Security News

UK snubs Apple-Google coronavirus app API, insists on British control of data, promises to protect privacy
2020-04-28 06:19

The UK has decided to break with growing international consensus and insist its upcoming coronavirus contact-tracing app is run through centralised British servers - rather than follow the decentralized Apple-Google approach. Within the details over how it would work, the memo revealed the NHS and UK government reckon the contact-tracing protocols built by Apple and Google protect user privacy under advisement only.

Why should the UK pensions watchdog be able to spy on your internet activities? Same reason as the Environment Agency and many more
2020-04-23 07:33

In a memorandum [PDF] first spotted by The Guardian, the British government is asking that five more public authorities be added to the list of bodies that can access data scooped up under the nation's mass-surveillance laws: the Civil Nuclear Constabulary, the Environment Agency, the Insolvency Service, the UK National Authority for Counter Eavesdropping, and the Pensions Regulator. The Environment Agency investigates "Over 40,000 suspected offences each year," the memo stated.

Attention, lockdown DIY fans: UK hardware flinger Robert Dyas had credit card data and more skimmed from website
2020-04-22 13:40

British hardware chain Robert Dyas' website has been hit by credit-card stealing malware that siphoned off customers' payment details including the long card number, expiry date and security code. Between 7 and 30 March a card skimmer was present on Robert Dyas' payment processing page, the chain admitted in an email sent to affected customers that was seen by The Register.

Blackline Safety and STANLEY Security to provide 24/7 monitoring in UK and Europe
2020-04-08 01:00

Blackline Safety, a global leader of gas detection and connected safety solutions, is pleased to announce it has partnered with STANLEY Security, a division of STANLEY Black & Decker, to provide 24/7 monitoring and emergency response management to Blackline customers in the United Kingdom and Europe. "Developing connected safety solutions for companies across the globe, Blackline Safety is a leader in employee safety monitoring in itself," said Richard Solly, Director of Monitoring Security - Europe for STANLEY Security.

British Airways and Marriott UK data protection fines deferred again as coronavirus shutdown hits business
2020-04-06 08:15

The UK Information Commissioner's Office has yet again postponed its £280m in fines against British Airways and Marriott Hotels for data leaks. The fines were handed to both companies following damaging and widely publicised digital break-ins affecting millions of people around the world.

Hackers Target UK Fintech Company Finastra
2020-03-20 20:21

UK-based financial technology company Finastra is investigating a cybersecurity incident that may involve a piece of ransomware infecting some of its systems. Finastra has not shared any details about the attack.

UK Printing Company Exposed Military Documents
2020-03-20 16:42

Cybersecurity researchers say UK-based document printing and binding company Doxzoo exposed hundreds of gigabytes of information, including documents related to the US and British military, by leaving an AWS S3 bucket unprotected. The exposed data included names, addresses, email addresses, passport scans, partial payment information, order details, copyrighted publications, teacher's guides, certifications and diplomas, medical documents, floor plans, personal photos, and documents that users likely paid for, such as university course materials and diet and exercise plans.

Report calls for web pre-screening to end UK’s child abuse ‘explosion’
2020-03-16 11:57

A UK inquiry into child sexual abuse facilitated by the internet has recommended that the government require apps to pre-screen images before publishing them, in order to tackle "An explosion" in images of child sex abuse. The imagery isn't only "Depraved"; it's also easy to get to, the inquiry said, referring to research from the National Crime Agency that found that you can find child exploitation images within three clicks when using mainstream search engines.

Your data was 'taken without permission', customers told, after personal info accessed in O2 UK partner's database
2020-03-13 17:24

Hackers have slurped biz comms customers' data from a database run by one of O2's largest UK partners. In an email sent to its customers, the partner, Aerial Direct, said that an unauthorised third party had been able to access customer data on 26 February through an external backup database, which included personal information on both current and expired subscribers from the last six years.

The Reg produces exhibit A1: A UK court IT system running Windows XP
2020-03-11 09:00

A critical crown court IT system and thousands of laptops used by the UK's Ministry of Justice run on Microsoft's obsolete and unsupported Windows XP operating system, The Register can reveal. As recently as March 2019, the ministry was paying hundreds of thousands of pounds for a VPN to support 2,000 Windows XP laptop users - news that comes as the department admits that a critical court IT system is also running on XP boxen.