Category: www.infosecurity-magazine.com

Russia’s FSB Behind Massive Phishing Espionage Campaign

Citizen Lab attributed the campaign to Coldriver, a notorious FSB subordinate team, and Coldwastrel, a new, Russian-aligned group This article has been indexed from www.infosecurity-magazine.com Read the original article: Russia’s FSB Behind Massive Phishing Espionage Campaign

Google Warns of Iranian Cyber-Attacks on Presidential Campaigns

Google has highlighted sophisticated spearphishing attacks by Iranian state actor APT42 targeting individuals associated with the US Presidential campaign This article has been indexed from www.infosecurity-magazine.com Read the original article: Google Warns of Iranian Cyber-Attacks on Presidential Campaigns

Manufacturing Firm Loses $60m in BEC Scam

Manufacturing firm Orion revealed it has lost $60m in a business email compromise (BEC) scam, which targeted a non-executive employee This article has been indexed from www.infosecurity-magazine.com Read the original article: Manufacturing Firm Loses $60m in BEC Scam

Cyber-Attack Spreads Phishing Scam Across Greater Manchester Areas

A cyber-attack has hit several boroughs across Greater Manchester, England, leaving thousands of residents vulnerable to a phishing scam This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber-Attack Spreads Phishing Scam Across Greater Manchester Areas

Microsoft Fixes Nine Zero-Days on Patch Tuesday

Microsoft’s August Patch Tuesday saw the tech giant address nine zero-day vulnerabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft Fixes Nine Zero-Days on Patch Tuesday

NIST Formalizes World’s First Post-Quantum Cryptography Standards

NIST has formalized three post-quantum cryptographic algorithms, with organizations urged to start the transition to quantum-secure encryption immediately This article has been indexed from www.infosecurity-magazine.com Read the original article: NIST Formalizes World’s First Post-Quantum Cryptography Standards

Phishing Campaign Compromises 100+ Ukrainian Government Computers

CERT-UA has warned that a mass phishing campaign impersonating Ukraine’s Security Services has infected more than 100 government devices This article has been indexed from www.infosecurity-magazine.com Read the original article: Phishing Campaign Compromises 100+ Ukrainian Government Computers

Prolific Belarusian Cybercriminal Arrested in Spain

Belarusian national Maksim Silnikau, who was operating under the ‘J.P. Morgan’ moniker, is believed to be one of the world’s most prolific Russian-speaking cybercriminals This article has been indexed from www.infosecurity-magazine.com Read the original article: Prolific Belarusian Cybercriminal Arrested in…

South Korea Warns Pyongyang Has Stolen Spy Plane Details

South Korea’s People Power Party calls for new legislation after data on spy planes and tanks is hacked by North Korea This article has been indexed from www.infosecurity-magazine.com Read the original article: South Korea Warns Pyongyang Has Stolen Spy Plane…

DARPA Awards $14m to Seven Teams in AI Cyber Challenge

DARPA awards $14 million to seven teams competing to develop AI systems capable of identifying and patching vulnerabilities in open-source software This article has been indexed from www.infosecurity-magazine.com Read the original article: DARPA Awards $14m to Seven Teams in AI…

UN Adopts Controversial Cybercrime Treaty

Many stakeholders said the future UN convention could allow authoritarian countries to stifle political opposition and violate human rights This article has been indexed from www.infosecurity-magazine.com Read the original article: UN Adopts Controversial Cybercrime Treaty

Microsoft Reveals Iranian US Election Interference Ops

Microsoft claims Iran is ramping up election interference activity in the US, as Trump campaign claims it was hacked This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft Reveals Iranian US Election Interference Ops

Man in Dock Accused of Breaking Hi-Tech Export Controls

Arthur Petrov is accused of exporting US chips for manufacturers supplying weaponry and equipment to the Russian military This article has been indexed from www.infosecurity-magazine.com Read the original article: Man in Dock Accused of Breaking Hi-Tech Export Controls

#BHUSA: CoSAI, Combating AI Risks Through Industry Collaboration

Leading AI companies have formed the Coalition for Secure AI (CoSAI) to address the growing cybersecurity risks posed by artificial intelligence This article has been indexed from www.infosecurity-magazine.com Read the original article: #BHUSA: CoSAI, Combating AI Risks Through Industry Collaboration

