The Register - Anti-Virus

The XBOM vs SBOM debate
Webinar A Software Bill of Materials (SBOM) has become a non-negotiable requirement to meet regulatory and buyer requirements. But does this provide enough protection if it can give only a partial view into interconnected and ever-changing application attack surfaces?…
Third-party data breach affecting Canadian government could involve data from 1999
The government of Canada has confirmed its data was accessed after two of its third-party service providers were attacked.…
Maintaining a state of readiness to deal with cyber attacks
Sponsored Post You can never afford to drop your guard when it comes to cyber security – hackers never do. Any weakness in your organisation's defence is certain to be tested at some point.…
MOVEit victim count latest: 2.6K+ orgs hit, 77M+ people's data stolen
Quick show of hands: whose data hasn't been stolen in the mass exploitation of Progress Software's vulnerable MOVEit file transfer application? Anyone?…
Former infosec COO pleads guilty to attacking hospitals to drum up business
An Atlanta tech company's former COO has pleaded guilty to a 2018 incident in which he deliberately launched online attacks on two hospitals, later citing the incidents in sales pitches.…
Rhysida ransomware gang: We attacked the British Library
The Rhysida ransomware group says it's behind the highly disruptive October cyberattack on the British Library, leaking a snippet of stolen data in the process.…
Your password hygiene remains atrocious, says NordPass
Infosec in brief It's that time of year again – NordPass has released its annual list of the most common passwords. And while it seems some of you took last year's chiding to heart, most of you arguably swapped bad for worse.…
LockBit redraws negotiation tactics after affiliates fail to squeeze victims
In response to growing frustrations inside the LockBit organization, its leaders have overhauled the way they negotiate with ransomware victims going forward.…
SonicWall swallows Solutions Granted amid cybersecurity demand surge
Channel-focused cybersecurity company SonicWall is buying Virginia-based MSSP Solutions Granted – its first acquisition in well over a decade.…
Samsung UK discloses year-long breach, leaked customer data
Updated The UK division of Samsung Electronics has allegedly alerted customers of a year-long data security breach – the third such incident the South Korean giant has experienced around the world in the past two years.…
Look out, Scattered Spider. FBI pumps 'significant' resources into snaring data-theft crew
The FBI is applying "significant" resources to find members of the infamous Scattered Spider cyber-crime crew, which seemingly attacked a couple of high-profile casinos a few months ago and remains active, according to a senior bureau official.…
How much to clean up a ransomware infection? For Rackspace, about $11M
Rackspace's costs from last year's ransomware infection continue to mount. The cloud hosting biz has told America's financial watchdog, the SEC, its total expenses to date regarding that cyberattack have now reached about $11 million, though insurance has helped cover half of that.…
Windows Server 2022 update gave ESXi host VMs the blue screen blues
Something likely to be absent from Microsoft's Ignite event is talk of a fix rolled out to deal with malfunctioning Windows Server 2022 Virtual Machines following a problematic update from the company.…
BlackCat plays with malvertising traps to lure corporate victims
Updated Affiliates of the ALPHV/BlackCat ransomware-as-a-service operation are turning to malvertising campaigns to establish an initial foothold in their victims' systems.…
Royal Mail’s recovery from ransomware attack will cost business at least $12M
Royal Mail's parent International Distributions Services has revealed for the first time the infrastructure costs associated with its January ransomware attack.…
Hundreds of websites cloned to run ads for Chinese football gambling outfits
Swedish digital rights organization Qurium has discovered around 250 cloned websites and suggested they exist to drive people to China-linked gambling sites.…
Clorox CISO flushes self after multimillion-dollar cyberattack
The Clorox Company's chief security officer has left her job in the wake of a corporate network breach that cost the manufacturer hundreds of millions of dollars.…
Google Workspace weaknesses allow plaintext password theft
Novel weaknesses in Google Workspace have been exposed by researchers, with exploits potentially leading to ransomware attacks, data exfiltration, and password decryption.…
FBI Director: FISA Section 702 warrant requirement a 'de facto ban'
FBI director Christopher Wray made yet another impassioned plea to US lawmakers to kill a proposed warrant requirement for so-called "US person queries" of data collected via the Feds' favorite snooping tool, FISA Section 702.…
How cyber training can help you beat the bad guys
Sponsored Post Fighting cybercrime demands constant vigilance and can be a huge drain on time and resources. So it's good to know that not every weapon in the armory of the cybersecurity professional has to cost the earth. In fact, there's quite a bit of free stuff out there if you know where to look for it.…