Category: www.infosecurity-magazine.com

ISACA Addresses Experience Gap with CISA Associate Designation

The new CISA Associate designation recognizes ISACA members who have passed the CISA exam, but do not yet have the required experience This article has been indexed from www.infosecurity-magazine.com Read the original article: ISACA Addresses Experience Gap with CISA Associate…

British Man Sentenced for Network Rail Wi-Fi Hack

The man was handed a suspended prison sentence for offenses relating to the hack of Network Rail public Wi-Fi, exposing customers to offensive messaging This article has been indexed from www.infosecurity-magazine.com Read the original article: British Man Sentenced for Network…

Indian Cyber Espionage Group Targets Italian Government

DoNot APT, also known as APT-C-35, traditionally operates exclusively in South Asia This article has been indexed from www.infosecurity-magazine.com Read the original article: Indian Cyber Espionage Group Targets Italian Government

MPs Warn of “Significant” Iranian Cyber-Threat to UK

The Intelligence and Security Committee has warned of Iran’s “aggressive” and “extensive” cyber capabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: MPs Warn of “Significant” Iranian Cyber-Threat to UK

LLMs Fall Short in Vulnerability Discovery and Exploitation

Forescout found that most LLMs are unreliable in vulnerability research and exploit tasks, with threat actors still skeptical about using tools for these purposes This article has been indexed from www.infosecurity-magazine.com Read the original article: LLMs Fall Short in Vulnerability…

Four Arrested in Connection with April UK Retail Attacks

The NCA has arrested four individuals on suspicion of involvement in the attacks on M&S, Co-op and Harrods This article has been indexed from www.infosecurity-magazine.com Read the original article: Four Arrested in Connection with April UK Retail Attacks

Tribunal Ruling Brings ICO’s £12.7m TikTok Fine Closer

The UK ICO has welcomed a ruling in its favor in a long-running battle to issue a fine to TikTok This article has been indexed from www.infosecurity-magazine.com Read the original article: Tribunal Ruling Brings ICO’s £12.7m TikTok Fine Closer

Ransomware Attack Stops Nova Scotia Power Meter Readings

Nova Scotia Power revealed that a ransomware attack has prevented meters from sending energy usage data to its systems, impacting billing This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Attack Stops Nova Scotia Power Meter Readings

Chinese State-Sponsored Hacker Charged Over COVID-19 Research Theft

The US allege that the hacker stole critical COVID-19 research from universities at the behest of the Chinese government This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese State-Sponsored Hacker Charged Over COVID-19 Research Theft

Malicious Open Source Packages Surge 188% Annually

Sonatype’s latest Open Source Malware Index report has identified more than 16,000 malicious open source packages, representing a 188% annual increase This article has been indexed from www.infosecurity-magazine.com Read the original article: Malicious Open Source Packages Surge 188% Annually

New Bert Ransomware Group Strikes Globally with Multiple Variants

Trend Micro has observed the Bert ransomware group in operation since April 2025, with confirmed victims in sectors including healthcare, technology and event services This article has been indexed from www.infosecurity-magazine.com Read the original article: New Bert Ransomware Group Strikes…

Iran-Aligned Hacking Group Targets Middle Eastern Governments

Iran-aligned BladedFeline group has been observed targeting the government of Iraq and KRG with advanced malware This article has been indexed from www.infosecurity-magazine.com Read the original article: Iran-Aligned Hacking Group Targets Middle Eastern Governments

Hackers Target Employee Credentials Amid Spike in ID Attacks

Cybersecurity researchers have observed a 156% increase in credential theft incidents between 2024 and Q1 2025 This article has been indexed from www.infosecurity-magazine.com Read the original article: Hackers Target Employee Credentials Amid Spike in ID Attacks

Hundreds of Malicious Domains Registered Ahead of Prime Day

Check Point has discovered over 1000 suspicious domains registered in the run-up to Amazon Prime Day This article has been indexed from www.infosecurity-magazine.com Read the original article: Hundreds of Malicious Domains Registered Ahead of Prime Day

IT Giant Ingram Micro Reveals Ransomware Breach

Distributor Ingram Micro says it has found ransomware on its internal systems This article has been indexed from www.infosecurity-magazine.com Read the original article: IT Giant Ingram Micro Reveals Ransomware Breach

