News
IT security
- 
				August 05, 2024
				
					05
					Aug'24
				Chinese cyber attack sparks alert over six-year-old MS vulnAfter a proof-of-concept for a six-year-old Microsoft vulnerability emerged in a Chinese APT attack chain, defenders should be on the look-out for exploitation of CVE-2018-0824 
- 
				August 05, 2024
				
					05
					Aug'24
				World’s largest companies at near-universal risk of supply chain breachData from SecurityScorecard once again focuses on the interconnected nature of business supply chains and the risk posed to operational resilience by unexpected IT problems and cyber threats 
- 
				August 05, 2024
				
					05
					Aug'24
				Russia’s luxury car phish continues to prove effectiveGovernment organisations and other bodies operating in Ukraine continue to be targeted by a relatively unsophisticated phishing campaign that has proven so effective for Russia’s cyber spooks that there are now multiple agencies involved 
- 
				August 02, 2024
				
					02
					Aug'24
				How CrowdStrike is leveraging AI to empower security teamsCrowdStrike CTO Elia Zaitsev explains how the company’s multi-agent AI architecture can help to enhance analyst efficiency and tackle cyber security challenges 
- 
			August 01, 2024
			
				01
				Aug'24
			Police hunt scammers after takedown of Russian Coms fraud platformThe National Crime Agency has arrested four people after taking down a phone number spoofing platform used by criminals to defraud hundreds of thousands of people in the UK with more arrests to follow 
- 
			August 01, 2024
			
				01
				Aug'24
			CrowdStrike shareholders sue, alleging false security claimsA US pension fund is lining up a lawsuit against CrowdStrike, claiming the cyber company lied about the integrity of its systems, leading to failings that caused a worldwide IT outage 
- 
			August 01, 2024
			
				01
				Aug'24
			Banks, telcos call for more data sharing to fight fraudA Which?-led coalition of banks and telecoms operators is calling on the UK's new government to take the lead on enabling data sharing to help fight digital fraud 
- 
			July 31, 2024
			
				31
				Jul'24
			API attacks surge by 65% in APAC, fuelled by rapid digitisationAkamai's report reveals a significant rise in cyber attacks on web applications and APIs in the region over the past year, with financial and commerce sectors hardest hit 
- 
			July 31, 2024
			
				31
				Jul'24
			Campaigners call for evidence to reform UK cyber lawsThe CyberUp Campaign for reform of the 1990 Computer Misuse Act launches an industry survey inviting cyber experts to share their views on how the outdated law hinders legitimate work 
- 
			July 31, 2024
			
				31
				Jul'24
			Mayor launches London Privacy Register for smart city informationTo increase transparency around and trust in London’s smart city technology deployments, the London Privacy Register aims to provide the public with more information about the systems they encounter in their day-to-day lives 
- 
			July 31, 2024
			
				31
				Jul'24
			Breach costs soar as record ransomware payment madeIBM publishes data on the spiralling costs of cyber attacks and data breaches, while researchers identify what appears to be the largest ransomware payment ever made 
- 
			July 30, 2024
			
				30
				Jul'24
			Basic failures led to hack of Electoral Commission data on 40 million peopleUK government identifies Chinese state-linked hackers as likely to have been behind attack on the Electoral Commission 
- 
			July 30, 2024
			
				30
				Jul'24
			Core British Library services to return for new academic yearThe British Library’s recovery from a devastating ransomware attack that laid waste to its IT systems continues - with hopes that some of its most popular services will be running again in September 
- 
			July 29, 2024
			
				29
				Jul'24
			Scam CrowdStrike domains growing in volumeHundreds of malicious domains exploiting CrowdStrike’s branding are appearing all over the web in the wake of the 19 July outage. Experts from Akamai share some noteworthy examples, along with guidance on how to avoid getting caught out 
- 
			July 29, 2024
			
				29
				Jul'24
			CrowdStrike says most Falcon sensors now up and runningThe vast majority of CrowdStrike Falcon sensors affected by a coding error have now been recovered, with a final resolution expected this week 
- 
			July 29, 2024
			
				29
				Jul'24
			WTO digital trade agreement aims to modernise global commerceA digital trade deal negotiated over five years at the World Trade Organization has been signed by 91 countries, laying the groundwork for a new global digital trade regime 
- 
			July 26, 2024
			
