security

What a second Trump term means for the future of ransomware

The U.S. government has made big strides over the past four years in the ongoing fight against the “scourge of ransomware,” as President Joe Biden described it. At the start of his term, Biden and his administration were quick to declare ransomware a national security threat, unlocking new powers for the military and intelligence agencies. […]

What a second Trump term means for the future of ransomware Read More »

US confirms China-backed hackers breached telecom providers to steal wiretap data

The U.S. government has confirmed that hackers with links to China breached multiple U.S. telecommunication service providers to access the wiretap systems used by law enforcement to surveil Americans. In a joint statement published on Monday, CISA and the FBI said they had uncovered “a broad and significant” cyber espionage campaign that saw PRC-affiliated actors

US confirms China-backed hackers breached telecom providers to steal wiretap data Read More »

Hot Topic data breach exposed personal data of 57 million customers

Millions of customers of Hot Topic have been informed that their personal data was compromised during an October data breach at the American retailer. Have I Been Pwned (HIBP), the breach notification service, said this week that it alerted 57 million Hot Topic customers that their data had been compromised. The stolen data includes email

Hot Topic data breach exposed personal data of 57 million customers Read More »

Amazon confirms employee data stolen after hacker claims MOVEit breach

Amazon has confirmed that employee data was compromised after a “security event” at a third-party vendor. In a statement given to TechCrunch on Monday, Amazon spokesperson Adam Montgomery confirmed that employee information had been involved in a data breach. “Amazon and AWS systems remain secure, and we have not experienced a security event. We were

Amazon confirms employee data stolen after hacker claims MOVEit breach Read More »

Symbiotic Security helps developers find bugs as they code

Symbiotic Security, which is announcing a $3 million seed round today, watches over developers as they code and points out potential security issues in real time. Other companies do this, but Symbiotic also emphasizes the next step: teaching developers to avoid these bugs in the first place. Ideally, this means developers will fix security bugs

Symbiotic Security helps developers find bugs as they code Read More »

Columbus says ransomware gang stole personal data of 500,000 Ohio residents

The City of Columbus, Ohio’s state capital, has confirmed that hackers stole the personal data of 500,000 residents during a July ransomware attack.  In a filing with Maine’s attorney general, Columbus confirmed that a “foreign cyber threat actor” compromised its network to access information including residents’ names, dates of birth, addresses, identification documents, Social Security

Columbus says ransomware gang stole personal data of 500,000 Ohio residents Read More »

2024 looks set to be another record-breaking year for ransomware — and it’s likely going to get worse

The ransomware industry is thriving, not losing.  Despite various law enforcement wins against ransomware actors, like the sweeping takedown of LockBit and the seizure of Radar, hackers continue to reap the rewards of these data-theft attacks — and 2024 looks set to be their most profitable year to date. That’s according to Allan Liska, a

2024 looks set to be another record-breaking year for ransomware — and it’s likely going to get worse Read More »

How a series of opsec failures led US authorities to the alleged developer of the Redline password-stealing malware

U.S. prosecutors have charged Russian national Maxim Rudometov over his alleged involvement in developing and distributing the notorious Redline password-stealing malware. The charges were announced as part of “Operation Magnus,” first unveiled by the Dutch National Police on Monday. This years-in-the-making operation saw international law enforcement agencies dismantle the infrastructure of Redline and Meta, two

How a series of opsec failures led US authorities to the alleged developer of the Redline password-stealing malware Read More »

Police operation claims takedown of prolific Redline and Meta password stealers

A coalition of international law enforcement agencies say they have disrupted the operations of two prolific infostealers that stole the sensitive data of millions of people.  The Dutch National Police, who led the so-called “Operation Magnus” takedown, reports it gained “full access” to the servers used by the Redline and Meta infostealers.  Infostealers are a

Police operation claims takedown of prolific Redline and Meta password stealers Read More »

Socket lands a fresh $40M to scan software for security flaws

The software supply chain, which comprises the components and processes used to develop software, has become precarious. According to one recent survey, 88% of companies believe poor software supply chain security presents an “enterprise-wide risk” to their organizations. Open source supply chain components are especially fraught, thanks to the logistical hurdles in keeping each component well-maintained.

Socket lands a fresh $40M to scan software for security flaws Read More »