16 Dec

No, SoundCloud hasn’t started tuning out VPNs. It’s mopping up after a cyberattack

Music hosting and streaming service SoundCloud has admitted it suffered a cyberattack. “SoundCloud recently detected unauthorized activity in an ancillary service dashboard,” opens a Monday

Author rabih
15 Dec

Amazon security boss blames Russia’s GRU for years-long energy-sector hacks

Russia’s Main Intelligence Directorate (GRU) is behind a years-long campaign targeting energy, telecommunications, and tech providers, stealing credentials and compromising misconfigured devices hosted on AWS

Author rabih
15 Dec

China, Iran are having a field day with React2Shell, Google warns

At least five more Chinese spy crews, Iran-linked goons, and financially motivated criminals are now attacking the React2Shell, a maximum-severity flaw in the widely used

Author rabih
15 Dec

Delay to European Central Bank messaging project cost the Bank of England £23M

The European Central Bank’s (ECB) decision to delay its move to a new messaging standard in 2022 ended up costing the Bank of England £23

Author rabih
15 Dec

JLR: Payroll data stolen in cybercrime that shook UK economy

Jaguar Land Rover (JLR) has reportedly told staff the cyber raid that crippled its operations in August didn’t just bring production to a screeching halt

Author rabih
15 Dec

Apple, Google forced to issue emergency 0-day patches

Apple and Google have both issued emergency patches after zero-day bugs were caught being actively exploited in what the companies describe as “sophisticated” real-world attacks.

Author rabih
15 Dec

Apple and Google forced into emergency patching 0-day

Apple and Google have both issued emergency patches after zero-day bugs were caught being actively exploited in what the companies describe as “sophisticated” real-world attacks.

Author rabih
15 Dec

Denmark takes a Viking swing at VPN-enabled piracy

The Danish government wants the public to weigh in on its proposed laws restricting use of VPNs to access certain corners of the internet. Proposed

Author rabih
15 Dec

Legal protection for ethical hacking under Computer Misuse Act is only the first step

Opinion It was 40 years ago that four young British hackers set about changing the law, although they didn’t know it at the time. It

Author rabih
15 Dec

Starlink claims Chinese launch came within 200 meters of broadband satellite

Asia In Brief A SpaceX executive has claimed that a Chinese satellite launch came within 200 meters of hitting a Starlink satellite. “A few days

Author rabih
14 Dec

Honeypots can help defenders, or damn them if implemented badly

Infosec In Brief The UK’s National Cyber Security Centre (NCSC) has found that cyber-deception tactics such as honeypots and decoy accounts designed to fool attackers

Author rabih
12 Dec

Microsoft RasMan DoS 0-day gets unofficial patch – and a working exploit

A Microsoft zero-day vulnerability that allows an unprivileged user to crash the Windows Remote Access Connection Manager (RasMan) service now has a free, unofficial patch

Author rabih
12 Dec

New React vulns leak secrets, invite DoS attacks

If you’re running React Server Components, you just can’t catch a break. In addition to already-reported flaws, newly discovered bugs allow attackers to hang vulnerable

Author rabih
12 Dec

Black Hat Europe 2025: Was that device designed to be on the internet at all?

Business Security Behind the polished exterior of many modern buildings sit outdated systems with vulnerabilities waiting to be found Tony Anscombe 12 Dec 2025  • 

Author rabih
12 Dec

Microsoft promises more bug payouts, with or without a bounty program

Microsoft is overhauling its bug bounty program to reward exploit hunters for finding vulnerabilities across all its products and services, even those without established bounty

Author rabih
12 Dec

Uncle Sam sues ex-Accenture manager over Army cloud security claims

The US is suing a former senior manager at Accenture for allegedly misleading the government about the security of an Army cloud platform. Danielle Hillmer,

Author rabih
12 Dec

UK watchdog urged to probe GDPR failures in Home Office eVisa rollout

Civil society groups are urging the UK’s data watchdog to investigate whether the Home Office’s digital-only eVisa scheme is breaching GDPR, sounding the alarm about

Author rabih
12 Dec

Half of exposed React servers remain unpatched amid active exploitation

Half of the internet-facing systems vulnerable to a fast-moving React remote code execution flaw remain unpatched, even as exploitation has exploded into more than a

Author rabih
Load moreLoadingAll items loaded