News

French Football Federation faces own-goal after club software data breach

The Register - 29 min 18 sec ago
Zut alors! Cybercrooks scored names, numbers, and license IDs

The French Football Federation (FFF) has conceded that attackers broke into its member management software using a compromised account, scoring a match sheet's worth of player data in the process.…

Categories: News

Google and Apple ordered to stop fake government TXTs

The Register - 10 hours 18 min ago
PLUS: India wants to build big airliners; Half of South Koreans caught in data leak; Minimum wage for gig workers in Oz; And more!

Asia in Brief  Singapore’s government last week told Google and Apple to prevent fake government messages.…

Categories: News

Swiss government says give M365, and all SaaS, a miss as it lacks end-to-end encryption

The Register - 12 hours 5 min ago
PLUS: Exercise app tells spies to stop mapping; GitLab scan reveals 17,000 secrets; Leak exposes Iran’s Charming Kitten; And more!

Infosec In Brief  Switzerland’s Conference of Data Protection Officers, Privatim, last week issued a resolution calling on Swiss public bodies to avoid using hyperscale clouds and SaaS services due to security concerns.…

Categories: News

PostHog admits Shai-Hulud 2.0 was its biggest ever security bungle

The Register - Fri, 28/11/2025 - 16:22
Automation flaw in CI/CD workflow let a bad pull request unleash worm into npm

PostHog says the Shai-Hulud 2.0 npm worm compromise was "the largest and most impactful security incident" it's ever experienced after attackers slipped malicious releases into its JavaScript SDKs and tried to auto-loot developer credentials.…

Categories: News

Brit telco Brsk confirms breach as bidding begins for 230K+ customer records

The Register - Fri, 28/11/2025 - 15:52
Crims claim to know which customers are marked 'vulnerable'

British telco Brsk is investigating claims that it was attacked by cybercriminals who made off with more than 230,000 files.…

Categories: News

GrapheneOS bails on OVHcloud over France's privacy stance

The Register - Fri, 28/11/2025 - 15:44
Project cites fears of state access as cloud sovereignty row deepens

French cloud outfit OVHcloud took another hit this week after GrapheneOS, a mobile operating system, said it was ditching the company's servers over concerns about France's approach to digital privacy.…

Categories: News

TryHackMe races to add women to Christmas cyber challenge roster after backlash

The Register - Fri, 28/11/2025 - 13:32
Training outfit scrambles to fix all-male lineup before December kickoff

Cybersecurity training provider TryHackMe is scrambling to recruit women infosec pros to help with its Christmas challenge following backlash concerning a lack of gender diversity.…

Categories: News

OBR drags in cyber bigwig after Budget leak blunder

The Register - Fri, 28/11/2025 - 12:02
Ex-NCSC chief Ciaran Martin asked to examine how forecast ended up online ahead of schedule

The Office for Budget Responsibility (OBR) has drafted in former National Cyber Security Centre (NCSC) chief Ciaran Martin to sniff out how its Budget day forecast wandered onto the open internet before the Chancellor had even reached the dispatch box.…

Categories: News

UK digital ID plan gets a price tag at last – £1.8B

The Register - Fri, 28/11/2025 - 11:19
OBR says the scheme will cost £600M a year with no identified savings

The UK government has finally put a £1.8 billion price tag on its digital ID plans – days after the minister responsible refused to name a figure.…

Categories: News

Korean web giant Naver acquired crypto exchange Upbit, which reported a $30m heist a day later

The Register - Fri, 28/11/2025 - 00:41
Talk about buyer’s remorse

South Korean web giant Naver has had an interesting week, after it acquired a cryptocurrency exchange that the next day revealed it had suffered a serious cyberattack.…

Categories: News

Zendesk users targeted as Scattered Lapsus$ Hunters spin up fake support sites

The Register - Thu, 27/11/2025 - 16:30
ReliaQuest finds fresh crop of phishing domains and toxic tickets

Scattered Lapsus$ Hunters may be circling Zendesk users for its latest extortion campaign, with new phishing domains and weaponized helpdesk tickets uncovered by ReliaQuest.…

Categories: News

OpenAI cuts off Mixpanel after analytics leak exposes API users

The Register - Thu, 27/11/2025 - 15:45
ChatGPT maker places other vendors under review following breach

OpenAI says API users may be affected by a recent breach at its former data analytics provider, Mixpanel.…

Categories: News

FCC sounds alarm after emergency tones turned into potty-mouthed radio takeover

The Register - Thu, 27/11/2025 - 14:00
Agency flags hijacks of insecure studio-to-transmitter gear after attackers pipe in fake alerts and vulgar audio

Malicious intruders have hijacked US radio gear to turn emergency broadcast tones into a profanity-laced alarm system.…

Categories: News

Asahi admits ransomware gang may have spilled almost 2M people's data

The Register - Thu, 27/11/2025 - 13:15
Brewer finally tallies fallout from September attack as it pushes earnings into 2026

Asahi has finally done the sums on September's ransomware attack in Japan, conceding the crooks may have helped themselves to personal data tied to almost 2 million people.…

Categories: News

Scottish council still rebuilding systems two years after ransomware attack

The Register - Thu, 27/11/2025 - 12:15
Audit sympathetic toward Comhairle nan Eilean Siar as staff stretched to capacity trying to recover

Auditors remain concerned about the cyber resilience of a Scottish council as some systems are yet to be fully rebuilt following a ransomware attack in November 2023.…

Categories: News

Gainsight CEO downplays breach, says only a 'handful' of customers had data stolen

The Register - Wed, 26/11/2025 - 20:37
Maybe if your hand has 200+ fingers...

Gainsight CEO Chuck Ganapathi downplayed the victim count related to his company's recent breach, saying he's only aware of "a handful of customers" who had their data affected after Salesforce flagged unusual activity involving Gainsight's connected app.…

Categories: News

Botnet takes advantage of AWS outage to smack 28 countries

The Register - Wed, 26/11/2025 - 18:44
Even worse, it might have been a 'test run' for future attacks

A Mirai-based botnet named ShadowV2 emerged during last October's widespread AWS outage, infecting IoT devices across industries and continents, likely serving as a "test run" for future attacks, according to Fortinet's FortiGuard Labs.…

Categories: News

Mobile industry warns patchwork cyber regs are driving up costs

The Register - Wed, 26/11/2025 - 17:12
GSMA says fragmented, poorly designed laws add burdens without making networks any safer

Mobile operators' core cybersecurity spending is projected to more than double by 2030 as threats evolve, while poorly designed and fragmented policy frameworks add extra compliance costs, according to industry group the GSMA.…

Categories: News

CodeRED emergency alert system CodeDEAD after INC ransomware attack

The Register - Wed, 26/11/2025 - 14:33
Regions across US affected, and one tore up its contract for the product

Towns and cities across the US are without access to their CodeRED emergency alert system following a cyberattack on vendor Crisis24.…

Categories: News

US Navy scuttles Constellation frigate program for being too slow for tomorrow's threats

The Register - Wed, 26/11/2025 - 14:10
Service limits 20-ship line to two hulls after redesigns and delays torpedo schedule

The US Navy is scrapping an entire shipbuilding program in an effort to find alternatives that can be delivered faster to counter expected threats.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News