Tag: www.infosecurity-magazine.com

Ransomware Deployed in Compromised SharePoint Servers

Microsoft said Chinese actor Storm-2603 is deploying Warlock ransomware following the exploitation of vulnerabilities in on-prem SharePoint systems This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Deployed in Compromised SharePoint Servers

UK and Romania Crack Down on ATM Fraudster Network

Investigators assessed that the criminal group’s stolen funds amount to €580,000 This article has been indexed from www.infosecurity-magazine.com Read the original article: UK and Romania Crack Down on ATM Fraudster Network

Active Campaign Exploits Cloud Flaws for Cryptomining

Wiz believes the active campaign is part of a broader crypto-scam infrastructure, which uses a wide range of exploitation techniques This article has been indexed from www.infosecurity-magazine.com Read the original article: Active Campaign Exploits Cloud Flaws for Cryptomining

New York Proposes Cybersecurity Regulations for Water Systems

A series of new cybersecurity regulations related to the water industry have been set out by New York state agencies This article has been indexed from www.infosecurity-magazine.com Read the original article: New York Proposes Cybersecurity Regulations for Water Systems

Suspected XSS Forum Admin Arrested in Ukraine

The individual is accused of numerous illicit cybercrime and ransomware activities that have generated at least $7m in profit This article has been indexed from www.infosecurity-magazine.com Read the original article: Suspected XSS Forum Admin Arrested in Ukraine

France: New Data Breach Could Affect 340,000 Jobseekers

The French employment agency’s partner web portal has been accessed by a malicious actor This article has been indexed from www.infosecurity-magazine.com Read the original article: France: New Data Breach Could Affect 340,000 Jobseekers

US Government Warns of Wide-Ranging Interlock Attacks

A joint US government advisory highlighted novel initial access techniques deployed by Interlock, and urged businesses and critical infrastructure to stay vigilant This article has been indexed from www.infosecurity-magazine.com Read the original article: US Government Warns of Wide-Ranging Interlock Attacks

Global Ransomware Attacks Plummet 43% in Q2 2025

NCC Group observed a 43% drop in ransomware attacks in Q2 2025, driven by law enforcement actions and internal conflicts in groups This article has been indexed from www.infosecurity-magazine.com Read the original article: Global Ransomware Attacks Plummet 43% in Q2…

Russian Threat Actors Target NGOs with New OAuth Phishing Tactics

A new wave of phishing attacks exploiting Microsoft 365 OAuth tools has been observed impersonating diplomats to steal access codes This article has been indexed from www.infosecurity-magazine.com Read the original article: Russian Threat Actors Target NGOs with New OAuth Phishing…

Widespread Net RFQ Scam Targets High-Value Goods

A widespread RFQ scam exploited net payment terms to fraudulently obtain high-value devices This article has been indexed from www.infosecurity-magazine.com Read the original article: Widespread Net RFQ Scam Targets High-Value Goods

UK Confirms Ransomware Payment Ban for Public Sector and CNI

The UK government said a public consultation showed widespread support on a payment ban for public sector and CNI organizations This article has been indexed from www.infosecurity-magazine.com Read the original article: UK Confirms Ransomware Payment Ban for Public Sector and…

Ransomware Group Uses AI Chatbot to Intensify Pressure on Victims

Despite being a rebrand of several ransomware families, GLOBAL GROUP innovated with the use of an AI chatbot in the negotiation process This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Group Uses AI Chatbot to Intensify…

Iranian Hackers Deploy New Android Spyware Version

New samples of DCHSpy, a spyware implant linked to Iranian APT group MuddyWater, were detected by Lookout one week after the start of the Israel-Iran conflict This article has been indexed from www.infosecurity-magazine.com Read the original article: Iranian Hackers Deploy…

Accounting Firm Targeted by Malware Campaign Using New Crypter

An attack on a US accounting firm delivered PureRAT via Ghost Crypt, involving social engineering and advanced obfuscation techniques This article has been indexed from www.infosecurity-magazine.com Read the original article: Accounting Firm Targeted by Malware Campaign Using New Crypter

