16 Feb

Open source registries don’t have enough money to implement basic security

fosdem 2026 Open source registries are in financial peril, a co-founder of an open source security foundation warned after inspecting their books. And it’s not

Author rabih
16 Feb

Google patches Chrome zero-day as in-the-wild exploits surface

Google has quietly pushed out an emergency Chrome fix after attackers were caught exploiting the browser’s first reported zero-day of 2026. The flaw, tracked as

Author rabih
16 Feb

US appears open to reversing some China tech bans

Asia In Brief The United States may be about to change its policies regarding Chinese technology companies. Evidence of the possible change emerged on Friday

Author rabih
15 Feb

Infosec exec sold eight zero-day exploit kits to Russia, says DoJ

Infosec in Brief The former General Manager of defense contractor L3Harris’s cyber subsidiary Trenchant sold eight zero-day exploit kits to Russia, according to a court

Author rabih
13 Feb

Attackers finally get around to exploiting critical Microsoft bug from 2024

Ignore patches at your own risk. According to Uncle Sam, a SQL injection flaw in Microsoft Configuration Manager patched in October 2024 is now being

Author rabih
13 Feb

Top Dutch telco Odido admits 6.2M customers caught in contact system caper

The Netherlands’ largest mobile network operator (MNO) has admitted that a breach of its customer contact system may have affected around 6.2 million people. Odido

Author rabih
13 Feb

Enforcing piracy policy earned helpdesk worker death threats

On Call Welcome to another installment of On Call, The Register’s weekly reader-contributed column that tells your tech support tales. This week, meet a reader

Author rabih
12 Feb

30+ Chrome extensions disguised as AI chatbots steal users’ API keys, emails, other sensitive data

More than 30 malicious Chrome extensions installed by at least 260,000 users purport to be helpful AI assistants, but they steal users’ API keys, email

Author rabih
12 Feb

Who’s the bossware? Ransomware slingers like employee monitoring tools, too

Your supervisor may like using employee monitoring apps to keep tabs on you, but crims like the snooping software even more. Threat actors are now

Author rabih
12 Feb

Apple patches decade-old iOS zero-day, possibly exploited by commercial spyware

Apple patched a zero-day vulnerability affecting every iOS version since 1.0, used in what the company calls an “extremely sophisticated attack” against targeted individuals. CVE-2026-20700,

Author rabih
12 Feb

Supply chain attacks now fuel a ‘self-reinforcing’ cybercrime economy

Cybercriminals are turning supply chain attacks into an industrial-scale operation, linking breaches, credential theft, and ransomware into a “self-reinforcing” ecosystem, researchers say. In its latest

Author rabih
12 Feb

Feeling brave? Ministry of Defence seeks £300K digital boss to manage £4.6B spend

The UK Ministry of Defence (MoD) is offering between £270,000 to £300,000 for a senior digital leader who will oversee more than £4.6 billion in

Author rabih
12 Feb

Naming and shaming: How ransomware groups tighten the screws on victims

Ransomware When corporate data is exposed on a dedicated leak site, the consequences linger long after the attack fades from the news cycle 12 Feb

Author rabih
12 Feb

Google: China’s APT31 used Gemini to plan cyberattacks against US orgs

A Chinese government hacking group that has been sanctioned for targeting America’s critical infrastructure used Google’s AI chatbot, Gemini, to auto-analyze vulnerabilities and plan cyberattacks

Author rabih
12 Feb

Microsoft warns that poisoned AI buttons and links may betray your trust

Amid its ongoing promotion of AI’s wonders, Microsoft has warned customers it has found many instances of a technique that manipulates the technology to produce

Author rabih
11 Feb

Devilish devs spawn 287 Chrome extensions to flog your browser history to data brokers

They know where you’ve been and they’re going to share it. A security researcher has identified 287 Chrome extensions that allegedly exfiltrate browsing history data

Author rabih
11 Feb

Posting AI-generated caricatures on social media is risky, infosec killjoys warn

If you’ve seen the viral AI work pic trend where people are asking ChatGPT to “create a caricature of me and my job based on

Author rabih
11 Feb

Were telcos tipped off to *that* ancient Telnet bug? Cyber pros say the signs stack up

Telcos likely received advance warning about January’s critical Telnet vulnerability before its public disclosure, according to threat intelligence biz GreyNoise. Global Telnet traffic “fell off

Author rabih
Load moreLoadingAll items loaded