Category: www.infosecurity-magazine.com

Cybercriminals Exploit CrowdStrike Outage Chaos

Cybercriminals have launched phishing campaigns purporting to support organizations impacted by the global IT outage, caused by a CrowdStrike Falcon issue This article has been indexed from www.infosecurity-magazine.com Read the original article: Cybercriminals Exploit CrowdStrike Outage Chaos

Two Russians Convicted for Role in LockBit Attacks

Two Russian nationals have pleaded guilty to charges relating to their participation in the LockBit ransomware gang This article has been indexed from www.infosecurity-magazine.com Read the original article: Two Russians Convicted for Role in LockBit Attacks

Sunburst: US Judge Dismisses Most SEC Charges Against SolarWinds

The SEC allegations against SolarWinds and its CISO over statements made after the 2020 ‘Sunburst’ hack were based on “hindsight and speculation,” said the judge This article has been indexed from www.infosecurity-magazine.com Read the original article: Sunburst: US Judge Dismisses…

CrowdStrike Fault Causes Global IT Outages

An issue related to an update to CrowdStrike’s security platform Falcon Sensor has impacted Microsoft Windows Operating Systems, causing global IT outages This article has been indexed from www.infosecurity-magazine.com Read the original article: CrowdStrike Fault Causes Global IT Outages

Nearly 13 Million Australians Affected by MediSecure Attack

MediSecure revealed that the personal and health data of approximately 12.9 million Australians has been affected by the May 2024 attack This article has been indexed from www.infosecurity-magazine.com Read the original article: Nearly 13 Million Australians Affected by MediSecure Attack

US Data Breach Victim Numbers Surge 1170% Annually

New figures reveal a massive 1170% increase in people impacted by data breaches in Q2 2024 versus a year ago This article has been indexed from www.infosecurity-magazine.com Read the original article: US Data Breach Victim Numbers Surge 1170% Annually

ICO Reprimands London Council for Mass Data Breach

The ICO said a lack of security controls led to a large-scale data breach at the London Borough of Hackney Council This article has been indexed from www.infosecurity-magazine.com Read the original article: ICO Reprimands London Council for Mass Data Breach

Understanding NullBulge, the New AI-Fighting ‘Hacktivist’ Group

The threat actor who claimed the recent Disney hack previously targeted AI-centric games and applications with commodity malware and ransomware This article has been indexed from www.infosecurity-magazine.com Read the original article: Understanding NullBulge, the New AI-Fighting ‘Hacktivist’ Group

Paris 2024 Olympics Face Escalating Cyber-Threats

Fortinet observed an 80-90% increase in darknet activity targeting the Olympics between 2023 and 2024 This article has been indexed from www.infosecurity-magazine.com Read the original article: Paris 2024 Olympics Face Escalating Cyber-Threats

Sensitive Data Sharing Risks Heightened as GenAI Surges

Netskope found that 96% of organizations use generative AI applications, with sensitive data frequently shared with these tools This article has been indexed from www.infosecurity-magazine.com Read the original article: Sensitive Data Sharing Risks Heightened as GenAI Surges

Global Police Swoop on Black Axe Cybercrime Syndicate

Interpol claims hundreds of arrests were made as police disrupted the West African Black Axe cybercrime gang This article has been indexed from www.infosecurity-magazine.com Read the original article: Global Police Swoop on Black Axe Cybercrime Syndicate

CISA: Patch Critical GeoServer GeoTools Bug Now

CISA has told federal agencies to patch a critical GeoServer GeoTools vulnerability under active exploitation This article has been indexed from www.infosecurity-magazine.com Read the original article: CISA: Patch Critical GeoServer GeoTools Bug Now

MHTML Exploited By APT Group Void Banshee

Void Banshee targeted North American, European and Southeast Asian regions with the Atlantida stealer This article has been indexed from www.infosecurity-magazine.com Read the original article: MHTML Exploited By APT Group Void Banshee

Hacktivists Claim Leak Over 1 Terabyte of Disney Data

Disney unreleased projects and internal data are part of a data leak claimed by hacktivist group ‘NullBulge’ This article has been indexed from www.infosecurity-magazine.com Read the original article: Hacktivists Claim Leak Over 1 Terabyte of Disney Data

Half of SMEs Unprepared for Cyber-Threats

JumpCloud found that half of SME IT teams believe they lack the resources and staffing to defend their organization against cyber-threats This article has been indexed from www.infosecurity-magazine.com Read the original article: Half of SMEs Unprepared for Cyber-Threats

Kaspersky to Quit US This Weekend

Russian AV-maker Kaspersky is set to shutter its US operations from Saturday This article has been indexed from www.infosecurity-magazine.com Read the original article: Kaspersky to Quit US This Weekend

Attackers Exploit URL Protections to Disguise Phishing Links

Barracuda has observed attackers using three different URL protection services to mask their phishing URLs, bypassing email security tools This article has been indexed from www.infosecurity-magazine.com Read the original article: Attackers Exploit URL Protections to Disguise Phishing Links