Taiwan Flags Chinese Apps Over Data Security Violations

Taiwan warned that popular Chinese-owned apps, including TikTok and Weibo, are harvesting personal data and sending it back to servers in China This article has been indexed from www.infosecurity-magazine.com Read the original article: Taiwan Flags Chinese Apps Over Data Security…

EU Launches Plan to Implement Quantum-Secure Infrastructure

The EU’s Quantum Strategy includes plans to develop secure quantum communication infrastructure across the region This article has been indexed from www.infosecurity-magazine.com Read the original article: EU Launches Plan to Implement Quantum-Secure Infrastructure

WordPress Plugin Flaw Exposes 600,000 Sites to File Deletion

A severe flaw identified in the Forminator WordPress plugin allows arbitrary file deletion and potential site takeover This article has been indexed from www.infosecurity-magazine.com Read the original article: WordPress Plugin Flaw Exposes 600,000 Sites to File Deletion

CVE Program Launches Two New Forums to Enhance CVE Utilization

The CVE Board has launched a Consumer Working Group and a Researcher Working Group, allowing new stakeholders to shape the future of the CVE Program This article has been indexed from www.infosecurity-magazine.com Read the original article: CVE Program Launches Two…

North Korean Hackers Target Crypto Firms with Novel macOS Malware

SentinelLabs observed North Korean actors deploying novel TTPs to target crypto firms, including a mix of programming languages and signal-based persistence This article has been indexed from www.infosecurity-magazine.com Read the original article: North Korean Hackers Target Crypto Firms with Novel…

Linux Users Urged to Patch Critical Sudo CVE

Two elevation of privilege vulnerabilities have been discovered on the popular Sudo utility, affecting 30-50 million endpoints in the US alone This article has been indexed from www.infosecurity-magazine.com Read the original article: Linux Users Urged to Patch Critical Sudo CVE

Android SMS Stealer Infects 100,000 Devices in Uzbekistan

New Android malware Qwizzserial has infected 100,000 devices, primarily in Uzbekistan, stealing SMS data via Telegram distribution This article has been indexed from www.infosecurity-magazine.com Read the original article: Android SMS Stealer Infects 100,000 Devices in Uzbekistan

AI Models Mislead Users on Login URLs

A third of AI-generated login URLs lead to incorrect or dangerous domains, according to Netcraft This article has been indexed from www.infosecurity-magazine.com Read the original article: AI Models Mislead Users on Login URLs

Chinese Hackers Target France in Ivanti Zero-Day Exploit Campaign

The French cybersecurity agency identified Houken, a new Chinese intrusion campaign targeting various industries in France This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese Hackers Target France in Ivanti Zero-Day Exploit Campaign

US Treasury Sanctions Russian Bulletproof Hosting Service Aeza Group

The Treasury said that Aeza Group has provided infrastructure services for notorious infostealer and ransomware operators This article has been indexed from www.infosecurity-magazine.com Read the original article: US Treasury Sanctions Russian Bulletproof Hosting Service Aeza Group

Dozens of Corporates Caught in Kelly Benefits Data Breach

Benefits admin specialist Kelly Benefits has revealed a breach impacting over 500,000 individuals across 45 client organizations This article has been indexed from www.infosecurity-magazine.com Read the original article: Dozens of Corporates Caught in Kelly Benefits Data Breach

Qantas Reveals “Significant” Contact Center Data Breach

Qantas admits that a “significant” volume of customer data may have been stolen from a contact center This article has been indexed from www.infosecurity-magazine.com Read the original article: Qantas Reveals “Significant” Contact Center Data Breach

Cloudflare Now Blocks AI Web Scraping by Default

Cloudflare now blocks AI web crawlers by default, requiring permission from site owners for access This article has been indexed from www.infosecurity-magazine.com Read the original article: Cloudflare Now Blocks AI Web Scraping by Default

Crypto Hack Losses in First Half of 2025 Exceed 2024 Total

CertiK found $2.47bn in crypto was stolen in H1 2025, largely due to two major security incidents – ByBit and Cetus This article has been indexed from www.infosecurity-magazine.com Read the original article: Crypto Hack Losses in First Half of 2025…

