13 Jun

Slapped wrists for Financial Conduct Authority staff who emailed work data home

Four staffers at the UK’s Financial Conduct Authority (FCA) were let off with warnings over separate cases involving the transmission of regulator data to their

Author rabih
12 Jun

Ransomware scum disrupted utility services with SimpleHelp attacks

Ransomware criminals infected a utility billing software providers’ customers, and in some cases disrupted services, after exploiting unpatched versions of SimpleHelp’s remote monitoring and management

Author rabih
12 Jun

The Impact of Artificial Intelligence on the Cybersecurity Workforce

Credit: NICE The NICE Workforce Framework for Cybersecurity (NICE Framework) was revised in November 2020 as NIST Special Publication 800-181 rev.1 to enable more effective

Author rabih
12 Jun

‘Major compromise’ at NHS temping arm exposed gaping security holes

Exclusive Cybercriminals broke into systems belonging to the UK’s NHS Professionals body in May 2024, stealing its Active Directory database, but the healthcare organization never

Author rabih
11 Jun

DeepSeek installer or just malware in disguise? Click around and find out

Suspected cybercriminals have created a fake installer for Chinese AI model DeepSeek-R1 and loaded it with previously unknown malware called “BrowserVenom”. The malware’s name reflects

Author rabih
11 Jun

Hire me! To drop malware on your computer

In a scam that flips the script on fake IT worker schemes, cybercriminals posing as job seekers on LinkedIn and Indeed are targeting recruiters –

Author rabih
11 Jun

Salesforce tags 5 CVEs after SaaS security probe uncovers misconfig risks

Salesforce has assigned five CVE identifiers following a security report that uncovered more than 20 configuration weaknesses, some of which exposed customers to unauthorized access

Author rabih
11 Jun

Asia dismantles 20,000 malicious domains in infostealer crackdown

Thirty-two people across Asia have been arrested over their suspected involvement with infostealer malware in the latest international collaboration against global cybercrime. Interpol released details

Author rabih
11 Jun

Analysis to action: Operationalizing your threat intelligence

Partner content When a new security advisory drops or an alarming new ransomware campaign makes the news, the question from leadership inevitably follows: “Are we

Author rabih
11 Jun

Microsoft slows Windows 11 24H2 Patch Tuesday due to a ‘compatibility issue’

Microsoft has set a new record with June’s security update for the time between release and an admission of borkage. The patch Tuesday update arrived

Author rabih
11 Jun

CISO who helped unmask Badbox warns: Version 3 is coming

Badbox 2.0, the botnet that infected millions of smart TV boxes and connected devices before private security researchers and law enforcement partially disrupted its infrastructure,

Author rabih
10 Jun

Microsoft warns of 66 flaws to fix for this Patch Tuesday, and two are under active attack

Patch Tuesday It’s Patch Tuesday time again, and Microsoft is warning that there are a bunch of critical fixes to sort out – and two

Author rabih
10 Jun

Texas warns 300,000 crash reports siphoned via compromised user account

The Texas Department of Transportation says a compromised user account was used to improperly download nearly 300,000 crash reports, exposing personal data that could be

Author rabih
10 Jun

Critical Wazuh bug exploited in growing Mirai botnet infection

Cybercriminals are trying to spread multiple Mirai variants by exploiting a critical Wazuh vulnerability, researchers say – the first reported active attacks since the code

Author rabih
10 Jun

Winning the war on ransomware with AI: Four real-world use cases

Partner Content Cybercriminals are evolving, and so are the tools to stop them. As AI becomes more accessible, attackers are sharpening their tactics. But here’s

Author rabih
10 Jun

Trump guts digital ID rules, claims they help ‘illegal aliens’ commit fraud

President Donald Trump late Friday signed a cybersecurity-focused executive order that, in the White House’s words, “amends problematic elements of Obama and Biden-era Executive Orders.”

Author rabih
10 Jun

Cloud brute-force attack cracks Google users’ phone numbers in minutes

A researcher has exposed a flaw in Google’s authentication systems, opening it to a brute-force attack that left users’ mobile numbers up for grabs. The

Author rabih
10 Jun

M&S online ordering system operational 46 days after cyber shutdown

UK retailer Marks & Spencer has reinstated online orders for some customers, marking a major milestone in its recovery from a cyberattack in April. According

Author rabih
Load moreLoadingAll items loaded