Hack Nintendo's alarm clock to show cat pics? Let's-a-go! How 'Gary' defeated Bowser broke into the interactive alarm clock Security01 Nov 2024 | 21
Gang gobbles 15K credentials from cloud and email providers' garbage Git configs Emeraldwhale looked sharp – until it made a common S3 bucket mistake Research31 Oct 2024 | 1
Windows Themes zero-day bug exposes users to NTLM credential theft Plus a free micropatch until Redmond fixes the flaw Security30 Oct 2024 | 5
Beijing claims it's found 'underwater lighthouses' that its foes use for espionage Release the Kraken! Security30 Oct 2024 | 66
Uncle Sam outs a Russian accused of developing Redline infostealing malware Or: why using the same iCloud account for malware development and gaming is a bad idea Cyber-crime29 Oct 2024 | 4
Cast a hex on ChatGPT to trick the AI into writing exploit code 'It was like watching a robot going rogue' says researcher Cybersecurity Month29 Oct 2024 | 27
Merde! Macron's bodyguards reveal his location by sharing Strava data It's not just the French president, Biden and Putin also reportedly trackable Security29 Oct 2024 | 23
Five Eyes nations tell tech startups to take infosec seriously. Again Only took 'em a year to dish up some scary travel advice, and a Secure Innovation … Placemat? Cybersecurity Month29 Oct 2024 | 14
Wanted. Top infosec pros willing to defend Britain on shabby salaries GCHQ job ads seek top talent with bottom-end pay packets Security29 Oct 2024 | 116
JPMorgan Chase sues scammers following viral 'infinite money glitch' ATMs paid customers thousands ... and now the bank wants its money back Security28 Oct 2024 | 47
Feds investigate China's Salt Typhoon amid campaign phone hacks 'They're taunting us,' investigator says and it looks like it's working Security28 Oct 2024 | 5
Brazen crims selling stolen credit cards on Meta's Threads Exclusive The platform 'continues to take action' against illegal posts, we're told Cyber-crime28 Oct 2024 | 20
'Open banking' rules will put your financial data back where it belongs Well, at least eventually since some companies have until 2030 to comply Software27 Oct 2024 | 8
Just how private is Apple's Private Cloud Compute? You can test it to find out Also updates bug bounty program with $1M payout Security25 Oct 2024 | 14
Putin's pro-Trump trolls accuse Harris of poaching rhinos Plus: Iran's IRGC probes election-related websites in swing states Security25 Oct 2024 | 85
AWS Cloud Development Kit flaw exposed accounts to full takeover Remember Bucket Monopoly? Yeah, it gets worse Cybersecurity Month24 Oct 2024 | 13
Emergency patch: Cisco fixes bug under exploit in brute-force attacks Who doesn't love abusing buggy appliances, really? Software24 Oct 2024 | 3
Ransomware's ripple effect felt across ERs as patient care suffers 389 US healthcare orgs infected this year alone Cybersecurity Month24 Oct 2024 | 1
Voice-enabled AI agents can automate everything, even your phone scams All for the low, low price of a mere dollar Security24 Oct 2024 | 23
Anthropic's latest Claude model can interact with computers – what could go wrong? For starters, it could launch a prompt injection attack on itself... AI + ML24 Oct 2024 | 8
Perfctl malware strikes again as crypto-crooks target Docker Remote API servers Attacks on unprotected servers reach 'critical level' Cybersecurity Month24 Oct 2024 | 1
FortiManager critical vulnerability under active attack Updated Security shop and CISA urge rapid action Cybersecurity Month23 Oct 2024 | 7
'Satanic' data thief claims to have slipped into 350M Hot Topic shoppers info We know where you got your skinny jeans - big deal Cyber-crime23 Oct 2024 | 2
Microsoft SharePoint RCE flaw exploits in the wild – you've had 3 months to patch Plus, a POC to make it extra easy for attackers Security23 Oct 2024 |
Millions of Android and iOS users at risk from hardcoded creds in popular apps Azure Blob Storage, AWS, and Twilio keys all up for grabs Cybersecurity Month23 Oct 2024 | 17
VMware fixes critical RCE, make-me-root bugs in vCenter - for the second time If the first patches don't work, try, try again Patches22 Oct 2024 | 2
Socket plugs in $40M to strengthen software supply chain Biz aims to scrub unnecessary dependencies from npm packages in the name of security Applications22 Oct 2024 |
China’s Spamouflage cranks up trolling of US Senator Rubio as election day looms Note to Xi: Marco and Ted Cruz aren't the same person Security21 Oct 2024 | 8
Sophos to snatch Secureworks in $859M buyout: Why fight when you can just buy? Private equity giant Thoma Bravo adds another trophy to its growing collection Security21 Oct 2024 | 2
The billionaire behind Trump's 'unhackable' phone is on a mission to fight Tesla's FSD Interview Dan O'Dowd tells El Reg about the OS secrets and ongoing clash with Musk Security21 Oct 2024 | 113
Internet Archive exposed again – this time through Zendesk Org turns its woes into a fundraising opportunity Security21 Oct 2024 | 9
Open source LLM tool primed to sniff out Python zero-days The static analyzer uses Claude AI to identify vulns and suggest exploit code Security20 Oct 2024 | 9
