Tag: www.infosecurity-magazine.com

Ivanti Zero-Days Exploited By Multiple Actors Globally

Volexity detects 1700 compromised Ivanti VPN devices following publication of two zero-days last week This article has been indexed from www.infosecurity-magazine.com Read the original article: Ivanti Zero-Days Exploited By Multiple Actors Globally

Senators Demand Probe into SEC Hack After Bitcoin Price Spike

US senators have accused the SEC of failing to properly secure its social media accounts after hackers comprised its X account and posted a fake Bitcoin announcement This article has been indexed from www.infosecurity-magazine.com Read the original article: Senators Demand…

Python-Based Tool FBot Disrupts Cloud Security

Discovered by the SentinelLabs team, FBot targets web servers, cloud services and SaaS platforms This article has been indexed from www.infosecurity-magazine.com Read the original article: Python-Based Tool FBot Disrupts Cloud Security

Environmental Websites Hit by DDoS Surge in COP28 Crossfire

Content delivery provider Cloudflare observed a staggering surge in DDoS attacks against environmental services during COP28 This article has been indexed from www.infosecurity-magazine.com Read the original article: Environmental Websites Hit by DDoS Surge in COP28 Crossfire

British Library Catalogue Back Online After Ransomware Attack

The main British Library catalogue will be back online on Monday, January 15, as the institution continues its technical rebuild following the ransomware attack last year This article has been indexed from www.infosecurity-magazine.com Read the original article: British Library Catalogue…

Security Experts Urge IT to Lock Down GitHub Services

A new Recorded Future report warns of growing abuse of GitHub and recommends blocking risky services This article has been indexed from www.infosecurity-magazine.com Read the original article: Security Experts Urge IT to Lock Down GitHub Services

CISA Urges Critical Infrastructure to Patch Urgent ICS Vulnerabilities

CISA’s advisory provides mitigations for vulnerabilities in ICS products used in critical infrastructure industries like energy, manufacturing and transportation This article has been indexed from www.infosecurity-magazine.com Read the original article: CISA Urges Critical Infrastructure to Patch Urgent ICS Vulnerabilities

NCSC Publishes Practical Security Guidance For SMBs

The UK’s National Cyber Security Centre has launched a new online security guide to help smaller organizations better manage risk This article has been indexed from www.infosecurity-magazine.com Read the original article: NCSC Publishes Practical Security Guidance For SMBs

Two Ivanti Zero-Days Actively Exploited in the Wild

Ivanti has released mitigation steps after reports of active exploitation of Connect Secure and Policy Secure vulnerabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: Two Ivanti Zero-Days Actively Exploited in the Wild

Cyber Insecurity and Misinformation Top WEF Global Risk List

Cyber-attacks and misinformation top WEF’s list of global risks, with cybercrime poised to exploit tech advancements and AI dominance raising concerns about vulnerability This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber Insecurity and Misinformation Top WEF…

Cyber Insurance Market to be Worth Over $90bn by 2033

Market.Us found that the global cyber insurance market will be worth $90.6bn by 2033, driven by increasing cyber-threats and growing regulations This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber Insurance Market to be Worth Over $90bn…

Ukrainian “Blackjack” Hackers Take Out Russian ISP

State-backed Ukrainian hacking group Blackjack has launched a destructive attack against a Moscow-based ISP in retaliation for Kyivstar attack This article has been indexed from www.infosecurity-magazine.com Read the original article: Ukrainian “Blackjack” Hackers Take Out Russian ISP

Microsoft Fixes 12 RCE Bugs in January Patch Tuesday

Critical Hyper-V flaw one of 12 remote code execution vulnerabilities fixed this Patch Tuesday This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft Fixes 12 RCE Bugs in January Patch Tuesday

82% of Companies Struggle to Manage Security Exposure

The figure comes from XM Cyber’s 2024 State of Security Posture Report, exploring how organizations approach cybersecurity challenges This article has been indexed from www.infosecurity-magazine.com Read the original article: 82% of Companies Struggle to Manage Security Exposure

Cybersecurity Deals Boom as Investment Dips, Pinpoint Reports

2023 saw an increased number of deals in the cybersecurity industry, but the overall investment in the sector dropped, Pinpoint revealed This article has been indexed from www.infosecurity-magazine.com Read the original article: Cybersecurity Deals Boom as Investment Dips, Pinpoint Reports

