News
IT governance
-
March 06, 2024
06
Mar'24
‘Brutal’ decisions required to sort out Post Office mess, says select committee chair
Liam Byrne, chair of the business and trade select committee, tells Computer Weekly about the group’s focus on getting Horizon scandal victims what they are owed
-
March 06, 2024
06
Mar'24
Post Office prosecutions during Horizon go-live phase are ‘frightening’
The Post Office used subpostmasters as guinea pigs to test its software and take the rap for its errors
-
March 05, 2024
05
Mar'24
Rapid7 hits out over botched vulnerability disclosure
Software development firm JetBrains and security specialist Rapid7 fall out over the handling of a critical vulnerability disclosure, while customers are left rushing to patch
-
March 05, 2024
05
Mar'24
ALPHV/BlackCat gang vanishes amid ransomware ‘turmoil’
Mystery surrounds the apparent disappearance of the ALPHV/BlackCat cyber crime gang amid reports that a prominent US victim paid a $22m ransom
-
March 05, 2024
05
Mar'24
IT chiefs fear Kubernetes data log overload
IT architectures are set to grow in complexity, and more mission-critical systems are being deployed on Kubernetes, meaning log files are becoming unmanageable
-
March 05, 2024
05
Mar'24
Dutch organisations start building a federated European cloud
The ‘European cloud services in an open federated ecosystem’ (ECOFED) project is co-funded by the Dutch government and will run from 2024 to 2027
-
March 05, 2024
05
Mar'24
American Express customers exposed through third-party breach
US card giant warns customers that their personal details may have been exposed after a third party experienced a systems breach
-
March 05, 2024
05
Mar'24
Banning ransomware payments back on the agenda
The idea of banning ransomware payments to cyber criminals is back on the agenda, with former NCSC chief Ciaran Martin arguing that tougher measures need to be taken
-
March 04, 2024
04
Mar'24
Amazon lobbyists banned from European Parliament
Amazon lobbyists have had their access badges to the European Parliament revoked, following allegedly repeated refusals to engage with lawmakers on issues around working conditions and rights
-
March 04, 2024
04
Mar'24
How ANZ organisations can address challenges in AI adoption
Pure Storage's global CTO Alex McMullan discusses the data and sustainability challenges in artificial intelligence adoption, which can be addressed by centralising datasets and focusing on data quality and management
-
March 01, 2024
01
Mar'24
IT leaders focus on enterprise software to drive cost savings
ERP and supply chain software are among the big-ticket investment areas in 2024, and managing these projects is a top priority
-
March 01, 2024
01
Mar'24
Fancy Bear sniffs out Ubiquiti router users
The authorities have warned users of Ubiquiti EdgeRouter products to take remedial action after a number of devices were hijacked into a malicious botnet by a Russian cyber espionage unit
-
February 29, 2024
29
Feb'24
Okta doubles down on cyber in wake of high-profile breaches
Okta launches Secure Identity Commitment to shore up its technology in the wake of a damaging breach and elevate best practice around identity
-
February 29, 2024
29
Feb'24
Police arrested journalists as part of surveillance operation to identify confidential sources
Three police forces took part in surveillance operations between 2011 and 2018 to identify sources that leaked information to journalists Trevor Birney and Barry McCaffrey, the Investigatory Powers Tribunal hears
-
February 28, 2024
28
Feb'24
New version of ALPHV/BlackCat ransomware hits victims
An updated version of the ALPHV/BlackCat ransomware has been spotted in the wild amid a series of attacks on American healthcare providers, prompting a new alert from the authorities
-
February 28, 2024
28
Feb'24
75% of third-party breaches target software, IT supply chains
Data drawn from SecurityScorecard’s telemetry reveals how supply chain breaches are becoming a weapon of choice for threat actors
-
February 28, 2024
28
Feb'24
Users love their cyber teams, but find them frustrating
Despite strong support for security teams, a good number of ordinary workers see them as obstructive to business goals, and would like to see them operate more transparently
-
February 28, 2024
28
Feb'24
Government urged to take a pro-innovation approach to quantum regulation
Responsible innovation, learning from AI and the use of foresight techniques should inform policymaking
-
February 28, 2024
28
Feb'24
UC finetunes tech strategy to support digital masterplan
The University of Canberra is scoping a new project to determine data, integration and multicloud strategies to support its long-term digital roadmap
-
February 27, 2024
27
Feb'24
Black Basta and Bl00dy ransomware gangs exploiting ConnectWise vulns
More ransomware gangs have been observed exploiting two dangerous vulnerabilities in ConnectWise ScreenConnect software, prompting new warnings for users to get patching
-
February 27, 2024
27
Feb'24
VulnCheck bug listing to help track new threats quicker
Exploit intelligence firm VulnCheck launches a proprietary Known Exploited Vulnerabilities catalogue in hopes of improving end-user access to intel on emerging threats and reaching those that the likes of CISA do not
-
February 27, 2024
27
Feb'24
Government should face legal deadlines on paying Post Office victims
The government should face a legal deadline on paying Horizon scandal victims and unfair previous settlements should be reopened, MPs have been told - amid further boardroom controversy at the Post Office
-
February 27, 2024
27
Feb'24
Majority of UK employees ‘willingly gamble’ with security
Human-centric threats originating from employees continue to damage organisations both financially and reputationally, according to a report
-
February 27, 2024
27
Feb'24
Hycu uses AI to develop APIs for SaaS application backup
SaaS applications don’t usually come with built-in data protection, but Hycu plans to tackle that gap in the market with AI to generate the connectors needed to backup user data
-
February 27, 2024
27
Feb'24
Cozy Bear and other APTs changing tack as cloud adoption increases
A change in APT tactics has been observed resulting from greater adoption of cloud-based services, according to the NCSC
