The diagnosis is in: Mobile health apps are bad for your privacy
15
Oct
2025

The diagnosis is in: Mobile health apps are bad for your privacy

Sensitive data is moving through Android healthcare apps without adequate protection. Researchers found that many transmit information without encryption, store…

Ada Lovelace: using market forces to professionalise AI assurance
15
Oct
2025

AI will create a better world, says Oracle’s Ellison

Artificial intelligence was predictably front and centre at Oracle’s revamped and rebranded customer event – which changed its name to…

"Pixnapping" vulnerability lets Android apps steal 2FA codes in 30 seconds
15
Oct
2025

“Pixnapping” vulnerability lets Android apps steal 2FA codes in 30 seconds

Academic researchers have devised and demonstrated a novel attack that allows malicious Android apps to steal sensitive data from other…

NCSC Issues Warning as UK Sees Four Cyber Attacks a Week
15
Oct
2025

NCSC Issues Warning as UK Sees Four Cyber Attacks a Week

British organisations are facing an unprecedented cyber security crisis as the National Cyber Security Centre reveals a dramatic surge in…

The power grid is getting old, and so is the cybersecurity protecting it
15
Oct
2025

The power grid is getting old, and so is the cybersecurity protecting it

Critical infrastructure is getting older, and the cost of that decay is starting to show. The Arthur D. Little Built…

Pro-Russian Hacktivists Target Government, Finance and E-Commerce Sites
15
Oct
2025

Pro-Russian Hacktivists Target Government, Finance and E-Commerce Sites

The pro-Russian hacktivist collective NoName057(16) has emerged as a notable participant in a coordinated wave of cyberattacks targeting Israeli infrastructure…

Windows Remote Access Connection Manager 0-Day Vulnerability Exploited in Attacks
15
Oct
2025

Windows Remote Access Connection Manager 0-Day Vulnerability Exploited in Attacks

Microsoft has confirmed active exploitation of a critical zero-day vulnerability in the Windows Remote Access Connection Manager (RasMan) service, allowing…

Noosa Council confirms $2.3 million cyber fraud during 2024 Christmas period
15
Oct
2025

Noosa Council confirms $2.3 million cyber fraud during 2024 Christmas period

Noosa Shire Council has publicly acknowledged it was the target of a major fraud incident during the 2024 Christmas period,…

Patch Tuesday, October 2025 ‘End of 10’ Edition – Krebs on Security
15
Oct
2025

Patch Tuesday, October 2025 ‘End of 10’ Edition – Krebs on Security

Microsoft today released software updates to plug a whopping 172 security holes in its Windows operating systems, including at least…

UEFI Shell Vulnerabilities Could Allow Hackers to Bypass Secure Boot on 200,000+ Laptops
15
Oct
2025

UEFI Shell Vulnerabilities Could Allow Hackers to Bypass Secure Boot on 200,000+ Laptops

Hackers can exploit vulnerabilities in signed UEFI shells to bypass Secure Boot protections on over 200,000 Framework laptops and desktops….

Greg Otto
15
Oct
2025

Swalwell seeks answers from CISA on workforce cuts

Rep. Eric Swalwell, D-Calif., sent a letter Tuesday to acting CISA Director Madhu Gottumukkala raising concerns about staffing levels and…

Malicious crypto-stealing VSCode extensions resurface on OpenVSX
15
Oct
2025

Malicious crypto-stealing VSCode extensions resurface on OpenVSX

A threat actor called TigerJack is constantly targeting developers with malicious extensions published on Microsoft’s Visual Code (VSCode) marketplace and OpenVSX…