Nigerian Gets 10 Years For Laundering Scam Funds

A Nigerian national has been sentenced to a decade behind bars for his role in romance and BEC scam This article has been indexed from www.infosecurity-magazine.com Read the original article: Nigerian Gets 10 Years For Laundering Scam Funds

LoanDepot Confirms Ransomware Attack in SEC Filing

Mortgage lender LoanDepot has revealed a ransomware breach resulting in stolen and encrypted data This article has been indexed from www.infosecurity-magazine.com Read the original article: LoanDepot Confirms Ransomware Attack in SEC Filing

Anti-Hezbollah Groups Hack Beirut Airport Screens

AP said departure and arrival screens displayed a message accusing Hezbollah of jeopardizing Lebanon This article has been indexed from www.infosecurity-magazine.com Read the original article: Anti-Hezbollah Groups Hack Beirut Airport Screens

Turkish APT Sea Turtle Resurfaces, Spies on Dutch IT Firms

Turkey-aligned espionage group Sea Turtle has been conducting campaigns targeting Dutch telecommunication and media organizations This article has been indexed from www.infosecurity-magazine.com Read the original article: Turkish APT Sea Turtle Resurfaces, Spies on Dutch IT Firms

North Korean Hackers Stole $600m in Crypto in 2023

North Korean hackers remain effective in stealing cryptocurrency despite growing international law enforcement action This article has been indexed from www.infosecurity-magazine.com Read the original article: North Korean Hackers Stole $600m in Crypto in 2023

Merck Settles With Insurers Over $700m NotPetya Claim

Pharma giant Merck has reached a settlement with cyber-insurers that refused to pay out for “acts of war” This article has been indexed from www.infosecurity-magazine.com Read the original article: Merck Settles With Insurers Over $700m NotPetya Claim

19 xDedic Cybercrime Market Users and Admins Face Prison

The dark web site’s infrastructure was taken down in 2019 following an international law enforcement operation This article has been indexed from www.infosecurity-magazine.com Read the original article: 19 xDedic Cybercrime Market Users and Admins Face Prison

Cyber-Attacks Drain $1.84bn from Web3 in 2023

A Certik report found there was $1.84bn in losses across 751 cybersecurity incidents targeting Web3 in 2023 This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber-Attacks Drain $1.84bn from Web3 in 2023

23andMe Blames User “Negligence” for Data Breach

A 23andMe letter sent to a legal firm representing victims of the data breach claims that users were at fault for recycling passwords This article has been indexed from www.infosecurity-magazine.com Read the original article: 23andMe Blames User “Negligence” for Data…

LastPass Enforces 12-Character Master Passwords

Password manager provider LastPass has started implementing stricter password measures for its customers This article has been indexed from www.infosecurity-magazine.com Read the original article: LastPass Enforces 12-Character Master Passwords

Ukraine Blames Russian Sandworm Hackers for Kyivstar Attack

Ukraine’s security service says Sandworm accessed Kyivstar’s system at least six months before launching the attack This article has been indexed from www.infosecurity-magazine.com Read the original article: Ukraine Blames Russian Sandworm Hackers for Kyivstar Attack

HealthEC Data Breach Impacts 4.5 Million Patients

HealthEC said that sensitive medical data was exposed in the breach, which is now thought to have impacted 4.5 million people This article has been indexed from www.infosecurity-magazine.com Read the original article: HealthEC Data Breach Impacts 4.5 Million Patients

Experts Clash Over Ransomware Payment Ban

Emsisoft has called for a complete ban on ransomware payments after another record-breaking year of attacks This article has been indexed from www.infosecurity-magazine.com Read the original article: Experts Clash Over Ransomware Payment Ban

Over 100 European Banks Face Cyber Resilience Test

The European Central Bank (ECB) will undertake a stress test on 109 European banks’ cyber-attack response capabilities after IT risk management shortfalls identified This article has been indexed from www.infosecurity-magazine.com Read the original article: Over 100 European Banks Face Cyber…

Fake and Stolen X Gold Accounts Flood Dark Web

CloudSEK explored some of the techniques threat actors have been using to forge or steal X Gold accounts since Elon Musk’s firm introduced its new verified accounts program This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake…

Xerox Business Solutions Reveals Security Breach

Imaging giant Xerox says it suffered a security incident, as ransomware group INC Ransom claims scalp This article has been indexed from www.infosecurity-magazine.com Read the original article: Xerox Business Solutions Reveals Security Breach

