The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 52 min 17 sec ago

Mandiant's brute-forced X account exposes perils of skimping on 2FA

Thu, 11/01/2024 - 17:00
Speculation builds over whether a nearly year-old policy change was to blame

Google-owned security house Mandiant's investigation into how its X account was taken over to push cryptocurrency scams concludes the "likely" cause was a successful brute-force password attack.…

Categories: News

Infoseccers think attackers backed by China are behind Ivanti zero-day exploits

Thu, 11/01/2024 - 15:06
Customers currently left patchless while attacks are expected to increase

Security experts believe Chinese nation-state attackers are actively exploiting two zero-day vulnerabilities in security products made by Ivanti.…

Categories: News

Fidelity National now says 1.3M customers had data stolen by cyber-crooks

Wed, 10/01/2024 - 23:16
It's still not calling it ransomware

Fidelity National Financial now says criminals got hold of data belonging to 1.3 million customers after breaking into its IT network in November.…

Categories: News

Uncle Sam tells hospitals: Meet security standards or no federal dollars for you

Wed, 10/01/2024 - 20:32
Expect new rules in upcoming weeks

US hospitals will be required to meet basic cybersecurity standards before receiving federal funding, according to rules the White House is expected to propose in the next few weeks.…

Categories: News

Be honest. Would you pay off a ransomware crew?

Wed, 10/01/2024 - 19:56
Today us vultures are debating bans on ransom payments, deplorable tactics by extortionists, and more

Kettle  Believe us, we wish there was a simple solution that could stop ransomware dead in its tracks for good.…

Categories: News

Cybercrooks play dress-up as 'helpful' researchers in latest ransomware ruse

Wed, 10/01/2024 - 17:01
Posing as cyber samaritans, scumbags are kicking folks when they're down

Ransomware victims already reeling from potential biz disruption and the cost of resolving the matter are now being subjected to follow-on extortion attempts by criminals posing as helpful security researchers.…

Categories: News

ShinyHunters chief phisherman gets 3 years, must cough up $5M

Wed, 10/01/2024 - 15:30
Sebastien Raoult developed various credential-harvesting websites over more than 2 years

A key member of the ShinyHunters cybercrime group is facing three years in the slammer and being forced to return $5 million in criminal proceeds.…

Categories: News

New year, more bugs in Windows, Adobe, Android to be fixed

Tue, 09/01/2024 - 22:26
Nothing under exploit… Is this the calm before the storm?

Patch Tuesday  Microsoft rang in the New Year with a relatively calm Patch Tuesday: Just 49 Windows security updates including fixes for two critical-rated bugs, plus four high-severity Chrome flaws in Microsoft Edge.…

Categories: News

SEC Twitter hijacked to push fake news of hotly anticipated Bitcoin ETF approval

Tue, 09/01/2024 - 21:48
Buy the hype, sell the, wait, what do we do now?!

The SEC today said its Twitter account was hijacked to wrongly claim it had approved hotly anticipated Bitcoin ETFs, causing the cryptocurrency to spike and then slip in price.…

Categories: News

US Navy sailor swaps sea for cell after accepting bribes from Chinese snoops

Tue, 09/01/2024 - 16:30
Petty officer Wenheng Zhao admitted to taking as many as 14 payoffs in return for non-public military information

A US Naval sailor will face more than two years behind bars after pleading guilty to taking bribes from Chinese spies in exchange for sensitive military information.…

Categories: News

And that's a wrap for Babuk Tortilla ransomware as free decryptor released

Tue, 09/01/2024 - 13:18
Experts' job made 'straightforward' by crooks failing to update encryption schema after three years

Security researchers have put out an updated decryptor for the Babuk ransomware family, providing a free solution for victims of the Tortilla variant.…

Categories: News

Apache OFBiz zero-day pummeled by exploit attempts after disclosure

Mon, 08/01/2024 - 17:45
Issue has been patched so be sure to check your implementations

SonicWall says it has observed thousands of daily attempts to exploit an Apache OFBiz zero-day for nearly a fortnight.…

Categories: News

British Library: Finances remain healthy as ransomware recovery continues

Mon, 08/01/2024 - 13:15
Authors continue to lose out on owed payments as rebuild of digital services drags on

The British Library is denying reports suggesting the recovery costs for its 2023 ransomware attack may reach highs of nearly $9 million as work to restore services remains ongoing.…

Categories: News

Facebook, Instagram now mine web links you visit to fuel targeted ads

Mon, 08/01/2024 - 07:27
Also: Twitter hijackings, BEC arrest, and critical vulnerabilities

Infosec in brief  We gather everyone's still easing themselves into the New Year. Deleting screens of unread emails, putting on a brave face in meetings, and slowly getting up to speed. While you're recovering from the Christmas break, Meta has been busy introducing fresh ways to monetize your web surfing habits while dressing it up as a user experience improvement.…

Categories: News

Ransomware payment ban: Wrong idea at the wrong time

Sat, 06/01/2024 - 13:24
Won't stop the chaos, may lead to attacks with more dire consequences

Opinion  A general ban on ransomware payments, as was floated by some this week, sounds like a good idea. Eliminate extortion as a source of criminal income, and the attacks are undoubtedly going to drop. …

Categories: News

After injecting cancer hospital with ransomware, crims threaten to swat patients

Fri, 05/01/2024 - 21:54
Remember the good old days when ransomware crooks vowed not to infect medical centers?

Extortionists are now threatening to swat hospital patients — calling in bomb threats or other bogus reports to the police so heavily armed cops show up at victims' homes — if the medical centers don't pay the crooks' ransom demands.…

Categories: News

BreachForums boss busted for bond blunders – including using a VPN

Fri, 05/01/2024 - 14:35
Fitzpatrick faces potentially decades in prison later this month, so may as well get some foreign Netflix in beforehand

The cybercriminal behind BreachForums was this week arrested for violating the terms of his pretrial release and will now be held in custody until his sentencing hearing.…

Categories: News

Sandworm's Kyivstar attack should serve as a reminder of the Kremlin crew's 'global reach'

Fri, 05/01/2024 - 07:30
'Almost everything' wiped in the telecom attack, says Ukraine's top cyber spy

Russia's Sandworm crew appear to have been responsible for knocking out mobile and internet services to about 24 million users in Ukraine last month with an attack on telco giant Kyivstar.…

Categories: News

X-ploited: Mandiant restores hijacked Twitter account after attempted crypto heist

Thu, 04/01/2024 - 20:00
Miscreants mock Google-owned security house: 'Change password please'

Miscreants took over security giant Mandiant's Twitter account for several hours on Wednesday in an attempt to steal cryptocurrency, then trolled the Google-owned security shop, telling its admins to change the password.…

Categories: News

Infosec experts divided over 23andMe's 'victim-blaming' stance on data breach

Thu, 04/01/2024 - 18:30
Users apparently at fault after reusing credentials the company didn't check were already compromised

23andMe users' godawful password practices were supposedly to blame for the biotech company's October data disaster, according to its legal reps.…

Categories: News

Pages