06 Apr

AI agents found vulns in this popular Linux and Unix print server

In the latest chapter on leaky CUPS, a security researcher and his band of bug-hunting agents have found two flaws that can be chained to

Author rabih
06 Apr

Attackers exploited this critical FortiClient EMS bug as a 0-day

Fortinet released an emergency patch over the weekend for a critical FortiClient Enterprise Management Server (EMS) bug believed to be under attack since at least

Author rabih
06 Apr

Anthropic sure has a mess on its hands thanks to that Claude Code source leak

Kettle When it comes to circling up for this week’s Kettle, what is there to discuss but Anthropic’s accidental release of Claude Code’s source code?

Author rabih
05 Apr

Researchers didn’t want to glamorize cybercrims. So they roasted them

interview Cybercrime crews have become almost mystical entities, with security vendors assigning them names like Wizard Spider and Velvet Tempest. They hide out in hidden

Author rabih
03 Apr

Trump wants to take a battle axe to CISA again and slash $707M from budget

The US Cybersecurity and Infrastructure Security Agency’s budget will see yet another deep cut if Congress approves President Trump’s proposal to slash CISA’s spending by

Author rabih
03 Apr

Hybrid work, expanded risk: what needs to change

Webinar Promo The shift to hybrid work has reshaped the enterprise perimeter. Users are logging in from home networks, shared spaces and unmanaged devices, while

Author rabih
02 Apr

They thought they were downloading Claude Code source. They got a nasty dose of malware instead

Tens of thousands of people eagerly downloaded the leaked Claude Code source code this week, and some of those downloads came with a side of

Author rabih
02 Apr

The company’s biggest security hole lived in the breakroom

Pwned Welcome to Pwned, The Register’s new column, where we highlight the worst infosec own goals so you can, hopefully, protect against them. Caffeine is

Author rabih
02 Apr

AI recruiting biz Mercor says it was ‘one of thousands’ hit in LiteLLM supply-chain attack

AI hiring startup Mercor confirmed it was “one of thousands of companies” affected by the LiteLLM supply-chain attack as the fallout from the Trivy compromise

Author rabih
01 Apr

Amazon security boss: AI makes pentesting 40% more efficient

interview Amazon has seen a 40 percent efficiency gain by using AI tools to pentest its products before and after launch, according to security chief

Author rabih
01 Apr

‘People’s Panel’ to check if UK wants controversial Digital ID will cost £630K

The UK government will spend about £630,000 running a discussion panel on its digital identity card plans, which minister James Frith said will “consider different

Author rabih
01 Apr

Digital assets after death: Managing risks to your loved one’s digital estate

Digital Security Fraudsters often target the accounts of the deceased or their grieving relatives. Here’s how to keep the scammers at bay. Phil Muncaster 01

Author rabih
01 Apr

UK manufacturers under cyber fire with 80% reporting attacks

Nearly 80 percent of British manufacturers say they’ve been hit by a cyber incident in the past year, as new research suggests disruption on the

Author rabih
31 Mar

Don’t open that WhatsApp message, Microsoft warns

Be careful what you click on. Miscreants are abusing WhatsApp messages in a multi-stage attack that delivers malicious Microsoft Installer (MSI) packages, allowing criminals to

Author rabih
31 Mar

Iran targets M365 accounts with password-spraying attacks

Suspected Iran-linked threat actors are conducting password-spraying attacks against hundreds of organizations, primarily Middle Eastern municipalities, in campaigns that security researchers believe may have been

Author rabih
31 Mar

Supply chain blast: Top npm package backdoored to drop dirty RAT on dev machines

One of npm’s most widely used HTTP client libraries briefly became a malware delivery vehicle after attackers hijacked a maintainer’s account and slipped a remote-access

Author rabih
31 Mar

This month in security with Tony Anscombe – March 2026 edition

The past four weeks have seen a slew of new cybersecurity wake-up calls that showed why every organization needs a well-thought-out cyber-resilience plan 31 Mar

Author rabih
30 Mar

OpenAI patches ChatGPT flaw that smuggled data over DNS

OpenAI talks up data security for its AI services, yet Check Point says that ChatGPT allowed data to leak through a DNS side channel before

Author rabih
Load moreLoadingAll items loaded