29 Jan

Patch or perish: Vulnerability exploits now dominate intrusions

What good is a fix if you don’t use it? Experts are urging security teams to patch promptly as vulnerability exploits now account for the

Author rabih
29 Jan

Cyberattack on Poland’s power grid could have turned deadly in winter cold

Cybersecurity experts involved in the cleanup of the cyberattacks on Poland’s power network say the consequences could have been lethal. In a report published this

Author rabih
28 Jan

Ransomware crims forced to take off-RAMP as FBI seizes forum

Ransomware crims have just lost one of their best business platforms. US law enforcement has seized the notorious RAMP cybercrime forum’s dark web and clearnet

Author rabih
28 Jan

Everybody is WinRAR phishing, dropping RATs as fast as lightning

Come one, come all. Everyone from Russian and Chinese government goons to financially motivated miscreants is exploiting a long-since-patched WinRAR vuln to bring you infostealers

Author rabih
28 Jan

Fortinet unearths another critical bug as SSO accounts borked post-patch

Things aren’t over yet for Fortinet customers – the security shop has disclosed yet another critical FortiCloud SSO vulnerability. Those hoping for a reprieve following

Author rabih
28 Jan

Old Windows quirks help punch through new admin defenses

Microsoft patched a bevy of bugs that allowed bypasses of Windows Administrator Protection before the feature was made available earlier this month. James Forshaw, security

Author rabih
28 Jan

Love? Actually: Fake dating app used as lure in targeted spyware campaign in Pakistan

ESET researchers have uncovered an Android spyware campaign leveraging romance scam tactics to target individuals in Pakistan. The campaign uses a malicious app posing as

Author rabih
27 Jan

Paranoid WhatsApp users rejoice: Encrypted app gets one-click privacy toggle

Users of Meta’s WhatsApp messenger looking to simplify the process of protecting themselves are in luck, as the company is rolling out a new feature

Author rabih
27 Jan

Let them eat sourdough: ShinyHunters claims Panera Bread as stolen credentials victim

ShinyHunters says it stole several slices of data from Panera Bread, but that’s just the yeast of everyone’s problems. The extortionist gang also claims to

Author rabih
27 Jan

China-linked group accused of spying on phones of UK prime ministers’ aides – for years

Chinese state-linked hackers are accused of spending years inside the phones of senior Downing Street officials, exposing private communications at the heart of the UK

Author rabih
27 Jan

France to replace US videoconferencing wares with unfortunately named sovereign alternative

France has officially told Zoom, Teams, and the rest of the US videoconferencing herd to take a hike in favor of its own homegrown app.

Author rabih
27 Jan

Microsoft illegally installed cookies on schoolkid’s tech, data protection ruling finds

Microsoft illegally installed cookies on a school pupil’s devices without consent, according to a ruling by the Austrian data protection authority (DSB). In the second

Author rabih
27 Jan

Celebrating Data Privacy Week with NIST’s Privacy Engineering Program

Credit: NIST Grab your party hats – it’s Data Privacy Week! Data Privacy Week is a global initiative led by the National Cybersecurity Alliance to

Author rabih
27 Jan

High Court to grill London cops over live facial recognition creep

The High Court will hear from privacy campaigners this week who want to reshape the way the Metropolitan Police is allowed to use live facial

Author rabih
27 Jan

Office zero-day exploited in the wild forces Microsoft OOB patch

Microsoft has issued an emergency Office patch after confirming a zero-day flaw is already being used in real world attacks. The flaw, tracked as CVE-2026-21509,

Author rabih
27 Jan

Drowning in spam or scam emails? Here’s probably why

Digital Security Has your inbox recently been deluged with unwanted and even outright malicious messages? Here are 10 possible reasons – and how to stem

Author rabih
26 Jan

Canva among ~100 targets of ShinyHunters Okta identity-theft campaign

ShinyHunters has targeted around 100 organizations in its latest Okta single sign-on (SSO) credential stealing campaign, according to researchers and the criminal group itself. In

Author rabih
26 Jan

Feds totally skipping infosec industry’s biggest conference this year

updated The US Cybersecurity and Infrastructure Security Agency won’t attend the annual RSA Conference in March, an agency spokesperson confirmed to The Register. Sessions involving

Author rabih
Load moreLoadingAll items loaded