Security News

UK Law Firm Gateley Discloses Data Breach
2021-06-17 15:14

Based on the information collected by the company to date, it believes the impact of the incident was limited and the attackers only managed to access roughly 0.2% of its data. Gateley admitted that the compromised data included some client information and the firm said it will notify impacted customers.

Papa don't breach: UK data watchdog fines that other pizza place £10,000 over unsolicited marketing blitz
2021-06-16 12:03

Pizza takeaway and delivery outfit Papa John's has been fined £10,000 by the UK's data watchdog for sending marketing fluff to punters without their say-so. Following a year-long investigation, the Information Commissioner's Office found that the company had sent 168,022 "Nuisance marketing messages to its customers without the valid consent required by law."

Norton dodges UK courts after telling Brit watchdog it will be nicer to consumers
2021-06-14 14:56

The UK's Competition and Markets Authority has inked a deal with Norton where it will refund customers whose antivirus software subscription was automatically renewed. Today's agreement comes after the regulator launched legal action against Norton in March - a first for a consumer protection case - when the company refused to furnish the CMA with the information needed during the course of the investigation.

Google Offers UK Watchdog Role in Browser Cookie Phase-Out
2021-06-14 11:45

Google is offering U.K. regulators a role overseeing its phasing out of ad-tracking technology from its Chrome browser, in a package of commitments the tech giant is proposing to apply globally to head off a competition investigation. The U.K. competition watchdog has been investigating Google's proposals to remove so-called third-party cookies over concerns they would undermine digital ad competition and entrench the company's market power.

UK tells UN that nation-states should retaliate against cyber badness with no warning
2021-06-11 16:44

Britain has told the UN that international cyber law should allow zero-notice digital punishment directed at countries that attack others' infrastructure. A statement made by UK diplomats to the UN's Group of Governmental Experts on Advancing Responsible State Behaviour in the Context of International Security called for international law to permit retaliation for cyber attacks with no notice.

We're right behind Computer Misuse Act reforms for busting ransomware gangs, says UK infosec industry
2021-06-07 11:30

British infosec businessees mostly support beefing up the Computer Misuse Act to directly tackle the ransomware crisis - while reform campaign CyberUp has written to Home Secretary Priti Patel offering "Support" for "a renewed, forward looking framework". A number of firms that spoke to The Register expressed firm support for changes to the act that make it easier for law enforcement to pursue and convict ransomware extortionists.

European Parliament's data adequacy objection: Doubts cast on UK's commitment to privacy protection
2021-06-03 08:30

Almost two weeks ago, the European Parliament took the step of objecting to the European Commission's decision to grant the UK data adequacy. The European Parliament's resolution will not block adequacy, but it nevertheless sends a significant political signal, particularly in the wake of two major court cases last week, which have found the UK's exemption of immigration from data protection laws to be unlawful and that UK mass surveillance laws violated privacy rights.

UK Special Forces soldiers' personal data was floating around WhatsApp in a leaked Army spreadsheet
2021-06-02 14:28

An astonishing data security blunder saw the personal data of Special Forces soldiers circulating around WhatsApp in a leaked British Army spreadsheet. The document, seen by The Register, contained details of all 1,182 British soldiers recently promoted from corporal to sergeant - including those in sensitive units such as the Special Air Service, Special Boat Service and the Special Reconnaissance Regiment.

Ignition partners with Siemplify to bring SOAR technology to MSSPs across the UK
2021-05-30 00:00

Ignition Technology announced a partnership with Siemplify as its exclusive distributor to bring the leading independent provider of security orchestration, automation and response technology to a growing MSSP community across the UK. Siemplify is redefining security operations for MSSPs worldwide through its innovative platform that helps security teams manage their operations and respond to cyber threats with speed and precision. The Siemplify SOAR platform combines security orchestration, automation, and response with end-to-end security operations management to make analysts and security engineers more productive.

Snowden was right, rules human rights court as it declares UK spy laws broke ECHR
2021-05-25 17:08

Surveillance laws permitting GCHQ to operate its Tempora dragnet mass surveillance system broke the law, the European Court of Human Rights has ruled. "The Court considers that, when viewed as a whole, the section 8(4) regime, despite its safeguards... did not contain sufficient 'end-to-end' safeguards to provide adequate and effective guarantees against arbitrariness and the risk of abuse," ruled the European Court of Human Rights's Grand Chamber.