News

Zoomers are officially worse at passwords than 80-year-olds

The Register - 2 hours 49 min ago
They can probably set up a printer faster, but look elsewhere for cryptography advice

Gen Z can get off their digital high horses because their passwords are no more secure than their grandparents'.…

Categories: News

'Largest-ever' cloud DDoS attack pummels Azure with 3.64B packets per second

The Register - Mon, 17/11/2025 - 21:54
Aisuru botnet strikes again, bigger and badder

Azure was hit by the "largest-ever" cloud-based distributed denial of service (DDoS) attack, originating from the Aisuru botnet and measuring 15.72 terabits per second (Tbps), according to Microsoft.…

Categories: News

Pentagon and soldiers let too many secrets slip on social networks, watchdog says

The Register - Mon, 17/11/2025 - 21:32
Ready, aim, mire

Loose lips sink ships, the classic line goes. Information proliferation in the internet age has government auditors reiterating that loose tweets can sink fleets, and they're concerned that the Defense Department isn't doing enough to stop sensitive info from getting out there. …

Categories: News

Security researcher calls BS on Coinbase breach disclosure timeline

The Register - Mon, 17/11/2025 - 19:47
Claims he reported the attack in January after fraudsters tried to scam him

A security researcher says Coinbase knew about a December 2024 security breach during which miscreants bribed its support staff into handing over almost 70,000 customers' details at least four months before it disclosed the data theft.…

Categories: News

Selling your identity to North Korean IT scammers isn't a sustainable side hustle

The Register - Mon, 17/11/2025 - 17:25
Four US citizens tried it, and the DoJ just secured guilty pleas from all of 'em

It sounds like easy money. North Koreans pay you to use your identity so they can get jobs working for American companies in IT. However, if you go this route, the US Department of Justice promises to catch up with you eventually.…

Categories: News

Game over: Europol storms gaming platforms in extremist content sweep

The Register - Mon, 17/11/2025 - 15:38
Law enforcement agency’s referral blitz hit gaming platforms hard, surfacing thousands of extremist URLs

Europol's Internet Referral Unit (EU IRU) says a November 13 operation across gaming and "gaming-adjacent" services led its partners to report thousands of URLs hosting terrorist and hate-fueled material, including 5,408 links to jihadist content, 1,070 pushing violent right-wing extremist or terrorist propaganda, and 105 tied to racist or xenophobic groups.…

Categories: News

Overconfidence is the new zero-day as teams stumble through cyber simulations

The Register - Mon, 17/11/2025 - 15:00
Readiness metrics have flatlined since 2023, with most sectors slipping backward as teams fumble crisis drills

Teams that think they're ready for a major cyber incident are scoring barely 22 percent accuracy and taking more than a day to contain simulated attacks, according to new data out Monday.…

Categories: News

Eurofiber admits crooks swiped data from French unit after cyberattack

The Register - Mon, 17/11/2025 - 12:44
Regulator reports suggest telco was extorted, but company remains coy as to whether it paid

French telco Eurofiber says cybercriminals swiped company data during an attack last week that also affected some internal systems.…

Categories: News

UK prosecutors seize £4.11M in crypto from Twitter mega-hack culprit

The Register - Mon, 17/11/2025 - 11:56
Civil recovery order targets PlugwalkJoe's illicit gains while he serves US sentence

British prosecutors have secured a civil recovery order to seize crypto assets worth £4.11 million ($5.39 million) from Twitter hacker Joseph James O'Connor, clawing back the proceeds of a scam that used hijacked celebrity accounts to solicit digital currency and threaten high-profile individuals.…

Categories: News

Jaguar Land Rover hack cost India's Tata Motors around $2.4 billion and counting

The Register - Mon, 17/11/2025 - 01:41
PLUS: Active noise cancellation for entire rooms; More trouble for SK telecom; The Wiggles apologize for bad batteries; and more

