
Malicious crypto-stealing VSCode extensions resurface on OpenVSX
A threat actor called TigerJack is constantly targeting developers with malicious extensions published on Microsoft's Visual Code (VSCode) marketplace and OpenVSX registry to steal cryptocurrency and plant backdoors. Two of the extensions, removed from VSCode...

Final Windows 10 Patch Tuesday update rolls out as support ends
In what marks the end of an era, Microsoft has released the Windows 10 KB5066791 cumulative update, the final cumulative update for the operating system as it reaches the end of its support lifecycle. It should be noted that users will still be able to receive...

Microsoft warns that Windows 10 reaches end of support today
Microsoft has reminded customers today that Windows 10 has reached the end of support and will no longer receive patches for newly discovered security vulnerabilities. However, although support for Windows 10 has been discontinued, computers running this OS...

Asahi admits personal data may have been slurped in breach • The Register
Asahi's cyber hangover just got worse, with the brewer now admitting that personal information may have been tapped in last month's attack. The Japanese beer giant said on Tuesday that it has "identified the possibility that personal information may have been...

Mozilla recruits beta testers for a built-in Firefox VPN • The Register
Mozilla is working on a built-in VPN for Firefox, with beta tests opening to select users shortly. According to a staff post on Mozilla Connect, the company's idea-sharing platform, Firefox VPN is still an experimental feature in the early stages of...

EU’s biometric border system suffers teeting problem • The Register
The European Union's new biometric Exit/Entry System (EES) got off to a chaotic start at Prague's international airport, with travelers facing lengthy queues and malfunctioning equipment forcing border staff to process arrivals manually. Jim Moore, an employee...

Microsoft restricts IE mode access in Edge after zero-day attacks
Microsoft is restricting access to Internet Explorer mode in Edge browser after learning that hackers are leveraging zero-day exploits in the Chakra JavaScript engine for access to target devices. The tech giant did not share too many technical details but said...

Massive multi-country botnet targets RDP services in the US
A large-scale botnet is targeting Remote Desktop Protocol (RDP) services in the United States from more than 100,000 IP addresses. The campaign started on October 8 and based on the source of the IPs, researchers believe the attacks are launched by a...

Salesforce bandits run into hiding amid arrests, seizures • The Register
The Scattered Lapsus$ Hunters (SLSH) cybercrime collective - compriseed primarily of teenagers and twenty-somethings - announced it will go dark until 2026 following the FBI's seizure of its clearweb site. In characteristic fashion, the group issued a...

Microsoft ‘illegally’ tracked students via 365 Education • The Register
An Austrian digital privacy group has claimed victory over Microsoft after the country's data protection regulator ruled the software giant "illegally" tracked students via its 365 Education platform and used their data. noyb said the ruling [PDF] by the...