Fake Receipt Generators Fuel Rise in Online Fraud

An investigation has revealed novel scams using tools like MaisonReceipts, creating realistic fake receipts to resell stolen or counterfeit good This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake Receipt Generators Fuel Rise in Online Fraud

Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers

On-prem SharePoint customers have been told to assume compromise, with attackers observed to be exfiltrating data from victim servers across critical sectors This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers

Russia Linked to New Malware Targeting Email Accounts for Espionage

Russian military intelligence-linked hackers are using a new malware called “Authentic Antics” to secretly access Microsoft cloud email accounts, the UK’s NCSC reports This article has been indexed from www.infosecurity-magazine.com Read the original article: Russia Linked to New Malware Targeting…

New “LameHug” Malware Deploys AI-Generated Commands

Ukraine’s CERT-UA has identified a new AI-powered malware, dubbed “LameHug,” which executes commands on compromised Windows systems in cyber-attacks, targeting the nation’s security and defense sector This article has been indexed from www.infosecurity-magazine.com Read the original article: New “LameHug” Malware…

Retail Becomes New Target as Healthcare Ransomware Attacks Slow

Comparitech found that healthcare ransomware attacks rose 4% in H1 2025, a significantly lower rate than the cross-sector average of 50% This article has been indexed from www.infosecurity-magazine.com Read the original article: Retail Becomes New Target as Healthcare Ransomware Attacks…

AI-Generated Lcryx Ransomware Discovered in Cryptomining Botnet

A cryptomining botnet active since 2019 has incorporated likely AI-generated Lcryx ransomware into its operations This article has been indexed from www.infosecurity-magazine.com Read the original article: AI-Generated Lcryx Ransomware Discovered in Cryptomining Botnet

AI Cloaking Tools Enable Harder-to-Detect Cyber-Attacks

Cybercriminals are using AI cloaking tools to evade detection, disguising phishing and malware sites This article has been indexed from www.infosecurity-magazine.com Read the original article: AI Cloaking Tools Enable Harder-to-Detect Cyber-Attacks

Microsoft Exposes Scattered Spider’s Latest Tactics

Microsoft has reported Scattered Spider continues to evolve tactics to compromise both on-premises infrastructure and cloud environments This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft Exposes Scattered Spider’s Latest Tactics

One in 12 US/UK Employees Uses Chinese GenAI Tools

Harmonic Security raises the alarm as one in 12 British and American employees uses Chinese GenAI tools This article has been indexed from www.infosecurity-magazine.com Read the original article: One in 12 US/UK Employees Uses Chinese GenAI Tools

Pro-Russian Cybercrime Network Demolished in Operation Eastwood

A Europol coordinated operation has taken down key infrastructure used by pro-Russian hacktivist group NoName057(16), as well as a number of arrests This article has been indexed from www.infosecurity-magazine.com Read the original article: Pro-Russian Cybercrime Network Demolished in Operation Eastwood

SquidLoader Malware Campaign Targets Hong Kong Financial Sector

A new malware campaign targeting Hong Kong finance has been identified, featuring SquidLoader to deploy Cobalt Strike Beacon This article has been indexed from www.infosecurity-magazine.com Read the original article: SquidLoader Malware Campaign Targets Hong Kong Financial Sector

Most European Financial Firms Still Lagging on DORA Compliance

A Veeam survey found that 96% of financial services organizations believe their current levels of data resilience falls short of DORA compliance, citing major challenges This article has been indexed from www.infosecurity-magazine.com Read the original article: Most European Financial Firms…

US Data Breaches Head for Another Record Year After 11% Surge

There were 1732 publicly reported US data breaches in the first half of 2025, according to the latest ITRC report This article has been indexed from www.infosecurity-magazine.com Read the original article: US Data Breaches Head for Another Record Year After…

Over 5.4 Million Affected in Healthcare Data Breach at Episource

A data breach at Episource has exposed the personal information of 5.4 million individuals after attackers accessed systems for 10 days This article has been indexed from www.infosecurity-magazine.com Read the original article: Over 5.4 Million Affected in Healthcare Data Breach…

