Security News

Report: Apple Scuttled Encryption Plans for iCloud Backups
2020-01-22 11:18

Apple previously scuttled plans to add end-to-end encryption to iCloud backups, in part because such a move would have complicated law enforcement investigations, Reuters reports. Reuters' scoop highlights a behind-the-scenes compromise that explains what happened, with Apple reportedly opting to not use end-to-end encryption for iCloud backups as it faced increasing pressure from the U.S. government to ensure investigators could access user data.

WTF, EFS? Experts warn Windows encryption could spawn nasty new ransomware
2020-01-21 14:00

The encryption technology Microsoft uses to protect Windows file systems can be exploited by ransomware. So says the research team at Safebreach Labs, which has demonstrated how file-scrambling software nasties can not only tap into the Windows Encrypting File System but also avoid anti-malware tools.

Unlocking news: We decrypt those cryptic headlines about Scottish cops bypassing smartphone encryption
2020-01-17 08:34

Police Scotland to roll out encryption bypass technology, as one publication reported this week, causing some Register readers to silently mouth: what the hell? "The technology allows specially trained officers to triage mobile devices to determine if they contain information which may be of value to a police investigation or incident," the Scottish cops say of the program.

Encryption Battle Reignited as US Govt at Loggerheads With Apple
2020-01-14 21:09

Apple and the US government are at loggerheads for the second time in four years over unlocking iPhones connected to a mass shooting, reviving debate over law enforcement access to encrypted devices. Attorney General Bill Barr claimed Monday that Apple failed to provide "Substantive assistance" in unlocking two iPhones in the investigation into the December shooting deaths of three US sailors at a Florida naval station, which he called an "Act of terrorism."

What's that? Encryption's OK now? UK politicos Brexit from Whatsapp to Signal
2019-12-20 14:00

Take a break from calling for the end of e2e, so they can switch encrypted chat apps It's not just the European Union the UK's ruling party wishes to leave. According to the Guardian, the recently...

Six Reasons for Organizations to Take Control of Their Orphaned Encryption Keys
2019-12-19 21:32

Enforcing encryption key management can effectively bridge the gaps in your enterprise privileged access security strategy.

Internet of crap (encryption): IoT gear is generating easy-to-crack keys
2019-12-16 14:00

Poor entropy in embedded devices leading to weaker certificates: study A preponderance of weak keys is leaving IoT devices at risk of being hacked, and the problem won't be an easy one to solve.…

PCI Point-to-Point Encryption Standard 3.0 released
2019-12-16 11:25

The PCI Security Standards Council (PCI SSC) has updated the PCI Point-to-Point Encryption Standard (P2PE) and supporting program. PCI P2PE Version 3.0 simplifies the process for component and...

Facebook refuses to break end-to-end encryption
2019-12-12 17:26

Congress on Tuesday told Facebook it must put backdoors into its end-to-end encryption, or it'll be forced to.

Americans should have strong privacy-protecting encryption ...that the Feds and cops can break, say senators
2019-12-10 21:12

I don't care if it's mathematically impossible, make it happen nerds! In its latest attempt to come up with a digital encryption scheme that's both secure and not, the US Senate Judiciary...