The Register
Cybercrime isn't just a cover for Iran's government goons - it's a key part of their operations
Iranian government-backed snoops are increasingly using cybercrime malware and ransomware infrastructure in their operations - not just hiding behind criminal masks as a cover for destructive cyber activity, according to security researchers.…
Crooks compromise WordPress sites to push infostealers via fake CAPTCHA prompts
Cyber baddies quietly compromised legitimate WordPress websites, including the campaign site of a US Senate candidate, turning them into launchpads for a global infostealer operation.…
Fake job applications pack malware that kills EDR before stealing data
A Russian-speaking cyber criminal is targeting corporate HR teams with fake CVs that quietly install malware which can disable security tools before stealing data from infected machines.…
Ericsson blames vendor vishing slip-up for breach exposing thousands of records
A voice-phishing scam targeting one of Ericsson's service providers has exposed the personal data of more than 15,000 individuals after attackers sweet-talked an employee into handing over access.…
Protecting democracy means democratizing cybersecurity. Bring on the hackers
Opinion The hacker mind is a curious way to be. To have it means to embody endless analytical curiosity, an awareness of any given rule set as just one system among many, and an ability to see any system in ways that its creators never expected. Combine this with a drive to find the bad and make things better, and you become one of the fundamental forces of the technological universe.…
Polish cops bust alleged teen DDoS kit sellers – youngest just 12
Polish police have referred seven suspected juvenile cybercriminals to family court over an alleged scheme to flog DDoS kits online.…
AI vs AI: Agent hacked McKinsey's chatbot and gained full read-write access in just two hours
Researchers at red-team security startup CodeWall say their AI agent hacked McKinsey's internal AI platform and gained full read and write access to the chatbot in just two hours.…
ShinyHunters claims more high-profile victims in latest Salesforce customers data heist
ShinyHunters told The Register that it has stolen data from about 100 high-profile companies in its latest Salesforce customer data heist, including Salesforce itself.…
EV charger biz ELECQ zapped by ransomware crooks, customer contact data stolen
Exclusive ELECQ, maker of smart electric vehicle (EV) chargers, is warning customers that their personal details may have been stolen in a ransomware attack that encrypted and copied user data from its cloud systems.…
Dutch cops warn 100 alleged scammers: Turn yourselves in or we tell Grandma
Dutch national police are taking a novel stand against scammers - 100 suspects now have less than two weeks to hand themselves in or face public shaming.…
Russian cybercrims phish their way into officials' Signal and WhatsApp accounts
Russian-linked hackers are trying to break into the Signal and WhatsApp accounts of government officials, journalists, and military personnel globally – not by cracking encryption, but by simply tricking people into handing over the keys.…
Microsoft Azure CTO set Claude on his 1986 Apple II code, says it found vulns
AI can reverse engineer machine code and find vulnerabilities in ancient legacy architectures, says Microsoft Azure CTO Mark Russinovich, who used his own Apple II code from 40 years ago as an example.…
Royal Navy races to arm ships against drone threat
Britain's Royal Navy is urgently seeking a ship-based counter-drone system and recent world events likely explain why.…
Iran is the first out-loud cyberwar the US has fought
Kettle Unlike previous military conflicts, the cyber domain has been front and center since the Trump administration invaded Iran, upending the traditionally quiet role played by hackers in military conflicts.…
FBI is investigating breach that may have hit its wiretapping tools
Infosec In Brief The FBI is investigating a breach of its systems which reportedly affected systems related to wiretapping and surveillance.…
AI agents now help attackers, including North Korea, manage their drudge work
interview AI agents allow cybercriminals and nation-state hackers to outsource the "janitorial-type work" needed to plan and carry out cyberattacks, according to Sherrod DeGrippo, Microsoft's GM of global threat intelligence. North Korea is taking advantage.…
Firefox taps Anthropic AI bug hunter, but rancid RAM still flipping bits
Thanks to Anthropic's AI and its bug-detecting abilities, Firefox users can now enjoy stronger security. Unfortunately, if browser crashes rather than security flaws are the problem, Claude probably can't help.…
Spyware disguised as emergency-alert app sent to Israeli smartphones
Hamas-linked attackers are dropping spyware disguised as an emergency-alert app on Israelis' smartphones via SMS messages, according to security researchers.…
Cisco warns of two more SD-WAN bugs under active attack
Just when network admins thought the Cisco SD-WAN patch queue might finally be shrinking, Switchzilla has confirmed miscreants are exploiting more vulnerabilities in its SD-WAN management software.…
Microsoft spots ClickFix campaign getting users to self-pwn on Windows Terminal
A new twist on the long-running ClickFix scam is now tricking Windows users into launching Windows Terminal and pasting malware into it themselves – handing the credential-stealing Lumma infostealer the keys to their browser vault.…