Retail Ransomware Attacks Jump 58% Globally in Q2 2025

BlackFog found that publicly disclosed ransomware attacks on retail grew significantly in Q2 compared to Q1, with UK firms heavily targeted This article has been indexed from www.infosecurity-magazine.com Read the original article: Retail Ransomware Attacks Jump 58% Globally in Q2…

Education Sector is Most Exposed to Remote Attacks

CyCognito research finds that a third of education sector APIs, web apps and cloud assets are exposed to attack This article has been indexed from www.infosecurity-magazine.com Read the original article: Education Sector is Most Exposed to Remote Attacks

Cloudflare Blocks Record-Breaking 7.3 Tbps DDoS Attack

Cloudflare highlighted a huge rise in hyper-volumetric DDoS attacks in Q2 2025, with attackers seeking to overwhelm defenses This article has been indexed from www.infosecurity-magazine.com Read the original article: Cloudflare Blocks Record-Breaking 7.3 Tbps DDoS Attack

Co-op Aims to Divert More Young Hackers into Cyber Careers

The Co-op is teaming up with The Hacking Games to inspire pathways into ethical cybersecurity careers This article has been indexed from www.infosecurity-magazine.com Read the original article: Co-op Aims to Divert More Young Hackers into Cyber Careers

MITRE Launches New Framework to Tackle Crypto Risks

MITRE has introduced AADAPT framework, a new cybersecurity framework aimed at mitigating risks in digital financial systems like cryptocurrency This article has been indexed from www.infosecurity-magazine.com Read the original article: MITRE Launches New Framework to Tackle Crypto Risks

Threat Actors Exploit SVG Files in Stealthy JavaScript Redirects

A new phishing campaign uses SVG files for JavaScript redirects, bypassing traditional detection methods This article has been indexed from www.infosecurity-magazine.com Read the original article: Threat Actors Exploit SVG Files in Stealthy JavaScript Redirects

SaaS Security Adoption Grows Amid Rising Breach Rates

The latest report from AppOmni has revealed 91% confidence in SaaS security while 75% of organizations have faced incidents This article has been indexed from www.infosecurity-magazine.com Read the original article: SaaS Security Adoption Grows Amid Rising Breach Rates

Abacus Market Shutters After Exit Scam, Say Experts

Darknet giant Abacus Market has gone offline due to a likely exit scam, according to TRM Labs This article has been indexed from www.infosecurity-magazine.com Read the original article: Abacus Market Shutters After Exit Scam, Say Experts

NCSC Launches Vulnerability Research Institute to Boost UK Resilience

The NCSC’s new Vulnerability Research Institute will help it develop outreach with the external cybersecurity community This article has been indexed from www.infosecurity-magazine.com Read the original article: NCSC Launches Vulnerability Research Institute to Boost UK Resilience

IoT Devices at Risk Due to eSIM Flaw in Kigen eUICC Cards

A vulnerability in Kigen eUICC cards has exposed billions of IoT devices via flawed eSIM profile management This article has been indexed from www.infosecurity-magazine.com Read the original article: IoT Devices at Risk Due to eSIM Flaw in Kigen eUICC Cards

Interlock Ransomware Unleashes New RAT in Widespread Campaign

Interlock ransomware continues to develop custom tooling and a new RAT has been detected by researchers This article has been indexed from www.infosecurity-magazine.com Read the original article: Interlock Ransomware Unleashes New RAT in Widespread Campaign

Louis Vuitton UK Latest Retailer Hit by Data Breach

Louis Vuitton’s UK business has notified customers of a personal data breach This article has been indexed from www.infosecurity-magazine.com Read the original article: Louis Vuitton UK Latest Retailer Hit by Data Breach

Indian Police Raid Tech Support Scam Call Center

Operation Chakra-V scores success as a fraud syndicate is busted following the raid of a scam call center operating in Noida, Uttar Pradesh This article has been indexed from www.infosecurity-magazine.com Read the original article: Indian Police Raid Tech Support Scam…

ISACA Addresses Experience Gap with CISA Associate Designation

The new CISA Associate designation recognizes ISACA members who have passed the CISA exam, but do not yet have the required experience This article has been indexed from www.infosecurity-magazine.com Read the original article: ISACA Addresses Experience Gap with CISA Associate…

