The Register
Russia-linked crooks bought a bank for Christmas to launder cyber loot
On Christmas Day 2024, a Russian-linked laundering network bought itself a very special present: a controlling stake in a Kyrgyzstan bank, later used to wash cybercrime profits and funnel money into Moscow's war machine, according to the UK's National Crime Agency (NCA).…
ZTE Launches ZXCSec MAF security solution for large model
Partner Content At MWC Shanghai 2025, ZTE has officially launched its ZXCSec MAF product, a dedicated application-layer security protection device specifically designed for large model services.…
Google links Android’s Quick Share to Apple’s AirDrop, without Cupertino’s help
Google has linked Android’s wireless peer-to-peer file sharing tool Quick Share to Apple’s equivalent AirDrop.…
SEC drops SolarWinds lawsuit that painted a target on CISOs everywhere
The US Securities and Exchange Commission (SEC) has abandoned the lawsuit it pursued against SolarWinds and its chief infosec officer for misleading investors about security practices that led to the 2020 SUNBURST attack.…
Salesforce-linked data breach claims 200+ victims, has ShinyHunters’ fingerprints all over it
Salesforce has disclosed another third-party breach in which criminals - likely ShinyHunters (again) - may have accessed hundreds of its customers' data.…
LLM-generated malware is improving, but don't expect autonomous attacks tomorrow
LLMs are getting better at writing malware - but they're still not ready for prime time.…
Fired techie admits sabotaging ex-employer, causing $862K in damage
An Ohio IT contractor has pleaded guilty to breaking into his former employer's systems and causing nearly $1 million worth of damage after being fired.…
TP-Link accuses rival Netgear of 'smear campaign' over alleged China ties
TP-Link is suing rival networking vendor Netgear, alleging that the rival and its CEO carried out a smear campaign by falsely suggesting, it says, that the biz had been infiltrated by the Chinese government.…
Education boards left gates wide open for PowerSchool mega-breach, say watchdogs
Canadian privacy watchdogs say that school boards must shoulder part of the blame for the PowerSchool mega-breach, not just the ed-tech giant that lost control of millions of student and staff records.…
Palo Alto kit sees massive surge in malicious activity amid mystery traffic flood
Malicious traffic targeting Palo Alto Networks' GlobalProtect portals surged almost 40-fold in the space of 24 hours, hitting a 90-day high and putting defenders on alert for whatever comes next.…
Palo Alto CEO tips nation-states to weaponize quantum computing by 2029
Palo Alto Networks CEO Nikesh Arora has suggested hostile nation-states will possess quantum computers in 2029, or even a little earlier, at which point most security appliances will need to be replaced.…
US, UK, Australia sanction Lockbit gang’s hosting provider
US, UK, Australia sanction Lockbit gang’s hosting provider ‘Bulletproof’ hosts partly dodged the last attack of this sort Cybercrime fighters in the US, UK, and Australia have imposed sanctions on several Russia-linked entities they claim provide hosting services to ransomware gangs Lockbit, BlackSuit, and Play.…
Fortinet 'fesses up to second 0-day within a week
Fortinet has confirmed that another flaw in its FortiWeb web application firewall has been exploited as a zero-day and issued a patch, just days after disclosing a critical bug in the same product that attackers had found and abused a month earlier.…
Amazon security boss: Hostile countries use cyber targeting for physical military strikes
interview Warfare has become a joint cyber-kinetic endeavor, with nations using cyber operations to scope out targets before launching missiles. And private companies, including shipping, transportation, and electronics manufacturers, are getting caught in the crossfire, according to Amazon.…
Researchers claim 'largest leak ever' after uncovering WhatsApp enumeration flaw
Researchers in Austria used a flaw in WhatsApp to gather the personal data of more than 3.5 billion users in what they believe amounts to the "largest data leak in history."…
Tens of thousands more ASUS routers pwned by suspected, evolving China operation
Around 50,000 ASUS routers have been compromised in a sophisticated attack that researchers believe may be linked to China, according to findings released today by SecurityScorecard's STRIKE team.…
Selling technology investments to the board: a strategic guide for CISOs and CIOs
Partner Content In today's enterprise environment, technology investments are no longer judged solely by their technical sophistication. Approval depends on their ability to support business goals, mitigate risk, and create value for shareholders. CIOs and CISOs are expected to present their strategies not as technical upgrades but as business enablers. The challenge is not just making the right investments, but framing them in ways that resonate at the boardroom level.…
China recruiting spies in the UK with fake headhunters and ‘sites like LinkedIn’
Chinese spies are using social media and fake recruitment agents to recruit sources with access to sensitive information in the UK.…
Self-replicating botnet attacks Ray clusters
Malefactors are actively attacking internet-facing Ray clusters and abusing the open source AI framework to spread a self-replicating botnet that mines for cryptocurrency, steals data, and launches distributed denial of service (DDoS) attacks.…
FCC looks to torch Biden-era cyber rules sparked by Salt Typhoon mess
The Federal Communications Commission (FCC) will vote this week on whether to scrap Biden-era cybersecurity rules, enacted after the Salt Typhoon attacks came to light in 2024, that required telecom carriers to adopt basic security controls.…