Asia In Brief  India’s Tata Motors, owner of Jaguar Land Rover, has revealed the cyberattack that shut down production in the UK has so far cost it around £1.8 billion ($2.35 billion).…

Categories: News

Logitech leaks data after zero-day attack

The Register - Sun, 16/11/2025 - 23:05
PLUS: CISA still sitting on telecoms security report; DoorDash phished again; Lumma stealer returns; and more

INFOSEC IN BRIEF  The US Senate passed a resolution in July to force the US Cybersecurity and Infrastructure Security Agency (CISA) to publish a 2022 report into poor security in the telecommunications industry but the agency has not delivered the document.…

Categories: News

Fortinet finally cops to critical make-me-admin bug under active exploitation

The Register - Fri, 14/11/2025 - 20:39
More than a month after PoC made public

Fortinet finally published a security advisory on Friday for a critical FortiWeb path traversal vulnerability under active exploitation – but it appears digital intruders got a month's head start.…

Categories: News

Crims poison 150K+ npm packages with token-farming malware

The Register - Fri, 14/11/2025 - 18:22
Amazon spilled the TEA

Yet another supply chain attack has hit the npm registry in what Amazon describes as "one of the largest package flooding incidents in open source registry history" - but with a twist. Instead of injecting credential-stealing code or ransomware into the packages, this one is a token farming campaign.…

Categories: News

FBI flags scam targeting Chinese speakers with bogus surgery bills

The Register - Fri, 14/11/2025 - 16:16
Crooks spoof US insurers, threaten bogus extradition to pry loose personal data and cash

Chinese speakers in the US are being targeted as part of an aggressive health insurance scam campaign, the FBI warns.…

Categories: News

CISA flags imminent threat as Akira ransomware starts hitting Nutanix AHV

The Register - Fri, 14/11/2025 - 15:02
Advisory updated as leading cybercrime crew opens up its target pool

The US Cybersecurity and Infrastructure Security Agency (CISA) has issued new guidance to organizations on the Akira ransomware operation, which poses an imminent threat to critical sectors.…

Categories: News

Clop claims it hacked 'the NHS.' Which bit? Your guess is as good as theirs

The Register - Fri, 14/11/2025 - 09:30
Cybercrime crew has ravaged multiple private organizations using Oracle EBS zero-day for months

The UK's National Health Service (NHS) is investigating claims of a cyberattack by extortion crew Clop.…

Categories: News

Kubernetes overlords decide Ingress NGINX isn’t worth saving

The Register - Fri, 14/11/2025 - 01:12
Maintenance to end next year after ‘helpful options’ became ‘serious security flaws’

Kubernetes maintainers have decided it’s not worth trying to save Ingress NGINX and will instead stop work on the project and retire it in March 2026.…

Categories: News

Chinese spies told Claude to break into about 30 critical orgs. Some attacks succeeded

The Register - Thu, 13/11/2025 - 23:12
Anthropic dubs this the first AI-orchestrated cyber snooping campaign

Chinese cyber spies used Anthropic's Claude Code AI tool to attempt digital break-ins at about 30 high-profile companies and government organizations – and the government-backed snoops "succeeded in a small number of cases," according to a Thursday report from the AI company.…

Categories: News

Ransomed CTO falls on sword, refuses to pay extortion demand

The Register - Thu, 13/11/2025 - 20:02
Checkout.com will instead donate the amount to fund cybercrime research

Ransomware is a huge business, because affected orgs keep forking over money to get their data back. However, instead of paying a ransom demand after getting hit by extortionists last week, payment services provider Checkout.com donated the demanded amount to fund cybercrime research.…

Categories: News

Ubuntu 25.10's Rusty sudo holes quickly welded shut

The Register - Thu, 13/11/2025 - 15:45
The goal of 'oxidizing' the Linux distro hits another bump

Two vulnerabilities in Ubuntu 25.10's new "sudo-rs" command have been found, disclosed, and fixed in short order.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News