Graham Cluely

Two years’ jail for down-on-his-luck man who sold ransomware online

Graham Cluely Security Blog - 4 hours 51 min ago
A man has been jailed in Ireland for two years after pleading guilty to offences related to his illegal online business that sold ransomware and other malware, as well as stolen credit card details, and false bank accounts. Read more in my article on the Hot for Security blog.
Categories: Graham Cluely

LockBit ransomware gang breached, secrets exposed

Graham Cluely Security Blog - Fri, 05/09/2025 - 7:16am
Oh dear, what a shame, never mind. Read more in my article on the Tripwire State of Security blog.
Categories: Graham Cluely

Hackers hit deportation airline GlobalX, leak flight manifests, and leave an unsubtle message for “Donnie” Trump

Graham Cluely Security Blog - Fri, 05/09/2025 - 5:04am
GlobalX Airlines, a charter airline being used by the US government for deportation flights, has been attacked by hacktivists who have made off with what they claim are detailed flight records and passenger manifests. Read more in my article for the Hot for Security blog.
Categories: Graham Cluely

Smashing Security podcast #416: High street hacks, and Disney’s Wingdings woe

Graham Cluely Security Blog - Wed, 05/07/2025 - 8:18pm
Brits face empty shelves and suspended meal deals as cybercriminals hit major high street retailers, and a terminated Disney employee gets revenge with a little help with Wingdings. Plus Graham challenges Carole to a game of "Malware or metal?", and we wonder just happens when you have sex on top of a piano? All this and more is discussed in the latest edition of the award-winning "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault. Plus! Don't miss our featured interview with Jon Cho of Dashlane.
Categories: Graham Cluely

NCSC warns of IT helpdesk impersonation trick being used by ransomware gangs after UK retailers attacked

Graham Cluely Security Blog - Wed, 05/07/2025 - 6:18am
The UK's National Cyber Security Centre (NCSC) has warned the IT helpdesks of retailers to be on their guard against bogus support calls they might receive from hackers pretending to be staff locked out of their accounts. Read more in my article on the Exponential-e blog.
Categories: Graham Cluely

TeleMessage, the Signal clone used by US government officials, suffers hack

Graham Cluely Security Blog - Wed, 05/07/2025 - 4:42am
TeleMessage, an encrypted messaging app based upon Signal, has been temporarily suspended out of "an abundance of caution" after a hacker reportedly gained access to US government communications. Read more in my article on the Hot for Security blog.
Categories: Graham Cluely

The AI Fix #49: The typo from hell

Graham Cluely Security Blog - Tue, 05/06/2025 - 10:43am
In episode 49 of The AI Fix, OpenAI kills off a sycophantic bot, our hosts are introduced to a prophetic Bosnian rock band, Meta puts an electric fence around its llamas, Mark reveals he's never tried covering a robot with olive oil, and Graham leaves a stern message for his great-great-grandchildren. Mark sits a “smarty-pants” test, an AI becomes a crime boss, and Graham explains how a decades-old typo is poisoning the scientific well. All this and much more is discussed in the latest edition of "The AI Fix" podcast by Graham Cluley and Mark Stockley.
Categories: Graham Cluely

Smashing Security podcast #415: Hacking hijinks at the hospital, and WASPI scams

Graham Cluely Security Blog - Wed, 04/30/2025 - 7:00pm
He's not a pop star, but Jeffrey Bowie is alleged to have toured staff areas of a hospital in Oklahoma, hunting for computers he could install spyware on. We dive into the bizarre case of the man accused of hacking medical networks and then sharing how he did it on LinkedIn. Plus! Move over Nigerian princes — the WASPI scams are here. Fraudsters are now targeting UK women born in the 1950s, exploiting pension injustice for phishing gain. All this and more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley and Carole Theriault.
Categories: Graham Cluely

The AI Fix #48: AI Jesus, and is the AI Singularity almost upon us?

