Tag: www.infosecurity-magazine.com

US DoJ and Microsoft Target North Korean IT Workers

Both the US authorities and Microsoft have taken action to disrupt North Korean IT worker schemes This article has been indexed from www.infosecurity-magazine.com Read the original article: US DoJ and Microsoft Target North Korean IT Workers

International Taskforce Dismantles €460m Crypto Fraud Network

A €460m cryptocurrency fraud scheme has been disrupted by authorities, leading to five arrests in Spain This article has been indexed from www.infosecurity-magazine.com Read the original article: International Taskforce Dismantles €460m Crypto Fraud Network

Scattered Spider Actively Targeting Airlines, FBI Warns

The FBI alert comes amid several reported cyber incidents impacting North America-based airlines, including Hawaiian Airlines This article has been indexed from www.infosecurity-magazine.com Read the original article: Scattered Spider Actively Targeting Airlines, FBI Warns

IT Worker Jailed After Revenge Attack on Employer

An IT worker has been jailed for launching a cyber-attack after he was suspended at work This article has been indexed from www.infosecurity-magazine.com Read the original article: IT Worker Jailed After Revenge Attack on Employer

Glasgow City Council Warns of Parking Fine Scam

Glasgow City Council is alerting residents to a parking scam which could be linked to a recent cyber-incident This article has been indexed from www.infosecurity-magazine.com Read the original article: Glasgow City Council Warns of Parking Fine Scam

Hawaiian Airlines Hit by Cybersecurity Incident

The US airline said that incident was affecting some of its IT systems, but flights are continuing to operate safely and as scheduled This article has been indexed from www.infosecurity-magazine.com Read the original article: Hawaiian Airlines Hit by Cybersecurity Incident

Hundreds of MCP Servers at Risk of RCE and Data Leaks

Misconfigured AI-linked MCP servers are exposing users to data breaches and remote code execution threats This article has been indexed from www.infosecurity-magazine.com Read the original article: Hundreds of MCP Servers at Risk of RCE and Data Leaks

Patient Death Linked to NHS Cyber-Attack

A patient’s death was linked to the 2024 ransomware attack on Synnovis, which disrupted NHS facilities This article has been indexed from www.infosecurity-magazine.com Read the original article: Patient Death Linked to NHS Cyber-Attack

ClickFix Attacks Surge 517% in 2025

The ClickFix social engineering technique has become the second most common attack vector, behind only phishing, according to ESET research This article has been indexed from www.infosecurity-magazine.com Read the original article: ClickFix Attacks Surge 517% in 2025

Interpol Warns of Rapid Rise in Cybercrime on African Continent

Interpol claims cybercrime has risen sharply in Africa with cyber-offences accounting for a “medium-to-high” share of all crime This article has been indexed from www.infosecurity-magazine.com Read the original article: Interpol Warns of Rapid Rise in Cybercrime on African Continent

NSA and CISA Urge Adoption of Memory Safe Languages for Safety

NSA and CISA are urging developers to adopt memory safe languages (MSLs) to combat vulnerabilities in software This article has been indexed from www.infosecurity-magazine.com Read the original article: NSA and CISA Urge Adoption of Memory Safe Languages for Safety

SAP GUI Input History Found Vulnerable to Weak Encryption

Two SAP GUI vulnerabilities have been identified exposing sensitive data due to weak encryption in input history features This article has been indexed from www.infosecurity-magazine.com Read the original article: SAP GUI Input History Found Vulnerable to Weak Encryption

Ransomware Attacks Dip in May Despite Persistent Retail Targeting

NCC Group found that ransomware attacks fell for the third consecutive month in May 2025, despite a surge in incidents impacting retailers This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Attacks Dip in May Despite Persistent…

Half of Customer Signups Are Now Fraudulent

Okta says over 46% of new customer registrations are bot-driven fraud attempts This article has been indexed from www.infosecurity-magazine.com Read the original article: Half of Customer Signups Are Now Fraudulent

Malware Campaign Uses Rogue WordPress Plugin to Skim Credit Cards

A long-running malware campaign targeting WordPress via a rogue plugin has been observed skimming data, stealing credentials and user profiling This article has been indexed from www.infosecurity-magazine.com Read the original article: Malware Campaign Uses Rogue WordPress Plugin to Skim Credit…

Mclaren Health Care Data Breach Impacts Over 743,000 Patients

Data breach at McLaren Health Care affecting over 743,000 individuals has been linked to a ransomware attack This article has been indexed from www.infosecurity-magazine.com Read the original article: Mclaren Health Care Data Breach Impacts Over 743,000 Patients

