The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 9 min 52 sec ago

Kremlin accuses America of plotting cyberattack on Russian voting systems

Mon, 11/03/2024 - 21:58
Don't worry, we have a strong suspicion Putin's still gonna win

The Kremlin has accused the United States of meddling in Russia's upcoming presidential election, and even accused Uncle Sam of planning a cyberattack on the country's online voting system.…

Categories: News

British Library pushes the cloud button, says legacy IT estate cause of hefty rebuild

Mon, 11/03/2024 - 13:30
Five months in and the mammoth post-ransomware recovery has barely begun

The British Library says legacy IT is the overwhelming factor delaying efforts to recover from the Rhysida ransomware attack in late 2023.…

Categories: News

How do you lot feel about Pay or say OK to ads model, asks ICO

Mon, 11/03/2024 - 11:16
And does it count as consent?

The UK's Information Commissioner's Office (ICO) has opened a consultation on "consent or pay" business models. We're sure readers of The Register will have a fair few things to say.…

Categories: News

Microsoft waited 6 months to patch actively exploited admin-to-kernel vulnerability

Mon, 11/03/2024 - 04:28
PLUS: NSA shares cloud security tips; Infosec training for Jordanian women; Critical vulnerabilities

Infosec in brief  Cybersecurity researchers informed Microsoft that Notorious North Korean hackers Lazarus Group discovered the "holy grail" of rootkit vulnerabilities in Windows last year, but Redmond still took six months to patch the problem.…

Categories: News

Cybercrime crew Magnet Goblin bursts onto the scene exploiting Ivanti holes

Fri, 08/03/2024 - 22:55
Plus: CISA pulls plug on couple of systems feared compromised

There's yet another group of miscreants out there hijacking insecure Ivanti devices: A new, financially motivated gang dubbed Magnet Goblin has emerged from the shadowy digital depths with a knack for rapidly exploiting newly disclosed vulnerabilities before vendors have issued a fix.…

Categories: News

Microsoft confirms Russian spies stole source code, accessed internal systems

Fri, 08/03/2024 - 16:56
Still "no evidence" of any compromised customer-facing systems, we're told

Microsoft has now confirmed that the Russian cyberspies who broke into its executives' email accounts stole source code and gained access to internal systems. The Redmond giant has characterized the intrusion as "ongoing."…

Categories: News

Change Healthcare registers pulse after crippling ransomware attack

Fri, 08/03/2024 - 14:33
Remaining services are expected to return in the coming weeks after $22M ALPHV ransom

Change Healthcare has taken the first steps toward a full recovery from the ransomware attack in February by bringing its electronic prescription services back online.…

Categories: News

Swiss cheese security? Play ransomware gang milks government of 65,000 files

Fri, 08/03/2024 - 12:35
Classified docs, readable passwords, and thousands of personal information nabbed in Xplain breach

The Swiss government had around 65,000 files related to it stolen by the Play ransomware gang during an attack on an IT supplier, its National Cyber Security Center (NCSC) says.…

Categories: News

Font security 'still a Helvetica of a problem' says Australian graphics outfit Canva

Fri, 08/03/2024 - 03:57
Who knew that unzipping a font archive could unleash a malicious file

Online graphic design platform Canva went looking for security problems in fonts, and found three – in "strange places."…

Categories: News

Securing open source software: Whose job is it, anyway?

Fri, 08/03/2024 - 01:02
CISA announces more help, and calls on app makers to step up

The US government and some of the largest open source foundations and package repositories have announced a series of initiatives intended to improve software supply-chain security, while also repeating calls for developers to increase support for such efforts.…

Categories: News

We're not Meta support: State AGs tell Zuck to fix rampant account takeover problem

Thu, 07/03/2024 - 21:45
'We refuse to operate as customer service representatives'

A group of 41 US state attorneys general, tired of serving as a customer complaint clearinghouse for Facebook and Instagram users, have sent a letter to Meta asking it to figure out how to reduce a "dramatic and persistent spike" in account takeovers.…

Categories: News

Chrome users – get an alert when extensions are in danger of falling into wrong hands

Thu, 07/03/2024 - 19:45
Under New Management is an early-warning system for potential poisoning of add-ons with malware

Millions of Chrome users now have a way to guard against the threat of extension subversion, that is, if they don't mind installing yet another browser extension.…

Categories: News

Possible China link to Change Healthcare ransomware attack

Thu, 07/03/2024 - 18:30
Alleged crim bought SmartScreen Killer, Cobalt Strike on dark-web markets

A criminal claiming to be an ALPHV/BlackCat affiliate — the gang responsible for the widely disruptive Change Healthcare ransomware infection last month —  may have ties to Chinese government-backed cybercrime syndicates.…

Categories: News

JetBrains TeamCity under attack by ransomware thugs after disclosure mess

Thu, 07/03/2024 - 16:34
More than 1,000 servers remain unpatched and vulnerable

Security researchers are increasingly seeing active exploit attempts using the latest vulnerabilities in JetBrains' TeamCity that in some cases are leading to ransomware deployment.…

Categories: News

Belgian ale legend Duvel’s brewery borked as ransomware halts production

Thu, 07/03/2024 - 12:45
Company reassures public it has enough beer, expects quick recovery before weekend

Belgian beer brewer Duvel says a ransomware attack has brought its facility to a standstill while its IT team works to remediate the damage.…

Categories: News

VMware urges emergency action to blunt hypervisor flaws

Thu, 07/03/2024 - 07:30
Critical vulns in USB under ESXi and desktop hypervisors found by Chinese researchers at cracking contest

Hypervisors are supposed to provide an inviolable isolation layer between virtual machines and hardware. But hypervisor heavyweight VMware by Broadcom yesterday revealed its hypervisors are not quite so inviolable as it might like.…

Categories: News

Here’s something else AI can do: expose bad infosec to give cyber-crims a toehold in your organization

Thu, 07/03/2024 - 06:27
Singaporean researchers note rising presence of ChatGPT creds in Infostealer malware logs

Stolen ChatGPT credentials are a hot commodity on the dark web, according to Singapore-based threat intelligence firm Group-IB, which claims to have found some 225,000 stealer logs containing login details for the service last year.…

Categories: News

US lawmakers want ByteDance to divest TikTok or face a ban

Thu, 07/03/2024 - 06:05
The American mind must not be at the mercy of Chinese algorithms

A group of US lawmakers introduced legislation on Tuesday that, if passed, would force Chinese internet concern ByteDance to divest TikTok – its most valuable property – or see it banned in the US.…

Categories: News

Lawsuit claims gift card fraud is the gift that keeps on giving, to Google

Thu, 07/03/2024 - 01:15
Play Store commissions are a nice little earner, wherever they come from

Google has been accused of profiting from gift card scams.…

Categories: News

Chinese chap charged with stealing Google’s AI datacenter secrets

Thu, 07/03/2024 - 00:37
Moonlighted for PRC companies after side-stepping Big G's security, allegedly

A now-former Google employee has been charged with stealing the ad giant’s AI trade secrets while quietly working for two Chinese companies – after easily defeating whatever security controls Big G had in place.…

Categories: News

Pages