SonicWall Email Security zero-days need urgent patch

Users of SonicWall Email Security are being urged to patch a series of three critical zero-days that were first identified almost a fortnight ago, but are likely to have... Read more »

Time is running out to probe networks for Emotet

As law enforcement agencies prepare to deliver the final, fatal blow to the Emotet botnet on Sunday 25 April 2021, threat analysts at Redscan have issued a reminder to... Read more »

Health app myGP adds Covid-19 vaccine passport function

The developers of the NHS-linked myGP mobile healthcare management app are to introduce a vaccination certification feature – cooked up alongside V-Health Passports – designed to enable Apple iPhone... Read more »

UK’s proposed IoT cyber security law gathers momentum

Skyrocketing ownership of smart, connected internet of things (IoT) devices among the general public demonstrates the necessity of the UK government’s proposed new cyber security laws, according to the... Read more »

Chinese APT exploits critical CVE in Pulse Secure VPN

Users of Pulse Secure VPN are being urged to patch a newly disclosed authentication bypass zero-day that enables an unauthenticated user to perform remote arbitrary file execution on the... Read more »

Security Think Tank: ‘Legitimate interest’ crucial for vaccine passports

There are now discernible paths out of the current Covid-related lockdowns. One such path is the use of so-called vaccine passports, but what form would they take and, if... Read more »

Codecov supply chain attack has echoes of SolarWinds

Some of the largest technology companies in the world are investigating possible compromises of their systems as the impact of a SolarWinds-style cyber attack on Codecov, a supplier of... Read more »

YouGov incentivises sharing of personally identifiable information

Earlier this month, international research and data analytics group YouGov Safe introduced a product it hopes can enable people who sign up to monetise their personal data. YouGov Safe... Read more »

Government puts Facebook under pressure to stop end-to-end encryption over child abuse risks

The Home Secretary Priti Patel will use a conference organised by the NSPCC today to warn that end-to-end encryption will severely erode the ability of tech companies to police... Read more »

The Secret IR Insider’s Diary – from Sunburst to DarkSide

It’s been an unusual few weeks. Since the massive Sunburst supply chain compromise attacks which exploited a backdoor in organisations’ SolarWinds Orion network management software, my team’s day-to-day activities... Read more »
Subscribe to our Newsletter