The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 45 min 13 sec ago

Denizens of DEF CON are 'fed up with government'

7 hours 2 min ago
Jake Braun thinks hackers need to create a 'Digital arsenal of democracy' to defend us all

Interview  Hackers – especially Jake Braun – are "fed up with government."…

Categories: News

Double whammy: Steaelite RAT bundles data theft, ransomware in one evil tool

Fri, 27/02/2026 - 22:59
Credential and cryptocurrency theft, live surveillance, ransomware - an attacker's Swiss Army knife

A new remote access trojan (RAT) being sold on cybercrime networks enables double extortion attacks on Windows machines by bundling ransomware and data theft, along with credential and cryptocurrency stealers, live surveillance, and a whole host of other illicit capabilities, all controllable from a centralized dashboard.…

Categories: News

Suspected Nork digital intruders caught breaking into US healthcare, education orgs

Fri, 27/02/2026 - 19:59
Who is knocking at the Dohdoor?

Digital intruders with possible links to North Korea have been infecting US education and healthcare sectors with a never-before-seen backdoor since at least December, according to security researchers.…

Categories: News

Ransomware payments cratered in 2025, but attacks surged to record highs

Fri, 27/02/2026 - 16:15
Smaller crews piled in as old names splintered and rebranded

Ransomware payments cratered in 2025, but it seems like the cybercrooks launching the attacks didn't get the memo.…

Categories: News

French DIY etailer ManoMano admits customer data stolen

Fri, 27/02/2026 - 15:15
Crooks claim they helped themselves to over 37M accounts during January hit on subcontractor

French online marketplace ManoMano is warning customers their personal data was siphoned off after a cyberattack hit one of its customer support subcontractors – and criminals are already claiming the haul is far larger than the company's carefully worded notice suggests.…

Categories: News

Cops back Dutch telco Odido after second wave of ShinyHunters leaks

Fri, 27/02/2026 - 13:54
Company refuses to pay ransom as attackers threaten larger daily dumps

The Netherlands' national police is backing Odido's refusal to pay a ransom after ShinyHunters leaked a second round of records belonging to the telco.…

Categories: News

Rapid AI-driven development makes security unattainable, warns Veracode

Thu, 26/02/2026 - 15:26
Report claims more vulnerabilities created than fixed as remediation gap widens

Veracode has posted its annual State of Software Security report, based on data from 1.6 million applications tested on its cloud platform, finding that more vulnerabilities are being created than are being fixed, and that high-velocity development with AI is making comprehensive security unattainable.…

Categories: News

Scattered Lapsus$ Hunters auditioning female voices to sharpen social engineering

Thu, 26/02/2026 - 12:35
Telegram posts promise up to $1,000 per call as gang refines IT helpdesk ruse

Prolific cybercrime crew Scattered Lapsus$ Hunters (SLSH) is reportedly recruiting women in the hope of improving its social engineering success.…

Categories: News

Five Eyes warn: Patch your Cisco SD-WAN or risk root takeover

Thu, 26/02/2026 - 11:39
A rare joint alert from all five spy agencies means serious business

The Five Eyes intelligence alliance is urgently warning defenders to patch two Cisco Catalyst SD-WAN vulnerabilities used in attacks.…

Categories: News

Claude collaboration tools left the door wide open to remote code execution

Thu, 26/02/2026 - 00:33
Anthropic fixed the flaws - but the AI-enabled attack surfaces remain

Security vulnerabilities in Claude Code could have allowed attackers to remotely execute code on users' machines and steal API keys by injecting malicious configurations into repositories, and then waiting for a developer to clone and open an untrustworthy project.…

Categories: News

Google catches Beijing spies using Sheets to spread espionage across 4 continents

Wed, 25/02/2026 - 20:41
UNC2814 historically targets governments and telcos

A China-linked crew found a unique formula for attacking telcos and government orgs across the Americas, Asia, and Africa in its latest round of intrusions. Google's threat intelligence, along with unnamed industry partners, disrupted the gang, which used the Chocolate Factory's own spreadsheet tools as part of its exploits.…

Categories: News

Fake 'interview' repos lure Next.js devs into running secret-stealing malware

Wed, 25/02/2026 - 16:51
Come for the coding test, stay for the C2 traffic

Next.js developers are once again in the crosshairs as hackers seed malicious repositories disguised as legitimate projects, according to Microsoft, which said a limited set of those repos were directly tied to observed compromises.…

Categories: News

Ex-L3Harris exec jailed 7 years for selling exploits to Russia

Wed, 25/02/2026 - 13:44
Former Trenchant manager profited millions from cyber tools reserved for the US

The former general manager of L3Harris's cyber arm will spend the next seven years behind bars for selling trade secrets to Russia.…

Categories: News

Wynn Resorts takes attacker's word for it that stolen staff data was deleted

Wed, 25/02/2026 - 12:39
Security pros question assurances as company offers staff credit monitoring

Wynn Resorts has confirmed that employee data was stolen from its servers, and is taking the hackers' word that they've since deleted it.…

Categories: News

OpenAI says Chinese cops used ChatGPT to plan and track smear ops against opponents

Wed, 25/02/2026 - 10:01
Note to secret agents: ChatGPT is NOT a private diary

A ChatGPT user with links to Chinese law enforcement tried to use the AI chatbot to run smear campaigns targeting the Japanese prime minister and other critics of the Chinese Communist Party, according to OpenAI's latest report on malicious uses of its models.…

Categories: News

Threat intelligence supply chain is full of weak links, researchers find

Wed, 25/02/2026 - 05:49
And they're being stressed by geopolitical concerns that threaten to slow important data-sharing efforts

Researchers from Georgia Tech have found that the supply chain for threat intelligence data is susceptible to adversarial action, and proposed a method to improve data sharing that they think will make it stronger.…

Categories: News

AI has gotten good at finding bugs, not so good at swatting them

Tue, 24/02/2026 - 22:36
Discovery is getting cheaper. Validation and patching aren’t

What good is finding a hole if you can't fix it? Anthropic last week talked up Claude Code's improved ability to find software vulnerabilities and propose patches. But security researchers say that's not enough.…

Categories: News

Patch these 4 critical, make-me-root SolarWinds bugs ASAP

Tue, 24/02/2026 - 19:55
SolarWinds + file transfer software = what attackers' dreams are made of

If you run SolarWinds’ Serv-U, you should patch promptly. Four critical vulnerabilities in the file transfer software can allow attackers to execute code as root.…

Categories: News

North Korea's Lazarus Group targets healthcare orgs with Medusa ransomware

Tue, 24/02/2026 - 18:25
New ransomware of choice, same critical targets

North Korea’s Lazarus Group appears to have added another tool to its kit. It has begun using Medusa ransomware in extortion attacks targeting at least one US healthcare organization and an unnamed victim in the Middle East, according to Symantec and Carbon Black threat hunters.…

Categories: News

Go library maintainer brands GitHub's Dependabot a 'noise machine'

Tue, 24/02/2026 - 16:31
When a one-line fix triggers thousands of PRs, something's off

A Go library maintainer has urged developers to turn off GitHub's Dependabot, arguing that false positives from the dependency-scanning tool "reduce security by causing alert fatigue."…

Categories: News

Pages