Car dealer group Pendragon refuses to pay $60 million to ransomware extortionists

Pendragon – the car dealership group which owns Evans Halshaw, CarStore, and Stratstone, and operates around 160 showrooms across the UK – has confirmed that its IT servers have been hacked by cybercriminals who claim to have stolen five per cent of i… Continue reading Car dealer group Pendragon refuses to pay $60 million to ransomware extortionists

Ex-cop abused police tool in Snapshot sextortion plot that stole sexually explicit photos and videos

A former officer at Louisville Metro Police has admitted his part in a conspiracy that stalked and extorted young women online, breaking into their Snapchat accounts in order to steal their naked photos and videos.

Read more in my article on the Hot… Continue reading Ex-cop abused police tool in Snapshot sextortion plot that stole sexually explicit photos and videos

Smashing Security podcast #294: The Virgin trains swindler, cyber clowns, and AirTag election debacle

Someone’s election-fiddling is uncovered with an Apple AirTag, a cyber scandal rocks Germany, and a swindler steals a fortune due to trains being delayed.

All this and much more is discussed in the latest edition of the award-winning “Smashing Secur… Continue reading Smashing Security podcast #294: The Virgin trains swindler, cyber clowns, and AirTag election debacle

Fine for Shein! Fashion site hit with $1.9 million bill after lying about data breach

The parent company of women’s fashion site Shein has been fined $1.9 million after being accused of lying about the extent of data breach, and notifying “only a fraction” of affected customers.

Read more in my article on the Hot for Security blog. Continue reading Fine for Shein! Fashion site hit with $1.9 million bill after lying about data breach

Kolide, endpoint security for teams that want to meet SOC 2 compliance goals without sacrificing privacy

Graham Cluley Security News is sponsored this week by the folks at Kolide. Thanks to the great team there for their support! In 2021, our company went through the SOC 2 Type 1 audit, and we found out just how challenging it can be to prove compliance t… Continue reading Kolide, endpoint security for teams that want to meet SOC 2 compliance goals without sacrificing privacy

Heat left by users’ fingertips could help hackers crack passwords, researchers claim

Boffins at the University of Glasgow, in Scotland, have developed a system which they claim demonstrates a new type of cybersecurity threat: a “thermal attack.”

According to the researchers, the falling price of heat-detecting thermal imaging camera… Continue reading Heat left by users’ fingertips could help hackers crack passwords, researchers claim

Smashing Security podcast #293: Massive crypto bungle, and the slave scammers

A couple unexpectedly find $10.5 million in their cryptocurrency account, and in Cambodia people are being forced to commit scams.

All this and more is discussed in the latest edition of the award-winning “Smashing Security” podcast by computer secu… Continue reading Smashing Security podcast #293: Massive crypto bungle, and the slave scammers

Internet outages hit Ukraine following Russian missile strikes

Ukraine has seen internet outages this week following renewed missile attacks from Russian forces. With a combination of power cuts and DDoS attacks knocking out telecommunications systems, internet availibility suffered a 35% dip.

Read more in my … Continue reading Internet outages hit Ukraine following Russian missile strikes