FreshRSS

🔒
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ ☆ ✇ WIRED

The Julian Assange Saga Is Finally Over

By: Dell Cameron — June 25th 2024 at 13:09
WikiLeaks founder Julian Assange has agreed to plead guilty to one count of espionage in US court on Wednesday, ending a years-long legal battle between the US government and a controversial publisher.
☐ ☆ ✇ WIRED

Red Tape Is Making Hospital Ransomware Attacks Worse

By: Matt Burgess — June 24th 2024 at 09:00
With cyberattacks increasingly targeting health care providers, an arduous bureaucratic process meant to address legal risk is keeping hospitals offline longer, potentially risking lives.
☐ ☆ ✇ WIRED

A Catastrophic Hospital Hack Ends in a Leak of 300M Patient Records

By: Andy Greenberg, Andrew Couts — June 22nd 2024 at 10:30
Plus: Alleged Apple source code leaks online, cybercrime group Scattered Spider's alleged kingpin gets arrested, and more.
☐ ☆ ✇ WIRED

Hackers Detail How They Allegedly Stole Ticketmaster Data From Snowflake

By: Kim Zetter — June 17th 2024 at 09:30
A ShinyHunters hacker tells WIRED that they gained access to Ticketmaster’s Snowflake cloud account—and others—by first breaching a third-party contractor.
☐ ☆ ✇ WIRED

Medical-Targeted Ransomware Is Breaking Records After Change Healthcare’s $22M Payout

By: Andy Greenberg — June 12th 2024 at 10:30
Cybersecurity firm Recorded Future counted 44 health-care-related incidents in the month after Change Healthcare’s payment came to light—the most it’s ever seen in a single month.
☐ ☆ ✇ WIRED

Ransomware Is ‘More Brutal’ Than Ever in 2024

By: Jordan Pearson — June 10th 2024 at 14:01
As the fight against ransomware slogs on, security experts warn of a potential escalation to “real-world violence.” But recent police crackdowns are successfully disrupting the cybercriminal ecosystem.
☐ ☆ ✇ WIRED

Apple Is Coming for Your Password Manager

By: Andrew Couts — June 8th 2024 at 10:30
Plus: A media executive is charged in an alleged money-laundering scheme, a ransomware attack disrupts care at London hospitals, and Google’s former CEO has a secretive drone project up his sleeve.
☐ ☆ ✇ WIRED

Microsoft Will Switch Off Recall by Default After Security Backlash

By: Andy Greenberg — June 7th 2024 at 16:11
After weeks of withering criticism and exposed security flaws, Microsoft has vastly scaled back its ambitions for Recall, its AI-enabled silent recording feature, and added new privacy features.
☐ ☆ ✇ WIRED

Microsoft’s Recall Feature Is Even More Hackable Than You Thought

By: Andy Greenberg — June 7th 2024 at 00:42
A new discovery that the AI-enabled feature’s historical data can be accessed even by hackers without administrator privileges only contributes to the growing sense that the feature is a “dumpster fire.”
☐ ☆ ✇ WIRED

The Snowflake Attack May Be Turning Into One of the Largest Data Breaches Ever

By: Matt Burgess — June 6th 2024 at 19:41
The number of alleged hacks targeting the customers of cloud storage firm Snowflake appears to be snowballing into one of the biggest data breaches of all time.
☐ ☆ ✇ WIRED

TikTok Hack Targets ‘High-Profile’ Users via DMs

By: Dell Cameron — June 4th 2024 at 18:11
TikTok has confirmed a “potential exploit” that is being used to go after accounts belonging to media organizations and celebrities, including CNN and Paris Hilton, through direct messages.
☐ ☆ ✇ WIRED

This Hacker Tool Extracts All the Data Collected by Windows’ New Recall AI

By: Matt Burgess — June 4th 2024 at 15:08
Windows Recall takes a screenshot every five seconds. Cybersecurity researchers say the system is simple to abuse—and one ethical hacker has already built a tool to show how easy it really is.
☐ ☆ ✇ WIRED

AI Is Your Coworker Now. Can You Trust It?

