13 Mar

CISA pen-tester says 100-strong red team binned after DOGE canceled contract

Updated A penetration tester who worked at the US govt’s CISA claims his 100-strong team was effectively dismissed after Elon Musk’s Trump-blessed DOGE unit cancelled

Author rabih
12 Mar

Expired Juniper routers find new life – as Chinese spy hubs

Chinese spies have for months exploited old Juniper Networks routers, infecting the buggy gear with custom backdoors and gaining root access to the compromised devices.

Author rabih
12 Mar

This is the FBI, open up. China’s Volt Typhoon is on your network

Nick Lawler, general manager of the Littleton Electric Light and Water Departments (LELWD), was at home one Friday when he got a call from the

Author rabih
12 Mar

UK must pay cyber pros more than its Prime Minister, top civil servant says

Senior officials in the UK’s civil service understand that future cyber hires in Whitehall will need to be paid a salary higher than that of

Author rabih
12 Mar

CISA worker says 100-strong Red Team fired after DOGE cancelled contract

A penetration tester who worked at the US govt’s CISA claims his 100-strong team was dismissed after Elon Musk’s Trump-blessed DOGE unit cancelled a contract

Author rabih
12 Mar

Choose your own Patch Tuesday adventure: Start with six zero day fixes, or six critical flaws

Patch Tuesday Microsoft’s Patch Tuesday bundle has appeared, with a dirty dozen flaws competing for your urgent attention – six of them rated critical and

Author rabih
11 Mar

‘Uber for nurses’ exposes 86k+ medical records, PII in open S3 bucket for months

Exclusive More than 86,000 records containing nurses’ medical records, facial images, ID documents and more sensitive info linked to health tech company ESHYFT was left

Author rabih
11 Mar

FTC’s $25.5M scam refund treats victims to $34 each

The Federal Trade Commission (FTC) is distributing over $25.5 million in refunds to consumers deceived by tech support scammers, averaging about $34 per person. The

Author rabih
11 Mar

Don’t let cybercriminals steal your Spotify account

Spotify boasts almost 700 million active users, including 265 million premium subscribers. As the world’s leading music streaming service, it’s hardly surprising that it also

Author rabih
11 Mar

MINJA sneak attack poisons AI models for other chatbot users

AI models with memory aim to enhance user interactions by recalling past engagements. However, this feature opens the door to manipulation. This hasn’t been much

Author rabih
10 Mar

Allstate Insurance sued for delivering personal info on a platter, in plaintext, to anyone who went looking for it

New York State has sued Allstate Insurance for operating websites so badly designed they would deliver personal information in plain-text to anyone that went looking

Author rabih
10 Mar

Google begs owners of crippled Chromecasts not to hit factory reset

Google’s second-generation Chromecast and its Chromecast Audio are suffering a major ongoing outage, with devices failing to cast due to an expired security certificate. The

Author rabih
10 Mar

We call this kernel saunters: How Apple rearranged its XNU core with exclaves

Apple has been working to harden the XNU kernel that powers its various operating systems, including iOS and macOS, with a feature called “exclaves.” The

Author rabih
10 Mar

Sidewinder goes nuclear, charts course for maritime mayhem in tactics shift

Researchers say the Sidewinder offensive cyber crew is starting to target maritime and nuclear organizations. Kaspersky described Sidewinder as a “highly prolific” advanced persistent threat

Author rabih
10 Mar

Rhysida pwns two US healthcare orgs, extracts over 300K patients’ data

Break-ins to systems hosting the data of two US healthcare organizations led to thieves making off with the personal and medical data of more than

Author rabih
10 Mar

Consumer Reports calls out slapdash AI voice-cloning safeguards

Four out of six companies offering AI voice cloning software fail to provide meaningful safeguards against the misuse of their products, according to research conducted

Author rabih
10 Mar

How NOT to f-up your security incident response

Feature Experiencing a ransomware infection or other security breach ranks among the worst days of anyone’s life — but it can still get worse. Like

Author rabih
10 Mar

The NHS security culture problem is a crisis years in the making

Analysis Walk into any hospital and ask the same question – “Which security system should we invest in?” – to both a doctor and a

Author rabih
Load moreLoadingAll items loaded