A series of new cybersecurity regulations related to the water industry have been set out by New York state agencies This article has been indexed from www.infosecurity-magazine.com Read the original article: New York Proposes Cybersecurity Regulations for Water Systems
Category: www.infosecurity-magazine.com
Suspected XSS Forum Admin Arrested in Ukraine
The individual is accused of numerous illicit cybercrime and ransomware activities that have generated at least $7m in profit This article has been indexed from www.infosecurity-magazine.com Read the original article: Suspected XSS Forum Admin Arrested in Ukraine
France: New Data Breach Could Affect 340,000 Jobseekers
The French employment agency’s partner web portal has been accessed by a malicious actor This article has been indexed from www.infosecurity-magazine.com Read the original article: France: New Data Breach Could Affect 340,000 Jobseekers
Clorox Sues IT Service Provider Cognizant for Causing 2023 Cyber-Attack
Cognizant handed over a password to the cybercriminal without asking any authentication questions This article has been indexed from www.infosecurity-magazine.com Read the original article: Clorox Sues IT Service Provider Cognizant for Causing 2023 Cyber-Attack
US Government Warns of Wide-Ranging Interlock Attacks
A joint US government advisory highlighted novel initial access techniques deployed by Interlock, and urged businesses and critical infrastructure to stay vigilant This article has been indexed from www.infosecurity-magazine.com Read the original article: US Government Warns of Wide-Ranging Interlock Attacks
Global Ransomware Attacks Plummet 43% in Q2 2025
NCC Group observed a 43% drop in ransomware attacks in Q2 2025, driven by law enforcement actions and internal conflicts in groups This article has been indexed from www.infosecurity-magazine.com Read the original article: Global Ransomware Attacks Plummet 43% in Q2…
Russian Threat Actors Target NGOs with New OAuth Phishing Tactics
A new wave of phishing attacks exploiting Microsoft 365 OAuth tools has been observed impersonating diplomats to steal access codes This article has been indexed from www.infosecurity-magazine.com Read the original article: Russian Threat Actors Target NGOs with New OAuth Phishing…
Widespread Net RFQ Scam Targets High-Value Goods
A widespread RFQ scam exploited net payment terms to fraudulently obtain high-value devices This article has been indexed from www.infosecurity-magazine.com Read the original article: Widespread Net RFQ Scam Targets High-Value Goods
SharePoint ‘ToolShell’ Vulnerabilities Exploited by Chinese Nation-State Hackers
Microsoft has observed three China-based threat actors, Linen Typhoon, Violet Typhoon and Storm-2603, exploiting the SharePoint vulnerabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: SharePoint ‘ToolShell’ Vulnerabilities Exploited by Chinese Nation-State Hackers
UK Confirms Ransomware Payment Ban for Public Sector and CNI
The UK government said a public consultation showed widespread support on a payment ban for public sector and CNI organizations This article has been indexed from www.infosecurity-magazine.com Read the original article: UK Confirms Ransomware Payment Ban for Public Sector and…
Ransomware Group Uses AI Chatbot to Intensify Pressure on Victims
Despite being a rebrand of several ransomware families, GLOBAL GROUP innovated with the use of an AI chatbot in the negotiation process This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Group Uses AI Chatbot to Intensify…
Australian Regulator Alleges Financial Firm Exposed Clients to Unacceptable Cyber Risks
ASIC said the financial services firm’s failings led to a data breach impacting nearly 10,000 clients This article has been indexed from www.infosecurity-magazine.com Read the original article: Australian Regulator Alleges Financial Firm Exposed Clients to Unacceptable Cyber Risks
AI Adoption is Driving SOC Role Reallocation Without Cutting Headcount
Abnormal AI found that 96% of security leaders have no plans to reduce the headcount in SOC teams as a result of AI adoption, instead focusing on reallocating roles This article has been indexed from www.infosecurity-magazine.com Read the original article:…
Iranian Hackers Deploy New Android Spyware Version
New samples of DCHSpy, a spyware implant linked to Iranian APT group MuddyWater, were detected by Lookout one week after the start of the Israel-Iran conflict This article has been indexed from www.infosecurity-magazine.com Read the original article: Iranian Hackers Deploy…
Accounting Firm Targeted by Malware Campaign Using New Crypter
An attack on a US accounting firm delivered PureRAT via Ghost Crypt, involving social engineering and advanced obfuscation techniques This article has been indexed from www.infosecurity-magazine.com Read the original article: Accounting Firm Targeted by Malware Campaign Using New Crypter
Fake Receipt Generators Fuel Rise in Online Fraud
An investigation has revealed novel scams using tools like MaisonReceipts, creating realistic fake receipts to resell stolen or counterfeit good This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake Receipt Generators Fuel Rise in Online Fraud
New CrushFTP Critical Vulnerability Exploited in the Wild
CVE-2025-54309 could allow remote attackers to obtain admin access via HTTPS This article has been indexed from www.infosecurity-magazine.com Read the original article: New CrushFTP Critical Vulnerability Exploited in the Wild
Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers
On-prem SharePoint customers have been told to assume compromise, with attackers observed to be exfiltrating data from victim servers across critical sectors This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers
CISA Issues Advisories on Critical ICS Vulnerabilities Across Multiple Sectors
The US CISA has issued advisories for Industrial Control Systems vulnerabilities affecting multiple vendors including Johnson Controls, ABB, Hitachi Energy, and Schneider Electric This article has been indexed from www.infosecurity-magazine.com Read the original article: CISA Issues Advisories on Critical ICS…
Russia Linked to New Malware Targeting Email Accounts for Espionage
Russian military intelligence-linked hackers are using a new malware called “Authentic Antics” to secretly access Microsoft cloud email accounts, the UK’s NCSC reports This article has been indexed from www.infosecurity-magazine.com Read the original article: Russia Linked to New Malware Targeting…