				26
				Jul'24
			Ban predictive policing and facial recognition, says civil societyA coalition of civil society groups is calling for an outright ban on predictive policing and biometric surveillance in the UK 
- 
			July 25, 2024
			
				25
				Jul'24
			North Korean cyber APT targeting nuclear secretsMandiant has upgraded the North Korean threat actor known as Andariel to APT status and warned of coordinated efforts to steal western military IP, including nuclear secrets 
- 
			July 25, 2024
			
				25
				Jul'24
			Why is CrowdStrike allowed to run in the Windows kernel?Microsoft has pointed the finger at EU regulators, blaming them for a ruling that means it needs to offer third parties access to the core Windows OS 
- 
			July 25, 2024
			
				25
				Jul'24
			Fortune 500 stands to lose $5bn plus from CrowdStrike incidentThe largest global organisations hit by the CrowdStrike-Microsoft incident on 19 July will likely be out of pocket to the tune of billions of dollars 
- 
			July 24, 2024
			
				24
				Jul'24
			CrowdStrike blames outage on content configuration updateCrowdStrike publishes the preliminary findings of what will be a lengthy investigation into the root causes of the failed 19 July update that caused Windows computers to crash all over the world 
- 
			July 24, 2024
			
				24
				Jul'24
			Mimecast to buy insider threat specialist Code42Mimecast is to buy fellow human-centred risk experts Code42 for an undisclosed sum to take advantage of its insider threat and data loss protection specialisms 
- 
			July 24, 2024
			
				24
				Jul'24
			CrowdStrike chaos: Enterprises urged to take protective action in wake of botched software updateEnterprises that emerged unscathed from the roll-out of the botched CrowdStrike software update are being urged to view it as a wake-up call rather than a lucky escape 
- 
			July 24, 2024
			
				24
				Jul'24
			WhatsApp and Signal messages at risk of surveillance following EncroChat ruling, court hearsDefence lawyers seek leave to appeal a decision by the Investigatory Powers Tribunal that the National Crime Agency lawfully obtained warrants to intercept messages sent over an encrypted phone network 
- 
			July 23, 2024
			
				23
				Jul'24
			NCA seizes thousands of social media accounts used by people smugglersA three-year campaign has seen thousands of social media posts and accounts used to advertise the services of illegal people smugglers taken down 
- 
			July 23, 2024
			
				23
				Jul'24
			Innovations to power secure-by-design developmentSecure Code Warrior unveils technology designed to help CISOs and AppSec teams ensure their projects remain safe and free of coding errors and vulnerabilities – a big issue following the CrowdStrike incident 
- 
			July 23, 2024
			
				23
				Jul'24
			Chrome cookies reprieved amid Google Privacy Sandbox changesGoogle abruptly changes tack on third-party cookies in its Chrome web browser, cancelling plans to deprecate them in favour of an unspecified ‘new experience’ for users 
- 
			July 23, 2024
			
				23
				Jul'24
			Why did CrowdStrike cause the Windows Blue Screen?The ‘blue screen of death’ signals a catastrophic Windows failure, which is exactly what many people faced on 19 July 2024 – but why did it happen? 
- 
			July 22, 2024
			
				22
				Jul'24
			NCA cracks digitalstress DDoS-for-hire operationThe UK authorities have taken down a major component of the multinational DDoS cyber attack-for-hire ecosystem, hacking into the digitalstress.su service and exfiltrating data on its users, who now face arrest 
- 
			July 22, 2024
			
				22
				Jul'24
			NCSC: Beware of criminal CrowdStrike opportunistsFinancially motivated cyber criminals are already conducting opportunistic attacks on organisations that leverage the CrowdStrike incident, and more targeted attacks are sure to follow 
- 
			July 22, 2024
			
				22
				Jul'24
			CrowdStrike chaos shows risks of concentrated ‘big IT’The concentration of so much mission-critical technology in the hands of a few large suppliers makes incidents like the Microsoft-CrowdStrike outage all the more dangerous 
- 
			July 21, 2024
			
				21
				Jul'24
			CrowdStrike update snafu affected 8.5 million Windows devicesAbout 8.5 million devices globally were hit by the botched CrowdStrike update, with a significant number now back online and operational 
- 
			July 19, 2024
			