#BHUSA: CISA Director Confident in US Election Security

CISA Director Jen Easterly expressed strong confidence in the integrity of US election, despite ongoing cybersecurity threats to democratic processes This article has been indexed from www.infosecurity-magazine.com Read the original article: #BHUSA: CISA Director Confident in US Election Security

#BHUSA: Ransomware Drill Targets Healthcare in Operation 911

A ransomware tabletop exercise was conducted against a fictious hospital, aiming to educate attendees of how to fight against such threats This article has been indexed from www.infosecurity-magazine.com Read the original article: #BHUSA: Ransomware Drill Targets Healthcare in Operation 911

SEC Investigation into Progress MOVEit Hack Ends Without Charges

After months of investigation, the SEC decided not to recommend any enforcement action against software provider Progress regarding the supply chain attack This article has been indexed from www.infosecurity-magazine.com Read the original article: SEC Investigation into Progress MOVEit Hack Ends…

BlackSuit/Royal Ransomware Group Has Demanded $500m

CISA and FBI report claims the BlackSuit ransomware collective has extracted at least $500m from victims This article has been indexed from www.infosecurity-magazine.com Read the original article: BlackSuit/Royal Ransomware Group Has Demanded $500m

Ethical Hackers Steal and Return $12m to Ronin Network

Hackers stole $12m in virtual currency from Ronin Network, which has previously suffered a massive $620m heist This article has been indexed from www.infosecurity-magazine.com Read the original article: Ethical Hackers Steal and Return $12m to Ronin Network

#BHUSA: New Ransomware Groups Emerge Despite Crackdowns

A surge in new ransomware groups is fueling the cybercrime epidemic as financial incentives outweigh risks for attackers, despite law enforcement efforts This article has been indexed from www.infosecurity-magazine.com Read the original article: #BHUSA: New Ransomware Groups Emerge Despite Crackdowns

Microsoft 365 Phishing Alert Can Be Hidden with CSS

Microsoft 365’s anti-phishing tip can be hidden via CSS, as shown by Certitude’s Moody and Ettlinger This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft 365 Phishing Alert Can Be Hidden with CSS

#BHUSA: The Board Needs to Understand AI Deployment Risks

Boards need to understand where and why AI is being deployed within their organizations in order to mitigate risks This article has been indexed from www.infosecurity-magazine.com Read the original article: #BHUSA: The Board Needs to Understand AI Deployment Risks

ICO Prepares £6m Fine for NHS Supplier Advanced

The UK’s ICO wants to fine NHS partner Advanced £6m for failures that led to a major ransomware breach This article has been indexed from www.infosecurity-magazine.com Read the original article: ICO Prepares £6m Fine for NHS Supplier Advanced

CVEs Surge 30% in 2024, Only 0.91% Weaponized

Only 0.91% of vulnerabilities of the reported CVEs were weaponized, but represent the most severe risks This article has been indexed from www.infosecurity-magazine.com Read the original article: CVEs Surge 30% in 2024, Only 0.91% Weaponized

French Museums Hit By Ransomware Attack

The Grand Palais is among French museums hit by ransomware attacks as the Paris 2024 Summer Olympic Games are underway This article has been indexed from www.infosecurity-magazine.com Read the original article: French Museums Hit By Ransomware Attack

#BHUSA: Nation-State Attacks Target Hardware Supply Chains

New report warns of escalating hardware supply chain attacks, with 19% of organizations impacted and nearly all IT leaders expecting nation-state involvement This article has been indexed from www.infosecurity-magazine.com Read the original article: #BHUSA: Nation-State Attacks Target Hardware Supply Chains

US Sues TikTok For Children’s Law Violations

The US government is taking TikTok to court for alleged violations of the COPPA regulation This article has been indexed from www.infosecurity-magazine.com Read the original article: US Sues TikTok For Children’s Law Violations

EPA Told to Address Cyber Risks to Water Systems

The US Government Accountability Office has told the Environmental Protection Agency to urgently develop a strategy to tackle rising cyber-threats to the water industry This article has been indexed from www.infosecurity-magazine.com Read the original article: EPA Told to Address Cyber…

Gaming Industry Faces 94% Surge in DDoS Attacks

The rise in DDOS attacks against the gaming industry is accompanied by increasing bot activity This article has been indexed from www.infosecurity-magazine.com Read the original article: Gaming Industry Faces 94% Surge in DDoS Attacks

Cencora Confirms Patient Data Stolen in Cyber-Attack

Pharma company Cencora confirmed in an updated SEC filing that sensitive personal and health data was exfiltrated by attackers in a February 2024 incident This article has been indexed from www.infosecurity-magazine.com Read the original article: Cencora Confirms Patient Data Stolen…

