The Register - Anti-Virus

Syndikovat obsah
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Aktualizace: 14 min 54 sek zpět

Mystery Palo Alto Networks hijack-my-firewall zero-day now officially under exploit

15 Listopad, 2024 - 22:07
Yank access to management interface, stat

A critical zero-day vulnerability in Palo Alto Networks' firewall management interface that can allow an unauthenticated attacker to remotely execute code is now officially under active exploitation.…

Kategorie: Viry a Červi

Keyboard robbers steal 171K customers' data from AnnieMac mortgage house

15 Listopad, 2024 - 20:22
Names and social security numbers of folks looking for the biggest loan of their lives exposed

A major US mortgage lender has told customers looking to make the biggest financial transaction of their lives that an intruder broke into its systems and saw data belonging to 171,000 of them.…

Kategorie: Viry a Červi

Simplifying endpoint security

15 Listopad, 2024 - 16:51
Discover unified strategies to secure and manage all endpoints across your organization

Webinar  As organizations expand their digital footprint, the range of endpoints - spanning from laptops to IoT devices - continues to grow.…

Kategorie: Viry a Červi

Bitfinex burglar bags 5 years behind bars for Bitcoin heist

15 Listopad, 2024 - 15:09
A nervous wait for rapper wife who also faces a stint in the clink

The US is sending the main figure behind the 2016 intrusion at crypto exchange Bitfinex to prison for five years after he stole close to 120,000 Bitcoin.…

Kategorie: Viry a Červi

Microsoft Power Pages misconfigurations exposing sensitive data

15 Listopad, 2024 - 07:32
NHS supplier that leaked employee info fell victim to fiddly access controls that can leave databases dangling online

Private businesses and public-sector organizations are unwittingly exposing millions of people's sensitive information to the public internet because they misconfigure Microsoft’s Power Pages website creation program.…

Kategorie: Viry a Červi

Fortinet patches VPN app flaw that could give rogue users, malware a privilege boost

14 Listopad, 2024 - 23:22
Plus a bonus hard-coded local API key

A now-patched, high-severity bug in Fortinet's FortiClient VPN application potentially allows a low-privilege rogue user or malware on a vulnerable Windows system to gain higher privileges from another user, execute code and possibly take over the box, and delete log files.…

Kategorie: Viry a Červi

Cybercriminal devoid of boundaries gets 10-year prison sentence

14 Listopad, 2024 - 21:27
Serial extortionist of medical facilities stooped to cavernous lows in search of small payouts

A rampant cybercrook and repeat attacker of medical facilities in the US is being sentenced to a decade in prison, around seven years after the first of his many crimes.…

Kategorie: Viry a Červi

Kids' shoemaker Start-Rite trips over security again, spilling customer card info

14 Listopad, 2024 - 12:57
Full details exposed, putting shoppers at serious risk of fraud

Updated  Children's shoemaker Start-Rite is dealing with a nasty "security incident" involving customer payment card details, its second significant lapse during the past eight years.…

Kategorie: Viry a Červi

NatWest blocks bevy of apps in clampdown on unmonitorable comms

14 Listopad, 2024 - 11:53
From guidance to firm action... no more WhatsApp, Meta's Messenger, Signal, Telegram and more

The full list of messaging apps officially blocked by Brit banking and insurance giant NatWest Group is more extensive than WhatsApp, Meta's Messenger, and Skype – as first reported.…

Kategorie: Viry a Červi

Asda security chief replaced, retailer sheds jobs during Walmart tech divorce

14 Listopad, 2024 - 10:30
British grocer's workers called back to office as clock ticks for contractors

The head of tech security at Asda, the UK's third-largest food retailer, has left amid an ongoing tech divorce from US grocery giant Walmart.…

Kategorie: Viry a Červi

Five Eyes infosec agencies list 2023's most exploited software flaws

14 Listopad, 2024 - 09:31
Slack patching remains a problem – which is worrying as crooks increasingly target zero-day vulns

The cyber security agencies of the UK, US, Canada, Australia, and New Zealand have issued a list of the 15 most exploited vulnerabilities in 2023, and warned that attacks on zero-day exploits have become more common.…

Kategorie: Viry a Červi

Reminder: China-backed crews compromised 'multiple' US telcos in 'significant cyber espionage campaign'

14 Listopad, 2024 - 02:54
Feds don't name Salt Typhoon, but describe Beijing band's alleged deeds

Updated  The US government has confirmed there was "a broad and significant cyber espionage campaign" conducted by China-linked snoops against "multiple" American telecommunications providers' networks.…

Kategorie: Viry a Červi

ShrinkLocker ransomware scrambled your files? Free decryption tool to the rescue

14 Listopad, 2024 - 01:14
Plus: CISA's ScubaGear dives deep to fix M365 misconfigs

Bitdefender has released a free decryption tool that can unlock data encrypted by the ShrinkLocker ransomware.…

Kategorie: Viry a Červi

Data broker amasses 100M+ records on people – then someone snatches, sells it

13 Listopad, 2024 - 22:44
We call this lead degeneration

What's claimed to be more than 183 million records of people's contact details and employment info has been stolen or otherwise obtained from a data broker and put up for sale by a miscreant.…

Kategorie: Viry a Červi

Ransomware fiends boast they've stolen 1.4TB from US pharmacy network

13 Listopad, 2024 - 20:10
American Associated Pharmacies yet to officially confirm infection

American Associated Pharmacies (AAP) is the latest US healthcare organization to have had its data stolen and encrypted by cyber-crooks, it is feared.…

Kategorie: Viry a Červi

Microsoft slips Task Manager and processor count fixes into Patch Tuesday

13 Listopad, 2024 - 18:35
Sore about cores no more

Microsoft has resolved two issues vexing Windows 11 24H2 and Windows Server 2025 users among the many security updates that emerged on Patch Tuesday.…

Kategorie: Viry a Červi

Admins can give thanks this November for dollops of Microsoft patches

13 Listopad, 2024 - 02:29
Don't be a turkey – get these fixed

Patch Tuesday  Patch Tuesday has swung around again, and Microsoft has released fixes for 89 CVE-listed security flaws in its products – including two under active attack – and reissued three more.…

Kategorie: Viry a Červi

China's Volt Typhoon crew and its botnet surge back with a vengeance

13 Listopad, 2024 - 01:58
Ohm, for flux sake

China's Volt Typhoon crew and its botnet are back, compromising old Cisco routers once again to break into critical infrastructure networks and kick off cyberattacks, according to security researchers.…

Kategorie: Viry a Červi

Air National Guardsman gets 15 years after splashing classified docs on Discord

13 Listopad, 2024 - 01:01
22-year-old talked of 'culling the weak minded' – hmm!

A former Air National Guard member who stole classified American military secrets, and showed them to his gaming buddies on Discord, has been sentenced to 15 years in prison.…

Kategorie: Viry a Červi

Here's what we know about the suspected Snowflake data extortionists

12 Listopad, 2024 - 22:10
A Canadian and an American living in Turkey 'walk into' cloud storage environments…

Two men allegedly compromised what's believed to be multiple organizations' Snowflake-hosted cloud environments, stole sensitive data within, and extorted at least $2.5 million from at least three victims.…

Kategorie: Viry a Červi