29 Jun

Anonymous researcher drops 0-day ‘exploitarium’ repo

Security At least two vulnerabilities are already under attack Not everyone is willing to follow responsible disclosure of vulns. An anonymous researcher has dumped what

Author rabih
29 Jun

AI may be good at finding security vulnerabilities, but it can’t beat human stupidity

KETTLE AI commands all the headlines nowadays, but the biggest security story of the week is all about human laziness and poor password habits –

Author rabih
29 Jun

Microsoft keeps Windows Server 2022 hotpatching alive into 2027

SECURITY In the Azure Edition, of course Microsoft has extended Windows Server 2022 hotpatching into 2027, beyond the end of mainstream support for the operating

Author rabih
29 Jun

Nissan says Oracle PeopleSoft break-in may have spilled payroll records, SSNs

Security Carmaker points finger at an ‘unknown’ flaw as customer fallout continues Nissan has joined the growing list of Oracle customers cleaning up after a

Author rabih
29 Jun

Inside the inbox: Why cybercriminals want to break into your email account

Digital Security Your inbox is an identity system all of its own: whoever owns it may own a lot more Phil Muncaster 29 Jun 2026

Author rabih
27 Jun

It’s looking like a hot, messy summer for security teams as AI finds countless previously hidden vulns

It’s going to be a “messy” summer for security folks, especially when it comes to fixing the open source code that underpins their organizations. That’s

Author rabih
26 Jun

Even the Secret Service won’t use company-issued phones

Security Personal cell phones on protective missions, no threat detection on government-issued devices among the litany of sins It seems like nobody wants to carry

Author rabih
26 Jun

Amazon Q flaw let booby-trapped Git repos execute code, swipe cloud creds

security Researchers warn many AI coding assistants now execute commands from project configurations A high-severity flaw in Amazon’s AI coding assistant for Visual Studio Code

Author rabih
26 Jun

Miasma campaign poisons 20-plus npm packages, hunts for developer secrets

security Microsoft says latest attack targets Leo Platform and RStreams packages, harvesting creds and going after more maintainers The Miasma malware campaign has claimed another

Author rabih
26 Jun

SMB cyber readiness: the road to resilience starts here

Business Security Your business may be small, but its attack surface is anything but. Readiness is the first step to resilience. Phil Muncaster 26 Jun

Author rabih
26 Jun

Security boss thought MFA would be too much security

security One rule for the workers, another for execs ON CALL Supporting IT and keeping it secure is a serious endeavor. Which is why The Register

Author rabih
26 Jun

Chinese cybersecurity company claims it’s built a better-than-Mythos bug finder

Security Qihoo 360, which the US has banned, says it’s needed as a deterrent to weaponized Anthropic models Chinese cybersecurity vendor Qihoo 360 claims it’s

Author rabih
25 Jun

Self-destructing Mistic backdoor linked to access broker selling corporate footholds to ransomware gangs

security Spotted in intrusions targeting insurance, education, IT, and professional services sectors A new self-destructing backdoor called Mistic used in intrusions since April appears to be

Author rabih
25 Jun

Ex-Huntress analyst claims company insider fed info to a ransomware crim. Social media drama ensues

Cyber-Crime Former employee accuses company of prioritizing pending IPO over client security Security firm Huntress allegedly has a turncoat insider leaking info to a ransomware

Author rabih
25 Jun

Gamaredon in 2025: Leveraging tunnels, workers, dead drops, and new alliances

Cyberespionage has remained a constant feature of Russia’s war against Ukraine. ESET Research has long tracked Gamaredon, one of the most active Russia-aligned advanced persistent

Author rabih
25 Jun

UK school’s network left wide open for invasion, student found

SECURITY And the admin password was right in the Active Directory description field PWNED Welcome back to PWNED, the weekly column where we school ourselves

Author rabih
25 Jun

Nation-state actors cracked critical Australian infrastructure to ‘cripple it at a time of their choosing’

security To defuse another attack, Oz spies called foreign counterparts to tell them an op was a bust Australia’s Security and Intelligence Organisation (ASIO) has

Author rabih
24 Jun

The hits keep on coming for Cisco vulnerabilities

Security CVE-2026-20230 under exploitation, while an earlier SD-WAN 0-day looks even worse than we thought It’s looking like another tough week (month? year?) for Switchzilla

Author rabih
Load moreLoadingAll items loaded