Miscreants will need to find another avenue for malware shenanigans Notepad++ has continued beefing up security with a release the project’s author claims makes the “update process robust and effectively unexploitable.”… This article has been indexed from The Register –…
Category: The Register – Security
You can jailbreak an F-35 just like an iPhone, says Dutch defense chief
No worries if the US doesn’t want to be friends with Europe anymore Lockheed Martin’s F-35 fighter aircraft can be jailbroken “just like an iPhone,” the Netherlands’ defense secretary has claimed.… This article has been indexed from The Register –…
HackerOne ‘updating’ Ts&Cs after bug hunters question if they’re training AI
CEO lauds security researchers, insists they’re not ‘inputs’ HackerOne has clarified its stance on GenAI after researchers fretted their submissions were being used to train its models.… This article has been indexed from The Register – Security Read the original…
Palo Alto CEO says AI isn’t great for business, yet
Sees little enterprise AI adoption other than coding assistants, buys Koi for what comes next If enterprises are implementing AI, they’re not showing it to Palo Alto Networks CEO Nikesh Arora, who on Tuesday said business adoption of the tech…
China-linked snoops have been exploiting Dell 0-day since mid-2024, using ‘ghost NICs’ to avoid detection
Full scale of infections remains ‘unknown’ China-linked attackers exploited a maximum-severity hardcoded-credential bug in Dell RecoverPoint for Virtual Machines as a zero-day since at least mid-2024. It’s all part of a long-running effort to backdoor infected machines for long-term access,…
China remains embedded in US energy networks ‘for the purpose of taking it down’
Plus 3 new goon squads targeted critical infrastructure last year Three new threat groups began targeting critical infrastructure last year, while a well-known Beijing-backed crew – Volt Typhoon – continued to compromise cellular gateways and routers, and then break into…
US lawyers fire up privacy class action accusing Lenovo of bulk data transfers to China
Keep behavioral tracking American? PC giant says the claim is ‘false’ A US law firm has accused Lenovo of violating Justice Department strictures about the bulk transfer of data to foreign adversaries, namely China.… This article has been indexed from…
Polish cops nab 47-year-old man in Phobos ransomware raid
Police say seized kit contained logins, passwords, and server IP addresses Polish police have arrested and charged a man over ties to the Phobos ransomware group following a property raid.… This article has been indexed from The Register – Security…
UK.gov launches cyber ‘lockdown’ campaign as 80% of orgs still leave door open
Digital burglaries remain routine, and data shows most corps still don’t stick to basic infosec standards Britain is telling businesses to “lock the door” on cybercrims as new government data suggests most still haven’t even found the latch.… This article…
Ireland joins regulator smackdown after X’s Grok AI accused of undressing people
Social media platform’s legal eagles prepare to fight ever-growing number of countries The Irish Data Protection Commission (DPC) is the latest regulator to open an investigation into Elon Musk’s X following repeated reports of harmful image generation by the platform’s…
MoD ticks shopping list as PM considers weapons budget boost
Top brass splash cash on acoustic targeting, hypersonic missiles…and Red Hat Keir Starmer could ramp up the UK’s defense spending plans faster than planned as the MoD reeled off new purchases for Britain’s armed forces.… This article has been indexed…
Canada Goose ruffles feathers over 600K record dump, says leak is old news
Fashion brand latest to succumb to ShinyHunters’ tricks Canada Goose says an advertised breach of 600,000 records is an old raid and there are no signs of a recent compromise.… This article has been indexed from The Register – Security…
Dutch cops arrest man after sending him confidential files by mistake
Bungled link handed over sensitive docs, and when recipient didn’t cooperate, police opted for cuffs Dutch police have arrested a man for “computer hacking” after accidentally handing him their own sensitive files and then getting annoyed when he didn’t hand…
You probably can’t trust your password manager if it’s compromised
Researchers demo weaknesses affecting some of the most popular options Academics say they found a series of flaws affecting three popular password managers, all of which claim to protect user credentials in the event that their servers are compromised.… This…
Open source registries don’t have enough money to implement basic security
Free beer is great. Securing the keg costs money fosdem 2026 Open source registries are in financial peril, a co-founder of an open source security foundation warned after inspecting their books. And it’s not just the bandwidth costs that are…
Google patches Chrome zero-day as in-the-wild exploits surface
High-severity CSS flaw let malicious webpages run code inside the sandbox Google has quietly pushed out an emergency Chrome fix after attackers were caught exploiting the browser’s first reported zero-day of 2026.… This article has been indexed from The Register…
US appears open to reversing some China tech bans
PLUS: India demands two-hour deepfake takedowns; Singapore embraces AI; Japanese robot wolf gets cuddly; And more Asia In Brief The United States may be about to change its policies regarding Chinese technology companies.… This article has been indexed from The…
Infosec exec sold eight zero-day exploit kits to Russia, says DoJ
PLUS: Fake ransomware group exposed; EC blesses Google’s big Wiz deal; Alleged sewage hacker cuffed; And more Infosec in Brief The former General Manager of defense contractor L3Harris’s cyber subsidiary Trenchant sold eight zero-day exploit kits to Russia, according to…
Attackers finally get around to exploiting critical Microsoft bug from 2024
As if admins haven’t had enough to do this week Ignore patches at your own risk. According to Uncle Sam, a SQL injection flaw in Microsoft Configuration Manager patched in October 2024 is now being actively exploited, exposing unpatched businesses…
Top Dutch telco Odido admits 6.2M customers caught in contact system caper
Names, addresses, bank account numbers accessed – but biz insists passwords and call data untouched The Netherlands’ largest mobile network operator (MNO) has admitted that a breach of its customer contact system may have affected around 6.2 million people.… This…