By: Kate O'Flaherty — June 4th 2024 at 11:00
Generative AI tools such as OpenAI’s ChatGPT and Microsoft’s Copilot are becoming part of everyday business life. But they come with privacy and security considerations you should know about.
☐ ☆ ✇ WIRED

The Ticketmaster Data Breach May Be Just the Beginning

By: Matt Burgess — June 1st 2024 at 13:43
Data breaches at Ticketmaster and financial services company Santander have been linked to attacks against cloud provider Snowflake. Researchers fear more breaches will soon be uncovered.
☐ ☆ ✇ WIRED

Mysterious Hack Destroyed 600,000 Internet Routers

By: Dell Cameron, Andrew Couts — June 1st 2024 at 10:30
Plus: A whistleblower claims the Biden administration falsified a report on Gaza, “Operation Endgame” disrupts the botnet ecosystem, and more.
☐ ☆ ✇ WIRED

‘Largest Botnet Ever’ Tied to Billions in Stolen Covid-19 Relief Funds

By: Dell Cameron — May 29th 2024 at 21:16
The US says a Chinese national operated the “911 S5” botnet, which included computers worldwide and was used to file hundreds of thousands of fraudulent Covid claims and distribute CSAM, among other crimes.
☐ ☆ ✇ WIRED

How Researchers Cracked an 11-Year-Old Password to a $3 Million Crypto Wallet

By: Kim Zetter — May 28th 2024 at 11:30
Thanks to a flaw in a decade-old version of the RoboForm password manager and a bit of luck, researchers were able to unearth the password to a crypto wallet containing a fortune.
☐ ☆ ✇ WIRED

Cops Are Just Trolling Cybercriminals Now

By: Matt Burgess — May 28th 2024 at 09:30
Police are using subtle psychological operations against ransomware gangs to sow distrust in their ranks—and trick them into emerging from the shadows.
☐ ☆ ✇ WIRED

Microsoft’s New Recall AI Tool May Be a ‘Privacy Nightmare’

By: Dell Cameron, Andrew Couts — May 25th 2024 at 10:30
Plus: US surveillance reportedly targets pro-Palestinian protesters, the FBI arrests a man for AI-generated CSAM, and stalkerware targets hotel computers.
☐ ☆ ✇ WIRED

He Trained Cops to Fight Crypto Crime—and Allegedly Ran a $100M Dark-Web Drug Market

By: Andy Greenberg — May 23rd 2024 at 17:24
The strange journey of Lin Rui-siang, the 23-year-old accused of running the Incognito black market, extorting his own site’s users—and then refashioning himself as a legit crypto crime expert.
☐ ☆ ✇ WIRED

Teslas Can Still Be Stolen With a Cheap Radio Hack—Despite New Keyless Tech

By: Andy Greenberg — May 22nd 2024 at 14:00
Ultra-wideband radio has been heralded as the solution for “relay attacks” that are used to steal cars in seconds. But researchers found Teslas equipped with it are as vulnerable as ever.
☐ ☆ ✇ The Hacker News

GHOSTENGINE Exploits Vulnerable Drivers to Disable EDRs in Cryptojacking Attack

By: Newsroom — May 22nd 2024 at 08:57
Cybersecurity researchers have discovered a new cryptojacking campaign that employs vulnerable drivers to disable known security solutions (EDRs) and thwart detection in what's called a Bring Your Own Vulnerable Driver (BYOVD) attack. Elastic Security Labs is tracking the campaign under the name REF4578 and the primary payload as GHOSTENGINE. Previous research from Chinese
☐ ☆ ✇ WIRED

Android Update: Theft Detection Lock Knows When Your Phone Is Stolen

By: Matt Burgess — May 15th 2024 at 17:00
Google is introducing new AI-powered safety tools in Android 15 that can lock down your phone if thieves nab it.
☐ ☆ ✇ WIRED

The $2.3 Billion Tornado Cash Case Is a Pivotal Moment for Crypto Privacy

By: Andy Greenberg — May 13th 2024 at 14:12
Tuesday’s verdict in the trial of Alexey Pertsev, a creator of crypto-privacy service Tornado Cash, is the first in a string of cases that could make it much harder to skirt financial surveillance.
☐ ☆ ✇ WIRED

