Security News

Sysadmin for FIN7 criminal cracking group gets 10 years in US prison for managing card slurping malware scam
2021-04-19 14:15

The former systems administrator for the FIN7 card-slurping gang has been sentenced to 10 years in a US prison. Fedir Hladyr, 35, pled guilty to one count of conspiracy to commit wire fraud and one count of conspiracy to commit computer hacking last year, and on Friday was sentenced for his role in the theft and resale of over than 20 million customer card records from over 6,500 point-of-sale terminals across the US using the malware dubbed Carbanak.

Average convicted British computer criminal is young, male, not highly skilled, researcher finds
2021-04-13 09:27

An academic researcher has analysed more than 100 Computer Misuse Act cases to paint a picture of the sort of computer-enabled criminals who not only plagued Great Britain's digital doings in the 21st Century but were also caught by the plod. The average Computer Misuse Act convict is likely to be a semi- or low-skilled individual, mostly working alone and more likely than not to have no knowledge of his or her victim, James Crawford of Royal Holloway, University of London, found.

Average British computer criminal is young, male and not highly skilled, researcher finds
2021-04-13 09:27

An academic researcher has analysed more than 100 Computer Misuse Act cases to paint a picture of the sort of computer-enabled criminals who not only plagued Great Britain's digital doings in the 21st Century but were also caught by the plod. The average Computer Misuse Act convict is likely to be a semi- or low-skilled individual, mostly working alone and more likely than not to have no knowledge of his or her victim, James Crawford of Royal Holloway, University of London, found.

Criminals send out fake “census form” reminder – don’t fall for it!
2021-04-01 23:41

The census happens in any year ending in the digit -1, making 2021 a census year. If you're amongst those who haven't finished off their census submissions yet, but who keep meaning to get around to it, make sure you don't fall prey to fake "Census reminder" notices sent out by cybercriminals!

You’ve learned a lot over the past year – and so have the cyber-criminals hiding in your systems
2021-03-24 23:00

This prompted a switch in tactics, with the bad guys going into intelligence mode, slowly gathering information about potential targets, and exploiting the pandemic knowledge gap to spearhead increasingly sophisticated attacks. In parallel, sophisticated supply chain attacks moved out of the realm of speculation, into reality, even as organisations grappled with traditional attacks and the growing scourge of ransomware.

CEO of Encrypted Chat Platform Indicted for Aiding Organised Criminals
2021-03-17 20:16

The U.S. Department of Justice on Friday announced an indictment against Jean-Francois Eap, the CEO of encrypted messaging company Sky Global, and an associate for wilfully participating in a criminal enterprise to help international drug traffickers avoid law enforcement. Sky ECC is said to have surged in popularity following a similar takedown of Encrochat last July by French and Dutch investigators, with many criminal gangs shifting to the service to carry out criminal acts.

Belgian cops crack down on encrypted phone network Sky ECC in 200 overnight raids as firm denies criminal ties
2021-03-10 14:48

A series of police raids in Belgium have resulted in the apparent shutdown of the Sky ECC encrypted mobile phone network. As the second major encrypted phone network to be shut down by police in Europe, Sky ECC's seeming downfall has parallels with the Encrochat story, where French and Dutch police man-in-the-middle'd the encrypted phone network on suspicion it was being used mainly by organised criminals.

So it appears some of you really don't want us to use the word 'hacker' when we really mean 'criminal'
2021-03-09 11:00

Last week, we argued over whether or not the media, including El Reg, should stop using the word hacker as a pejorative. The original meaning of hacker and hacking, in the context of computing, didn't denote criminality nor ill-intent, and referred to an avoidance of a standard solution.

Physical cyber threats: What do criminals leave when they break in?
2021-02-23 06:00

While businesses have continued to fortify their networks against remote invaders, most have overlooked the potential for cyber threats from physical intruders. While such attacks are extremely rare in comparison to the endless virtual attacks launched every day, physical security gaps can allow threat actors to circumvent otherwise strong defenses to inflict serious damage.

Criminals leveraging shift to remote work to develop targeted attacks
2021-02-22 04:00

"The COVID-19 pandemic compounded this with new challenges in securing remote workforces, making it essential that we quickly become more adaptable and learn how to better protect workers in any environment. While our total detections are down this year, we must remain vigilant. The threats we are seeing are more refined and damaging than ever before." Despite an overall drop in detections for Macs and Windows in 2020, it's clear the COVID-19 pandemic influenced the cybercrime world so much that many anticipated campaigns either never arrived, arrived with less impact, or were replaced entirely with attacks more suited against users during a pandemic.