Pharmacy Giant Rite Aid Hit By Ransomware

US pharmacy chain Rite Aid has confirmed a cybersecurity ‘incident’ in June This article has been indexed from www.infosecurity-magazine.com Read the original article: Pharmacy Giant Rite Aid Hit By Ransomware

Indiana County Files Disaster Declaration Following Ransomware Attack

Clay County, Indiana, said a ransomware attack has prevented the administration of critical services, leading to a disaster declaration being filed This article has been indexed from www.infosecurity-magazine.com Read the original article: Indiana County Files Disaster Declaration Following Ransomware Attack

NATO Set to Build New Cyber Defense Center

NATO members have agreed to develop a new integrated facility to help improve collective cyber-resilience This article has been indexed from www.infosecurity-magazine.com Read the original article: NATO Set to Build New Cyber Defense Center

Fraud Campaign Targets Russians with Fake Olympics Tickets

Operation Ticket Heist involves 700 web domains to sell fake Olympic Games tickets to a Russian-speaking audience, QuoIntelligence has found This article has been indexed from www.infosecurity-magazine.com Read the original article: Fraud Campaign Targets Russians with Fake Olympics Tickets

Smishing Triad Targets India with Fraud Surge

Smishing Triad’s MO involves registering fraudulent domain names that mimic legitimate organizations This article has been indexed from www.infosecurity-magazine.com Read the original article: Smishing Triad Targets India with Fraud Surge

Ransomware Groups Prioritize Defense Evasion for Data Exfiltration

A Cisco report highlighted TTPs used by the most prominent ransomware groups to evade detection, establish persistence and exfiltrate sensitive data This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Groups Prioritize Defense Evasion for Data Exfiltration

Most Security Pros Admit Shadow SaaS and AI Use

Next DLP study finds majority of security professionals have used unauthorised apps in past year This article has been indexed from www.infosecurity-magazine.com Read the original article: Most Security Pros Admit Shadow SaaS and AI Use

Microsoft Fixes Four Zero-Days in July Patch Tuesday

Microsoft has addressed two actively exploited and two publicly disclosed zero-day bugs this month This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft Fixes Four Zero-Days in July Patch Tuesday

Avast Provides DoNex Ransomware Decryptor to Victims

Researchers at Avast found a flaw in the cryptographic schema of the DoNex ransomware and have been sending out decryptor keys to victims since March 2024 This article has been indexed from www.infosecurity-magazine.com Read the original article: Avast Provides DoNex…

New APT CloudSorcerer Malware Hits Russian Targets

The malware issues commands via a hardcoded charcode table and Microsoft COM object interfaces This article has been indexed from www.infosecurity-magazine.com Read the original article: New APT CloudSorcerer Malware Hits Russian Targets

Cisco Warns regreSSHion Vulnerability Impacts Multiple Products

Cisco has told customers that 42 of its products are impacted by the OpenSSH regreSSHion vulnerability, with a further 51 products being investigated This article has been indexed from www.infosecurity-magazine.com Read the original article: Cisco Warns regreSSHion Vulnerability Impacts Multiple…

Russia Blocks VPN Services in Information Crackdown

The ban comes from Russian communication watchdog Roskomnadzor, likely in a bid to control the flow of information to Russian citizens This article has been indexed from www.infosecurity-magazine.com Read the original article: Russia Blocks VPN Services in Information Crackdown

Crypto Thefts Double to $1.4 Billion, TRM Labs Finds

Higher average token prices are the likely cause of the surge rather than a change in the crypto threat landscape This article has been indexed from www.infosecurity-magazine.com Read the original article: Crypto Thefts Double to $1.4 Billion, TRM Labs Finds

10 Billion Passwords Leaked on Hacking Forum

A Cybernews investigation found that nearly 10 billion unique passwords have been posted on a popular hacking forum, putting users worldwide at risk of account compromises This article has been indexed from www.infosecurity-magazine.com Read the original article: 10 Billion Passwords…

Vinted Fined €2.3m Over Data Protection Failure

The Lithuanian data protection authority has imposed a fine of almost $2.5m on second-hand specialist Vinted for breaching GDPR This article has been indexed from www.infosecurity-magazine.com Read the original article: Vinted Fined €2.3m Over Data Protection Failure

Gamers’ Data Exposed in RPG Platform Roll20 Breach

Roll20 confirmed its administrative website account was accessed by a “bad actor,” leaving its users’ personal information exposed This article has been indexed from www.infosecurity-magazine.com Read the original article: Gamers’ Data Exposed in RPG Platform Roll20 Breach

New Ransomware Group Phones Execs to Extort Payment

Researchers claim the Volcano Demon ransomware group personally phone victims to pressure them into paying This article has been indexed from www.infosecurity-magazine.com Read the original article: New Ransomware Group Phones Execs to Extort Payment

