The Register - Anti-Virus

Syndikovat obsah
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Aktualizace: 2 min 6 sek zpět

Attackers turned Citrix, Cisco 0-day exploits into custom-malware hellscape

47 min 15 sek zpět
Vendors (still) keep mum

An "advanced" attacker exploited CitrixBleed 2 and a max-severity Cisco Identity Services Engine (ISE) bug as zero-days to deploy custom malware, according to Amazon Chief Information Security Officer CJ Moses.…

Kategorie: Viry a Červi

Bitcoin bandit's £5B bubble bursts as cops wrap seven-year chase

6 hodin 1 min zpět
Metropolitan Police lands lengthy sentence following 'complex' investigation

The Metropolitan Police's seven-year investigation into a record-setting fraudster has ended after she was sentenced to 11 years and eight months in prison on Tuesday.…

Kategorie: Viry a Červi

UK's Cyber Security and Resilience Bill makes Parliamentary debut

7 hodin 9 min zpět
Various touch-ups added as MPs seek greater resilience to attacks on critical sectors

UK government introduced the Cyber Security and Resilience (CSR) Bill to Parliament today, marking a significant overhaul of local cybersecurity legislation to sharpen the security posture of the most critical sectors.…

Kategorie: Viry a Červi

Aviation watchdog says organized drone attacks will shut UK airports ‘sooner or later’

7 hodin 48 min zpět
Skies are open for mischief as hard-to-trace drones and fast-moving cyber raids promise new wave of disruption

Britain's aviation watchdog has warned it's only a matter of time before organized drone attacks bring UK airports to a standstill.…

Kategorie: Viry a Červi

China hates crypto and scams, but is now outraged USA acquired bitcoin from a scammer

13 hodin 15 min zpět
A new theory from the agency that brought us ‘America hacked itself to blame Beijing’

China’s National Computer Virus Emergency Response Center (CVERC) has alleged a nation-state entity, probably the USA, was behind a 2020 attack on a bitcoin mining operation and by doing so has gone into bat for entities that Beijing usually blasts.…

Kategorie: Viry a Červi

Australia’s spy boss says authoritarian nations ready to commit ‘high-impact sabotage’

16 hodin 46 min zpět
‘Elite teams’ are pondering cyber-attacks to turn off energy supply or telecoms networks

The head of Australia’s Security Intelligence Organisation (ASIO) has warned that authoritarian regimes “are growing more willing to disrupt or destroy critical infrastructure”, using cyber-sabotage.…

Kategorie: Viry a Červi

North Korean spies turn Google's Find Hub into remote-wipe weapon

11 Listopad, 2025 - 17:26
KONNI espionage crew covertly abused Google’s Find My Device feature to remotely factory-reset Android phones

North Korean state-backed spies have found a new way to torch evidence of their own cyber-spying – by hijacking Google's Find Hub service to remotely wipe Android phones belonging to their South Korean targets.…

Kategorie: Viry a Červi

EU's reforms of GDPR, AI slated by privacy activists for 'playing into Big Tech’s hands'

11 Listopad, 2025 - 15:30
Lobbying efforts gain ground as proposals carve myriad holes into regulations

Privacy advocates are condemning the European Commission's leaked plans to overhaul digital privacy legislation, accusing officials of bypassing proper legislative processes to favor Big Tech interests.…

Kategorie: Viry a Červi

OWASP Top 10: Broken access control still tops app security list

11 Listopad, 2025 - 14:26
Risk list highlights misconfigs, supply chain failures, and singles out prompt injection in AI apps

The Open Worldwide Application Security Project (OWASP) just published its top 10 categories of application risks for 2025, its first list since 2021. It found that while broken access control remains the top issue, security misconfiguration is a strong second, and software supply chain issues are still prominent.…

Kategorie: Viry a Červi

Hitachi-owned GlobalLogic admits data stolen on 10k current and former staff

11 Listopad, 2025 - 13:20
Clop's Oracle EBS exploit spree shows no sign of slowing, claims nearly 30 more casualties in media, finance, and tech.