US DoJ and Microsoft Target North Korean IT Workers

Both the US authorities and Microsoft have taken action to disrupt North Korean IT worker schemes This article has been indexed from www.infosecurity-magazine.com Read the original article: US DoJ and Microsoft Target North Korean IT Workers

International Taskforce Dismantles €460m Crypto Fraud Network

A €460m cryptocurrency fraud scheme has been disrupted by authorities, leading to five arrests in Spain This article has been indexed from www.infosecurity-magazine.com Read the original article: International Taskforce Dismantles €460m Crypto Fraud Network

Scattered Spider Actively Targeting Airlines, FBI Warns

The FBI alert comes amid several reported cyber incidents impacting North America-based airlines, including Hawaiian Airlines This article has been indexed from www.infosecurity-magazine.com Read the original article: Scattered Spider Actively Targeting Airlines, FBI Warns

IT Worker Jailed After Revenge Attack on Employer

An IT worker has been jailed for launching a cyber-attack after he was suspended at work This article has been indexed from www.infosecurity-magazine.com Read the original article: IT Worker Jailed After Revenge Attack on Employer

Glasgow City Council Warns of Parking Fine Scam

Glasgow City Council is alerting residents to a parking scam which could be linked to a recent cyber-incident This article has been indexed from www.infosecurity-magazine.com Read the original article: Glasgow City Council Warns of Parking Fine Scam

Hawaiian Airlines Hit by Cybersecurity Incident

The US airline said that incident was affecting some of its IT systems, but flights are continuing to operate safely and as scheduled This article has been indexed from www.infosecurity-magazine.com Read the original article: Hawaiian Airlines Hit by Cybersecurity Incident

Hundreds of MCP Servers at Risk of RCE and Data Leaks

Misconfigured AI-linked MCP servers are exposing users to data breaches and remote code execution threats This article has been indexed from www.infosecurity-magazine.com Read the original article: Hundreds of MCP Servers at Risk of RCE and Data Leaks

Patient Death Linked to NHS Cyber-Attack

A patient’s death was linked to the 2024 ransomware attack on Synnovis, which disrupted NHS facilities This article has been indexed from www.infosecurity-magazine.com Read the original article: Patient Death Linked to NHS Cyber-Attack

ClickFix Attacks Surge 517% in 2025

The ClickFix social engineering technique has become the second most common attack vector, behind only phishing, according to ESET research This article has been indexed from www.infosecurity-magazine.com Read the original article: ClickFix Attacks Surge 517% in 2025

Interpol Warns of Rapid Rise in Cybercrime on African Continent

Interpol claims cybercrime has risen sharply in Africa with cyber-offences accounting for a “medium-to-high” share of all crime This article has been indexed from www.infosecurity-magazine.com Read the original article: Interpol Warns of Rapid Rise in Cybercrime on African Continent

NSA and CISA Urge Adoption of Memory Safe Languages for Safety

NSA and CISA are urging developers to adopt memory safe languages (MSLs) to combat vulnerabilities in software This article has been indexed from www.infosecurity-magazine.com Read the original article: NSA and CISA Urge Adoption of Memory Safe Languages for Safety

SAP GUI Input History Found Vulnerable to Weak Encryption

Two SAP GUI vulnerabilities have been identified exposing sensitive data due to weak encryption in input history features This article has been indexed from www.infosecurity-magazine.com Read the original article: SAP GUI Input History Found Vulnerable to Weak Encryption

Ransomware Attacks Dip in May Despite Persistent Retail Targeting

NCC Group found that ransomware attacks fell for the third consecutive month in May 2025, despite a surge in incidents impacting retailers This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Attacks Dip in May Despite Persistent…

Half of Customer Signups Are Now Fraudulent

Okta says over 46% of new customer registrations are bot-driven fraud attempts This article has been indexed from www.infosecurity-magazine.com Read the original article: Half of Customer Signups Are Now Fraudulent

Malware Campaign Uses Rogue WordPress Plugin to Skim Credit Cards

A long-running malware campaign targeting WordPress via a rogue plugin has been observed skimming data, stealing credentials and user profiling This article has been indexed from www.infosecurity-magazine.com Read the original article: Malware Campaign Uses Rogue WordPress Plugin to Skim Credit…