British Man Sentenced for Network Rail Wi-Fi Hack

The man was handed a suspended prison sentence for offenses relating to the hack of Network Rail public Wi-Fi, exposing customers to offensive messaging This article has been indexed from www.infosecurity-magazine.com Read the original article: British Man Sentenced for Network…

Indian Cyber Espionage Group Targets Italian Government

DoNot APT, also known as APT-C-35, traditionally operates exclusively in South Asia This article has been indexed from www.infosecurity-magazine.com Read the original article: Indian Cyber Espionage Group Targets Italian Government

MPs Warn of “Significant” Iranian Cyber-Threat to UK

The Intelligence and Security Committee has warned of Iran’s “aggressive” and “extensive” cyber capabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: MPs Warn of “Significant” Iranian Cyber-Threat to UK

LLMs Fall Short in Vulnerability Discovery and Exploitation

Forescout found that most LLMs are unreliable in vulnerability research and exploit tasks, with threat actors still skeptical about using tools for these purposes This article has been indexed from www.infosecurity-magazine.com Read the original article: LLMs Fall Short in Vulnerability…

Four Arrested in Connection with April UK Retail Attacks

The NCA has arrested four individuals on suspicion of involvement in the attacks on M&S, Co-op and Harrods This article has been indexed from www.infosecurity-magazine.com Read the original article: Four Arrested in Connection with April UK Retail Attacks

Tribunal Ruling Brings ICO’s £12.7m TikTok Fine Closer

The UK ICO has welcomed a ruling in its favor in a long-running battle to issue a fine to TikTok This article has been indexed from www.infosecurity-magazine.com Read the original article: Tribunal Ruling Brings ICO’s £12.7m TikTok Fine Closer

Ransomware Attack Stops Nova Scotia Power Meter Readings

Nova Scotia Power revealed that a ransomware attack has prevented meters from sending energy usage data to its systems, impacting billing This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Attack Stops Nova Scotia Power Meter Readings

Chinese State-Sponsored Hacker Charged Over COVID-19 Research Theft

The US allege that the hacker stole critical COVID-19 research from universities at the behest of the Chinese government This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese State-Sponsored Hacker Charged Over COVID-19 Research Theft

Malicious Open Source Packages Surge 188% Annually

Sonatype’s latest Open Source Malware Index report has identified more than 16,000 malicious open source packages, representing a 188% annual increase This article has been indexed from www.infosecurity-magazine.com Read the original article: Malicious Open Source Packages Surge 188% Annually

New Bert Ransomware Group Strikes Globally with Multiple Variants

Trend Micro has observed the Bert ransomware group in operation since April 2025, with confirmed victims in sectors including healthcare, technology and event services This article has been indexed from www.infosecurity-magazine.com Read the original article: New Bert Ransomware Group Strikes…

Iran-Aligned Hacking Group Targets Middle Eastern Governments

Iran-aligned BladedFeline group has been observed targeting the government of Iraq and KRG with advanced malware This article has been indexed from www.infosecurity-magazine.com Read the original article: Iran-Aligned Hacking Group Targets Middle Eastern Governments

Hackers Target Employee Credentials Amid Spike in ID Attacks

Cybersecurity researchers have observed a 156% increase in credential theft incidents between 2024 and Q1 2025 This article has been indexed from www.infosecurity-magazine.com Read the original article: Hackers Target Employee Credentials Amid Spike in ID Attacks

Hundreds of Malicious Domains Registered Ahead of Prime Day

Check Point has discovered over 1000 suspicious domains registered in the run-up to Amazon Prime Day This article has been indexed from www.infosecurity-magazine.com Read the original article: Hundreds of Malicious Domains Registered Ahead of Prime Day

IT Giant Ingram Micro Reveals Ransomware Breach

Distributor Ingram Micro says it has found ransomware on its internal systems This article has been indexed from www.infosecurity-magazine.com Read the original article: IT Giant Ingram Micro Reveals Ransomware Breach