Graham Cluely Security Blog - Tue, 04/29/2025 - 10:10am
In episode 48 of The AI Fix, OpenAI releases the first AI models capable of novel scientific discoveries, ChatGPT users are sick of its relentlessly positive tone, our hosts say "Alexa" a lot, OpenAI eyes a social network of its own, and some robots run a half-marathon. Graham discovers AI Jesus and a great offer on some Casper mattresses, and Mark wonders if the technological singularity is actually much closer than we thought. All this and much more is discussed in the latest edition of "The AI Fix" podcast by Graham Cluley and Mark Stockley.
Categories: Graham Cluely

Ransomware attacks on critical infrastructure surge, reports FBI

Graham Cluely Security Blog - Tue, 04/29/2025 - 6:30am
The FBI is set to report that ransomware was the most pervasive cybersecurity threat to US critical infrastructure during the year of 2024, with complaints of ransomware attacks against critical sectors jumping 9% over the previous year. Read more in my article on the Tripwire State of Security blog.
Categories: Graham Cluely

21 million employee screenshots leaked in bossware breach blunder

Graham Cluely Security Blog - Tue, 04/29/2025 - 6:28am
If you thought only your boss was peeking at your work screen, think again. Employee-monitoring tool Work Composer has committed a jaw-dropping blunder, leaving a treasure trove of millions of workplace screenshots openly accessible on the internet with no encryption in place, and no password required. Read more in my article on the Hot for Security blog.
Categories: Graham Cluely

Hackers access sensitive SIM card data at South Korea’s largest telecoms company

Graham Cluely Security Blog - Fri, 04/25/2025 - 5:18am
Mobile network operator SK Telecom, which serves approximately 34 million subscribers in South Korea, has confirmed that it suffered a cyber attack earlier this month that saw malware infiltrate its internal systems, and access data related to customers' SIM cards. Read more in my article on the Hot for Security blog.
Categories: Graham Cluely

Smashing Security podcast #414: Zoom.. just one click and your data goes boom!

Graham Cluely Security Blog - Wed, 04/23/2025 - 7:00pm
Graham explores how the Elusive Comet cybercrime gang are using a sneaky trick of stealing your cryptocurrency via an innocent-appearing Zoom call, and Carole goes under the covers to explore the extraordinary lengths bio-hacking millionaire Bryan Johnson is attempting to extend his life. All this and more is discussed in the latest edition of the award-winning "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.
Categories: Graham Cluely

The AI Fix #47: An AI is the best computer programmer in the world

Graham Cluely Security Blog - Tue, 04/22/2025 - 10:14am
In episode 47 of The AI Fix, o3 becomes the best competitive programmer in the world, hacked California crosswalks speak with the voice of Elon Musk and Mark Zuckerberg, Meta introduces a herd of Llamas, Graham explains what a "lollipop lady" is, and Google talks to some dolphins. Graham discovers an AI that's just a warehouse full of people, o3 becomes the best computer programmer in the world, and Mark wonders if software engineering will be the first job to fall to AI. All this and much more is discussed in the latest edition of "The AI Fix" podcast by Graham Cluley and Mark Stockley.
Categories: Graham Cluely

Crosswalks hacked to play fake audio of Musk, Zuck, and Jeff Bezos

Graham Cluely Security Blog - Tue, 04/22/2025 - 4:09am
"Stop, look, and listen" is the standard advice we should allow follow when crossing the road - but pedestrians in some parts are finding that they cannot believe their ears - after a hacker compromised crosswalks to play deepfake audio mocking tech bosses Elon Musk, Mark Zuckerberg, and Jeff Bezos. Read more in my article on the Hot for Security blog.
Categories: Graham Cluely

Smashing Security podcast #413: Hacking the hackers… with a credit card?

Graham Cluely Security Blog - Wed, 04/16/2025 - 7:00pm
A cybersecurity firm is buying access to underground crime forums to gather intelligence. Does that seem daft to you? And over in Nigeria, even if romance scammers would like to update their LinkedIn profiles, just how easy is it to turn a new leaf after a sweet-talking career in cybercrime? All this and more is discussed in the latest edition of the award-winning "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.
Categories: Graham Cluely

Insurance firm Lemonade warns of breach of thousands of driving license numbers

Graham Cluely Security Blog - Wed, 04/16/2025 - 5:42am
A data breach at insurance firm Lemonade left the details of thousands of drivers' licenses exposed for 17 months. According to the company, on March 14 2025 Lemonade learnt that a vulnerability in its online car insurance application process contained a vulnerability that was likely to have exposed "certain driver's license numbers for identifiable individuals." Read more in my article on the Hot for Security blog.
Categories: Graham Cluely