LATEST POST
JLR ‘cyber shockwave ripping through UK industry’ as supplier share price plummets by 55%
The Record reports: Shares in a British automaker supplier plummeted 55% Wednesday as it warned that a cyberattack on Jaguar Land Rover (JLR) was impacting its business, adding to concerns that the incident is sending a “shockwave” through the country’s industrial sector, according to a senior politician. Shares in Autins, a company providing specialist insulation components for Jaguar […]
Lotte Card hack exposes data of 3 million users
The Korea Herald reports that 2.97 million users, almost one third of the payment card’s 9.6 million customers, had their payment card data breached in an attack on Lotte Card’s online payments server: The stolen information comprises that which was generated and collected during online transactions processed through the compromised server between July 22 and […]
Founder of One of World’s Largest Hacker Forums Resentenced to Three Years in Prison
China slaps 1-hour deadline on reporting serious cyber incidents
The Register reports that coming soon, entities in China will have only one hour from discovery to report a serious cyber incident — or even only 30 minutes if it is very serious: From November 1, the Cyberspace Administration of China (CAC) will enforce its new National Cybersecurity Incident Reporting Management Measures, a sweeping set of […]
JLR cyber attack: production won’t restart until 24 Sept at earliest
Autocar reports: JLR car production will not restart until 24 September at the earliest, the company has confirmed. The Jaguar and Land Rover maker was targeted by hackers on 1 September and is still in the process of rebuilding its computer systems. The group that hit Marks & Spencer earlier this year has claimed responsibility. This has led to […]
SEC to Notify Crypto Businesses of Technical Violations Before Taking Action: Report
CryptoPotato reports: A report by the Financial Times revealed that the Securities and Exchange Commission (SEC) plans to issue crypto firms notices of technical violations before taking action. The move is a shift away from the aggressive enforcement approach that was pursued under former President Joe Biden. Trump-appointed SEC Chair Paul Atkins told the Financial Times in […]
Tiffany Korea acknowledges customer data leak, begins security overhaul
Chosun Biz reports an update to a previously disclosed breach affecting Tiffany Korea: Tiffany & Co., the luxury jewelry brand of LVMH (Louis Vuitton Moët Hennessy), announced that it became aware of a leak of key personal information, including customers’ names, postal and email addresses, and phone numbers. Through a notice on the 15th, Tiffany […]

Self-Replicating Worm Hits 180+ Software Packages
KrebsOnSecurity.com reports: At least 187 code packages made available through the JavaScript repository NPM have been infected with a self-replicating worm that steals credentials from developers and publishes those secrets on GitHub, experts warn. The malware, which briefly infected multiple code packages from the security vendor CrowdStrike, steals and publishes even more credentials every time an infected package is installed. […]