Half of Security Pros Want GenAI Deployment Pause

Cobalt found that many security professionals believe a “strategic pause” in genAI deployment is necessary to recalibrate defenses This article has been indexed from www.infosecurity-magazine.com Read the original article: Half of Security Pros Want GenAI Deployment Pause

Reported Impersonation Scams Surge 148% as AI Takes Hold

New ITRC data reveals identity crimes are down but impersonation scams now account for a third of all scams This article has been indexed from www.infosecurity-magazine.com Read the original article: Reported Impersonation Scams Surge 148% as AI Takes Hold

NCSC Urges Experts to Join Cyber Advisor Program

The NCSC says its Cyber Advisor program is not growing fast enough This article has been indexed from www.infosecurity-magazine.com Read the original article: NCSC Urges Experts to Join Cyber Advisor Program

Fake Web3 Wallet Prompt Steals $43,000 from CoinMarketCap Users

A cyber-attack on CoinMarketCap exposed users to a fake Web3 wallet prompt, draining $43,266 from wallets This article has been indexed from www.infosecurity-magazine.com Read the original article: Fake Web3 Wallet Prompt Steals $43,000 from CoinMarketCap Users

Cyber Essentials Breaks Quarterly Record for Certifications

The UK government’s Cyber Essentials scheme hits 10,000 certifications for the first time in a quarter but challenges persist This article has been indexed from www.infosecurity-magazine.com Read the original article: Cyber Essentials Breaks Quarterly Record for Certifications

Chinese “LapDogs” ORB Network Targets US and Asia

SecurityScorecard has discovered a covert cyber-espionage botnet dubbed “LapDogs” linked to China This article has been indexed from www.infosecurity-magazine.com Read the original article: Chinese “LapDogs” ORB Network Targets US and Asia

M&S and Co-op Hacks Classified as Single Cyber Event

The UK’s Cyber Monitoring Centre (CMC) assessed the incident as a Category 2 systemic event, based on the significant economic impact This article has been indexed from www.infosecurity-magazine.com Read the original article: M&S and Co-op Hacks Classified as Single Cyber…

Personal Data of Oxford City Council Officers Exposed

Oxford City Council revealed that attackers accessed data of individuals who worked on Council-administered elections between 2001 and 2022 This article has been indexed from www.infosecurity-magazine.com Read the original article: Personal Data of Oxford City Council Officers Exposed

UK Gov Cybersecurity Jobs Average Salary is Under £45,000, Study Finds

Bridewell’s analysis of advertised UK cybersecurity roles revealed that the public sector offers one the lowest average salaries across all industries This article has been indexed from www.infosecurity-magazine.com Read the original article: UK Gov Cybersecurity Jobs Average Salary is Under…

Russia Expert Falls Prey to Elite Hackers Disguised as US Officials

A prominent expert on Russian information operations was targeted by a sophisticated spear phishing attack likely coming from Russian hackers This article has been indexed from www.infosecurity-magazine.com Read the original article: Russia Expert Falls Prey to Elite Hackers Disguised as…

Krispy Kreme Data Breach Puts Employees at Risk of Financial Fraud

Doughnut maker Krispy Kreme has revealed that sensitive financial and personal data of over 160,000 individuals has been impacted following a November 2024 cyber incident This article has been indexed from www.infosecurity-magazine.com Read the original article: Krispy Kreme Data Breach…

UBS Employee Data Reportedly Exposed in Third Party Attack

Banking giant UBS revealed it had suffered a data breach following a cyber-attack on procurement service provider Chain IQ This article has been indexed from www.infosecurity-magazine.com Read the original article: UBS Employee Data Reportedly Exposed in Third Party Attack

Alleged Ryuk Initial Access Broker Extradited to the US

An alleged former member of the infamous Ryuk ransomware group has been extradited to the US This article has been indexed from www.infosecurity-magazine.com Read the original article: Alleged Ryuk Initial Access Broker Extradited to the US

Critical Linux Flaws Discovered Allowing Root Access Exploits

Two critical Linux flaws allow unprivileged users to gain root access, affecting major distributions This article has been indexed from www.infosecurity-magazine.com Read the original article: Critical Linux Flaws Discovered Allowing Root Access Exploits

AI Now Generates Majority of Spam and Malicious Emails

Barracuda observed a big spike in spam emails generated using AI tools, making up the majority detected in April 2025 This article has been indexed from www.infosecurity-magazine.com Read the original article: AI Now Generates Majority of Spam and Malicious Emails

