Security News

US hands UK 'dossier' on Huawei: Really! Still using their kit? That's just... one... step... beyond
2020-01-14 16:42

Those known risks are twofold: Huawei's coding practices are pisspoor, as Britain's Huawei Cyber Security Evaluation Centre found last year; and there is the ever-present fear that Huawei, or people within Huawei, could be forced to abuse their product knowledge to serve the Chinese regime, perhaps through espionage conducted on UK comms networks or helping with denial-of-service attacks. Although the US have been claiming for years that Huawei poses a threat to communication security, given the well-documented activities of American spy agencies over the last couple of decades this seems like a hollow concern.

US, UK Officials Meet as PM Johnson's Huawei Decision Nears
2020-01-13 18:42

British and American officials are meeting as U.K. Prime Minister Boris Johnson's government prepares to decide on whether there's a future for Chinese equipment maker Huawei in the country's next-generation telecom networks, his spokesman said Monday. "We have strict controls for how Huawei equipment is currently deployed in the U.K. The government is undertaking a comprehensive review to ensure the security and resilience of 5G and fiber in the U.K.".

UK data watchdog kicks £280m British Airways and Marriott GDPR fines into legal long grass
2020-01-13 09:06

The UK Information Commissioner's Office has kicked £280m in data breach fines against British Airways and US hotel chain Marriott into the long grass. As spotted by City law firm Mishcon de Reya, the ICO has extended the time before it will fine the two companies what it claimed would be a total of £282m, split between BA's £183m and Marriott's £99m. In a statement the UK's data protection regulator said: "Under Schedule 16 of the Data Protection Act 2018, BA and the ICO have agreed to an extension of the regulatory process until 31 March 2020. As the regulatory process is ongoing we will not be commenting any further at this time."

UK National Lottery Hacker Sentenced to Prison
2020-01-13 08:50

A man accused of hacking UK National Lottery accounts via credential stuffing attacks has been sentenced to nine months in prison, the UK's National Crime Agency reported on Friday. According to the NCA, Batson used a tool called Sentry MBA to launch credential stuffing attacks on accounts belonging to National Lottery customers.

Dixons Fined by UK Regulator Over Data Breach
2020-01-10 18:10

The UK Data Protection Regulator has issued a monetary penalty of £500,000 against Dixon Carphone for what it describes as "Multiple, systemic and serious inadequacies" in the firm's security posture. This allowed Dixons to argue that the PAN was not personal data, and that this aspect of the breach was consequently not subject to the personal data focus of the data protection laws.

UK Fines Dixons Carphone for Massive Breach
2020-01-10 11:03

British regulators have fined Dixons Carphone, a large electronics and phone retailer, &pound500,000 for a breach that exposed millions of payment card details and personal data due to point-of-sale malware. In January 2018, the ICO fined it &pound400,000 for a 2015 breach of its Carphone Warehouse subsidiary after an attacker exploited an outdated WordPress installation.

BitDam ATP protects LSH Auto UK from malicious and phishing email
2020-01-08 03:01

BitDam, provider of cybersecurity solutions that protect enterprise communications from advanced threats hidden in files and links, announced that its BitDam Advanced Threat Protection solution is now installed at LSH Auto UK Ltd, part of the world's largest Mercedes-Benz Dealer Group, in an effort to cost-effectively enhance the company's email security posture. PCM advised LSH to look at BitDam to help it to neutralize corporate risk as well as provide protection for customers who may be compromised as a result of phishing attacks.

This page is currency unavailable... Travelex scrubs UK homepage, kills services, knackers other sites amid 'software virus' infection
2020-01-03 05:53

Foreign currency mega-exchange Travelex said on Thursday it was forced offline by a "Software virus" infection, bring down a number of currency-exchange websites with it. The outage at Travelex has had a knock-in effect in that it knackered currency-swap services for a number of UK banks and organizations relying on the exchange.

Job Search: Head of UK's National Cyber Security Center
2019-12-30 13:03

As NCSC Head Ciaran Martin Steps Down, Other Countries are Emulating ModelWanted: A new chief executive to assume command of Britain's growing National Cyber Security Center, part of GCHQ. As...

Say GDP-aaaR: UK's Information Commissioner pours £275k fine into London pharmacy's teaspoon
2019-12-23 10:30

Half a million docs, including patient names and medical records left at back of premises A pharmacy that left around half a million documents, including customers' personal information and...