You’re going to want to patch this one Cisco just dropped a patch for a maximum-severity vulnerability that allows attackers to change the password of any user, including admins.… This article has been indexed from The Register – Security Read…
Category: The Register – Security
Firms skip security reviews of major app updates about half the time
Complicated, costly, time-consuming – pick three Cyber security workers only review major updates to software applications only 54 percent of the time, according to a poll of tech managers.… This article has been indexed from The Register – Security Read…
Release the hounds! Securing datacenters may soon need sniffer dogs
Nothing else can detect attackers with implants designed to foil physical security Sniffer dogs may soon become a useful means of improving physical security in datacenters, as increasing numbers of people are adopting implants like NFC chips that have the…
Merged Exabeam and LogRhythm cut jobs, face lawsuit
Unconfirmed reports suggest 30 percent reduction in headcount Exabeam and LogRhythm – a pair of cyber security firms – finalized their merger on Wednesday, an occasion The Register understands was marked by swift job cuts and shareholder action to investigate…
Kaspersky gives US customers six months of free updates as a parting gift
So long, farewell, do svidaniya, goodbye Embattled Russian infosec shop Kaspersky is giving US customers six months of security updates for free as a parting gift as Uncle Sam kicks the antivirus maker out of the American market.… This article…
Ransomware continues to pile on costs for critical infrastructure victims
Millions more spent without any improvement in recovery times Costs associated with ransomware attacks on critical national infrastructure (CNI) organizations skyrocketed in the past year.… This article has been indexed from The Register – Security Read the original article: Ransomware…
London council accuses watchdog of ‘exaggerating’ danger of 2020 raid on residents’ data
You escaped a big fat fine! Take the win and run, won’t you? London’s inner city district of Hackney says the UK’s data protection watchdog has misunderstood and “exaggerated” details surrounding a ransomware attack on its systems in 2020.… This…
Iran’s MuddyWater phishes Israeli orgs with custom BugSleep backdoor
India, Turkey, also being targeted by campaign that relies on corporate email compromise MuddyWater, an Iranian government-backed cyber espionage crew, has upgraded its malware with a custom backdoor, which it’s used to target Israeli organizations.… This article has been indexed…
Cyber-crime super-crew Scattered Spider falls in love with RansomHub and Qilin
Extortionists left hanging after rivals crawled into the woodwork The Scattered Spider cybercrime group is now using RansomHub and Qilin ransomware variants in its attacks, illustrating a possible power shift among hacking groups.… This article has been indexed from The…
Scattered Spider’s fave new ransomware tools are RansomHub and Qilin
Extortionists left hanging after rivals crawled into the woodwork The Scattered Spider cybercrime group is now using RansomHub and Qilin ransomware variants in its attacks, illustrating a possible power shift among hacking groups.… This article has been indexed from The…
Don’t be complacent on cybersecurity resilience
Read the 2024 Cisco Cybersecurity Readiness Index for tips on how best to prepare Sponsored Post Protecting sensitive data and mission-critical applications, systems and services from the unwanted attention of hackers and cyber criminals is never easy.… This article has…
Privacy group complains to UK regulator about Meta scraping user data to train AI
Move follows Instagram and Facebook owner’s decision to reverse direction in EU after protests A UK data rights campaign group has launched a complaint with the data law regulator against Meta’s change of privacy policy which allows it to scrape…
DarkGate, the Swiss Army knife of malware, sees boom after rival Qbot crushed
Meet the new boss, same as the old boss The DarkGate malware family has become more prevalent in recent months, after one of its main competitors was taken down by the FBI.… This article has been indexed from The Register…
DarkGate, the evil Swiss Army knife of malware, sees boom after rival Qbot crushed
Meet the new boss, same as the old boss The DarkGate malware family has become more prevalent in recent months after one of its main competitors was taken down by the FBI.… This article has been indexed from The Register…
Kaspersky culls staff, closes doors in US amid Biden’s ban
After all we’ve done for you, America, sniffs antivirus lab Kaspersky has confirmed it will shutter its American operations and cut US-based jobs following President Biden’s ban on the Russian business last month.… This article has been indexed from The…
ZDI shames Microsoft for – yet another – coordinated vulnerability disclosure snafu
‘It seems like they really don’t have a full grasp of what’s going on with this patch’ Exclusive A Microsoft zero-day exploit that Trend Micro’s Zero Day Initiative team claims it found and reported to Redmond in May was disclosed…
Infoseccers claim Squarespace migration linked to DNS hijackings at Web3 firms
Company keeps quiet amid high-profile compromises Security researchers are claiming a spate of DNS hijackings at web3 businesses is linked to Squarespace’s acquisition of Google Domains last year.… This article has been indexed from The Register – Security Read the…
Google reportedly in talks to buy infosec outfit Wiz for $23 billion
The security industry has never had a clear leader – could it be the Chocolate Factory? Ask any techie to name who leads the market for OSes, databases, networks or ERP and the answers are clear: Microsoft, Oracle, Cisco, and…
I spy another mSpy breach: Millions more stalkerware buyers exposed
Also: Velops routers love plaintext; everything is a dark pattern; Internet Explorer rises from the grave, and more Infosec in brief Commercial spyware maker mSpy has been breached – again – and millions of purchasers can be identified from the…
UK cyber-boss slams China’s bug-hoarding laws
Plus: Japanese scientists ID ancient supernova; AWS dismisses China trouble rumor; and more ASIA IN BRIEF The interim CEO of the UK’s National Cyber Security Centre (NCSC) has criticized China’s approach to bug reporting.… This article has been indexed from…