GodFather Malware Upgraded to Hijack Legitimate Mobile Apps

Upgraded GodFather banking malware now uses on-device virtualization to hijack apps, enabling real-time fraud This article has been indexed from www.infosecurity-magazine.com Read the original article: GodFather Malware Upgraded to Hijack Legitimate Mobile Apps

ClickFix Helps Infostealers Use MHSTA for Defense Evasion

ClickFix techniques are enabling threat actors to bypass defenses using tools like MSHTA, says ReliaQuest This article has been indexed from www.infosecurity-magazine.com Read the original article: ClickFix Helps Infostealers Use MHSTA for Defense Evasion

UK Government Publishes Plan to Boost Cyber Sector Growth

The new Cyber Growth Action Plan aims to support the UK’s cyber industry, including the development of innovative new technologies and startups This article has been indexed from www.infosecurity-magazine.com Read the original article: UK Government Publishes Plan to Boost Cyber…

Ransomware Group Qilin Offers Legal Counsel to Affiliates

The group positions itself “not just as a ransomware group, but as a full-service cybercrime platform”, according to Cybereason This article has been indexed from www.infosecurity-magazine.com Read the original article: Ransomware Group Qilin Offers Legal Counsel to Affiliates

Paddle Pays $5m to Settle Tech Support Scam Allegations

Payment processor Paddle has agreed to settle with the FTC over allegations related to tech support scams This article has been indexed from www.infosecurity-magazine.com Read the original article: Paddle Pays $5m to Settle Tech Support Scam Allegations

Hacklink Marketplace Fuels Surge in Covert SEO Poisoning Attacks

New SEO poisoning attacks identified, using Hacklink to hijack search rankings and inject malicious links into sites This article has been indexed from www.infosecurity-magazine.com Read the original article: Hacklink Marketplace Fuels Surge in Covert SEO Poisoning Attacks

UK ICO Fines 23andMe £2.3m for Data Protection Failings

23andMe has been fined over £2m by the UK ICO for failing to adequately protect genetic data This article has been indexed from www.infosecurity-magazine.com Read the original article: UK ICO Fines 23andMe £2.3m for Data Protection Failings

Taiwan Hit by Sophisticated Phishing Campaign

Phishing campaign targeting Taiwan has been identified, using tax-themed emails and malware like Winos and HoldingHands This article has been indexed from www.infosecurity-magazine.com Read the original article: Taiwan Hit by Sophisticated Phishing Campaign

Microsoft Promises to Keep European Cloud Data in Europe

Microsoft’s Sovereign Cloud solutions are designed to ensure European cloud data is stored and processed in Europe This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft Promises to Keep European Cloud Data in Europe

Brits Lose £106m to Romance Fraud in a Year

New City of London Police data reveals British men and women lost over £100m to romance fraudsters in 2024 This article has been indexed from www.infosecurity-magazine.com Read the original article: Brits Lose £106m to Romance Fraud in a Year

Threat Actors Target Victims with HijackLoader and DeerStealer

Cyber-attacks using HijackLoader and DeerStealer have been identified exploiting phishing tactics via ClickFix This article has been indexed from www.infosecurity-magazine.com Read the original article: Threat Actors Target Victims with HijackLoader and DeerStealer

Anubis Ransomware Adds File-Wiping Capability

Trend Micro identified a novel “wipe mode” included in Anubis ransomware to prevent file recovery, increasing pressure on victims to give in to demands This article has been indexed from www.infosecurity-magazine.com Read the original article: Anubis Ransomware Adds File-Wiping Capability

Over a Third of Grafana Instances Exposed to XSS Flaw

Some 36% of Grafana instances are vulnerable to account takeover bug, putting DevOps teams at risk This article has been indexed from www.infosecurity-magazine.com Read the original article: Over a Third of Grafana Instances Exposed to XSS Flaw

WestJet Investigates Cyber-Attack Impacting Customers

Canadian airline WestJet is investigating a cyber-attack that struck on June 13 This article has been indexed from www.infosecurity-magazine.com Read the original article: WestJet Investigates Cyber-Attack Impacting Customers

Palo Alto Networks Patches Series of Vulnerabilities

The cybersecurity provider also implemented recent fixes in Chromium that affected its Prisma Access Browser This article has been indexed from www.infosecurity-magazine.com Read the original article: Palo Alto Networks Patches Series of Vulnerabilities

