Infosecurity News

  1. Only 24% Of organizations Test Identity Recovery Every Six Months

    Only 24% of organizations test identity disaster recovery plans every 6 months, Quest Software said

  2. Cloud Attackers Now Prefer Vulnerability Exploits Over Credentials, Google Cloud Finds

    Google Cloud report details a sharp rise in attackers exploiting software vulnerabilities, including React2Shell

  3. Ericsson Breach Exposes Data of 15k Employees and Customers

    Ericsson data breach affects 15k employees/customers after third-party service provider compromise

  4. Russian Hackers Target WhatsApp and Signal Accounts of Global Military and Government Officials

    Dutch intelligence reveals Russian state hackers are trying to hijack the Signal and WhatsApp accounts of key targets

  5. ShinyHunters Targets Hundreds of Websites in New Salesforce Campaign

    Prolific ShinyHunters group claims to have stolen data from nearly 400 websites in Experience Cloud attacks

  6. Threat Actor Exploits Flaws and Uses Elastic Cloud SIEM to Manage Stolen Data

    Huntress researchers uncover campaign exploiting vulnerabilities to steal data using Elastic Cloud as a data hub

  7. Trump Administration Unveils New Cyber Strategy for America

    US national cyber strategy focuses on stronger defenses, countering threats, fostering innovation

  8. UK Launches New Crackdown Unit to Tackle Cyber-Fraud at the Source

    New UK Online Crime Centre will combine expertise from a range of sources to takedown online channels cyber-scammers rely on

  9. AI Security Startups Dominate New Cyber Innovation Awards

    Over one in five winners of IT-Harvest’s 2026 Cyber 150 are AI security companies

  10. TriZetto Provider Solutions Breach Hits 3.4 Million Patients

    Billing services provider TriZetto Provider Solutions has begun notifying millions of patients about a data breach

  11. Ghanaian Pleads Guilty to Role in $100m Romance Scam

    Derrick Van Yeboah admitted he stole over $10m in romance scams as part of crime gang

  12. Iran's MuddyWater Hackers Hit US Firms with New 'Dindoor' Backdoor

    A bank, an airport, a non-profit and the Israeli branch of a US software company were among the targets of this new MuddyWater campaign

  13. Zero‑Day Attacks on Enterprise Software Reach Record High, Google Warns

    Almost a quarter of the zero days detected by Google in 2025 targeted security and networking appliances

  14. AI-Driven Insider Risk Now a “Critical Business Threat,” Report Warns

    Malicious insiders are using misusing AI for nefarious gain, while employees cutting corners also creates risk, warns Mimecast

  15. ContextCrush Flaw Exposes AI Development Tools to Attacks

    Critical flaw "ContextCrush" in Context7 MCP Server could allow malicious instructions into AI tools

  16. Coruna Exploit Kit Targets Older iPhones in Multi-Stage Campaigns

    Exploit kit "Coruna" targets iPhones running iOS 13.0 to 17.2.1, focusing on financial data theft

  17. Zero-Click FreeScout Bug Enables Remote Code Execution

    Ox Security warns that Mail2Shell could enable threat actors to hijack FreeScout systems without user interaction

  18. Cisco Issues Patches for 48 Vulnerabilities in Enterprise Networking Products

    Two of the 48 Cisco vulnerabilities, affecting Secure Firewall Management Center, are maximum-severity flaws

  19. Europol Operation Seizes LeakBase Data Breach Site

    A global operation has resulted in the takedown of popular cybercrime forum LeakBase

  20. Coalition of Western Countries Launches 6G Cybersecurity Guidelines

    A coalition of seven Western nations has launched guidelines to help integrate security-by-design principles into future 6G standards

What’s Hot on Infosecurity Magazine?