News

Invisible npm malware pulls a disappearing act – then nicks your tokens

The Register - Thu, 30/10/2025 - 14:19
PhantomRaven slipped over a hundred credential-stealing packages into npm

A new supply chain attack dubbed PhantomRaven has flooded the npm registry with malicious packages that steal credentials, tokens, and secrets during installation. The packages appear safe when first downloaded, making them particularly difficult for security apps to identify.…

Categories: News

Cyberpunks mess with Canada's water, energy, and farm systems

The Register - Thu, 30/10/2025 - 12:00
Infosec agency warns hacktivists broke into critical infrastructure systems to tamper with controls

Hacktivists have breached Canadian critical infrastructure systems to meddle with controls that could have led to dangerous conditions, marking the latest in a string of real-world intrusions driven by online activists rather than spies.…

Categories: News

Postcode Lottery's lucky dip turns into data slip as players draw each other's info

The Register - Thu, 30/10/2025 - 10:54
Biz says 'technical error' caused short-lived leak affecting small number of users

A major UK lottery organization says it has resolved a technical error that exposed customer data to other users.…

Categories: News

France jacks into the Matrix for state messaging – and pays too

The Register - Thu, 30/10/2025 - 10:15
Governments eye comms alternatives as sovereignty worries mount

Comment  Decentralized communications network Matrix is hoping to be the beneficiary as European public and private sector organizations ponder alternatives to the messaging status quo.…

Categories: News

This security hole can crash billions of Chromium browsers, and Google hasn't patched it yet

The Register - Wed, 29/10/2025 - 19:50
Edge, Atlas, Brave among those affected

Exclusive  A critical, currently unpatched bug in Chromium's Blink rendering engine can be abused to crash many Chromium-based browsers within seconds, causing a denial-of-service condition – and, in some tests, freezing the host system.…

Categories: News

EY exposes 4TB+ SQL database to open internet for who knows how long

The Register - Wed, 29/10/2025 - 16:20
The Big Four biz’s big fat fail exposed a boatload of secrets online

A Dutch cybersecurity outfit says its lead researcher recently stumbled upon a 4TB+ SQL Server backup file belonging to EY exposed to the web, effectively leaking the accounting and consulting megacorp's secrets.…

Categories: News

Marketing giant Dentsu warns staff after Merkle data raid

The Register - Wed, 29/10/2025 - 12:46
Emails confirm payroll and bank details lifted in cyberattack on US subsidiary

Global marketing giant Dentsu is writing to current and former staff after a cyberattack on a subsidiary led to bank, payroll, and other sensitive data being stolen.…

Categories: News

Sole trader dispatched almost 1M spam texts to hard-up Brits, says watchdog

The Register - Wed, 29/10/2025 - 11:46
ICO fined Bharat Singh Chand £200,000 after receiving 19,138 complaints

Britain's data watchdog has fined a sole trader £200,000 for nearly a million spam texts targeting people in debt – almost 20 pence per message.…

Categories: News

UK government on the lookout for bargain-priced CTO

The Register - Wed, 29/10/2025 - 09:30
Dangles £100K for someone to fix £23B tech mess

The UK government is on the hunt for a new CTO after incumbent David Knott announced his departure, citing family reasons.…

Categories: News

9 in 10 Exchange servers in Germany still running out-of-support software

The Register - Wed, 29/10/2025 - 08:00
Cybersecurity agency urges organizations to upgrade or risk total network compromise

Germany's infosec office (BSI) is sounding the alarm after finding that 92 percent of the nation's Exchange boxes are still running out-of-support software, a fortnight after Microsoft axed versions 2016 and 2019.…

Categories: News

Australian police building AI to translate emoji used by ‘crimefluencers’

The Register - Wed, 29/10/2025 - 03:48
Five Eyes intel alliance has created a team to target these scum who prey on kids

Australia’s Federal Police (AFP) is working on an AI to interpret emojis and the slang used online by Generation Z and Generation Alpha, so it can understand them when they discuss crime online.…

Categories: News

Clearview AI faces criminal heat for ignoring EU data fines

The Register - Tue, 28/10/2025 - 14:22
Noyb says New York-based facial recognition biz flouted GDPR orders and kept scraping anyway

Privacy advocates at Noyb filed a criminal complaint against Clearview AI for scraping social media users' faces without consent to train its AI algorithms.…

Categories: News

AI browsers face a security flaw as inevitable as death and taxes

The Register - Tue, 28/10/2025 - 12:46
Agentic features open the door to data exfiltration or worse

Feature  With great power comes great vulnerability. Several new AI browsers, including OpenAI's Atlas, offer the ability to take actions on the user's behalf, such as opening web pages or even shopping. But these added capabilities create new attack vectors, particularly prompt injection.…

Categories: News

Beatings, killings, and lasting fear: The human toll of MoD's Afghan data breach

The Register - Tue, 28/10/2025 - 11:51
Research submitted to Parliament details deaths, raids, and mental trauma linked to 2022 relocation leak

Research submitted to the UK Parliament has revealed explicit threats to life and the deaths of family members and colleagues directly linked to the Ministry of Defence's 2022 Afghan relocation scheme data breach.…

Categories: News

Google says reports of a Gmail breach have been greatly exaggerated

The Register - Tue, 28/10/2025 - 10:42
Ad and cloud biz rubbishes claims that 183 million accounts broken into

Panic spread faster than a phishing email on Tuesday after claims of a massive Gmail breach hit the headlines – but Google says it's all nonsense.…

Categories: News

Chatbots parrot Putin's propaganda about the illegal invasion of Ukraine

The Register - Tue, 28/10/2025 - 10:00
Fake views from Moscow's pet media outlets appear in about one in five responses

Popular chatbots powered by large language models cited links to Russian state-attributed sources in up to a quarter of answers about the war in Ukraine, raising fresh questions over whether AI risks undermining efforts to enforce sanctions on Moscow-backed media.…

Categories: News

Marks & Spencer swaps out TCS for fresh helpdesk deal

The Register - Tue, 28/10/2025 - 08:30
Move follows months-long procurement process as retailer refreshes parts of its IT support setup

UK retailer Marks & Spencer has replaced Tata Consultancy Services as its IT service desk provider following a procurement process that began in January.…

Categories: News

WSUS attacks hit 'multiple' orgs as Google and other infosec sleuths ring Redmond’s alarm bell

The Register - Mon, 27/10/2025 - 23:54
If at first you don’t succeed, patch and patch again

More threat intel teams are sounding the alarm about a critical Windows Server Update Services (WSUS) remote code execution vulnerability, tracked as CVE-2025-59287 and now under active exploitation, just days after Microsoft pushed an emergency patch and the US Cybersecurity and Infrastructure Security Agency added the bug to its Known Exploited Vulnerabilities catalog.…

Categories: News

Iran's school for cyberspies could've used a few more lessons in preventing breaches

The Register - Mon, 27/10/2025 - 16:19
Ravin Academy confirms the intrusion on Telegram, says student data was stolen

Iran's school for state-sponsored cyberattackers admits it suffered a breach exposing the names and other personal information of its associates and students.…

Categories: News

You have one week to opt out or become fodder for LinkedIn AI training

The Register - Mon, 27/10/2025 - 15:17
Nations previously exempt from scraping now in the firing line

If you thought living in Europe, Canada, or Hong Kong meant you were protected from having LinkedIn scrape your posts to train its AI, think again. You have a week to opt out before the Microsoft subsidiary assumes you're fine with it.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News