Australian Court Service Hacked, Hearing Recordings at Risk

Court Services Victoria said the incident may have compromised recordings involving people whose identities are protected This article has been indexed from www.infosecurity-magazine.com Read the original article: Australian Court Service Hacked, Hearing Recordings at Risk

Teen Found Alive After “Cyber-Kidnapping” Incident

A Chinese foreign exchange student has been found after online scammers extorted money from his parents This article has been indexed from www.infosecurity-magazine.com Read the original article: Teen Found Alive After “Cyber-Kidnapping” Incident

Black Basta Ransomware Decryptor Published

Researchers at SRLabs have revealed a new suite of decryption tools for Black Basta ransomware This article has been indexed from www.infosecurity-magazine.com Read the original article: Black Basta Ransomware Decryptor Published

Daily Malicious Files Soar 3% in 2023, Kaspersky Finds

Kaspersky reported an average of 411,000 malicious files deployed every day in 2023, according to its Security Bulletin: Statistics of the Year Report This article has been indexed from www.infosecurity-magazine.com Read the original article: Daily Malicious Files Soar 3% in…

Ransomware Leak Site Victims Reached Record-High in November

The number of victims listed on ransomware leak sites is up 110% year-on-year in November, according to Corvus Insurance This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Leak Site Victims Reached Record-High in November

SMS Scams Set to Peak on Saturday in UK

Telco EE warns of surge in text-based phishing messages as Christmas approaches This article has been indexed from www.infosecurity-magazine.com Read the original article: SMS Scams Set to Peak on Saturday in UK

Justice Secretary in Deepfake General Election Warning

Justice secretary Robert Buckland has warned that deepfakes could be used to spread election disinformation This article has been indexed from www.infosecurity-magazine.com Read the original article: Justice Secretary in Deepfake General Election Warning

Crypto Drainer Steals $59m Via Google and X Ads

Researchers are warning of new phishing campaigns using crypto drainer malware to steal virtual currency This article has been indexed from www.infosecurity-magazine.com Read the original article: Crypto Drainer Steals $59m Via Google and X Ads

BattleRoyal Cluster Signals DarkGate Surge

Proofpoint said the cluster’s use of multiple attack chains highlights a new trend among cybercriminals This article has been indexed from www.infosecurity-magazine.com Read the original article: BattleRoyal Cluster Signals DarkGate Surge

Fake Delivery Websites Surge By 34% in December

Group-IB says phishing sites mimicking postal operators have increased by a third in first 10 days of December This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake Delivery Websites Surge By 34% in December

Hospitality Industry Faces New Password-Stealing Malware

Sophos researchers said that the attackers’ social engineering tactics covered a range of guest scenarios This article has been indexed from www.infosecurity-magazine.com Read the original article: Hospitality Industry Faces New Password-Stealing Malware

Cyber-Incident Costs Surge 11% as Budgets Remain Muted

S-RM study finds the direct cost of a cyber-incident increased by 11% in 2023 to an average of $1.7m This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber-Incident Costs Surge 11% as Budgets Remain Muted

Global Police Seize $300m Linked to Online Scams

Interpol says its HAECHI IV operation led to the seizure of $300m linked to cyber scams and thousands of arrests This article has been indexed from www.infosecurity-magazine.com Read the original article: Global Police Seize $300m Linked to Online Scams

US and Australia Warn of Play Ransomware Threat

A joint advisory by US and Australian government agencies urges organizations to protect themselves against Play group’s tactics This article has been indexed from www.infosecurity-magazine.com Read the original article: US and Australia Warn of Play Ransomware Threat

Iranian Fuel Supplies Crippled By Cyber-Attack

Iranian minister confirms cyber-attack was cause of widespread disruption at petrol stations This article has been indexed from www.infosecurity-magazine.com Read the original article: Iranian Fuel Supplies Crippled By Cyber-Attack

UK Plans Tough New Security Rules For Datacenters

The British government is proposing minimum mandatory requirements for datacenter security and resilience This article has been indexed from www.infosecurity-magazine.com Read the original article: UK Plans Tough New Security Rules For Datacenters

GambleForce Group Targets Websites With SQL Injection

Group-IB warns of new threat actor GambleForce, which uses SQL injection attacks to steal data from websites This article has been indexed from www.infosecurity-magazine.com Read the original article: GambleForce Group Targets Websites With SQL Injection