News

Microsoft beefs up Remote Desktop security with ... hard-to-read messages

The Register - 33 min 16 sec ago
Ailing scaling blamed by Windows-maker for unreadable missives

Microsoft's update to harden Remote Desktop against phishing attacks has arrived. When users open a Remote Desktop (.rdp) file, they should now see a warning listing all requested connection settings - or they would if it was displaying correctly.…

Categories: News

It's a myth that you need Mythos to find bugs: Open source models can do it just as well

The Register - 39 min 14 sec ago
OpenAI's first security hire, Ari Herbert-Voss, thinks more automated bug finding will improve security without costing jobs

Black Hat Asia  Open source models can find bugs as effectively as Anthropic's Mythos, according to Ari Herbert-Voss, CEO of AI-powered security startup RunSybil and OpenAI's first security hire.…

Categories: News

Greece relaxes Euro biometric border entry rules amid airport chaos

The Register - 3 hours 5 min ago
Missed flights and more means something has got to give at the border

Greece is taking a flexible approach to introducing the European Union's biometric Entry/Exit System (EES), after some British passport holders missed flights home following the system's implementation on 10 April.…

Categories: News

UK gov pays public £550 to discuss Digital ID – then bans journalists from the room

The Register - 3 hours 51 min ago
Nothing says 'We want honest opinions' like a 36,000-letter mailshot with no awkward questions allowed

Members of the UK government’s People’s Panel on Digital ID will spend two weekends in Birmingham and three evenings on Zoom discussing how Britain should build a national digital identity system, earning £550 plus expenses for their trouble.…

Categories: News

Researchers find cyber-sabotage malware that may predate Stuxnet by five years

The Register - 5 hours 24 min ago
FAST16 could be the first cyberweapon, and its effects could be with us today

Black Hat Asia  Infosec outfit SentinelOne found malware that tries to induce errors in engineering and physics simulation software and therefore represents an attempt at sabotage, and suggests it was created years before the Stuxnet worm that aimed to destroy Iran’s uranium enrichment centrifuges.…

Categories: News

Weak security means attackers could disable all of a city's public EV chargers

The Register - 8 hours 10 min ago
Demonstrated in China, probably applicable elsewhere

Black Hat Asia  Developers of rented internet of things infrastructure – stuff like public EV chargers and shared e-bikes – are prioritizing user convenience over security, and leaving themselves exposed to wide-scale denial of service attacks on their services.…

Categories: News

Dev targeted by sophisticated job scam: 'I let my guard down, and ran the freaking code'

The Register - Thu, 23/04/2026 - 22:38
Legit-looking website, camera-on interviews, jokes about backdoors ... it worked

EXCLUSIVE  It all started with a LinkedIn message, as so many employment scams do these days.…

Categories: News

Chinese attackers are pwning your infrastructure to use in attacks, 10 countries warn

The Register - Thu, 23/04/2026 - 20:25
All the Typhoons, everywhere, all at once

A majority of China-linked threat actors are using compromised routers and IoT devices worldwide, turning this gear into proxy networks to carry out further intrusions, steal sensitive data, and disrupt victim organizations’ operations, according to a joint 10-country advisory.…

Categories: News

Age checks could turn internet into an ID checkpoint, complains Proton CEO

The Register - Thu, 23/04/2026 - 17:20
Push to protect minors risks hitting everyone online

Proton's boss has waded into the age verification fight with a warning that sounds less like child safety and more like an identity checkpoint for the entire internet.…

Categories: News

American farms have a new steward for their safety net, disaster programs... Palantir

The Register - Thu, 23/04/2026 - 14:26
Wins $300M deal over Salesforce, IBM because of 'integration with existing USDA systems,' among other things

Palantir has won a $300 million contract from the US Department of Agriculture (USDA) to support the National Farm Security Action Plan (NFSAP) and modernize how USDA delivers services to America's farmers.…

Categories: News

Medical data of 500k Biobank volunteers listed for sale on Alibaba, UK minister reveals

The Register - Thu, 23/04/2026 - 13:34
World's largest biomedical dataset lifted and shifted on Chinese mega marketplace

Breaking  Details of volunteers of UK-based Biobank, which describes itself as the custodian of the world's most comprehensive biomedical dataset, are for sale on Chinese ecommerce site Alibaba.…

Categories: News

Hybrid clouds have two attack surfaces and you’re not paying enough attention to either

The Register - Thu, 23/04/2026 - 13:15
Windows Admin Center flaws mean on-prem can attack cloud, and vice-versa

Black Hat Asia  Israeli researchers found a series of flaws in Microsoft's Windows Admin Center (WAC) and suggest this shows hybrid cloud management tools are a two-way attack surface that users don't spend enough time worrying about.…

Categories: News

If malware via monitor cables is a matter of national security, this might be the gadget for you

The Register - Thu, 23/04/2026 - 11:45
Orgs can now buy UK cyber agency engineered commercial gadget, but details are slim

GCHQ's cyber arm has entered the hardware game with its first device designed to prevent cyberattacks on display devices.…

Categories: News

Sharing isn’t caring if it’s an admin password

The Register - Thu, 23/04/2026 - 10:28
Keeping it simple for the developers can lead to very complex headaches later

PWNED  Welcome back to PWNED, the column where we celebrate the people who’ve taught us how not to secure a server. If you’ve ever tied your own shoelaces together, then tripped over them, or attempted to dive into a swimming pool but hit your head on the diving board, we’ll be talking about your cyber equivalent.…

Categories: News

Pass the key, passwords have passed their sell-by date

The Register - Thu, 23/04/2026 - 09:00
NCSC passes judgment: passkeys pass muster, passwords fail

The UK's National Cyber Security Centre (NCSC) has officially endorsed passkeys as the default authentication standard, marking the first time the agency has told consumers to move away from passwords entirely.…

Categories: News

Another npm supply chain worm is tearing through dev environments

The Register - Wed, 22/04/2026 - 23:34
Plus, the payload references 'TeamPCP/LiteLLM method'

Yet another npm supply-chain attack is worming its way through compromised packages, stealing secrets and sensitive data as it moves through developers' environments, and it shares significant overlap with the open source infections attributed to TeamPCP last month.…

Categories: News

Anthropic's super-scary bug hunting model Mythos is shaping up to be a nothingburger

The Register - Wed, 22/04/2026 - 22:39
Hackpocalypse deferred

Anthropic's Mythos model is purportedly so good at finding vulnerabilities that the Claude-maker is afraid to make it available to the general public for fear that criminals will take advantage. But early analysis shows that Mythos may not be as dangerous as some would have you believe.…

Categories: News

Google unleashes even more AI security agents to fight the baddies

The Register - Wed, 22/04/2026 - 13:01
Along with a bunch of new services to make sure those same agents don't cause chaos

Google Cloud chief operating officer Francis deSouza has summed up his company's security strategy du jour as follows: "You need to use AI to fight AI."…

Categories: News

France's 'Secure' ID agency probes breach as crooks claim 19M records

The Register - Wed, 22/04/2026 - 12:30
Gov admits 'incident' as forum sellers boast of fresh haul covering up to a third of the population

France's National Agency for "Secure" Documents is explaining a potential data spill just as crooks online claim they've nicked a third of the country's ID information.…

Categories: News

Scotland Yard can keep using live facial recognition on people in London, say judges

The Register - Wed, 22/04/2026 - 12:14
Judges say cops face-slurping not a problem under current human rights laws

London's Metropolitan Police Service (MPS) has survived a legal challenge that attempted to curb its rollout of live facial recognition (LFR) technology across the capital.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News