Security

Russia’s covert UK subsea cable operation exposes link between physical and cyber warfare

Newly-released images and UK intelligence reveal Russian submarine activity near critical undersea cables, highlighting growing risks to global data, energy infrastructure and cybersecurity.
Read more about Russia’s covert UK subsea cable operation exposes link between physical and cyber warfare

Microsoft account suspension fiasco angers developers: critical updates paralyzed

The Redmond giant says it is working to restore access to developers of VeraCrypt, WireGuard, and other Windows tools and drivers after account suspensions disrupted their ability to sign and release updates. OSR, a longtime Windows driver developer, warns that it can’t update thousands of desktops and instruments.
Read more about Microsoft account suspension fiasco angers developers: critical updates paralyzed

The Netherlands not in favor of legal ban on ransom payments to hackers

The government of the Netherlands doesn’t like the idea of implementing a statutory ban on paying ransom in case of a ransomware attack.
Read more about The Netherlands not in favor of legal ban on ransom payments to hackers

Over 300,000 travelers affected by Eurail data breach

Over 300,000 tourists have been affected by a data breach at European train travel company Eurail B.V. Some of the data is up for sale.
Read more about Over 300,000 travelers affected by Eurail data breach

CPUID website hacked: users report HWMonitor and CPU-Z delivering malware

CPUID confirms its website has been compromised. Downloading HWMonitor and CPU-Z, popular Windows utilities, infected some users with malware.
Read more about CPUID website hacked: users report HWMonitor and CPU-Z delivering malware

Fake IRS refund email uses Elon Musk to lure victims into giving up bank details

A new IRS tax scam promises a $5,000 refund courtesy of the world’s richest man – Elon Musk – tricking victims into handing over a slew of personal information, including driver’s licenses and bank account numbers.
Read more about Fake IRS refund email uses Elon Musk to lure victims into giving up bank details

North Korean hacker "detonates" malware on own PC, exposing $1M-a-month IT worker scam

A North Korean hacker appears to have exposed a $1M-a-month IT worker scam after detonating malware on their own computer, leaking chats, accounts, and crypto records.
Read more about North Korean hacker "detonates" malware on own PC, exposing $1M-a-month IT worker scam

North Korean hackers are using “123456” passwords, making them easy targets for other hackers

Low-tier North Korean hacking groups have left themselves open to counterattacks by using weak passwords like "123456" to protect internal payment servers processing over $3.5 million.
Read more about North Korean hackers are using “123456” passwords, making them easy targets for other hackers

Critical Adobe Reader zero-day lets PDFs steal files, may have been active for months

A cybersecurity researcher is warning of a zero-day vulnerability in Adobe Reader that allows attackers to steal local files and potentially take full control of a victim’s system – simply by getting them to open a PDF.
Read more about Critical Adobe Reader zero-day lets PDFs steal files, may have been active for months

Hackers claim breach on Brazil’s Experian: Is every single person in Brazil part of this leak?

A hacker claims to hold data on more Brazilians than actually exist. Is it the largest leak ever recorded? Or just old data doing the rounds once again?
Read more about Hackers claim breach on Brazil’s Experian: Is every single person in Brazil part of this leak?

Tor network under attack by authorities: project explores relays that wipe themselves clean after reboot

The Tor Project wants network nodes to refrain from storing data in case authorities want to analyze it. The anonymity network is considering using stateless machines to help prevent attacks, operator errors, or infiltration by authorities, improving network trustworthiness.
Read more about Tor network under attack by authorities: project explores relays that wipe themselves clean after reboot

Telenor is being sued for handing over phone data that was used to arrest and execute dissidents

The Justice and Accountability Initiative, a Swedish non-profit organization, has filed a lawsuit against Telenor’s subsidiary in Myanmar for sharing private information of dissidents with the country’s military regime.
Read more about Telenor is being sued for handing over phone data that was used to arrest and execute dissidents

Walls have ears: how your internet cable can be turned into a covert listening device

A team of researchers has shown that, with the right expertise and access, ordinary fiber optic internet cables can be turned into covert listening devices.
Read more about Walls have ears: how your internet cable can be turned into a covert listening device

The Netherlands is building a "digital emergency kit" in case the internet shuts down nationwide

Willemijn Aerdts, Minister for the Digital Economy and Sovereignty, is working on a “digital emergency kit” to help government agencies and citizens take care of themselves during digital disasters, such as a national internet shutdown.
Read more about The Netherlands is building a "digital emergency kit" in case the internet shuts down nationwide

A ransomware attack on Dutch patient software has forced hospitals to disconnect their systems

ChipSoft, a Dutch manufacturer of electronic patient record software, has been targeted with ransomware.
Read more about A ransomware attack on Dutch patient software has forced hospitals to disconnect their systems

European defence ministries are turning to a French cloud provider to cut ties with US tech

France's OVHcloud is creating a dedicated defence vertical after several European defence ministries approached it to support their military digital transformation, the datacentre operator said on Thursday.
Read more about European defence ministries are turning to a French cloud provider to cut ties with US tech

Hackers claim breach of major Colombian banks, leak customer data samples

Threat actors are claiming to have accessed sensitive data linked to major Colombian financial institutions – Grupo Bancocolombia and Banco De Bogota, posting samples on an underground forum.
Read more about Hackers claim breach of major Colombian banks, leak customer data samples

Modbus protocol exposes critical infrastructure devices

Some of the most critical national infrastructure, including power grids and railway networks, have exposed industrial control systems (ICS), according to a new study.
Read more about Modbus protocol exposes critical infrastructure devices

Hackers expose 70,000 NSFW prompts "linked to unique user IDs" from AI girlfriend platform

More than 100,000 users may have had their most intimate AI conversations exposed, as data allegedly stolen from MyLovelyAI has been listed on a hacker forum.
Read more about Hackers expose 70,000 NSFW prompts "linked to unique user IDs" from AI girlfriend platform

Threat actors use emojis on Telegram, Discord, and the dark web: why?

Studies show that individuals leverage emojis to enhance communication and build stronger relationships. Threat actors are certainly a tight-knit community. Maybe, as a new analysis suggests, emojis are making them stronger – and stealthier.
Read more about Threat actors use emojis on Telegram, Discord, and the dark web: why?