UK data watchdog wants six figures from N Ireland cops after 2023 data leak

May 23, 2024 at 04:35AM The UK’s data protection watchdog plans to fine the Police Service of Northern Ireland £750,000 over a data breach exposing officers’ information. The breach impacted 9,483 officers and resulted from an accidental release of data. The Information Commissioner’s Office emphasizes the breach’s severe impact and intends to fine the PSNI … Read more

LastPass is now encrypting URLs in password vaults for better security

May 22, 2024 at 01:07PM LastPass will begin encrypting URLs in user vaults to boost privacy and protect against breaches. This enhances the zero-knowledge architecture, securing private data. Hardware advancements allow seamless encryption/decryption without browser performance hiccups. The initiative follows past breaches and aims to safeguard user data and comply with zero-knowledge principles. Encryption roll-out … Read more

Microsoft’s new Windows 11 Recall is a privacy nightmare

May 22, 2024 at 12:07PM Microsoft’s new AI-powered Windows 11 Recall feature allows users to easily access and search through snapshots of their screen activity. While designed to prioritize user privacy and control, concerns have been raised about potential privacy risks and security vulnerabilities. Microsoft reassures that Recall data is encrypted and stored locally, but … Read more

Stopping ransomware in multicloud environments

May 22, 2024 at 11:09AM Readers of The Register were recently surveyed about the risks posed by ransomware and the security defenses in place to protect sensitive data. The results will be presented by Zerto’s Anthony Dutra at a live event in Boston on June 27. Attendees can also access related white papers on Zerto’s … Read more

Zoom Adopts NIST-Approved Post-Quantum End-to-End Encryption for Meetings

May 22, 2024 at 01:33AM Zoom has introduced post-quantum end-to-end encryption for its Meetings, with plans to extend it to Zoom Phone and Zoom Rooms. This advanced security feature uses Kyber-768 and aims to counter potential threats from quantum computers in the future. It necessitates updated Zoom app versions for all participants, and other companies … Read more

Veeam warns of critical Backup Enterprise Manager auth bypass bug

May 21, 2024 at 06:27PM Veeam has urged customers to address a critical security vulnerability in Veeam Backup Enterprise Manager (VBEM), allowing unauthenticated attackers to access any account. VBEM, not enabled by default, may be patched to mitigate this and other high-severity vulnerabilities. These flaws have been exploited in ransomware attacks targeting global IT infrastructure. … Read more

Google Pitches Workspace as Microsoft Email Alternative Citing CSRB Report

May 20, 2024 at 06:16PM Google is leveraging a recent critical report of Microsoft’s security practices by the US Cyber Safety Review Board to promote its own Google Workspace suite. The report highlighted security failures and weaknesses in Microsoft’s Exchange Online. Google is offering a Secure Alternative Program with special pricing to attract organizations to … Read more

What American Enterprises Can Learn From Europe’s GDPR Mistakes

May 20, 2024 at 10:48AM The United States is on the verge of a comprehensive data privacy law with the proposed American Privacy Rights Act (APRA). However, Europe’s experience with the GDPR demonstrates significant challenges for businesses. Preparation, staff training, and compliance are crucial for American companies to avoid similar pitfalls. Federal regulation provides an … Read more

Latrodectus Malware Loader Emerges as IcedID’s Successor in Phishing Campaigns

May 20, 2024 at 02:30AM Cybersecurity researchers have observed a surge in email phishing campaigns delivering Latrodectus, a new malware believed to be the successor to IcedID. The malware has advanced capabilities including execution, self-deletion, and persistence on Windows. Social engineering campaigns are also using updated techniques to propagate various malware loaders. Summary of Meeting … Read more

FBI, DoJ Shut Down BreachForums, Launch Investigation

May 15, 2024 at 04:59PM The website no longer deals in illegal items and instead encourages individuals with relevant information to reach out to the authorities to assist with the investigation. It seems that the website has been updated to prompt anyone with relevant information to contact the authorities instead of engaging in online contraband … Read more