Microsoft Deploys Generative AI for US Spies

By: Dhruv Mehrotra, Andrew Couts — May 11th 2024 at 10:30
Plus: China is suspected in a hack targeting the UK’s military, the US Marines are testing gun-toting robotic dogs, and Dell suffers a data breach impacting 49 million customers.
☐ ☆ ✇ WIRED

‘TunnelVision’ Attack Leaves Nearly All VPNs Vulnerable to Spying

By: Dan Goodin, Ars Technica — May 10th 2024 at 16:56
TunnelVision is an attack developed by researchers that can expose VPN traffic to snooping or tampering.
☐ ☆ ✇ WIRED

A (Strange) Interview With the Russian-Military-Linked Hackers Targeting US Water Utilities

By: Andy Greenberg — May 8th 2024 at 10:00
Despite Cyber Army of Russia’s claims of swaying US “minds and hearts,” experts say the cyber sabotage group appears to be hyping its hacking for a domestic audience.
☐ ☆ ✇ WIRED

The Alleged LockBit Ransomware Mastermind Has Been Identified

By: Matt Burgess — May 7th 2024 at 14:19
Law enforcement officials say they’ve identified, sanctioned, and indicted the person behind LockBitSupp, the administrator at the heart of LockBit’s $500 million hacking rampage.
☐ ☆ ✇ WIRED

Apple’s iPhone Spyware Problem Is Getting Worse. Here’s What You Should Know

By: Kate O'Flaherty — May 6th 2024 at 11:30
The iPhone maker has detected spyware attacks against people in more than 150 countries. Knowing if your device is infected can be tricky—but there are a few steps you can take to protect yourself.
☐ ☆ ✇ WIRED

The Breach of a Face Recognition Firm Reveals a Hidden Danger of Biometrics

By: Jordan Pearson — May 2nd 2024 at 15:24
Outabox, an Australian firm that scanned faces for bars and clubs, suffered a breach that shows the problems with giving companies your biometric data.
☐ ☆ ✇ WIRED

The US Government Is Asking Big Tech to Promise Better Cybersecurity

By: Eric Geller — May 1st 2024 at 16:01
The Biden administration is asking tech companies to sign a pledge, obtained by WIRED, to improve their digital security, including reduced default password use and improved vulnerability disclosures.
☐ ☆ ✇ WIRED

A Vast New Data Set Could Supercharge the AI Hunt for Crypto Money Laundering

By: Andy Greenberg — May 1st 2024 at 13:00
Blockchain analysis firm Elliptic, MIT, and IBM have released a new AI model—and the 200-million-transaction dataset it's trained on—that aims to spot the “shape” of bitcoin money laundering.
☐ ☆ ✇ WIRED

The Dangerous Rise of GPS Attacks

By: Matt Burgess — April 30th 2024 at 17:16
Thousands of planes and ships are facing GPS jamming and spoofing. Experts warn these attacks could potentially impact critical infrastructure, communication networks, and more.
☐ ☆ ✇ WIRED

The White House Has a New Master Plan to Stop Worst-Case Scenarios

By: Eric Geller — April 30th 2024 at 14:00
President Joe Biden has updated the directives to protect US critical infrastructure against major threats, from cyberattacks to terrorism to climate change.
☐ ☆ ✇ The Hacker News

Sandbox Escape Vulnerabilities in Judge0 Expose Systems to Complete Takeover

By: Newsroom — April 29th 2024 at 09:58
Multiple critical security flaws have been disclosed in the Judge0 open-source online code execution system that could be exploited to obtain code execution on the target system. The three flaws, all critical in nature, allow an "adversary with sufficient access to perform a sandbox escape and obtain root permissions on the host machine," Australian
☐ ☆ ✇ WIRED

'ArcaneDoor' Cyberspies Hacked Cisco Firewalls to Access Government Networks

By: Andy Greenberg — April 24th 2024 at 16:00
Sources suspect China is behind the targeted exploitation of two zero-day vulnerabilities in Cisco’s security appliances.
☐ ☆ ✇ WIRED

Change Healthcare Finally Admits It Paid Ransomware Hackers—and Still Faces a Patient Data Leak

By: Andy Greenberg — April 23rd 2024 at 03:55
The company belatedly conceded both that it had paid the cybercriminals extorting it and that patient data nonetheless ended up on the dark web.
☐ ☆ ✇ WIRED

