07 Feb

Apple missed screenshot-snooping malware in code that made it into the App Store, Kaspersky claims

Kaspersky eggheads say they’ve spotted the first app containing hidden optical character recognition spyware in Apple’s App Store. Cunningly, the software nasty is designed to

Author rabih
07 Feb

If Ransomware Inc was a company, its 2024 results would be a horror show

Ransomware extortion payments fell in 2024, according to blockchain analyst biz Chainalysis this week. Like infosec outfit NCC, Chainalysis thinks ransomware attacks increased during 2024.

Author rabih
06 Feb

Coordinates of millions of smartphones feared stolen, sparking yet another lawsuit against data broker

Gravy Analytics has been sued yet again for allegedly failing to safeguard its vast stores of personal data, which are now feared stolen. And by

Author rabih
06 Feb

Federal judge tightens DOGE leash over critical Treasury payment system access

Elon Musk’s Department of Government Efficiency has had its access to US Treasury payment systems restricted – at least temporarily – following a lawsuit from

Author rabih
06 Feb

Dems want answers on national security risks posed by hiring freeze, DOGE probes

Elected officials are demanding answers as to whether the Trump administration and Elon Musk’s Department of Government Efficiency (DOGE) are hamstringing US national security. In

Author rabih
06 Feb

Dems want answers on national security risks posed by hiring freeze, DOGE

Elected officials are demanding answers as to whether the Trump administration and Elon Musk’s Department of Government Efficiency (DOGE) are hamstringing US national security. In

Author rabih
06 Feb

Democrats demand to know WTF is up with that DOGE server on OPM’s network

Who bought it, who installed it, and what’s happening with the data on it. Answers for these key questions, and others, regarding the DOGE server

Author rabih
06 Feb

Robocallers who phoned the FCC pretending to be from the FCC land telco in trouble

In its first enforcement action of the Trump presidency, the FCC has voted to propose fining Telnyx $4,492,500 – after scammers pretending to be the

Author rabih
06 Feb

Robocallers who called the FCC pretending to be from the FCC land telco in trouble

In its first enforcement action of the Trump presidency, the FCC has voted to propose fining Telnyx $4,492,500 – after scammers pretending to be the

Author rabih
05 Feb

Mixing Rust and C in Linux likened to cancer by kernel maintainer

Developers trying to add Rust code to the Linux kernel continue to face opposition from kernel maintainers who believe using multiple languages is an unwelcome

Author rabih
05 Feb

DOGE latest: Citrix supremo has ‘read-only’ access to US Treasury payment system

The US Treasury has revealed Tom Krause – the chief exec of Citrix and Netscaler owner Cloud Software Group – has “read-only” access to a

Author rabih
05 Feb

Musky minion granted ‘read-only’ access to federal payment systems

The US Treasury Department has assured Congress that a “special government employee” associated with Elon Musk’s Department of Government Efficiency (DOGE) has just “read-only” access

Author rabih
05 Feb

Netgear fixes critical bugs as Five Eyes warn about break-ins at the edge

Netgear is advising customers to upgrade their firmware after it patched two critical vulnerabilities affecting multiple routers. The networking biz didn’t reveal too much in

Author rabih
05 Feb

US cranks up espionage charges against ex-Googler accused of trade secrets heist

A Chinese national faces a substantial stint in prison and heavy fines if found guilty of several additional charges related to economic espionage and theft

Author rabih
05 Feb

Patch or perish: How organizations can master vulnerability management

Business Security Don’t wait for a costly breach to provide a painful reminder of the importance of timely software patching Phil Muncaster 05 Feb 2025

Author rabih
04 Feb

Google: How to make any AMD Zen CPU always generate 4 as a random number

Googlers have not only figured out how to break AMD’s security – allowing them to load unofficial microcode into its processors to modify the silicon’s

Author rabih
04 Feb

Poisoned Go programming language package lay undetected for 3 years

A security researcher says a backdoor masquerading as a legitimate Go programming language package used by thousands of organizations was left undetected for years. Kirill

Author rabih
04 Feb

Grubhub serves up security incident with a side of needing to change your password

US food and grocery delivery platform Grubhub says a security incident at a third-party service provider is to blame after user data was compromised. It

Author rabih
Load moreLoadingAll items loaded