News

Ransomware attacks kept climbing in 2025 as gangs refused to stay dead

The Register - Thu, 08/01/2026 - 14:47
Cop wins hit crime infrastructure, not the people behind it

If 2025 was meant to be the year ransomware started dying, nobody appears to have told the attackers.…

Categories: News

CISA flags actively exploited Office relic alongside fresh HPE flaw

The Register - Thu, 08/01/2026 - 13:44
Max-severity OneView hole joins a PowerPoint bug that should've been retired years ago

CISA has added a pair of security holes to its actively exploited list, warning that attackers are now abusing a maximum-severity bug in HPE's OneView management software and a years-old flaw in Microsoft Office.…

Categories: News

UK regulators swarm X after Grok generated nudes from photos

The Register - Thu, 08/01/2026 - 12:40
Lawyers say Musk's platform may face punishment under Online Safety Act priority offenses

Elon Musk's X platform is under fire as UK regulators close in on mounting reports that the platform's AI chatbot, Grok, is generating sexual imagery without users' consent.…

Categories: News

Maximum-severity n8n flaw lets randos run your automation server

The Register - Thu, 08/01/2026 - 11:40
Unauthenticated RCE means anyone on the network can seize full control

A maximum-severity bug in the popular automation platform n8n has left an estimated 100,000 servers wide open to complete takeover, courtesy of a flaw so bad it doesn't even require logging in.…

Categories: News

OpenAI putting bandaids on bandaids as prompt injection problems keep festering

The Register - Thu, 08/01/2026 - 11:01
Happy Groundhog Day!

Security researchers at Radware say they've identified several vulnerabilities in OpenAI's ChatGPT service that allow the exfiltration of personal information.…

Categories: News

Are criminals vibe coding malware? All signs point to yes

The Register - Thu, 08/01/2026 - 11:00
They also hallucinate when writing ransomware code

Interview  With everyone from would-be developers to six-year-old kids jumping on the vibe coding bandwagon, it shouldn't be surprising that criminals like automated coding tools too.…

Categories: News

Logitech macOS mouse mayhem traced to expired dev certificate

The Register - Thu, 08/01/2026 - 09:30
Company says it dropped the ball, apologizes for wasting people's time

Logitech says an expired developer certificate is to blame after swaths of customers were left infuriated when their mice malfunctioned.…

Categories: News

Cloudflare pours cold water on ‘BGP weirdness preceded US attack on Venezuela’ theory

The Register - Thu, 08/01/2026 - 06:00
Suggests rotten routing, not evidence of a cyber-strike before kinetic action

Cloudflare has poured cold water on a theory that the USA’s incursion into Venezuela coincided with a cyberattack on telecoms infrastructure.…

Categories: News

IBM's AI agent Bob easily duped to run malware, researchers show

The Register - Wed, 07/01/2026 - 22:04
Prompt injection lets risky commands slip past guardrails

IBM describes its coding agent thus: "Bob is your AI software development partner that understands your intent, repo, and security standards." Unfortunately, Bob doesn't always follow those security standards.…

Categories: News

ESA calls cops as crims lift off 500 GB of files, say security black hole still open

The Register - Wed, 07/01/2026 - 18:02
Two weeks, two major data leaks … not a good look for the European Space Agency

exclusive  The European Space Agency on Wednesday confirmed yet another massive security breach, and told The Register that the data thieves responsible will be subject to a criminal investigation. And this could be a biggie.…

Categories: News

Stalkerware slinger pleads guilty for selling snooper software to suspicious spouses

The Register - Wed, 07/01/2026 - 17:32
pcTattletale boss Bryan Fleming faces up to 15 years in prison when sentenced later this year

The US government has secured a guilty plea from a stalkerware maker in federal court, marking just the second time in more than a decade that the US has managed to prosecute a consumer spyware vendor successfully. …

Categories: News

Microsoft scraps Exchange Online spam clamp after customers cry foul

The Register - Wed, 07/01/2026 - 15:25
Negative feedback sinks Redmond's plan to cap outbound email recipients

Microsoft has backed away from planned changes to Exchange Online after customers objected to limits designed to curb outbound email abuse.…

Categories: News

Ministry of Justice splurged £50M on security – still missed Legal Aid Agency cyberattack

The Register - Wed, 07/01/2026 - 12:28
High-risk system compromised long before intrusion was finally spotted

The UK's Ministry of Justice spent £50 million ($67 million) on cybersecurity improvements at the Legal Aid Agency (LAA) before the high-profile cyberattack it disclosed last year.…

Categories: News

Jaguar Land Rover wholesale volumes plummet 43% in cyberattack aftermath

The Register - Wed, 07/01/2026 - 11:50
Production halts and supply-chain disruption left luxury automaker reeling in fiscal Q3

Brit luxury automaker Jaguar Land Rover has reported devastating preliminary Q3 results that lay bare the cascading consequences of a crippling cyberattack, revealing wholesale volumes collapsed more than two-fifths year-on-year.…

Categories: News

HSBC app takes a dim view of sideloaded Bitwarden installations

The Register - Wed, 07/01/2026 - 10:13
Customers report being locked out after grabbing the password manager via F-Droid

Some HSBC mobile banking customers in the UK report being locked out of the bank's app after installing the Bitwarden password manager via an open source app catalog.…

Categories: News

HackerOne 'ghosted' me for months over $8,500 bug bounty, says researcher

The Register - Wed, 07/01/2026 - 00:17
Long after CVEs issued and open source flaws fixed

Last fall, Jakub Ciolek reported two denial-of-service bugs in Argo CD, a popular Kubernetes controller, via HackerOne's Internet Bug Bounty (IBB) program. Both were assigned CVEs and have since been fixed. But instead of receiving an $8,500 reward for the two flaws, Ciolek says, HackerOne ghosted him for months.…

Categories: News

Brightspeed investigates breach as crims post stolen data for sale

The Register - Tue, 06/01/2026 - 20:54
Crimson Collective claims 'sophisticated attack'

Internet service provider Brightspeed confirmed that it's investigating criminals' claims that they stole more than a million customers' records and have listed them for sale for three bitcoin, or about $276,370. …

Categories: News

Fake Windows BSODs check in at Europe's hotels to con staff into running malware

The Register - Tue, 06/01/2026 - 14:19
Phishers posing as Booking.com use panic-inducing blue screens to bypass security controls

Russia-linked hackers are sneaking malware into European hotels and other hospitality outfits by tricking staff into installing it themselves through fake Windows Blue Screen of Death (BSOD) crashes.…

Categories: News

Crypto wallet shop Ledger confirms customer data lifted in Global-e snafu

The Register - Tue, 06/01/2026 - 12:50
Order and contact details accessed via ecommerce partner, and phishing has begun

Blockchain security biz Ledger says customer information was accessed in a breach at its ecommerce payment partner Global-e, and is warning that other brands using the platform may also be affected.…

Categories: News

Students bag extended Christmas break after cyber hit on school IT

The Register - Tue, 06/01/2026 - 10:55
Phones, email, and core systems knocked out at Higham Lane in Nuneaton

Students at a school in Warwickshire, England, have scored an extended Christmas break after a cyberattack crippled its IT systems, forcing classrooms to close and staff to summon government incident responders.…

Categories: News

Pages

Subscribe to Sec Tec Limited aggregator - News