Firefox 153 contains itself while Thunderbird 153 fixes almost everything
Mozilla walls off your online identities as MZLA unleashes a bumper repair job
Aggregated from vendor advisories, security research, and industry publications.
Mozilla walls off your online identities as MZLA unleashes a bumper repair job
New paper: “Encryption and Globalization 15 Years Later: End-to-End Encryption and the Third Round of the ‘Going Dark’ Debate“: Abstract: This Article updates and expands on 2012 r…
Hackers recently obtained non-sensitive customer information and other documents from the company. The post Upbound Group Says Data Breach Led to $13 Million in Fraudulent Contract…
Health service told to ensure ministers don't mistake before-and-after comparisons for cause and effect
Google on Thursday announced a new way for users to sign-in to their accounts by letting them take a selfie video. The selfie for sign-in, per the tech giant, is another option on…
The Chaos ransomware gang is using a new backdoor dubbed msaRAT that hides command-and-control (C2) communication by routing it through the Chrome or Edge browsers. [...]
AI remains its biggest bet, Bezos brigade tells El Reg, even as another round of layoffs reaches the teams building it
He replaces Guy Rosen, who announced his retirement from the company after 13 years. The post Assaf Keren Appointed New CISO of Meta appeared first on SecurityWeek.
Microsoft is working to resolve an ongoing Exchange Online issue that has been mistakenly quarantining customers' mailboxes since Sunday. [...]
Tempest cash lands alongside hypersonic target contract and BAE's 'loyal wingman' drone reveal
The vulnerability tracked as CVE-2026-16232 has been exploited against customers with certain configurations. The post New Check Point Zero-Day Vulnerability Exploited in the Wild …
Grand compute push could end up as dry as England's reservoirs unless ministers act fast
Israeli cybersecurity firm Check Point Software has addressed an actively exploited zero-day flaw in the company's SmartConsole graphical user interface (GUI) admin panel. [...]
RefluXFS, a Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS filesystem and gain persisten…
Who needs a working security badge when you know how to talk your way into the records room?
Portuguese businesses operate in the same native language as Brazilian hackers, making those businesses easy targets.
Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain Management (MDSM) products, including a critical flaw t…
An updated advisory from federal agencies provides information on the techniques used to hack programmable logic controllers. The post US Warns of Iranian Hackers Targeting Siemens…
And accuses Thailand hosting hardware that may have helped distillation attack
Yet the Chocolate Factory is also buying more third-party compute capacity to handle high demand for the G-Cloud
A cyberattack on a food and logistics firm disrupts the supply of frozen food to thousands of clients, including major franchises like Kentucky Fried Chicken.
Ahead of Black Hat USA, researchers find exploitable flaws in how Microsoft handles passkeys that could allow attackers to impersonate privileged users.
Closed models with guardrails can still cause harm, but may also not be able to fix problems they caused
The Upbound Group fintech company disclosed that threat actors who stole data from its systems leveraged it to create $13 million in Acima leases. [...]
Sandworm_Mode is an early example of malware that exploits trusted AI tools and workflows to make malicious activity virtually indistinguishable from normal activity.
It's Alphabet's fastest-growing business and now makes up more than a fifth of the juggernaut's revenue and operating profit
ScreenWall's creator tells El Reg he doesn't want those obsolete devices going to waste
South Korea disclosed that hackers breached the National Diplomatic Academy's online education system for ten months and stole personal information belonging to current and former …
As Trump dismantles the US-led world order, what the rest of the world really needs is sovereign apps and datacenters, argues 'enshittification' coiner
A malicious application delivers four-stage Android spyware via phony Google Play sites, exploiting civilian fear during Iranian missile strikes.