Latest posts

  • UK’s state investments agency hit by data breach

    Security lapse leaves sensitive information and contact details of 51 government officials exposed for 40 hours The public body in charge of the UK’s state investments has been pushed to improve its internal security after a data breach left “high-level management information” publicly accessible for nearly two days. UK Government Investments (UKGI), the agency that…

    Read more

  • ‘Keys to the kingdom’: hackers who gained access to heart of London transport network jailed

    Thalha Jubair, 20, and Owen Flowers, 19, sentenced to five and a half years each for cyber-attack that cost Transport for London £39m The data of millions of commuters was stolen, Londoners were left out of pocket and 27,000 Transport for London staff were forced to reset their passwords. Over four days in 2024 a…

    Read more

  • Bank of England handed powers to regulate key tech firms including Amazon and Google

    Direct oversight of ‘critical third parties’ such as Oracle and Microsoft given to ensure resilient cyber-defences and help safeguard UK economy The Bank of England has been handed powers to regulate important tech firms including Amazon and Google from next week, amid fears that system failures could threaten financial stability and harm consumers. From Monday,…

    Read more

  • Two Britons plead guilty to £39m 2024 cyber-attack on Transport for London

    Thalha Jubair and Owen Flowers, linked to the Scattered Spider hacking group, change pleas on first day of trial Two British cybercriminals from the Scattered Spider hacking group have pleaded guilty to a cyber-attack on Transport for London in 2024 that cost £39m and affected 10 million people. Thalha Jubair, 20, and Owen Flowers, 18,…

    Read more

  • UK critical infrastructure hit by 200 cyber incidents in a year, agency says

    Head of National Cyber Security Centre says UK in ‘ongoing contest with capable adversaries’ and AI could add to threat The UK’s critical national infrastructure has been hit by more than 200 cyber incidents over the past year and state-linked assailants were behind three-quarters of the attacks, according to the state cybersecurity body. Richard Horne,…

    Read more

  • Canvas hack: is it ever a good idea to pay a ransom, and what happens to the data?

    Businesses are advised against paying – but many are prepared to deal to protect users’ privacy After a week of outages, hundreds of millions of students’ data stolen, delayed assignment due dates and school login pages being defaced by hackers, the US tech firm Instructure – which operates the education platform Canvas, used by education…

    Read more

  • AI-powered hacking has exploded into industrial-scale threat, Google says

    Criminal groups and state-linked actors appear to be using commercial models to refine and scale up attacks Business live – latest updates In just three months, AI-powered hacking has gone from a nascent problem to an industrial-scale threat, according to a report from Google. The findings from Google’s threat intelligence group add to an intensifying,…

    Read more

  • What is a passkey, how does it work and why is it better than a password?

    Login method for apps and websites stored on users’ devices provides stronger security and is resistant to phishing and breaches The UK’s National Cyber Security Centre has called time on the password – from now on, you should use a passkey. The NCSC said this week it would no longer recommend using passwords where passkeys…

    Read more

  • Chinese hackers are using everyday devices to hack UK firms, warns watchdog

    Britain’s cybersecurity agency says companies must step up vigilance to prevent espionage attacks Business live – latest updates British businesses are being urged to step up their vigilance against a China-linked hacking ploy that uses everyday devices for espionage. The UK’s National Cyber Security Centre (NCSC) and agencies in nine other countries have warned of…

    Read more

  • What is Mythos AI and why could it be a threat to global cybersecurity?

    Anthropic’s decision to restrict access to its powerful new model increases fears about the advanced technology Anthropic has ruled out releasing its latest AI model, Claude Mythos, to the public because of the threat it poses to global cybersecurity. However, the US tech startup behind the Claude chatbot confirmed on Wednesday it was investigating a…

    Read more