AI-Controlled Fighter Jets Are Dogfighting With Human Pilots Now

By: Dell Cameron, Andrew Couts — April 20th 2024 at 10:00
Plus: New York’s legislature suffers a cyberattack, police disrupt a global phishing operation, and Apple removes encrypted messaging apps in China.
☐ ☆ ✇ WIRED

Hackers Linked to Russia’s Military Claim Credit for Sabotaging US Water Utilities

By: Andy Greenberg — April 17th 2024 at 10:00
Cyber Army of Russia Reborn, a group with ties to the Kremlin’s Sandworm unit, is crossing lines even that notorious cyberwarfare unit wouldn’t dare to.
☐ ☆ ✇ WIRED

Change Healthcare’s New Ransomware Nightmare Goes From Bad to Worse

By: Eric Geller — April 16th 2024 at 19:09
A cybercriminal gang called RansomHub claims to be selling highly sensitive patient information stolen from Change Healthcare following a ransomware attack by another group in February.
☐ ☆ ✇ WIRED

The US Government Has a Microsoft Problem

By: Eric Geller — April 15th 2024 at 10:30
Microsoft has stumbled through a series of major cybersecurity failures over the past few years. Experts say the US government’s reliance on its systems means the company continues to get a free pass.
☐ ☆ ✇ WIRED

Roku Breach Hits 567,000 Users

By: Andy Greenberg, Andrew Couts — April 13th 2024 at 10:30
Plus: Apple warns iPhone users about spyware attacks, CISA issues an emergency directive about a Microsoft breach, and a ransomware hacker tangles with an unimpressed HR manager named Beth.
☐ ☆ ✇ WIRED

Change Healthcare Faces Another Ransomware Threat—and It Looks Credible

By: Andy Greenberg, Matt Burgess — April 12th 2024 at 18:25
Change Healthcare ransomware hackers already received a $22 million payment. Now a second group is demanding money, and it has sent WIRED samples of what they claim is the company's stolen data.
☐ ☆ ✇ WIRED

Identity Thief Lived as a Different Man for 33 Years

By: Dell Cameron, Andrew Couts — April 6th 2024 at 09:00
Plus: Microsoft scolded for a “cascade” of security failures, AI-generated lawyers send fake legal threats, a data broker quietly lobbies against US privacy legislation, and more.
☐ ☆ ✇ WIRED

A Vigilante Hacker Took Down North Korea’s Internet. Now He’s Taking Off His Mask

By: Andy Greenberg — April 4th 2024 at 09:00
As “P4x,” Alejandro Caceres single-handedly disrupted the internet of an entire country. Then he tried to show the US military how it can—and should—adopt his methods.
☐ ☆ ✇ WIRED

The Mystery of ‘Jia Tan,’ the XZ Backdoor Mastermind

By: Andy Greenberg, Matt Burgess — April 3rd 2024 at 13:54
The thwarted XZ Utils supply chain attack was years in the making. Now, clues suggest nation-state hackers were behind the persona that inserted the malicious code.
☐ ☆ ✇ WIRED

The XZ Backdoor: Everything You Need to Know

By: Dan Goodin, Ars Technica — April 2nd 2024 at 08:00
Details are starting to emerge about a stunning supply chain attack that sent the open source software community reeling.
☐ ☆ ✇ WIRED

You Should Update Apple iOS and Google Chrome ASAP

By: Kate O'Flaherty — March 31st 2024 at 10:00
Plus: Microsoft patches over 60 vulnerabilities, Mozilla fixes two Firefox zero-day bugs, Google patches 40 issues in Android, and more.
☐ ☆ ✇ WIRED

Yogurt Heist Reveals a Rampant Form of Online Fraud

By: Andy Greenberg, Andrew Couts — March 30th 2024 at 13:00
Plus: “MFA bombing” attacks target Apple users, Israel deploys face recognition tech on Gazans, AI gets trained to spot tent encampments, and OSINT investigators find fugitive Amond Bundy.
☐ ☆ ✇ WIRED