UK’s NCA Leads Major Cobalt Strike Takedown

Global law enforcers have share intelligence leading to the takedown of hundreds of IP addresses hosting Cobalt Strike This article has been indexed from www.infosecurity-magazine.com Read the original article: UK’s NCA Leads Major Cobalt Strike Takedown

Cyber Extortion Soars: SMBs Hit Four Times Harder

Orange Cyberdefense’s latest Cy-Xplorer report shows a 77% rise in cyber extortion, with SMBs impacted 4.2 times more often than large enterprises This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber Extortion Soars: SMBs Hit Four Times…

APP Fraud Singled Out as Biggest Financial Crime Threat

Payments professionals have highlighted authorized push payment (APP) fraud as the top threat facing businesses and consumers This article has been indexed from www.infosecurity-magazine.com Read the original article: APP Fraud Singled Out as Biggest Financial Crime Threat

Dozens of Arrests Disrupt €2.5m Vishing Gang

Police have arrested 54 suspected members of a vishing group who stole the life savings of scores of victims This article has been indexed from www.infosecurity-magazine.com Read the original article: Dozens of Arrests Disrupt €2.5m Vishing Gang

Ransomware Attack Demands Reach a Staggering $5.2m in 2024

Comparitech calculated that the average ransom demand was over $5.2m in the first six months of 2024, with 421 confirmed incidents during this period This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Attack Demands Reach a…

Health Tech Execs Get Jail Time For $1bn Fraud Scheme

The former CEO and COO of a health startup will spend years in jail after conducting a large-scale fraud scheme This article has been indexed from www.infosecurity-magazine.com Read the original article: Health Tech Execs Get Jail Time For $1bn Fraud…

Meta’s ‘Pay or Consent’ Data Model Breaches EU Law

The EU Commission said Meta’s pay or consent model means users cannot freely consent to their personal data being collected for advertising purposes This article has been indexed from www.infosecurity-magazine.com Read the original article: Meta’s ‘Pay or Consent’ Data Model…

Critical OpenSSH Flaw Enables Full System Compromise

A newly discovered RCE vulnerability, which can lead to full system compromise, has put over 14 million OpenSSH server instances are potentially at risk, according to Qualys This article has been indexed from www.infosecurity-magazine.com Read the original article: Critical OpenSSH…

Google Thwarts Over 10,000 Attempts by Chinese Influence Operator

Google warned of high levels of activity from Chinese influence operator Dragon Bridge, which is increasingly experimenting with generative AI tools to create content This article has been indexed from www.infosecurity-magazine.com Read the original article: Google Thwarts Over 10,000 Attempts…

Majority of Critical Open Source Projects Contain Memory Unsafe Code

A CISA analysis in collaboration with international partners concluded most critical open source projects potentially contain memory safety vulnerabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: Majority of Critical Open Source Projects Contain Memory Unsafe Code

US Charges Russian Individual for Pre-Invasion Ukraine Hack

The US government is offering up to $10m for information on Amin Timovich Stigal’s location or his malicious cyber activity This article has been indexed from www.infosecurity-magazine.com Read the original article: US Charges Russian Individual for Pre-Invasion Ukraine Hack

IT Leaders Split on Using GenAI For Cybersecurity

Corelight study claims many IT leaders see benefit of GenAI but similar share are concerned about data exposure This article has been indexed from www.infosecurity-magazine.com Read the original article: IT Leaders Split on Using GenAI For Cybersecurity

Progress Discloses Two New Vulnerabilities in MOVEit Products

Two authentication bypass vulnerabilities affect Progress Software’s MOVEit Transfer SFTP service in a default configuration and MOVEit Gateway This article has been indexed from www.infosecurity-magazine.com Read the original article: Progress Discloses Two New Vulnerabilities in MOVEit Products

Novel Banking Malware Targets Customers in Southeast Asia

A novel malware strain, Snowblind, bypasses security measures in banking apps on Android, leading to financial losses and fraud, according to Promon This article has been indexed from www.infosecurity-magazine.com Read the original article: Novel Banking Malware Targets Customers in Southeast…

Cyber Attackers Turn to Cloud Services to Deploy Malware

A growing number of malware operators have turned to cloud-based command and control servers to deploy malicious campaigns, Fortinet researchers found This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber Attackers Turn to Cloud Services to Deploy…

Fake Law Firms Con Victims of Crypto Scams, Warns FBI

The FBI has urged cryptocurrency scam victims to be on the alert for fraudsters posing as lawyers This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake Law Firms Con Victims of Crypto Scams, Warns FBI

Dark Web Sees 230% Rise in Singapore Identity Theft

According to Resecurity, a significant portion of the stolen data was found on the XSS underground forum This article has been indexed from www.infosecurity-magazine.com Read the original article: Dark Web Sees 230% Rise in Singapore Identity Theft

Cloud Breaches Impact Nearly Half of Organizations

A Thales report found that 44% of organizations have experienced a cloud data breach, with human error and misconfigurations the leading root causes This article has been indexed from www.infosecurity-magazine.com Read the original article: Cloud Breaches Impact Nearly Half of…