corner of the cabinet, which generally…
Trust, not tech, is holding back a safer internet
Excuse me, citizen, did you packet this data yourself? Opinion The tech sector is failing at cybersecurity. Global spending on the stuff is at $190 billion a year, a quarter of the US defense budget. That hasn’t stemmed an estimated…
School laptop auction devolves into extortion allegation
Also: Atlassian says Jira has a 9.4 severity bug and the TSA issues milquetoast no-fly list security advisory When a Texas school district sold some old laptops at auction last year, it probably didn’t expect to end up in a…
Ransomware scum launch wave of attacks on critical, but old, VMWare ESXi vuln
You’ve had almost two years to patch and some of the software is EOL, now attackers déployer un rançongiciel France’s Computer Emergency Response Team has issued a Bulletin D’Alerte regarding a campaign to infect VMware’s ESXI hypervisor with ransomware.… This…
Have we learnt nothing from SolarWinds supply chain attacks? Not yet it appears
From frameworks to new federal offices it’s time to get busy The hack of SolarWinds’ software more than two years ago pushed the threat of software supply chain attacks to the front of security conversations, but is anything being done?.……
Malvertising attacks are distributing .NET malware loaders
The campaign illustrates another option for miscreants who had relied on Microsoft macros Malvertising attacks are being used to distribute virtualized .NET loaders that are highly obfuscated and dropping info-stealer malware.… This article has been indexed from The Register –…
Iran crew stole Charlie Hebdo database, says Microsoft
Same gang pestered US voters during 2020 presidential election Microsoft believes the gang who boasted it had stolen and leaked more than 200,000 Charlie Hebdo subscribers’ personal information is none other than a Tehran-backed gang.… This article has been indexed…
Super Bock says ‘cyber’ nasty ‘disrupting computer services’
Portugal’s biggest exporter of beer warns of restrictions to supply chain Super Bock Group, Portugal’s largest beverage biz, is warning of potential interruption to supplies as it manages the fallout from cybercrooks attacking its tech infrastructure.… This article has been…
HeadCrab bots pinch 1,000+ Redis servers to mine coins
$4,500 Monero per worker as they slave away while we devotin’ full time to floatin’ under the patch sea A sneaky botnet dubbed HeadCrab that uses bespoke malware to mine for Monero has infected at least 1,200 Redis servers in…
Fast-evolving Prilex POS malware can block contactless payments
… forcing users to insert their cards into less-secure PIN systems The reasons businesses and consumers like contactless payment transactions – high security and speed – are what make those systems bad for cybercriminals.… This article has been indexed from…
LockBit brags it pumped ION full of ransomware
Crims put a February 4 deadline for software provider to pay up UK regulators are investigating a cyberattack against financial technology firm ION, while the LockBit ransomware gang has threatened to publish the stolen data on February 4 if the…
Guy accused of wrecking crypto exchange now hauled into court
Mango Markets still offline for now … but v4 comeback release looms The man accused of bringing down decentralized crypto exchange Mango Markets through market manipulation has made his first appearance in court in connection with the theft of millions…
Another RAC staffer nabbed for storing, sharing car crash data
Once is an accident. Twice is coincidence. Surely there won’t be a third for roadside assistance biz A former employee of RAC, one of Britain’s major roadside recovery service operators, has pleaded guilty to data theft after he stored traffic…
Guy accused of crashing crypto exchange now hauled into court
Mango Markets still offline for now … but v4 comeback release looms The man accused of bringing down decentralized crypto exchange Mango Markets through market manipulation has made his first appearance in court in connection with the theft of millions…
Google boosts bounties for open source flaws found via fuzzing
Max reward per project integration is now $30k Google sweetened the potential pot to $30,000 for bug hunters in its open source OSS-Fuzz code testing project.… This article has been indexed from The Register – Security Read the original article:…
Microsoft sweeps up after breaking .NET with December security updates
XPS doc display issues fixed – until the next patch, at least Microsoft this week rolled out fixes to issues caused by security updates released in December 2022 that botched how XPS documents are displayed in various versions of .NET…
Chinese ‘surveillance balloon’ over US causes fearful gasbagging
Floats over missile silos, shooting it down ruled more dangerous than whatever it’s up to Updated A Chinese high-altitude potential spy balloon, spotted drifting over America, has caused concern about national security – though the US Department of Defense says…
Chinese surveillance balloon over US causes fearful gasbagging
Floats over missile silos, shooting it down ruled more dangerous than whatever it’s up to A Chinese high-altitude surveillance balloon, spotted drifting over the US, has caused concern about national security – but the Department of Defense says it will…
Another RAC staffer nabbed for storing and sharing road accident data
Once is an accident. Twice is coincidence. Surely there won’t a third incident for roadside assistance company A former employee of RAC, one of Britain’s major roadside recovery service operators, has pleaded guilty to data theft after he stored traffic…
Attackers abuse Microsoft’s ‘verified publisher’ status to steal data
Malicious OAuth apps were the tickets into victims’ systems Miscreants using malicious OAuth applications abused Microsoft’s “verified publisher” status to gain access to organizations’ cloud environments, then steal data and pry into to users’ mailboxes, calendars, and meetings.… This article…