Police Service Northern Ireland had 260 data breaches in two years, with only a fraction reported or disclosed

Figures released under a Freedom of Information request have shown the PSNI had 260 data breaches over two years — but only a fraction of them were reported to external authorities, and even fewer were publicly disclosed. In one case, Read More …

London hospitals hit by cyber attack highlights urgent need for cyber security in critical industries

Recent cyber-attacks have disrupted services at major London hospitals, this is a stark reminder of the persistent cyber security threats that our critical industries are facing every day. The Institution of Engineering and Technology (IET) is hosting the Cyber Security Read More …

Noodle RAT: Reviewing the Backdoor Used by Chinese-Speaking Groups

Since 2022, Trend Micro researchers have been investigating numerous targeted attacks in the Asia-Pacific region that used the same ELF backdoor. Most vendors identify this backdoor as a variant of existing malware such as Gh0st RAT or Rekoobe. However, Trend Read More …

QR code SQL injection and other vulnerabilities in a popular biometric terminal

Biometric scanners offer a unique way to resolve the conflict between security and usability. They help to identify a person by their unique biological characteristics – a fairly reliable process that does not require the user to exert any extra Read More …

Singaporean businesses targeted by Akira ransomware

Akira – a ransomware hacker group -that extorted $42 million from over 250 organizations across North America, Europe, and Australia within a year, is now actively targeting businesses in Singapore, according to a joint advisory issued by Singaporean authorities. The Read More …

Law firm Kirkland sued in class action over MOVEit data breach

U.S. law firm Kirkland & Ellis, the world’s largest law firm by revenue, has been pulled into U.S. litigation over a wide-ranging data breach linked to a file transfer tool that compromised data at hundreds of organizations. A proposed class Read More …

Bypassing 2FA with phishing and OTP bots

Two-factor authentication (2FA) is a security feature we have come to expect as standard by 2024. Most of today’s websites offer some form of it, and some of them won’t even let you use their service until you enable 2FA. Read More …