Mclaren Health Care Data Breach Impacts Over 743,000 Patients

Data breach at McLaren Health Care affecting over 743,000 individuals has been linked to a ransomware attack This article has been indexed from www.infosecurity-magazine.com Read the original article: Mclaren Health Care Data Breach Impacts Over 743,000 Patients

Half of Security Pros Want GenAI Deployment Pause

Cobalt found that many security professionals believe a “strategic pause” in genAI deployment is necessary to recalibrate defenses This article has been indexed from www.infosecurity-magazine.com Read the original article: Half of Security Pros Want GenAI Deployment Pause

Reported Impersonation Scams Surge 148% as AI Takes Hold

New ITRC data reveals identity crimes are down but impersonation scams now account for a third of all scams This article has been indexed from www.infosecurity-magazine.com Read the original article: Reported Impersonation Scams Surge 148% as AI Takes Hold

NCSC Urges Experts to Join Cyber Advisor Program

The NCSC says its Cyber Advisor program is not growing fast enough This article has been indexed from www.infosecurity-magazine.com Read the original article: NCSC Urges Experts to Join Cyber Advisor Program

Fake Web3 Wallet Prompt Steals $43,000 from CoinMarketCap Users

A cyber-attack on CoinMarketCap exposed users to a fake Web3 wallet prompt, draining $43,266 from wallets This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake Web3 Wallet Prompt Steals $43,000 from CoinMarketCap Users

Cyber Essentials Breaks Quarterly Record for Certifications

The UK government’s Cyber Essentials scheme hits 10,000 certifications for the first time in a quarter but challenges persist This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber Essentials Breaks Quarterly Record for Certifications

Chinese “LapDogs” ORB Network Targets US and Asia

SecurityScorecard has discovered a covert cyber-espionage botnet dubbed “LapDogs” linked to China This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese “LapDogs” ORB Network Targets US and Asia

M&S and Co-op Hacks Classified as Single Cyber Event

The UK’s Cyber Monitoring Centre (CMC) assessed the incident as a Category 2 systemic event, based on the significant economic impact This article has been indexed from www.infosecurity-magazine.com Read the original article: M&S and Co-op Hacks Classified as Single Cyber…

Personal Data of Oxford City Council Officers Exposed

Oxford City Council revealed that attackers accessed data of individuals who worked on Council-administered elections between 2001 and 2022 This article has been indexed from www.infosecurity-magazine.com Read the original article: Personal Data of Oxford City Council Officers Exposed

UK Gov Cybersecurity Jobs Average Salary is Under £45,000, Study Finds

Bridewell’s analysis of advertised UK cybersecurity roles revealed that the public sector offers one the lowest average salaries across all industries This article has been indexed from www.infosecurity-magazine.com Read the original article: UK Gov Cybersecurity Jobs Average Salary is Under…

Russia Expert Falls Prey to Elite Hackers Disguised as US Officials

A prominent expert on Russian information operations was targeted by a sophisticated spear phishing attack likely coming from Russian hackers This article has been indexed from www.infosecurity-magazine.com Read the original article: Russia Expert Falls Prey to Elite Hackers Disguised as…

Krispy Kreme Data Breach Puts Employees at Risk of Financial Fraud

Doughnut maker Krispy Kreme has revealed that sensitive financial and personal data of over 160,000 individuals has been impacted following a November 2024 cyber incident This article has been indexed from www.infosecurity-magazine.com Read the original article: Krispy Kreme Data Breach…

UBS Employee Data Reportedly Exposed in Third Party Attack

Banking giant UBS revealed it had suffered a data breach following a cyber-attack on procurement service provider Chain IQ This article has been indexed from www.infosecurity-magazine.com Read the original article: UBS Employee Data Reportedly Exposed in Third Party Attack

Alleged Ryuk Initial Access Broker Extradited to the US

An alleged former member of the infamous Ryuk ransomware group has been extradited to the US This article has been indexed from www.infosecurity-magazine.com Read the original article: Alleged Ryuk Initial Access Broker Extradited to the US

Critical Linux Flaws Discovered Allowing Root Access Exploits

Two critical Linux flaws allow unprivileged users to gain root access, affecting major distributions This article has been indexed from www.infosecurity-magazine.com Read the original article: Critical Linux Flaws Discovered Allowing Root Access Exploits