Digital engineering outfit GlobalLogic says personal data from more than 10,000 current and former employees was exposed in the wave of Oracle E-Business Suite (EBS) attacks attributed to the Clop ransomware gang. The Hitachi-owned biz joins a growing roster of high-profile victims that also now includes The Washington Post and Allianz UK.…

Kategorie: Viry a Červi

UK asks cyberspies to probe whether Chinese buses can be switched off remotely

11 Listopad, 2025 - 12:55
Norwegian testers claim maker has remote access, while UK importer says supplier complies with the law

UK governmental is working with the National Cyber Security Centre to understand and "mitigate" any risk that China-made imported electric buses could be remotely accessed and potentially disabled.…

Kategorie: Viry a Červi

Cyber insurers paid out over twice as much for UK ransomware attacks last year

11 Listopad, 2025 - 12:04
Massive increase in policy claims… and data doesn’t even cover the major attacks of 2025

The number of successful cyber insurance claims made by UK organizations shot up last year, according to the latest figures from the industry's trade association.…

Kategorie: Viry a Červi

UK's Ajax fighting vehicle arrives – years late and still sending crew to hospital

11 Listopad, 2025 - 11:09
Continuous track of long awaited AFV hits the ground ... and the terrain is pretty bumpy

The British Army just received its first new armored fighting vehicle (AFV) for nearly three decades, but it is years late, hit by rising costs, is still reportedly injuring its crew, and there are questions about whether it remains relevant in the age of drone warfare. …

Kategorie: Viry a Červi

LLM side-channel attack could allow snoops to guess what you're talking about

11 Listopad, 2025 - 01:09
Encryption protects content, not context

Updated  Mischief-makers can guess the subjects being discussed with LLMs using a side-channel attack, according to Microsoft researchers. They told The Register that models from some providers, including Anthropic, AWS, DeepSeek, and Google, haven't been fixed, putting both personal users and enterprise communications at risk.…

Kategorie: Viry a Červi

Critical federal cybersecurity funding set to resume as government shutdown draws to a close - for now

10 Listopad, 2025 - 20:01
Resolution acquiesced to by 8 Dems includes CISA Act funding, layoff reversals, and could be easily undone

The US Senate voted on Sunday to advance a short-term funding bill for the federal government, moving the country closer to ending its longest-ever shutdown. Part of the spending bill also restores critical cybersecurity programs that lapsed as the shutdown began. …

Kategorie: Viry a Červi

Phishers try to lure 5K Facebook advertisers with fake business pages

10 Listopad, 2025 - 19:34
One company alone was hit with more than 4,200 emails

More than 5,000 businesses that use Facebook for advertising were bombarded by tens of thousands of phishing emails in a credential- and data-stealing campaign.…

Kategorie: Viry a Červi

Russian broker pleads guilty to profiting from Yanluowang ransomware attacks

10 Listopad, 2025 - 16:00
Aleksei Volkov faces years in prison, may have been working with other crews

A Russian national will likely face several years in US prison after pleading guilty to a range of offenses related to his work with ransomware crews.…

Kategorie: Viry a Červi

Allianz UK joins growing list of Clop’s Oracle E-Business Suite victims

10 Listopad, 2025 - 10:48
Insurance giant’s UK arm says cybercriminals misattributed the real victim

Allianz UK confirms it was one of the many companies that fell victim to the Clop gang's Oracle E-Business Suite (EBS) attack after crims reported that they had attacked a subsidiary.…

Kategorie: Viry a Červi

As AI enables bad actors, how are 3,000+ teams responding?

10 Listopad, 2025 - 10:01
Breaking down trends in exposure management with insights from 3,000+ organizations and Intruder's security experts

Partner Content  This year has shown just how quickly new exposures can emerge, with AI-generated code shipped before review, cloud sprawl racing ahead of controls, and shadow IT opening blind spots. Supply chain compromises have disrupted transport, manufacturing, and other critical services. On the attacker side, AI-assisted exploit development is making it faster than ever to turn those weaknesses into working attacks.…

Kategorie: Viry a Červi

Cisco creating new security model using 30 years of data describing cyber-dramas and saves

10 Listopad, 2025 - 07:56
Doubles parameters to over 17 billion, to detect threats and recommend actions

Exclusive  Cisco is working on a new AI model that will more than double the number of parameters used to train its current flagship Foundation-Sec-8B.…

Kategorie: Viry a Červi