News

China's president Xi Jinping jokes about backdoors in Xiaomi smartphones

The Register - 2 hours 11 min ago
South Korea's president laughed, so perhaps it was funny? Unlike China's censorship and snooping

Chinese president Xi Jinping has joked that smartphones from Xiaomi might include backdoors.…

Categories: News

AN0M, the backdoored ‘secure’ messaging app for criminals, is still producing arrests after four years

The Register - 5 hours 15 min ago
55 cuffed last week after court ruled sting operation was legal

Australian police last week made 55 arrests using evidence gathered with a backdoored messaging app that authorities distributed in the criminal community.…

Categories: News

MIT Sloan quietly shelves AI ransomware study after researcher calls BS

The Register - Mon, 03/11/2025 - 22:31
Even AI has doubts about the claim that '80% of ransomware attacks are AI-driven'

Do 80 percent of ransomware attacks really come from AI? MIT Sloan has now withdrawn a working paper that made that eyebrow-raising claim after criticism from security researcher Kevin Beaumont.…

Categories: News

Ransomware negotiator, pay thyself! Rogues committed extortion while working for infosec firms

The Register - Mon, 03/11/2025 - 22:06
This is not what people mean when they say: 'You should get a side hustle'

A ransomware negotiator and an incident response manager at two separate cybersecurity firms have been indicted for allegedly carrying out ransomware attacks of their own against multiple US companies.…

Categories: News

AWS, Nvidia, CrowdStrike seek security startups to enter the arena

The Register - Mon, 03/11/2025 - 20:11
Last year's winner scored a $65M funding round on a $300M valuation

Cloud and AI security startups have two weeks to apply for a program that fast-tracks access to investors and mentors from Amazon Web Services, CrowdStrike, and Nvidia.…

Categories: News

Cybercrooks team up with organized crime to steal pricey cargo

The Register - Mon, 03/11/2025 - 17:38
Old-school cargo heists reborn in the cyber age

Cybercriminals are increasingly orchestrating lucrative cargo thefts alongside organized crime groups (OCGs) in a modern-day resurgence of attacks on freight companies.…

Categories: News

Metropolitan Police hails facial recognition tech after record year for arrests

The Register - Mon, 03/11/2025 - 12:56
But question marks remain over the tech’s biases

London's Metropolitan Police Service (MPS) says the hundreds of live facial recognition (LFR) deployments across the Capital last year led to 962 arrests, according to a new report on the controversial tech's use.…

Categories: News

The race to shore up Europe’s power grids against cyberattacks and sabotage

The Register - Mon, 03/11/2025 - 10:45
Ukraine first to deploy open source security platform to isolate incidents, stop lateral movement

Feature  It was a sunny morning in late April when a massive power outage suddenly rippled across Spain, Portugal, and parts of southwestern France, leaving tens of millions of people without electricity for hours.…

Categories: News

Attackers targeting unpatched Cisco kit notice malware implant removal, install it again

The Register - Sun, 02/11/2025 - 23:30
PLUS: Cyber-exec admits selling secrets to Russia; LastPass isn't checking to see if you're dead; Nation-state backed Windows malware; and more

Infosec in brief  Australia’s Signals Directorate (ASD) last Friday warned that attackers are installing an implant named “BADCANDY” on unpatched Cisco IOS XE devices and can detect deletion of their wares and reinstall their malware.…

Categories: News

Russia finally bites the cybercrooks it raised, arresting suspected Meduza infostealer devs

The Register - Fri, 31/10/2025 - 16:26
Rare case of the state turning on its own, but researchers say it may be doing so more often

Russia's Interior Ministry says police have arrested three suspects it believes helped build and spread the Meduza infostealer.…

Categories: News

Attackers dig up $11M in Garden Finance crypto exploit

The Register - Fri, 31/10/2025 - 13:48
Bitcoin bridge biz offers 10 percent reward to attackers if they play nice

Blockchain company Garden admits it was compromised and temporarily shut down its app after approximately $11 million worth of assets were stolen.…

Categories: News

Resilience, not sovereignty, defines OpenStack's next chapter

The Register - Fri, 31/10/2025 - 11:29
Price hikes, politics, and platform fatigue drive organizations back toward open alternatives

OpenInfra Summit  Sovereignty might be the word of the hour, but the OpenStack community has another – resilience.…

Categories: News

NHS left with sick PCs as suppliers resist Windows 11 treatment

The Register - Fri, 31/10/2025 - 07:29
Hospitals told to upgrade, but some medical device makers haven't prescribed compatibility yet

NHS hospitals are being blocked from fully upgrading to Windows 11 by a small number of suppliers that have yet to make their medical devices compatible with Microsoft's latest operating system.…

Categories: News

Europe preps Digital Euro to enter circulation in 2029

The Register - Fri, 31/10/2025 - 05:20
Because fewer people like banknotes, and payment sovereignty is a problem

The Governing Council of the European Central Bank (ECB) has decided the bloc needs a digital version of the Euro, and ordered work that could see it enter circulation in 2029.…

Categories: News

Suspected Chinese snoops weaponize unpatched Windows flaw to spy on European diplomats

The Register - Thu, 30/10/2025 - 19:20
Expired security cert, real Brussels agenda, plus PlugX malware finish the job

Cyber spies linked to the Chinese government exploited a Windows shortcut vulnerability disclosed in March – but that Microsoft hasn't fixed yet – to target European diplomats in an effort to steal defense and national security details.…

Categories: News

Proton trains new service to expose corporate infosec cover-ups

The Register - Thu, 30/10/2025 - 18:44
Service will tell on compromised organizations, even if they didn't plan on doing so themselves

Some orgs would rather you not know when they've suffered a cyberattack, but a new platform from privacy-focused tech firm Proton will shine a light on the big breaches that might otherwise stay buried.…

Categories: News

Docker Compose vulnerability opens door to host-level writes – patch pronto

The Register - Thu, 30/10/2025 - 16:27
Windows Desktop installer also fixed after DLL hijack flaw rated 8.8 severity

Docker Compose users are being strongly urged to upgrade their versions of the orchestration tool after a researcher uncovered a flaw that could allow attackers to stage path traversal attacks.…

Categories: News

Invisible npm malware pulls a disappearing act – then nicks your tokens

The Register - Thu, 30/10/2025 - 14:19
PhantomRaven slipped over a hundred credential-stealing packages into npm

A new supply chain attack dubbed PhantomRaven has flooded the npm registry with malicious packages that steal credentials, tokens, and secrets during installation. The packages appear safe when first downloaded, making them particularly difficult for security apps to identify.…

Categories: News

Cyberpunks mess with Canada's water, energy, and farm systems

The Register - Thu, 30/10/2025 - 12:00
Infosec agency warns hacktivists broke into critical infrastructure systems to tamper with controls

Hacktivists have breached Canadian critical infrastructure systems to meddle with controls that could have led to dangerous conditions, marking the latest in a string of real-world intrusions driven by online activists rather than spies.…

Categories: News

Postcode Lottery's lucky dip turns into data slip as players draw each other's info

The Register - Thu, 30/10/2025 - 10:54
Biz says 'technical error' caused short-lived leak affecting small number of users

A major UK lottery organization says it has resolved a technical error that exposed customer data to other users.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News