News

Spy school dropout: GCHQ intern jailed for swiping classified data

The Register - Mon, 16/06/2025 - 11:41
Student 'believed he could finish' software dev 'project alone and therefore that the rules did not apply to him'

A former GCHQ intern was jailed for seven-and-a-half years for stealing top-secret files during a year-long placement at the British intelligence agency.…

Categories: News

How collaborative security can build you a better business

The Register - Mon, 16/06/2025 - 09:00
Getting employees on board can do more than prevent breaches; it can send profitability soaring

Sponsored Post  Here's a sobering reality: 95% of data breaches involve human error. So, why do most organizations still throw technology at a fundamentally human problem? It's like trying to fix a leaky roof by buying better buckets.…

Categories: News

Armored cash transport trucks allegedly hauled money for $190 million crypto-laundering scheme

The Register - Mon, 16/06/2025 - 03:45
PLUS: APNIC completes re-org; India cuts costs for chipmakers; Infosys tax probe ends; and more

Asia In Brief  Australia’s Federal Police (AFP) last week announced charges against four suspects for alleged participation in a money-laundering scheme that involved a security company’s armored cash transport unit.…

Categories: News

Dems demand audit of CVE program as Federal funding remains uncertain

The Register - Sun, 15/06/2025 - 23:01
PLUS: Discord invite links may not be safe; Miscreants find new way to hide malicious JavaScript; and more!

Infosec In Brief  A pair of Congressional Democrats have demanded a review of the Common Vulnerabilities and Exposures (CVE) program amid uncertainties about continued US government funding for the scheme.…

Categories: News

Cyber weapons in the Israel-Iran conflict may hit the US

The Register - Fri, 13/06/2025 - 23:07
With Tehran’s military weakened, digital retaliation likely, experts tell The Reg

The current Israel–Iran military conflict is taking place in the era of hybrid war, where cyberattacks amplify and assist missiles and troops, and is being waged between two countries with very capable destructive cyber weapons.…

Categories: News

Do you trust Xi with your 'private' browsing data? Apple, Google stores still offer China-based VPNs, report says

The Register - Fri, 13/06/2025 - 19:20
Some trace back to an outfit under US export controls for alleged PLA links

Both Apple's and Google's online stores offer free virtual private network (VPN) apps owned by Chinese companies, according to researchers at the Tech Transparency Project, and they don't make this fact readily known to people downloading the apps.…

Categories: News

Apple fixes zero-click exploit underpinning Paragon spyware attacks

The Register - Fri, 13/06/2025 - 16:24
Zero-day potentially tied to around 100 suspected infections in 2025 and a spyware scandal on the continent

Apple has updated its iOS/iPadOS 18.3.1 documentation, confirming it introduced fixes for the zero-click vulnerability used to infect journalists with Paragon's Graphite spyware.…

Categories: News

Wanted: Junior cybersecurity staff with 10 years' experience and a PhD

The Register - Fri, 13/06/2025 - 14:36
Infosec employers demanding too much from early-career recruits, says ISC2

Cybersecurity hiring managers need a reality check when it comes to hiring junior staff, with job adverts littered with unfair expectations that are hampering recruitment efforts, says industry training and cert issuer ISC2.…

Categories: News

Slapped wrists for Financial Conduct Authority staff who emailed work data home

The Register - Fri, 13/06/2025 - 09:29
It was one of the offenders' final warning

Four staffers at the UK's Financial Conduct Authority (FCA) were let off with warnings over separate cases involving the transmission of regulator data to their personal email accounts.…

Categories: News

Ransomware scum disrupted utility services with SimpleHelp attacks

The Register - Fri, 13/06/2025 - 00:55
Good news: The vendor patched the flaw in January. Bad news: Not everyone got the memo

Ransomware criminals infected a utility billing software providers' customers, and in some cases disrupted services, after exploiting unpatched versions of SimpleHelp’s remote monitoring and management (RMM) tool, according to a Thursday CISA alert.…

Categories: News

'Major compromise' at NHS temping arm exposed gaping security holes

The Register - Thu, 12/06/2025 - 11:29
Incident responders suggested sweeping improvements following Active Directory database heist

Exclusive  Cybercriminals broke into systems belonging to the UK's NHS Professionals body in May 2024, stealing its Active Directory database, but the healthcare organization never publicly disclosed it, The Register can reveal.…

Categories: News

DeepSeek installer or just malware in disguise? Click around and find out

The Register - Thu, 12/06/2025 - 00:42
'BrowserVenom' is pure poison

Suspected cybercriminals have created a fake installer for Chinese AI model DeepSeek-R1 and loaded it with previously unknown malware called "BrowserVenom".…

Categories: News

Hire me! To drop malware on your computer

The Register - Wed, 11/06/2025 - 19:24
FIN6 moves from point-of-sale compromise to phishing recruiters

In a scam that flips the script on fake IT worker schemes, cybercriminals posing as job seekers on LinkedIn and Indeed are targeting recruiters - a group hated only slightly less than digital crooks - with malware hosted on phony resume portfolio sites.…

Categories: News

Salesforce tags 5 CVEs after SaaS security probe uncovers misconfig risks

The Register - Wed, 11/06/2025 - 19:02
The 16 other flagged issues are on customers, says CRM giant

Salesforce has assigned five CVE identifiers following a security report that uncovered more than 20 configuration weaknesses, some of which exposed customers to unauthorized access and session hijacking.…

Categories: News

Asia dismantles 20,000 malicious domains in infostealer crackdown

The Register - Wed, 11/06/2025 - 16:36
Interpol coordinates operation, nabs 32 across Vietnam, Sri Lanka, and Nauru

Thirty-two people across Asia have been arrested over their suspected involvement with infostealer malware in the latest international collaboration against global cybercrime.…

Categories: News

Analysis to action: Operationalizing your threat intelligence

The Register - Wed, 11/06/2025 - 16:00
Timing is everything in the war against ransomware thieves, says Prelude Security

Partner content  When a new security advisory drops or an alarming new ransomware campaign makes the news, the question from leadership inevitably follows: "Are we covered?"…

Categories: News

Microsoft slows Windows 11 24H2 Patch Tuesday due to a 'compatibility issue'

The Register - Wed, 11/06/2025 - 11:09
On your marks, get set... bork!

Microsoft has set a new record with June's security update for the time between release and an admission of borkage.…

Categories: News

CISO who helped unmask Badbox warns: Version 3 is coming

The Register - Wed, 11/06/2025 - 07:28
The botnet’s still alive and evolving

Badbox 2.0, the botnet that infected millions of smart TV boxes and connected devices before private security researchers and law enforcement partially disrupted its infrastructure, is readying for a third round of fraud and digital attacks, according to one of the threat hunters who uncovered the original scheme.…

Categories: News

Microsoft warns of 66 flaws to fix for this Patch Tuesday, and two are under active attack

The Register - Wed, 11/06/2025 - 00:38
Stealthy Falcon swoops on WebDAV and Redmond's even patching IE!

Patch Tuesday  It's Patch Tuesday time again, and Microsoft is warning that there are a bunch of critical fixes to sort out - and two actively exploited bugs.…

Categories: News

Texas warns 300,000 crash reports siphoned via compromised user account

The Register - Tue, 10/06/2025 - 19:52
Lone Star State drivers with accident records need to be careful about fraud

The Texas Department of Transportation says a compromised user account was used to improperly download nearly 300,000 crash reports, exposing personal data that could be exploited for financial fraud against Lone Star drivers.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News