Taiwan Flags Chinese Apps Over Data Security Violations

Taiwan warned that popular Chinese-owned apps, including TikTok and Weibo, are harvesting personal data and sending it back to servers in China This article has been indexed from www.infosecurity-magazine.com Read the original article: Taiwan Flags Chinese Apps Over Data Security…

EU Launches Plan to Implement Quantum-Secure Infrastructure

The EU’s Quantum Strategy includes plans to develop secure quantum communication infrastructure across the region This article has been indexed from www.infosecurity-magazine.com Read the original article: EU Launches Plan to Implement Quantum-Secure Infrastructure

WordPress Plugin Flaw Exposes 600,000 Sites to File Deletion

A severe flaw identified in the Forminator WordPress plugin allows arbitrary file deletion and potential site takeover This article has been indexed from www.infosecurity-magazine.com Read the original article: WordPress Plugin Flaw Exposes 600,000 Sites to File Deletion

CVE Program Launches Two New Forums to Enhance CVE Utilization

The CVE Board has launched a Consumer Working Group and a Researcher Working Group, allowing new stakeholders to shape the future of the CVE Program This article has been indexed from www.infosecurity-magazine.com Read the original article: CVE Program Launches Two…

North Korean Hackers Target Crypto Firms with Novel macOS Malware

SentinelLabs observed North Korean actors deploying novel TTPs to target crypto firms, including a mix of programming languages and signal-based persistence This article has been indexed from www.infosecurity-magazine.com Read the original article: North Korean Hackers Target Crypto Firms with Novel…

Linux Users Urged to Patch Critical Sudo CVE

Two elevation of privilege vulnerabilities have been discovered on the popular Sudo utility, affecting 30-50 million endpoints in the US alone This article has been indexed from www.infosecurity-magazine.com Read the original article: Linux Users Urged to Patch Critical Sudo CVE

Android SMS Stealer Infects 100,000 Devices in Uzbekistan

New Android malware Qwizzserial has infected 100,000 devices, primarily in Uzbekistan, stealing SMS data via Telegram distribution This article has been indexed from www.infosecurity-magazine.com Read the original article: Android SMS Stealer Infects 100,000 Devices in Uzbekistan

AI Models Mislead Users on Login URLs

A third of AI-generated login URLs lead to incorrect or dangerous domains, according to Netcraft This article has been indexed from www.infosecurity-magazine.com Read the original article: AI Models Mislead Users on Login URLs

Chinese Hackers Target France in Ivanti Zero-Day Exploit Campaign

The French cybersecurity agency identified Houken, a new Chinese intrusion campaign targeting various industries in France This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese Hackers Target France in Ivanti Zero-Day Exploit Campaign

US Treasury Sanctions Russian Bulletproof Hosting Service Aeza Group

The Treasury said that Aeza Group has provided infrastructure services for notorious infostealer and ransomware operators This article has been indexed from www.infosecurity-magazine.com Read the original article: US Treasury Sanctions Russian Bulletproof Hosting Service Aeza Group

Dozens of Corporates Caught in Kelly Benefits Data Breach

Benefits admin specialist Kelly Benefits has revealed a breach impacting over 500,000 individuals across 45 client organizations This article has been indexed from www.infosecurity-magazine.com Read the original article: Dozens of Corporates Caught in Kelly Benefits Data Breach

Qantas Reveals “Significant” Contact Center Data Breach

Qantas admits that a “significant” volume of customer data may have been stolen from a contact center This article has been indexed from www.infosecurity-magazine.com Read the original article: Qantas Reveals “Significant” Contact Center Data Breach

Cloudflare Now Blocks AI Web Scraping by Default

Cloudflare now blocks AI web crawlers by default, requiring permission from site owners for access This article has been indexed from www.infosecurity-magazine.com Read the original article: Cloudflare Now Blocks AI Web Scraping by Default

Crypto Hack Losses in First Half of 2025 Exceed 2024 Total

CertiK found $2.47bn in crypto was stolen in H1 2025, largely due to two major security incidents – ByBit and Cetus This article has been indexed from www.infosecurity-magazine.com Read the original article: Crypto Hack Losses in First Half of 2025…