-
February 26, 2024
26
Feb'24
Storage and backup spend in 2024 targets risk and resilience
The TechTarget and ESG spending intentions survey finds big bias towards averting risk and building organisational resilience, but on-premise storage a significant planned outlay
-
February 26, 2024
26
Feb'24
Secret court hears claims of police surveillance against journalists
Journalists Trevor Birney and Barry McCaffrey argue that the use of covert powers by the police to identify their confidential sources represents an attack on press freedom
-
February 23, 2024
23
Feb'24
ConnectWise users see cyber attacks surge, including ransomware
ConnectWise ScreenConnect users who have yet to patch against a critical vulnerability are now being targeted by a barrage of cyber attacks, including ransomware
-
February 23, 2024
23
Feb'24
NCA trolls under fire LockBit gang leaders
The NCA has teased details of the identity of LockBit's main admin via the gang’s compromised dark web site, and hinted that he has been engaging with law enforcement
-
February 23, 2024
23
Feb'24
Home Office signs tech and data sharing deal with Frontex
The UK’s deal with the EU border agency is intended to improve operational cooperation, and will expand British authorities’ access to technology and data that can be used to reduce small boat crossings of the English Channel
-
February 22, 2024
22
Feb'24
Cyber experts alarmed by ‘trivial’ ConnectWise vulns
The disclosure of two dangerous vulnerabilities in the popular ConnectWise ScreenConnect product is drawing comparisons with major cyber incidents, including the 2021 Kaseya attack
-
February 21, 2024
21
Feb'24
CVE volumes set to increase 25% this year
The number of reported Common Vulnerabilities and Exposures is likely to grow significantly in 2024, hitting a new high of almost 35,000, according to Coalition, a cyber insurance specialist
-
February 20, 2024
20
Feb'24
LockBit locked out: Cyber community reacts
Reaction to the takedown of the LockBit ransomware gang is enthusiastic, but tempered with the knowledge that cyber criminals are often remarkably resilient
-
February 20, 2024
20
Feb'24
LockBit gang members arrested in Poland and Ukraine
The UK’s National Crime Agency and its global partners have shared more details on their audacious takedown of the LockBit ransomware operation, including news of two arrests
-
February 20, 2024
20
Feb'24
Alibaba Cloud debuts Model Studio
Alibaba Cloud’s Model Studio provides access to its Qwen family of foundation models and other third-party models and a suite of tools to speed up training and deployment of large language models
-
February 19, 2024
19
Feb'24
Controversial Post Office Capture system was developed in-house
Second controversial Post Office system was the work of developers in its own IT operation
-
February 15, 2024
15
Feb'24
Security-by-design push prompts new ISC2 accreditations
Security-by-design has become a hot-button regulatory issue. ISC2 has decided now is the time to upskill cyber pros around these vital software and hardware development principles
-
February 14, 2024
14
Feb'24
Microsoft: Nation-state hackers are exploiting ChatGPT
Threat actors from China, Iran, North Korea and Russia have all been probing use cases for generative AI service ChatGPT, but have yet to use such tools in a full-blown cyber attack
-
February 14, 2024
14
Feb'24
Met Police to scrap and replace ‘racist’ Gangs Violence Matrix
A database used by the Metropolitan Police to identify and track people linked with gang violence is being decommissioned and replaced. The decision follows a long-running controversy over its discriminatory impacts on young black people, but ...
-
February 14, 2024
14
Feb'24
Microsoft patches two zero-days for Valentine’s Day
Two security feature bypasses impacting Microsoft SmartScreen are on the February Patch Tuesday docket, among more than 70 issues
-
February 14, 2024
14
Feb'24
Post Office CEO refused to meet government minister without her lawyer after 2015 Horizon report
Post Office statements on the Horizon system, whether to journalists or the government, were routinely carefully crafted by lawyers
-
February 13, 2024
13
Feb'24
How DBS is industrialising AI across its business
Southeast Asia’s biggest lender is building a strong data foundation and upskilling employees on data and artificial intelligence to realise its vision of becoming an AI-fuelled bank
-
February 13, 2024
13
Feb'24
Hunter-killer malware volumes seen surging
Latest Picus Security report on malware tactics, techniques and procedures reveals an increasing focus on disabling security defences
-
February 13, 2024
13
Feb'24
What will result from Cohesity’s Veritas acquisition?
The $7bn backup giant will leverage huge assets in enterprise customer base, compliance and governance intelligence, AI, R&D, and Kubernetes backup and storage
-
February 09, 2024
09
Feb'24
MoD ethical hacking programme expands after initial success
The Ministry of Defence has expanded the scope of its defensive security partnership with HackerOne
-
February 08, 2024
08
Feb'24
Why open data is needed in the battle to address homelessness
Centrepoint needed to send FOIs to more than 300 local authorities in England to access required information
-
February 07, 2024
07
Feb'24
NCSC warns CNI operators over ‘living-off-the-land’ attacks
Malicious, state-backed actors may well be lurking in the UK’s most critical networks right now, and their operators may not even know until it is too late, warn the NCSC and its partners
-
February 07, 2024
07
Feb'24
The challenges of open source in government
Public sector bodies may find their policy decisions are stymied due to the inflexibility of the software they deploy. Is open source the answer?
-
February 07, 2024
07
Feb'24
Government reaffirms commitment to hold off on AI laws
The UK government reaffirming its commitment hold off on artificial intelligence legislation has been received positively by industry for balancing innovation and safety
-
February 07, 2024
07
Feb'24
South Staffs Water faces group action over Clop ransomware attack
South Staffordshire Plc, the parent company of South Staffordshire and Cambridge Water, is facing legal action from customers whose data was compromised in a 2022 Clop ransomware attack