News

China-linked snoops have been exploiting Dell 0-day since mid-2024, using 'ghost NICs' to avoid detection

The Register - 3 hours 37 min ago
Full scale of infections remains 'unknown'

China-linked attackers exploited a maximum-severity hardcoded-credential bug in Dell RecoverPoint for Virtual Machines as a zero-day since at least mid-2024. It's all part of a long-running effort to backdoor infected machines for long-term access, according to Google's Mandiant incident response team.…

Categories: News

China remains embedded in US energy networks 'for the purpose of taking it down'

The Register - Tue, 17/02/2026 - 21:45
Plus 3 new goon squads targeted critical infrastructure last year

Three new threat groups began targeting critical infrastructure last year, while a well-known Beijing-backed crew - Volt Typhoon - continued to compromise cellular gateways and routers, and then break into US electric, oil, and gas companies in 2025, according to Dragos' annual threat report published on Tuesday.…

Categories: News

US lawyers fire up privacy class action accusing Lenovo of bulk data transfers to China

The Register - Tue, 17/02/2026 - 13:42
Keep behavioral tracking American? PC giant says the claim is 'false'

A US law firm has accused Lenovo of violating Justice Department strictures about the bulk transfer of data to foreign adversaries, namely China.…

Categories: News

Polish cops nab 47-year-old man in Phobos ransomware raid

The Register - Tue, 17/02/2026 - 13:14
Police say seized kit contained logins, passwords, and server IP addresses

Polish police have arrested and charged a man over ties to the Phobos ransomware group following a property raid.…

Categories: News

UK.gov launches cyber 'lockdown' campaign as 80% of orgs still leave door open

The Register - Tue, 17/02/2026 - 11:30
Digital burglaries remain routine, and data shows most corps still don't stick to basic infosec standards

Britain is telling businesses to "lock the door" on cybercrims as new government data suggests most still haven't even found the latch.…

Categories: News

Ireland joins regulator smackdown after X's Grok AI accused of undressing people

The Register - Tue, 17/02/2026 - 11:08
Social media platform’s legal eagles prepare to fight ever-growing number of countries

The Irish Data Protection Commission (DPC) is the latest regulator to open an investigation into Elon Musk's X following repeated reports of harmful image generation by the platform's Grok AI chatbot.…

Categories: News

MoD ticks shopping list as PM considers weapons budget boost

The Register - Tue, 17/02/2026 - 09:14
Top brass splash cash on acoustic targeting, hypersonic missiles…and Red Hat

Keir Starmer could ramp up the UK's defense spending plans faster than planned as the MoD reeled off new purchases for Britain's armed forces.…

Categories: News

Canada Goose ruffles feathers over 600K record dump, says leak is old news

The Register - Mon, 16/02/2026 - 18:01
Fashion brand latest to succumb to ShinyHunters' tricks

Canada Goose says an advertised breach of 600,000 records is an old raid and there are no signs of a recent compromise.…

Categories: News

Dutch cops arrest man after sending him confidential files by mistake

The Register - Mon, 16/02/2026 - 17:26
Bungled link handed over sensitive docs, and when recipient didn't cooperate, police opted for cuffs

Dutch police have arrested a man for "computer hacking" after accidentally handing him their own sensitive files and then getting annoyed when he didn't hand them back.…

Categories: News

You probably can't trust your password manager if it's compromised

The Register - Mon, 16/02/2026 - 16:20
Researchers demo weaknesses affecting some of the most popular options

Academics say they found a series of flaws affecting three popular password managers, all of which claim to protect user credentials in the event that their servers are compromised.…

Categories: News

Open source registries don't have enough money to implement basic security

The Register - Mon, 16/02/2026 - 15:00
Free beer is great. Securing the keg costs money

fosdem 2026  Open source registries are in financial peril, a co-founder of an open source security foundation warned after inspecting their books. And it's not just the bandwidth costs that are killing them.…

Categories: News

Google patches Chrome zero-day as in-the-wild exploits surface

The Register - Mon, 16/02/2026 - 12:39
High-severity CSS flaw let malicious webpages run code inside the sandbox

Google has quietly pushed out an emergency Chrome fix after attackers were caught exploiting the browser's first reported zero-day of 2026.…

Categories: News

US appears open to reversing some China tech bans

The Register - Mon, 16/02/2026 - 04:35
PLUS: India demands two-hour deepfake takedowns; Singapore embraces AI; Japanese robot wolf gets cuddly; And more

Asia In Brief  The United States may be about to change its policies regarding Chinese technology companies.…

Categories: News

Infosec exec sold eight zero-day exploit kits to Russia, says DoJ

The Register - Sun, 15/02/2026 - 23:22
PLUS: Fake ransomware group exposed; EC blesses Google's big Wiz deal; Alleged sewage hacker cuffed; And more

Infosec in Brief  The former General Manager of defense contractor L3Harris’s cyber subsidiary Trenchant sold eight zero-day exploit kits to Russia, according to a court filing last week.…

Categories: News

Attackers finally get around to exploiting critical Microsoft bug from 2024

The Register - Fri, 13/02/2026 - 18:45
As if admins haven't had enough to do this week

Ignore patches at your own risk. According to Uncle Sam, a SQL injection flaw in Microsoft Configuration Manager patched in October 2024 is now being actively exploited, exposing unpatched businesses and government agencies to attack.…

Categories: News

Top Dutch telco Odido admits 6.2M customers caught in contact system caper

The Register - Fri, 13/02/2026 - 11:45
Names, addresses, bank account numbers accessed – but biz insists passwords and call data untouched

The Netherlands' largest mobile network operator (MNO) has admitted that a breach of its customer contact system may have affected around 6.2 million people.…

Categories: News

Enforcing piracy policy earned helpdesk worker death threats

The Register - Fri, 13/02/2026 - 07:27
Years later, he read about his antagonist doing time for murder

On Call  Welcome to another installment of On Call, The Register's weekly reader-contributed column that tells your tech support tales.…

Categories: News

30+ Chrome extensions disguised as AI chatbots steal users' API keys, emails, other sensitive data

The Register - Thu, 12/02/2026 - 22:59
Are you a good bot or a bad bot?

More than 30 malicious Chrome extensions installed by at least 260,000 users purport to be helpful AI assistants, but they steal users' API keys, email messages, and other personal data. Even worse: many of these are still available on the Chrome Web Store as of this writing.…

Categories: News

Who's the bossware? Ransomware slingers like employee monitoring tools, too

The Register - Thu, 12/02/2026 - 20:07
As if snooping on your workers wasn't bad enough

Your supervisor may like using employee monitoring apps to keep tabs on you, but crims like the snooping software even more. Threat actors are now using legit bossware to blend into corporate networks and attempt ransomware deployment.…

Categories: News

Apple patches decade-old iOS zero-day, possibly exploited by commercial spyware

The Register - Thu, 12/02/2026 - 14:01
Flaw abused 'in an extremely sophisticated attack against specific targeted individuals'

Apple patched a zero-day vulnerability affecting every iOS version since 1.0, used in what the company calls an "extremely sophisticated attack" against targeted individuals.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News