E-Commerce Fraud Campaign Uses 600+ Fake Sites

The “Eriakos” info-stealing campaign is using hundreds of fake web shops to defraud victims This article has been indexed from www.infosecurity-magazine.com Read the original article: E-Commerce Fraud Campaign Uses 600+ Fake Sites

Urgent Blood Appeal Issued in US After Ransomware Attack

US non-profit OneBlood has issued an urgent appeal for donations after a ransomware attack has significantly reduced its capacity to distribute blood to hospitals This article has been indexed from www.infosecurity-magazine.com Read the original article: Urgent Blood Appeal Issued in…

New PyPI Package Zlibxjson Steals Discord, Browser Data

According to Fortinet, PyPI package Zlibxjson steals Discord tokens and browser data, including passwords and extensive user information This article has been indexed from www.infosecurity-magazine.com Read the original article: New PyPI Package Zlibxjson Steals Discord, Browser Data

DDoS Attack Triggers New Microsoft Global Outage

A global outage of Microsoft services was triggered by a DDoS attack, with an error Microsoft’s DDoS protection measures amplifying the impact This article has been indexed from www.infosecurity-magazine.com Read the original article: DDoS Attack Triggers New Microsoft Global Outage

Stolen GenAI Accounts Flood Dark Web With 400 Daily Listings

According to eSentire, around 400 GenAI account logins are sold daily on the dark web, including credentials for GPT, Quillbot, Notion and Replit This article has been indexed from www.infosecurity-magazine.com Read the original article: Stolen GenAI Accounts Flood Dark Web…

ICO Slams Electoral Commission for Basic Security Failings

The ICO found that the Electoral Commission did not have appropriate security measures in place, allowing hackers to access the personal details of 40 million UK voters This article has been indexed from www.infosecurity-magazine.com Read the original article: ICO Slams…

HealthEquity Breach Hits 4.3 Million Customers

Health savings specialist HealthEquity reveals over four million customers were impacted in a recent breach This article has been indexed from www.infosecurity-magazine.com Read the original article: HealthEquity Breach Hits 4.3 Million Customers

US Crypto Exchange Gemini Reveals Breach

Thousands of customers of cryptocurrency exchange Gemini have had personal data compromised This article has been indexed from www.infosecurity-magazine.com Read the original article: US Crypto Exchange Gemini Reveals Breach

Hacktivists Claim Leak of CrowdStrike Threat Intelligence

CrowdStrike has acknowledged the claims by the USDoD hacktivist group, which has provided a link to download the alleged threat actor list on a cybercrime forum This article has been indexed from www.infosecurity-magazine.com Read the original article: Hacktivists Claim Leak…

Despite Bans, AI Code Tools Widespread in Organizations

Despite bans on AI code generation tools, widespread use and lack of governance are creating significant security risks for organizations This article has been indexed from www.infosecurity-magazine.com Read the original article: Despite Bans, AI Code Tools Widespread in Organizations

Ransomware and BEC Make Up 60% of Cyber Incidents

Cisco Talos found that ransomware and BEC accounted for 60% of all cyber incidents in Q2 2024, with ransomware rising by 22% compared to Q1 This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware and BEC Make…

Malware Attacks Surge 30% in First Half of 2024

SonicWall observed a surge in malware attacks in H1 2024, with strains becoming more adept at defense evasion This article has been indexed from www.infosecurity-magazine.com Read the original article: Malware Attacks Surge 30% in First Half of 2024

Most IT Leaders Say Severity of Cyber-Attacks has Increased

Appsbroker CTS found that nine in 10 IT leaders believe the severity of cyber-attacks has increased over the past year This article has been indexed from www.infosecurity-magazine.com Read the original article: Most IT Leaders Say Severity of Cyber-Attacks has Increased

Google Criticized for Abandoning Cookie Phase-Out

Google’s decision to abandon the phase out of third-party cookies on Chrome has been criticized, with the tech giant accused of neglecting user privacy This article has been indexed from www.infosecurity-magazine.com Read the original article: Google Criticized for Abandoning Cookie…

Prolific DDoS Marketplace Shut Down by UK Law Enforcement

The UK’s National Crime Agency has infiltrated the DigitalStress marketplace, which offers DDoS capabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: Prolific DDoS Marketplace Shut Down by UK Law Enforcement