Category: www.infosecurity-magazine.com

Modular Malware Boolka’s BMANAGER Trojan Exposed

The group has been observed exploiting vulnerabilities through SQL injection attacks since 2022 This article has been indexed from www.infosecurity-magazine.com Read the original article: Modular Malware Boolka’s BMANAGER Trojan Exposed

China-Based RedJuliett Targets Taiwan in Cyber Espionage Campaign

The likely Chinese state-sponsored group ran espionage campaigns against Taiwan’s government, academia and diplomacy from Fuzhou, China This article has been indexed from www.infosecurity-magazine.com Read the original article: China-Based RedJuliett Targets Taiwan in Cyber Espionage Campaign

US Bans Kaspersky Over Alleged Kremlin Links

Kaspersky “poses an undue or unacceptable risk to national security,” according to the US Commerce Department’s Bureau of Industry and Security This article has been indexed from www.infosecurity-magazine.com Read the original article: US Bans Kaspersky Over Alleged Kremlin Links

Synnovis Attackers Publish NHS Patient Data Online

Ransomware group Qilin has reportedly published nearly 400GB of data stolen following the attack on NHS provider Synnovis in early June This article has been indexed from www.infosecurity-magazine.com Read the original article: Synnovis Attackers Publish NHS Patient Data Online

LockBit Most Prominent Ransomware Actor in May 2024

The LockBit ransomware group returned the fold to launch 176 attacks in May 2024 following a law enforcement takedown, NCC Group found This article has been indexed from www.infosecurity-magazine.com Read the original article: LockBit Most Prominent Ransomware Actor in May…

Threat Actor Claims AMD and Apple Breaches

Notorious threat actor IntelBroker is claiming to have stolen data from Apple and AMD This article has been indexed from www.infosecurity-magazine.com Read the original article: Threat Actor Claims AMD and Apple Breaches

G7 to Develop Cybersecurity Framework for Energy Sector

The G7 nations agree to develop a cybersecurity framework for key technologies used to operate electricity, oil and natural gas systems This article has been indexed from www.infosecurity-magazine.com Read the original article: G7 to Develop Cybersecurity Framework for Energy Sector

Cybersecurity Burnout Costing Firms $700m+ Annually

Hack The Box research claims employee burnout could be costing hundreds of millions in lost productivity This article has been indexed from www.infosecurity-magazine.com Read the original article: Cybersecurity Burnout Costing Firms $700m+ Annually

Fake Meeting Software Spreads macOS Infostealer

Recorded Future has found that Vortax, a purported virtual meeting software, is actually malicious software spreading three information stealers This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake Meeting Software Spreads macOS Infostealer

VMware Discloses Critical Vulnerabilities, Urges Immediate Remediation

VMware has disclosed critical vulnerabilities impacting its VMware vSphere and VMware Cloud Foundation products, with patches available for customers This article has been indexed from www.infosecurity-magazine.com Read the original article: VMware Discloses Critical Vulnerabilities, Urges Immediate Remediation

Quarter of Firms Suffer an API-Related Breach

Salt Security study finds 23% of organizations suffered a breach via production APIs in 2023 This article has been indexed from www.infosecurity-magazine.com Read the original article: Quarter of Firms Suffer an API-Related Breach

Los Angeles Public Health Department Discloses Large Data Breach

Los Angeles County Department of Public Health revealed a data breach impacting more than 200,000 individuals, with personal, medical and financial data potentially stolen This article has been indexed from www.infosecurity-magazine.com Read the original article: Los Angeles Public Health Department…

Meta Pauses European GenAI Development Over Privacy Concerns

Meta has delayed plans to train its LLMs using public content shared by adults on Facebook and Instagram following a request by Ireland’s data protection regulator This article has been indexed from www.infosecurity-magazine.com Read the original article: Meta Pauses European…

Ascension Attack Caused by Employee Downloading Malicious File

Healthcare firm Ascension said that ransomware attackers gained access to its systems after an employee accidently downloaded a malicious file This article has been indexed from www.infosecurity-magazine.com Read the original article: Ascension Attack Caused by Employee Downloading Malicious File

Cyber Insurance Claims Hit Record High in North America

Insurance firm Marsh received over 1800 cyber claim reports from clients in the US and Canada in 2023, higher than any other year This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber Insurance Claims Hit Record High…

Chinese Hackers Leveraging ‘Noodle RAT’ Backdoor

The ELF backdoor, initially thought to be a variant of existing malware, has a Windows and a Linux version This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese Hackers Leveraging ‘Noodle RAT’ Backdoor

Chinese FortiGate Espionage Campaign Snares 20,000+ Victims

Dutch authorities reveal that a cyber-espionage campaign using novel “Coathanger” malware was much more extensive than first thought This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese FortiGate Espionage Campaign Snares 20,000+ Victims

