22 Aug

Criminal background checker APCS faces data breach

Exclusive A leading UK provider of criminal record checks for employers is handling a data breach stemming from a third-party development company. Access Personal Checking

Author rabih
22 Aug

Fake CAPTCHA tests trick users into running malware

Microsoft’s security team has published an in-depth report into ClickFix, the social engineering attack which tricks users into executing malicious commands in the guise of

Author rabih
22 Aug

Interpol bags 1,209 suspects, $97M in cybercrime operation focused on Africa

Interpol’s latest clampdown on cybercrime resulted in 1,209 arrests across the African continent, from ransomware crooks to business email compromise (BEC) scammers, the agency says.

Author rabih
22 Aug

Developer jailed for taking down employer’s network with kill switch malware

A US court sentenced a former developer at power management biz Eaton to four years in prison after he installed malware on the company’s servers.

Author rabih
21 Aug

Anthropic scanning Claude chats for queries about DIY nukes for some reason

Anthropic says it has scanned an undisclosed portion of conversations with its Claude AI model to catch concerning inquiries about nuclear weapons. The company created

Author rabih
21 Aug

Microsoft reportedly cuts China’s early access to bug disclosures, PoC exploit code

Microsoft has reportedly stopped giving Chinese companies proof-of-concept exploit code for soon-to-be-disclosed vulnerabilities following last month’s SharePoint zero-day attacks, which appear to be related to

Author rabih
21 Aug

‘Impersonation as a service’ the next big thing in cybercrime

English speakers adept at social engineering are a hot commodity in the cybercrime job market. According to threat detection and response firm ReliaQuest, English-language social

Author rabih
21 Aug

Honey, I shrunk the image and now I’m pwned

Security researchers with Trail of Bits have found that Google Gemini CLI and other production AI systems can be deceived by image scaling attacks, a

Author rabih
21 Aug

Congressman proposes bringing back letters of marque for cyber privateers

It’s been more than 200 years since the United States issued a letter of marque allowing privateers to attack the vessels of foreign nations, but

Author rabih
21 Aug

Orange Belgium mega-breach exposes 850K customers to serious fraud

A significant data theft at Orange Belgium has opened hundreds of thousands of its customers to serious cybersecurity risks. The telecom company confirmed that data

Author rabih
21 Aug

US cops wrap up RapperBot, one of world’s biggest DDoS-for-hire rackets

RapperBot, a botnet-for-hire blamed for hundreds of thousands of DDoS attacks, has been yanked offline by the Feds, who also hauled in its alleged Oregon-based

Author rabih
21 Aug

Apple rushes out fix for active zero-day in iOS and macOS

Apple has shipped emergency updates to fix an actively exploited zero-day in its ImageIO framework, warning that the flaw has already been abused in targeted

Author rabih
21 Aug

Colt changes tune, admits data theft as Warlock gang begins auction

A week after its services were disrupted by a cyberattack, UK telco Colt Technology Services has gone back on its initial statement to confirm that

Author rabih
21 Aug

Google yet to take down ‘screenshot-grabbing’ Chrome VPN extension

Security boffins at Koi Security have warned of a shift in behavior of a popular Chrome VPN extension, FreeVPN.One, which recently appears to have begun

Author rabih
21 Aug

AI crawlers and fetchers are blowing up websites, with Meta and OpenAI the worst offenders

Cloud services giant Fastly has released a report claiming AI crawlers are putting a heavy load on the open web, slurping up sites at a

Author rabih
21 Aug

“What happens online stays online” and other cyberbullying myths, debunked

Kids Online Separating truth from fiction is the first step towards making better parenting decisions. Let’s puncture some of the most common misconceptions about online

Author rabih
21 Aug

China cut itself off from the global internet for an hour on Wednesday

China cut itself off from much of the global internet for just over an hour on Wednesday. Activist group Great Firewall Report spotted the outage,

Author rabih
21 Aug

Microsoft stays mum about M365 Copilot on-demand security bypass

UPDATED Microsoft has chosen not to tell customers about a recently patched vulnerability in M365 Copilot. The issue allowed M365 Copilot to access the content

Author rabih
Load moreLoadingAll items loaded