Targeted elected officials and others with over 100 fake crime reports and threats The US government has indicted two men for allegedly reporting almost 120 fake emergencies or crimes in the hope of provoking action by armed law enforcement agencies.……
Tag: The Register – Security
What a coincidence. Spyware makers, Russia’s Cozy Bear seem to share same exploits
Google researchers note similarities, can’t find smoking-gun link Google’s Threat Analysis Group (TAG) has spotted an interesting pattern: A Kremlin-linked cyber-espionage crew and commercial spyware makers exploiting specific security vulnerabilities in pretty much the same way.… This article has been…
Oh, great. Attacks developed by spyware vendors are being re-used by Russia’s Cozy Bear cretins
Google researchers note the similarities, can’t find a link Google’s Threat Analysis Group (TAG) has spotted a disturbing similarity in attack tactics used by commercial spyware vendors and Russia-linked attack gangs.… This article has been indexed from The Register –…
Feds claim sinister sysadmin locked up thousands of Windows workstations, demanded ransom
Sordid search history ‘evidence’ in case that could see him spend 35 years for extortion and wire fraud A former infrastructure engineer who allegedly locked IT department colleagues out of their employer’s systems, then threatened to shut down servers unless…
Rock Chrome hard enough and get paid half a million
Google revises Chrome Vulnerability Rewards Program with higher payouts for bug hunters Google’s Chrome Vulnerability Rewards Program (VRP) is now significantly more rewarding – with a top payout that’s at least twice as substantial.… This article has been indexed from…
Brain Cipher claims attack on Olympic venue, promises 300 GB data leak
French police reckon financial system targeted during Summer Games Nearly four weeks after the cyberattack on dozens of French national museums during the Olympic Games, the Brain Cipher ransomware group claims responsibility for the incident and says 300 GB of…
CrowdStrike’s meltdown didn’t dent its market dominance … yet
Total revenue for Q2 grew 32 percent CrowdStrike’s major meltdown a month ago doesn’t look like affecting the cyber security vendor’s market dominance anytime soon, based on its earnings reported Wednesday.… This article has been indexed from The Register –…
Microsoft hosts a security summit but no press, public allowed
CrowdStrike, other vendors, friendly govt reps…but not anyone would can tell you what happened op-ed Microsoft will host a security summit next month with CrowdStrike and other “key” endpoint security partners joining the fun — and during which the CrowdStrike-induced…
Proof-of-concept code released for zero-click critical Windows vuln
If you haven’t deployed August’s patches, get busy before others do Windows users who haven’t yet installed the latest fixes to their operating systems will need to get a move on, as code now exists to exploit a critical Microsoft…
Iran’s Pioneer Kitten hits US networks via buggy Check Point, Palo Alto gear
The government-backed crew also enjoys ransomware as a side hustle Iranian government-backed cybercriminals have been hacking into US and foreign networks as recently as this month to steal sensitive data and deploy ransomware, and they’re breaking in via vulnerable VPN…
Dick’s Sporting Goods discloses cyberattack
Authorities probing unwanted intrusion; hard questions ahead Dick’s Sporting Goods, America’s largest retail chain for outdoorsy types, has admitted that it suffered a cyberattack last week.… This article has been indexed from The Register – Security Read the original article:…
From Copilot to Copirate: How data thieves could hijack Microsoft’s chatbot
Prompt injection, ASCII smuggling, and other swashbuckling attacks on the horizon Microsoft has fixed flaws in Copilot that allowed attackers to steal users’ emails and other personal data by chaining together a series of LLM-specific attacks, beginning with prompt injection.……
The ultimate dual-use tool for cybersecurity
Sword or plowshare? That depends on whether you’re an attacker or a defender Sponsored Feature Artificial intelligence: saviour for cyber defenders, or shiny new toy for online thieves? As with most things in tech, the answer is a bit of…
Woman uses AirTags to nab alleged parcel-pinching scum
Phew! Consumer-grade tracking devices are good for more than finding your keys and stalking Theft of packages is an ongoing problem, so one California woman tried a high tech solution to the problem – and her use of Apple’s consumer-grade…
Chinese broadband satellites may be Beijing’s flying spying censors, think tank warns
Ground stations are the perfect place for the Great Firewall to block things China finds unpleasant The multiple constellations of broadband-beaming satellites planned by Chinese companies could conceivably run the nation’s “Great Firewall” content censorship system, according to think tank…
Intel’s Software Guard Extensions broken? Don’t panic
More of a storm in a teacup Today’s news that Intel’s Software Guard Extensions (SGX) security system is open to abuse may be overstated.… This article has been indexed from The Register – Security Read the original article: Intel’s Software…
Volt Typhoon suspected of exploiting Versa SD-WAN bug since June
The same Beijing-backed cyber spy crew the feds say burrowed into US critical infrastructure It looks like China’s Volt Typhoon has found a new way into American networks as Versa has disclosed a nation-state backed attacker has exploited a high-severity…
Microsoft security tools questioned for treating employees as threats
Cracked Labs examines how workplace surveillance turns workers into suspects Software designed to address legitimate business concerns about cyber security and compliance treats employees as threats, normalizing intrusive surveillance in the workplace, according to a report by Cracked Labs.… This…
Microsoft mistake blows up admins’ inboxes with fake malware alerts
Legitimate emails misclassified in software snafu Updated Many administrators have had a trying Monday after getting spammed out with false malware reports by Microsoft.… This article has been indexed from The Register – Security Read the original article: Microsoft mistake…
Seattle airport ‘possible cyberattack’ snarls travel yet again
No word yet on if ransomware is to blame The Port of Seattle, which operates the Seattle-Tacoma International Airport, is investigating a “possible cyberattack” after computer outages disrupted the airport’s operations and delayed flights.… This article has been indexed from…