13 Mar

CISA: We didn’t fire red teams, we just unhired a bunch of them

Uncle Sam’s cybersecurity agency is trying to save face by seeking to clear up what it’s calling “inaccurate reporting” after a former senior pen-tester claimed

Author rabih
13 Mar

That ‘angry guest’ email from Booking.com? It’s a scam, not a 1-star review

An ongoing phishing campaign disguised as a Booking.com email casts keystroke and credential-stealing malware into hospitality employees’ inboxes for financial fraud and theft, according to

Author rabih
13 Mar

CISA: We didn’t fire our red team, we just unhired a bunch of them

The US cybersecurity agency is trying to save face by seeking to clear up what it’s calling “inaccurate reporting” after a former senior pentester claimed

Author rabih
13 Mar

DeepSeek can be gently persuaded to spit out malware code

DeepSeek’s flagship R1 model is capable of generating a working keylogger and basic ransomware code, just as long as a techie is on hand to

Author rabih
13 Mar

Medusa ransomware affiliate tried triple extortion scam – up from the usual double demand

A crook who distributes the Medusa ransomware tried to make a victim cough up three payments instead of the usual two, according to a government

Author rabih
13 Mar

Get off that old Firefox by Friday or you’ll be sorry, says Moz

If you’re running an outdated version of Firefox, update by Friday or risk broken add-ons, failing DRM-protected media playback, and other errors, due to an

Author rabih
13 Mar

CISA pen-tester says 100-strong red team binned after DOGE canceled contract

Updated A penetration tester who worked at the US govt’s CISA claims his 100-strong team was effectively dismissed after Elon Musk’s Trump-blessed DOGE unit cancelled

Author rabih
12 Mar

Expired Juniper routers find new life – as Chinese spy hubs

Chinese spies have for months exploited old Juniper Networks routers, infecting the buggy gear with custom backdoors and gaining root access to the compromised devices.

Author rabih
12 Mar

This is the FBI, open up. China’s Volt Typhoon is on your network

Nick Lawler, general manager of the Littleton Electric Light and Water Departments (LELWD), was at home one Friday when he got a call from the

Author rabih
12 Mar

UK must pay cyber pros more than its Prime Minister, top civil servant says

Senior officials in the UK’s civil service understand that future cyber hires in Whitehall will need to be paid a salary higher than that of

Author rabih
12 Mar

CISA worker says 100-strong Red Team fired after DOGE cancelled contract

A penetration tester who worked at the US govt’s CISA claims his 100-strong team was dismissed after Elon Musk’s Trump-blessed DOGE unit cancelled a contract

Author rabih
12 Mar

Choose your own Patch Tuesday adventure: Start with six zero day fixes, or six critical flaws

Patch Tuesday Microsoft’s Patch Tuesday bundle has appeared, with a dirty dozen flaws competing for your urgent attention – six of them rated critical and

Author rabih
11 Mar

‘Uber for nurses’ exposes 86k+ medical records, PII in open S3 bucket for months

Exclusive More than 86,000 records containing nurses’ medical records, facial images, ID documents and more sensitive info linked to health tech company ESHYFT was left

Author rabih
11 Mar

FTC’s $25.5M scam refund treats victims to $34 each

The Federal Trade Commission (FTC) is distributing over $25.5 million in refunds to consumers deceived by tech support scammers, averaging about $34 per person. The

Author rabih
11 Mar

Don’t let cybercriminals steal your Spotify account

Spotify boasts almost 700 million active users, including 265 million premium subscribers. As the world’s leading music streaming service, it’s hardly surprising that it also

Author rabih
11 Mar

MINJA sneak attack poisons AI models for other chatbot users

AI models with memory aim to enhance user interactions by recalling past engagements. However, this feature opens the door to manipulation. This hasn’t been much

Author rabih
10 Mar

Allstate Insurance sued for delivering personal info on a platter, in plaintext, to anyone who went looking for it

New York State has sued Allstate Insurance for operating websites so badly designed they would deliver personal information in plain-text to anyone that went looking

Author rabih
10 Mar

Google begs owners of crippled Chromecasts not to hit factory reset

Google’s second-generation Chromecast and its Chromecast Audio are suffering a major ongoing outage, with devices failing to cast due to an expired security certificate. The

Author rabih
Load moreLoadingAll items loaded