Threat Actor Breaches Snowflake Customers, Victims Extorted

Mandiant warns that a financially-motivated threat actor stole a significant volume of customer data from Snowflake, and is extorting many of the victims This article has been indexed from www.infosecurity-magazine.com Read the original article: Threat Actor Breaches Snowflake Customers, Victims…

NVIDIA and Arm Urge Customers to Patch Bugs

Chip giants NVIDIA and Arm have released details of new vulnerabilities including a zero-day bug This article has been indexed from www.infosecurity-magazine.com Read the original article: NVIDIA and Arm Urge Customers to Patch Bugs

EmailGPT Exposed to Prompt Injection Attacks

The flaw enables attackers to gain control over the AI service by submitting harmful prompts This article has been indexed from www.infosecurity-magazine.com Read the original article: EmailGPT Exposed to Prompt Injection Attacks

Security Flaws Found in Popular WooCommerce Plugin

Despite reported attempts from Patchstack to contact the vendor, no response has been received This article has been indexed from www.infosecurity-magazine.com Read the original article: Security Flaws Found in Popular WooCommerce Plugin

FBI Warns of Rise in Work-From-Home Scams

One key tactic these scammers employ is a convoluted payment structure to access additional earnings or unlock access to work This article has been indexed from www.infosecurity-magazine.com Read the original article: FBI Warns of Rise in Work-From-Home Scams

#Infosec2024: Tackling Cyber Challenges of AI-Generated Code

If software developers want to benefit from AI-generated code tools, they must mitigate some of the risks they could bring first, Synopsys’ Lucas von Stockhausen said at Infosecurity Europe This article has been indexed from www.infosecurity-magazine.com Read the original article:…

London Hospitals Cancel Operations Following Ransomware Incident

A ransomware attack on a supplier of pathology services has forced leading London hospitals to cancel operations and divert emergency patients This article has been indexed from www.infosecurity-magazine.com Read the original article: London Hospitals Cancel Operations Following Ransomware Incident

#Infosec2024: How to Develop Your Future Team

Expert panel advises CISOs to look beyond pay and at career progression and work-life balance to fill skills gaps This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2024: How to Develop Your Future Team

#Infosec24: Deepfake Expert Warns of “AI Tax Havens”

Keynote speaker Henry Ajder warns that regulatory measures may be undermined if some countries ignore global rules This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec24: Deepfake Expert Warns of “AI Tax Havens”

#Infosec2024: Conflicts Drive DDoS Attack Surge in EMEA

Akamai research found DDoS attacks in EMEA surpassed North America in Q1 2024, with ongoing conflicts helping driving a surge of incidents in the region This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2024: Conflicts Drive DDoS…

Ransomware Rises Despite Law Enforcement Takedowns

Ransomware activity rose in 2023, partly fueled by new groups and partnerships between groups, Mandiant has observed This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Rises Despite Law Enforcement Takedowns

Ransomware Rises Amid Law Enforcement Takedowns

Ransomware activity rose in 2023, partly fueled by new groups and partnerships between groups, Mandiant has observed This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Rises Amid Law Enforcement Takedowns

UK School Forced to Close Following Cyber-Attack

The Billericay School in Essex informed parents that it is closed to students after its IT systems were compromised and made inaccessible by a cyber-attack This article has been indexed from www.infosecurity-magazine.com Read the original article: UK School Forced to…

BBC Pension Scheme Breached, Exposing Employee Data

The BBC said that personally identifiable information of current and former employees has been breached following an incident affecting its pension scheme This article has been indexed from www.infosecurity-magazine.com Read the original article: BBC Pension Scheme Breached, Exposing Employee Data

US-Led Operation Takes Down World’s Largest Botnet

A global law enforcement operation has disrupted the 911 S5 botnet, a global network of compromised devices used to facilitate criminal activity This article has been indexed from www.infosecurity-magazine.com Read the original article: US-Led Operation Takes Down World’s Largest Botnet

#Infosec2024: Why Credential-Based Attacks Need Modern Solutions

1Password’s Steve Won discusses why modern security solutions, such as passkeys, can substantially reduce the risk of credential-based attacks This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2024: Why Credential-Based Attacks Need Modern Solutions

New North Korean Hacking Group Identified by Microsoft

Moonstone Sleet is a newly observed threat group targeting companies for financial and cyber espionage objectives This article has been indexed from www.infosecurity-magazine.com Read the original article: New North Korean Hacking Group Identified by Microsoft

#Infosec2024: Decoding SentinelOne’s AI Threat Hunting Assistant

SentinelOne will present a threat-hunting demonstration during which a security analyst will compete against a non-technical person using its AI assistant This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2024: Decoding SentinelOne’s AI Threat Hunting Assistant