Sandworm deployed data wipers against Ukrainian governmental entities and companies in the energy, logistics and grain sectors This article has been indexed from www.infosecurity-magazine.com Read the original article: Russian Hacking Group Sandworm Deploys New Wiper Malware in Ukraine
Category: www.infosecurity-magazine.com
“I Paid Twice” Phishing Campaign Targets Booking.com
Experts have uncovered large-scale phishing exploiting Booking.com, Airbnb and Expedia accounts, targeting hotels and customers This article has been indexed from www.infosecurity-magazine.com Read the original article: “I Paid Twice” Phishing Campaign Targets Booking.com
Multi-Turn Attacks Expose Weaknesses in Open-Weight LLM Models
A new Cisco report exposed large language models to multi-turn adversarial attacks with 90% success rates This article has been indexed from www.infosecurity-magazine.com Read the original article: Multi-Turn Attacks Expose Weaknesses in Open-Weight LLM Models
Hacktivist-Driven DDoS Dominates Attacks on Public Sector
ENISA report reveals DDoS accounted for 60% of public sector security incidents last year This article has been indexed from www.infosecurity-magazine.com Read the original article: Hacktivist-Driven DDoS Dominates Attacks on Public Sector
AI-Enabled Malware Now Actively Deployed, Says Google
Google warns of “just-in-time AI” malware using LLMs to evade detection and generate malicious code on-demand This article has been indexed from www.infosecurity-magazine.com Read the original article: AI-Enabled Malware Now Actively Deployed, Says Google
Google Forecasts Rise of Cyber-Physical Attacks Targeting Europe in 2026
Europe will likely face a combination of heightened cyber-physical attacks and information operations coming from nation-state groups in 2026 This article has been indexed from www.infosecurity-magazine.com Read the original article: Google Forecasts Rise of Cyber-Physical Attacks Targeting Europe in 2026
Operation Chargeback Uncovers €300m Fraud Scheme in 193 Countries
Operation “Chargeback” has dismantled global fraud networks misusing stolen card data from more than 4.3 million victims This article has been indexed from www.infosecurity-magazine.com Read the original article: Operation Chargeback Uncovers €300m Fraud Scheme in 193 Countries
UNK_SmudgedSerpent Targets Academics With Political Lures
A previously unknown cyber actor UNK_SmudgedSerpent has been observed targeting academics with phishing and malware, merging techniques from Iranian groups This article has been indexed from www.infosecurity-magazine.com Read the original article: UNK_SmudgedSerpent Targets Academics With Political Lures
SMS Fraud Losses Set to Decline 11% in 2026
Juniper Research predicts a $9bn drop in losses to SMS fraud next year This article has been indexed from www.infosecurity-magazine.com Read the original article: SMS Fraud Losses Set to Decline 11% in 2026
Claude Desktop Extensions Vulnerable to Web-Based Prompt Injection
Three of Anthropic’s Claude Desktop extensions were vulnerable to command injection – flaws that have now been fixed This article has been indexed from www.infosecurity-magazine.com Read the original article: Claude Desktop Extensions Vulnerable to Web-Based Prompt Injection
Hundreds of Malware-Laden Apps Downloaded 42 Million Times From Google Play
Zscaler estimates 239 malicious Android apps made it onto the official Play store over the past year This article has been indexed from www.infosecurity-magazine.com Read the original article: Hundreds of Malware-Laden Apps Downloaded 42 Million Times From Google Play
Hundreds of Malware-Laden Apps Downloaded 41 Million Times From Google Play
Zscaler estimates 239 malicious Android apps made it onto the official Play store over the past year This article has been indexed from www.infosecurity-magazine.com Read the original article: Hundreds of Malware-Laden Apps Downloaded 41 Million Times From Google Play
French Police Seize €1.6m Amid Crypto Scam Network Crackdown
Nine alleged crypto scammers arrested in Cyprus, Germany and Spain This article has been indexed from www.infosecurity-magazine.com Read the original article: French Police Seize €1.6m Amid Crypto Scam Network Crackdown
OpenAI Assistants API Exploited in ‘SesameOp’ Backdoor
Instead of relying on more traditional methods, the backdoor exploits OpenAI’s Assistants API for command-and-control communications This article has been indexed from www.infosecurity-magazine.com Read the original article: OpenAI Assistants API Exploited in ‘SesameOp’ Backdoor
Scattered Spider, ShinyHunters and LAPSUS$ Form Unified Collective
Scattered Spider, ShinyHunters and LAPSUS$ have formed an enhanced coordinated threat network for extortion efforts This article has been indexed from www.infosecurity-magazine.com Read the original article: Scattered Spider, ShinyHunters and LAPSUS$ Form Unified Collective
DragonForce Cartel Emerges as Conti-Derived Ransomware Threat
DragonForce, a ransomware group using Conti’s code, has adopted a cartel model to expand and recruit This article has been indexed from www.infosecurity-magazine.com Read the original article: DragonForce Cartel Emerges as Conti-Derived Ransomware Threat
Identity Is Now the Top Source of Cloud Risk
ReliaQuest data reveals identity issues were responsible for 44% of cloud security alerts in Q3 This article has been indexed from www.infosecurity-magazine.com Read the original article: Identity Is Now the Top Source of Cloud Risk
DeFi Protocol Balancer Loses Over $120m in Cyber Heist
Digital thieves have got away with over $120m stolen from popular decentralized finance protocol Balancer This article has been indexed from www.infosecurity-magazine.com Read the original article: DeFi Protocol Balancer Loses Over $120m in Cyber Heist
CISA and NSA Outline Best Practices to Secure Exchange Servers
CISA and NSA have released a blueprint to enhance Microsoft Exchange Server security against cyber-attacks This article has been indexed from www.infosecurity-magazine.com Read the original article: CISA and NSA Outline Best Practices to Secure Exchange Servers
New GDI Flaws Could Enable Remote Code Execution in Windows
Flaws in Windows Graphics Device Interface (GDI) have been identified that allow remote code execution and information disclosure This article has been indexed from www.infosecurity-magazine.com Read the original article: New GDI Flaws Could Enable Remote Code Execution in Windows