Biz hired, and fired, a fake North Korean IT worker – then the ransom demands began 'My webcam isn't working today' is the new 'The dog ate my network' Cybersecurity Month18 Oct 2024 | 41
Microsoft crafts Rust hypervisor to power Azure workloads OpenVMM touts stronger security, but not ready for prime time just yet Software17 Oct 2024 | 8
Anonymous Sudan isn't any more: Two alleged operators named, charged Gang said to have developed its evilware on GitHub – then DDoSed GitHub Cybersecurity Month17 Oct 2024 | 5
Critical default credential in Kubernetes Image Builder allows SSH root access It's called leaving the door wide open – especially in Proxmox Security16 Oct 2024 | 12
Volkswagen monitoring data dump threat from 8Base ransomware crew The German car giant appears to be unconcerned Cyber-crime16 Oct 2024 | 1
Critical hardcoded SolarWinds credential now exploited in the wild Another blow for IT software house and its customers Security16 Oct 2024 | 23
China’s infosec leads accuse Intel of NSA backdoor, cite chip security flaws Uncle Sam having a secret way into US tech? Say it ain't so Systems16 Oct 2024 | 30
Google's memory safety plan includes rehab for unsafe languages Large C and C++ codebases will be around for the 'foreseeable future' Cybersecurity Month16 Oct 2024 | 30
WhatsApp may expose the OS you use to run it – which could expose you to crooks Updated Meta knows messaging service creates persistent user IDs that have different qualities on each device Research16 Oct 2024 | 16
Pentagon stumped by mystery drone swarm flying over Langley Air Force Base Not that there's anything important there – just F-22s and stuff Cybersecurity Month15 Oct 2024 | 85
Cisco confirms 'ongoing investigation' after crims brag about selling tons of data UPDATED Networking giant says 'no evidence' of impact on its systems but will tell customers if their info has been stolen Cyber-crime15 Oct 2024 | 7
Sysadmins rage over Apple’s ‘nightmarish’ SSL/TLS cert lifespan cuts plot Max validity down from 398 days to proposed 45 by 2027 Software15 Oct 2024 | 128
Would banning ransomware insurance stop the scourge? White House official makes case for ending extortion reimbursements Cybersecurity Month14 Oct 2024 | 87
Trump campaign arms up with 'unhackable' phones after Iranian intrusion Florida man gets his hands on 'the best ever' Cybersecurity Month14 Oct 2024 | 145
Schools bombarded by nation-state attacks, ransomware gangs, and everyone in between Reading, writing, and cyber mayhem, amirite? Cybersecurity Month13 Oct 2024 | 33
Anthropic's Claude vulnerable to 'emotional manipulation' AI model safety only goes so far AI + ML12 Oct 2024 | 42
US lawmakers seek answers on alleged Salt Typhoon breach of telecom giants Cyberspies abusing a backdoor? Groundbreaking Cyber-crime11 Oct 2024 | 10
Crooks stole personal info of 77k Fidelity Investments customers But hey, no worries, the firm claims no evidence of data misuse Cyber-crime10 Oct 2024 | 3
Fore-get about privacy, golf tech biz leaves 32M data records on the fairway Researcher spots 110 TB of sensitive info sitting in unprotected database Cybersecurity Month10 Oct 2024 | 36
Internet Archive user info stolen in cyberattack, succumbs to DDoS 31M folks' usernames, email addresses, salted-encrypted passwords now out there Cybersecurity Month10 Oct 2024 | 22
Moscow-adjacent GoldenJackal gang strikes air-gapped systems with custom malware USB sticks help, but it's unclear how tools that suck malware from them are delivered Cybersecurity Month09 Oct 2024 | 24
Deno 2.0 looks to backward compatibility to move forward Modern runtime for JavaScript and TypeScript plays nicer with Node.js Devops09 Oct 2024 | 4
Smart TVs are spying on everyone Regulators know this is a nightmare and have done little to stop it. Privacy advocacy group wants that to change Cybersecurity Month09 Oct 2024 | 128
Marriott settles for a piddly $52M after series of breaches affecting millions Intruders stayed for free on the network between 2014 and 2020 Cyber-crime09 Oct 2024 | 9
National Public Data files for bankruptcy, admits 'hundreds of millions' potentially affected One-man-band faces a mountain of lawsuits but has few assets Cyber-crime09 Oct 2024 | 65
Ransomware gang Trinity joins pile of scumbags targeting healthcare As if hospitals and clinics didn't have enough to worry about Cybersecurity Month09 Oct 2024 | 6
Using iPhone Mirroring at work? You might have just overshared to your boss What does IT glimpse but a dating app on your wee little screen Software08 Oct 2024 | 26
AI-driven e-commerce fraud is surging, but you can fight back with more AI Juniper Research argues the only way to beat them is to join them AI + ML08 Oct 2024 | 7
Happy birthday, Putin – you've been pwned Pro-Ukraine hackers claim credit for Russian state broadcasting shutdown Security08 Oct 2024 | 82
Feds reach for sliver of crypto-cash nicked by North Korea's notorious Lazarus Group A couple million will do for a start … but Kim's crews are suspected of stealing much more Cybersecurity Month08 Oct 2024 | 2