‘Malicious Activity’ Hits the University of Cambridge’s Medical School

By: Matt Burgess — March 27th 2024 at 16:36
Multiple university departments linked to the Clinical School Computing Service have been inaccessible for a month. The university has not revealed the nature of the “malicious activity.”
☐ ☆ ✇ The Hacker News

Microsoft Edge Bug Could Have Allowed Attackers to Silently Install Malicious Extensions

By: Newsroom — March 27th 2024 at 12:54
A now-patched security flaw in the Microsoft Edge web browser could have been abused to install arbitrary extensions on users' systems and carry out malicious actions.  "This flaw could have allowed an attacker to exploit a private API, initially intended for marketing purposes, to covertly install additional browser extensions with broad permissions without the user's knowledge," Guardio
☐ ☆ ✇ WIRED

Chinese Hackers Charged in Decade-Long Global Spying Rampage

By: Matt Burgess — March 25th 2024 at 18:22
US and UK officials hit Chinese hacking group APT31 with sanctions and criminal charges after they targeted thousands of businesses, politicians, and critics of China.
☐ ☆ ✇ WIRED

Apple Chip Flaw Leaks Secret Encryption Keys

By: Andrew Couts — March 23rd 2024 at 10:00
Plus: The Biden administration warns of nationwide attacks on US water systems, a new Russian wiper malware emerges, and China-linked hackers wage a global attack spree.
☐ ☆ ✇ WIRED

Hackers Found a Way to Open Any of 3 Million Hotel Keycard Locks in Seconds

By: Andy Greenberg — March 21st 2024 at 14:00
The company behind the Saflok-brand door locks is offering a fix, but it may take months or years to reach some hotels.
☐ ☆ ✇ WIRED

Automakers Are Telling Your Insurance Company How You Really Drive

By: Dell Cameron, Andrew Couts — March 16th 2024 at 13:00
Plus: The operator of a dark-web cryptocurrency “mixing” service is found guilty, and a US senator reveals that popular safes contain secret backdoors.
☐ ☆ ✇ The Hacker News

Microsoft's March Updates Fix 61 Vulnerabilities, Including Critical Hyper-V Flaws

By: Newsroom — March 13th 2024 at 05:38
Microsoft on Tuesday released its monthly security update, addressing 61 different security flaws spanning its software, including two critical issues impacting Windows Hyper-V that could lead to denial-of-service (DoS) and remote code execution. Of the 61 vulnerabilities, two are rated Critical, 58 are rated Important, and one is rated Low in severity. None of the flaws are listed as
☐ ☆ ✇ WIRED

Russian Hackers Stole Microsoft Source Code—and the Attack Isn’t Over

By: Dhruv Mehrotra, Andrew Couts — March 9th 2024 at 14:00
Plus: An ex-Google engineer gets arrested for allegedly stealing trade secrets, hackers breach the top US cybersecurity agency, and X’s new feature exposes sensitive user data.
☐ ☆ ✇ The Hacker News

Cisco Issues Patch for High-Severity VPN Hijacking Bug in Secure Client

By: Newsroom — March 8th 2024 at 08:09
Cisco has released patches to address a high-severity security flaw impacting its Secure Client software that could be exploited by a threat actor to open a VPN session with that of a targeted user. The networking equipment company described the vulnerability, tracked as CVE-2024-20337 (CVSS score: 8.2), as allowing an unauthenticated, remote attacker to conduct a carriage return line feed (CRLF
☐ ☆ ✇ WIRED

Meta Abandons Hacking Victims, Draining Law Enforcement Resources, Officials Say

By: Dell Cameron — March 6th 2024 at 15:38
A coalition of 41 state attorneys general says Meta is failing to assist Facebook and Instagram users whose accounts have been hacked—and they want the company to take “immediate action.”
☐ ☆ ✇ The Hacker News

U.S. Cracks Down on Predatory Spyware Firm for Targeting Officials and Journalists

By: Newsroom — March 6th 2024 at 07:35
The U.S. Department of Treasury’s Office of Foreign Assets Control (OFAC) sanctioned two individuals and five entities associated with the Intellexa Alliance for their role in “developing, operating, and distributing” commercial spyware designed to target government officials, journalists, and policy experts in the country. “The proliferation of commercial spyware poses distinct and growing
❌