				19
				Jul'24
			Global Microsoft outage hits NHS GP IT systemThe Emis Web IT system used by more than half of GP practices in the UK is down, following the worldwide Microsoft outage 
- 
			July 19, 2024
			
				19
				Jul'24
			CrowdStrike security update fails Windows PCs globallyAn update to the security firm’s Falcon service has led to many Windows users being unable to work this morning. Microsoft 365 is also affected 
- 
			July 18, 2024
			
				18
				Jul'24
			Lawyers and journalists seeking ‘payback’ over police phone surveillance, claims former detectiveFormer Durham detective will be required to give evidence to a tribunal investigating allegations that police unlawfully monitored journalists’ phones 
- 
			July 18, 2024
			
				18
				Jul'24
			Growth in nude image sharing heightens cyber abuse riskThe normalisation of sharing self-created intimate content with others is putting great numbers of people at risk of online abuse, says Kaspersky 
- 
			July 18, 2024
			
				18
				Jul'24
			Netscout expands network observability for the digital edgeNetwork performance management firm announces business edge observability for networks, applications and user experience to mitigate risk and reduce mean time to respond 
- 
			July 17, 2024
			
				17
				Jul'24
			UK Cyber Bill teases mandatory ransomware reportingIn the Cyber Security and Resilience Bill introduced in the King's Speech, the UK's new government pledges to give regulators more teeth to ensure compliance with security best practice and to mandate incident reporting 
- 
			July 17, 2024
			
				17
				Jul'24
			Hackney Council reprimanded over 2020 ransomware attackThe London Borough of Hackney has been reprimanded by the ICO over a series of failures that led to a devastating cyber attack, but at the same time, the regulator praised the local authority for its response and commitment to making improvements 
- 
			July 17, 2024
			
				17
				Jul'24
			Labour government plans new laws around cyber security, data sharing and skillsThe King's Speech outlined the legislative agenda for the new Parliament, including several bills that will impact the tech community 
- 
			July 17, 2024
			
				17
				Jul'24
			How iProov is fending off deepfake fraudFacial biometrics and controlled illumination can detect liveness, verify identities and help prevent deepfake attacks 
- 
			July 16, 2024
			
				16
				Jul'24
			Strategic Defence Review must emphasise cyber security, says industryCyber security leaders say the new government's Strategic Defence Review needs to put digital security front and centre 
- 
			July 16, 2024
			
				16
				Jul'24
			Incubator Plexal heads to Singapore for CyberBoostCyber startup hub Plexal expands its presence to Singapore through a new initiative, and sets its sights on helping new UK businesses break into the booming Asia-Pacific market 
- 
			July 16, 2024
			
				16
				Jul'24
			Cloud spend trumps AI but data, security and cost a common headacheNasuni-sponsored survey finds cloud projects higher on the to do list than AI, but data management, security and cost reduction are common themes in all areas of investment 
- 
			July 15, 2024
			
				15
				Jul'24
			NHS Trusts cancelled over 6,000 appointments after Qilin cyber attackThe two NHS Trusts most heavily impacted by the Qilin ransomware attack on pathology services provider Synnovis have cancelled over 6,000 appointments and procedures in the past five weeks 
- 
			July 15, 2024
			
				15
				Jul'24
			How Snowflake is tackling AI challengesSnowflake’s regional leader Sanjay Deshmukh outlines how the company is helping customers to tackle the security, skills and cost challenges of AI implementations 
- 
			July 12, 2024
			
				12
				Jul'24
			AT&T loses ‘nearly all’ phone records in Snowflake breachHackers have stolen records of virtually every call made by AT&T's customers during a six-month period in 2022, after compromising the US telco's Snowflake data environment 
- 
			July 12, 2024
			
				12
				Jul'24
			Public awareness of ID security grows, but big obstacles remainConsumers are improving their awareness of the issues around digital identity security, but there are still some big issues preventing many from doing better, according to an Okta report 
- 
			July 11, 2024
			
				11
				Jul'24
			Dutch research firm TNO pictures the SOC of the futureIn only a few years, security operations centres will have a different design and layout, and far fewer will remain 
- 
			July 11, 2024
			
				11
				Jul'24
			Inside Israel’s cyber security operationsAn emergency phone line allows cyber security analysts at the Israel Computer Emergency Response Team to map threats against national infrastructure 

 
		