29 Sep

Harrods blames its supplier after crims steal 430k customers’ data in fresh attack

Luxury London-based retailer Harrods is facing its second cybersecurity scandal in 2025, confirming criminals not only stole 430,000 customers’ data in a fresh attack but

Author rabih
29 Sep

This month in security with Tony Anscombe – September 2025 edition

The past 30 days have seen no shortage of new threats and incidents that brought into sharp relief the need for well-thought-out cyber-resilience plans 29

Author rabih
29 Sep

Jaguar Land Rover gets £1.5B government jump-start after cyber breakdown

The UK government is stepping in with financial support for Jaguar Land Rover, providing it with a hefty loan as it continues to battle the

Author rabih
29 Sep

Digital ID, same place, different time: In this timeline, the result might surprise us

Opinion UK Prime Minister Keir Starmer directly addressed his new policy of mandatory digital ID in the country for 23 seconds in its effective launch

Author rabih
29 Sep

Submarine cable security is all at sea, and UK govt ‘too timid’ to act, says report

Feature The first transatlantic cable, laid in 1858, delivered a little over 700 messages before promptly dying a few weeks later. 167 years on, the

Author rabih
29 Sep

When AI is trained for treachery, it becomes the perfect agent

Opinion Last year, The Register reported on AI sleeper agents. A major academic study explored how to train an LLM to hide destructive behavior from

Author rabih
29 Sep

When AI is trained for treachery, it becomes the perfect agent

Opinion Last year, The Register reported on AI sleeper agents. A major academic study explored how to train an LLM to hide destructive behavior from

Author rabih
29 Sep

Trump demands Microsoft fire its head of global affairs

US President Donald Trump has demanded Microsoft fire its recently appointed head of global affairs Lisa Monaco. Using his personal social network, Trump argued that

Author rabih
29 Sep

Dutch teen duo arrested over alleged ‘Wi-Fi sniffing’ for Russia

Infosec In Brief Police in the Netherlands arrested two 17-year-olds last week over claims that Russian intelligence recruited them to spy on the headquarters of

Author rabih
28 Sep

Datacenter fire takes 647 South Korean government services offline

Asia In Brief Over 600 e-government services operated by South Korea’s government are offline after a datacenter fire disrupted operations. The fire struck on Friday

Author rabih
27 Sep

Hunt for RedNovember: Beijing hacked critical orgs in year-long snooping campaign

RedNovember, a Chinese state-sponsored cyberspy group, targeted government and critical private-sector networks around the globe between June 2024 and July 2025, exploiting buggy internet-facing appliances

Author rabih
27 Sep

Alibaba unveils $53B global AI plan – but it will need GPUs to back it up

Analysis Alibaba this week opened an AI war chest containing tens of billions of dollars, a revamped LLM lineup, and plans for AI datacenters in

Author rabih
26 Sep

Cyber threat-sharing law set to shut down, along with US government

Barring a last-minute deal, the US federal government would shut down on Wednesday, October 1, and the 2015 Cybersecurity Information Sharing Act would lapse at

Author rabih
26 Sep

Microsoft spots fresh XCSSET malware strain hiding in Apple dev projects

The long-running XCSSET malware strain has evolved again, with Microsoft warning of a new macOS variant that expands its bag of tricks while continuing to

Author rabih
26 Sep

Salesforce facing multiple lawsuits after Salesloft breach

Salesforce is facing a wave of lawsuits in the wake of a cyberattack that exposed customer data. The claims were all filed in Northern California,

Author rabih
26 Sep

‘An attacker’s playground:’ Crims exploit GoAnywhere perfect-10 bug

Security researchers have confirmed that threat actors have exploited the maximum-severity vulnerability affecting Fortra’s GoAnywhere managed file transfer (MFT), and chastised the vendor for a

Author rabih
26 Sep

LockBit’s new variant is ‘most dangerous yet,’ hitting Windows, Linux and VMware ESXi

Trend Micro has sounded the alarm over the new LockBit 5.0 ransomware strain, which it warns is “significantly more dangerous” than past versions due to

Author rabih
26 Sep

Prompt injection – and a $5 domain – trick Salesforce Agentforce into leaking sales

A now-fixed flaw in Salesforce’s Agentforce could have allowed external attackers to steal sensitive customer data via prompt injection, according to security researchers who published

Author rabih
Load moreLoadingAll items loaded