News

Microsoft promises more bug payouts, with or without a bounty program

The Register - 5 hours 50 min ago
Critical vulnerabilities found in third-party applications eligible for award under 'in scope by default' move

Microsoft is overhauling its bug bounty program to reward exploit hunters for finding vulnerabilities across all its products and services, even those without established bounty schemes.…

Categories: News

Uncle Sam sues ex-Accenture manager over Army cloud security claims

The Register - 6 hours 17 sec ago
Justice Department alleges federal auditors were misled over compliance with FedRAMP and DoD requirements

The US is suing a former senior manager at Accenture for allegedly misleading the government about the security of an Army cloud platform.…

Categories: News

UK watchdog urged to probe GDPR failures in Home Office eVisa rollout

The Register - 6 hours 48 min ago
Rights groups say digital-only record is leaking data and courting trouble

Civil society groups are urging the UK's data watchdog to investigate whether the Home Office's digital-only eVisa scheme is breaching GDPR, sounding the alarm about systemic data errors and design failures that are exposing sensitive personal information while leaving migrants unable to prove their lawful status.…

Categories: News

Half of exposed React servers remain unpatched amid active exploitation

The Register - 7 hours 54 min ago
Wiz says React2Shell attacks accelerating, ranging from cryptominers to state-linked crews

Half of the internet-facing systems vulnerable to a fast-moving React remote code execution flaw remain unpatched, even as exploitation has exploded into more than a dozen active attack clusters ranging from bargain-basement cryptominers to state-linked intrusion tooling.…

Categories: News

Crypto-crasher Do Kwon jailed for 15 years over $40bn UST bust

The Register - 17 hours 32 min ago
Judge said his fraud was on 'epic, generational scale'

Terraform Labs founder Do Kwon will spend 15 years in jail after pleading guilty to committing fraud.…

Categories: News

Russian hackers debut simple ransomware service, but store keys in plain text

The Register - Thu, 11/12/2025 - 20:56
Operators accidentally left a way for you to get your data back

CyberVolk, a pro-Russian hacktivist crew, is back after months of silence with a new ransomware service. There's some bad news and some good news here.…

Categories: News

Google fixes super-secret 8th Chrome 0-day

The Register - Thu, 11/12/2025 - 17:09
No details, no CVE, update your browser now

Google issued an emergency fix for a Chrome vulnerability already under exploitation, which marks the world's most popular browser's eighth zero-day bug of 2025.…

Categories: News

LastPass hammered with £1.2M fine for 2022 breach fiasco

The Register - Thu, 11/12/2025 - 16:45
UK data regulator says failures were unacceptable for a company managing the world's passwords

The UK's Information Commissioner's Office (ICO) says LastPass must cough up £1.2 million ($1.6 million) after its two-part 2022 data breach compromised information from up to 1.6 million UK users.…

Categories: News

Researcher claims Salt Typhoon spies attended Cisco training scheme

The Register - Thu, 11/12/2025 - 12:42
Skills gained later fed Beijing's cyber operations, according to SentinelLabs expert

A security researcher specializing in tracking China threats claims two of Salt Typhoon's members were former attendees of a training scheme run by Cisco.…

Categories: News

10K Docker images spray live cloud creds across the internet

The Register - Thu, 11/12/2025 - 11:26
Flare warns devs are unwittingly publishing production-level secrets

Docker Hub has quietly become a treasure trove of live cloud keys and credentials, with more than 10,000 public container images exposing sensitive secrets from over 100 companies, including a Fortune 500 firm and a major bank.…

Categories: News

Users report chaos as Legal Aid Agency stumbles back online after cyberattack

The Register - Thu, 11/12/2025 - 09:30
Workers frustrated with security-first changes to workflows and teething issues

Exclusive  Seven months after a landmark cyberattack, the UK's Legal Aid Agency (LAA) says it's returning to pre-breach operations, although law firms are still wrestling with buggy and more laborious systems.…

Categories: News

700+ self-hosted Gits battered in 0-day attacks with no fix imminent

The Register - Wed, 10/12/2025 - 21:31
More than half of internet-exposed instances already compromised

Attackers are actively exploiting a zero-day bug in Gogs, a popular self-hosted Git service, and the open source project doesn't yet have a fix.…

Categories: News

US extradites Ukrainian woman accused of hacking meat processing plant for Russia

The Register - Wed, 10/12/2025 - 17:56
The digital intrusion allegedly caused thousands of pounds of meat to spoil and triggered an ammonia leak in the facility

A Ukrainian woman accused of hacking US public drinking water systems and a meat processing facility on behalf of Kremlin-backed cyber groups was extradited to the US earlier this year and will stand trial in early 2026.…

Categories: News

Microsoft won’t fix .NET RCE bug affecting slew of enterprise apps, researchers say

The Register - Wed, 10/12/2025 - 17:30
Devs and users should know better, Microsoft tells watchTowr

Security researchers have revealed a .NET security flaw thought to affect a host of enterprise-grade products that they say Microsoft refuses to fix.…

Categories: News

Protecting value at risk - the role of a risk operations center

The Register - Wed, 10/12/2025 - 16:00
Why should Keith Richards’ fingers inform your approach to risk?

Partner Content  For years, celebrities have insured their body parts for vast sums of money. Mariah Carey allegedly insured her voice and legs for $70 million during a tour, according to TMZ; and Lloyd’s of London was reported to have insured a wide range of celebrity body parts, from restauranteur Egon Ronay’s taste buds to the fingers of Rolling Stones’ guitarist Keith Richards, which were insured for $1.6 million. …

Categories: News

Crisis in Icebergen: How NATO crafts stories to sharpen cyber skills

The Register - Wed, 10/12/2025 - 12:29
1,500 military digital defenders spent past week cleaning up a series of cyberattacks on fictional island

Andravia and Harbadus – two nations so often at odds with one another – were once again embroiled in conflict over the past seven days, which thoroughly tested NATO's cybersecurity experts' ability to coordinate defenses across battlefield domains.…

Categories: News

Microsoft reports 7.8-rated zero day, plus 56 more in December Patch Tuesday

The Register - Tue, 09/12/2025 - 23:42
Plus critical critical Notepad++, Ivanti, and Fortinet updates, and one of these patches an under-attack security hole

Happy December Patch Tuesday to all who celebrate. This month's patch party includes one Microsoft flaw under exploitation, plus two others listed as publicly known – but just 57 CVEs in total from Redmond.…

Categories: News

How to answer the door when the AI agents come knocking

The Register - Tue, 09/12/2025 - 21:46
Identity management vendors like Okta see an opening to calm CISOs worried about agents running amok

The fear of AI agents running amok has thus far halted the wide deployment of these digital workhorses, Okta's president of Auth0, Shiv Ramji, told The Register.…

Categories: News

Porsche panic in Russia as pricey status symbols forget how to car

The Register - Tue, 09/12/2025 - 17:16
Satellite silence trips immobilizers, leaving owners stuck

Hundreds of Porsches in Russia were rendered immobile last week, raising speculation of a hack, but the German carmaker tells The Register that its vehicles are secure.…

Categories: News

As humanoid robots enter the mainstream, security pros flag the risk of botnets on legs

The Register - Tue, 09/12/2025 - 15:00
Have we learned nothing from sci-fi films and TV shows?

Interview  Imagine botnets in physical form and you've got a pretty good idea of what could go wrong with the influx of AI-infused humanoid robots expected to integrate into society over the next few decades.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News