NIST Publishes New Zero Trust Implementation Guidance

The new NIST guidance sets out 19 example implementations of zero trust using commercial, off-the-shelf technologies This article has been indexed from www.infosecurity-magazine.com Read the original article: NIST Publishes New Zero Trust Implementation Guidance

Congress Introduces Bill to Strengthen Healthcare Cybersecurity

The legislation aims to expand the federal government’s role in helping healthcare providers protect and respond to cyber-attacks This article has been indexed from www.infosecurity-magazine.com Read the original article: Congress Introduces Bill to Strengthen Healthcare Cybersecurity

20,000 Asian IPs and Domains Dismantled in Infostealer Crackdown

Interpol-coordinated Operation Secure led to 32 arrests, including the suspected ringleader of a cybercriminal organization This article has been indexed from www.infosecurity-magazine.com Read the original article: 20,000 Asian IPs and Domains Dismantled in Infostealer Crackdown

Hands-On Skills Now Key to Landing Your First Cyber Role

An ISC2 study found that 90% of security hiring managers would consider entry-level candidates with only previous IT work experience This article has been indexed from www.infosecurity-magazine.com Read the original article: Hands-On Skills Now Key to Landing Your First Cyber…

Half of Mobile Users Now Face Daily Scams

Malwarebytes claims 44% of mobile users are exposed to scams every day This article has been indexed from www.infosecurity-magazine.com Read the original article: Half of Mobile Users Now Face Daily Scams

Android Enterprise Rolls Out Security and Productivity Updates

Android Enterprise has introduced features for mobile security, device management and user productivity in its latest update This article has been indexed from www.infosecurity-magazine.com Read the original article: Android Enterprise Rolls Out Security and Productivity Updates

Mastery Schools Notifies 37,031 of Major Data Breach

A ransomware attack on Mastery Schools, Philadelphia, has compromised personal information of 37,031 individuals, exposing sensitive data This article has been indexed from www.infosecurity-magazine.com Read the original article: Mastery Schools Notifies 37,031 of Major Data Breach

DDoS Attacks on Financial Sector Surge in Scale and Sophistication

The financial sector was the industry most targeted by distributed denial-of-service (DDoS) attacks in 2024, with a peak in October This article has been indexed from www.infosecurity-magazine.com Read the original article: DDoS Attacks on Financial Sector Surge in Scale and…

Wholesale Food Giant UNFI Admits Security Breach

UNFI says it is investigating unauthorized network activity, and that some operations are affected This article has been indexed from www.infosecurity-magazine.com Read the original article: Wholesale Food Giant UNFI Admits Security Breach

New Wiper Malware Targets Ukrainian Infrastructure

New PathWiper malware targeted Ukrainian critical infrastructure, using legitimate tools for cyber-attacks This article has been indexed from www.infosecurity-magazine.com Read the original article: New Wiper Malware Targets Ukrainian Infrastructure

US Tries to Claw Back $7m Taken by North Korean IT Workers

The Justice Department has filed a civil forfeiture complaint alleging North Korean IT workers amassed $7m+ This article has been indexed from www.infosecurity-magazine.com Read the original article: US Tries to Claw Back $7m Taken by North Korean IT Workers

FBI Warns Smart Home Users of Badbox 2.0 Botnet Threat

The FBI says mainly Chinese-made IoT devices pose a threat from Badbox 2.0 malware This article has been indexed from www.infosecurity-magazine.com Read the original article: FBI Warns Smart Home Users of Badbox 2.0 Botnet Threat

#Infosec2025: Top Six Cyber Trends CISOs Need to Know

Experts at Infosecurity Europe 2025 highlighted a range of major industry trends, from advanced social engineering techniques to vulnerability exploits This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2025: Top Six Cyber Trends CISOs Need to Know

#Infosec2025: Cybersecurity Lessons From Maersk’s Former CISO

2017 ransomware attack on shipping company A P Moller Maersk marked a turning point for the cybersecurity industry, according to its former CISO Adam Banks This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2025: Cybersecurity Lessons From…

#Infosec2025: Ransomware Victims Urged to Engage to Take Back Control

Engagement with ransomware actors doesn’t necessarily mean payment; it’s about getting the best outcomes, a leading negotiator had argued This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2025: Ransomware Victims Urged to Engage to Take Back Control

#Infosec2025: DNS Hijacking, A Major Cyber Threat for the UK Government

During Infosecurity Europe 2025, Nick Woodcraft, from the UK Government, shared his experience in implementing measures to protect domains within the .gov.uk DNS namespace This article has been indexed from www.infosecurity-magazine.com Read the original article: #Infosec2025: DNS Hijacking, A Major…