Infosecurity News

  1. CISA and Partners Publish Zero Trust Guidance For OT Security

    A new CISA‑led guide explains how zero‑trust security can be applied to operational technology, balancing cyber defence with safety and system availability

  2. UK: Education Sector Faces Surge in Cyber Breaches Despite Stable National Threat Levels

    The British public education sector has faced the nation’s most dramatic increase in cyber breach prevalence over the past year

  3. Europol Busts Albanian Scam Call Centers in Major Online Fraud Case

    European police arrested 10 suspects after dismantling Albanian scam call centers linked to a €50m ($58m) online investment fraud operation

  4. Cyber is the Number One Global “People Risk,” Says Marsh

    Marsh’s 2026 People Risks survey finds cyber‑related challenges dominate, as cyber‑threat literacy tops risks and cyber and AI skills shortages rise

  5. Cursor Extension Flaw Exposes Developer API Keys

    Cursor flaw lets extensions steal API keys and session tokens without user interaction, according to researchers at LayerX

  6. Malicious npm Dependency Linked to AI Assisted Commit Targets Crypto Wallets

    Researchers uncover a malicious npm dependency linked to an AI‑assisted code commit that steals sensitive data and exposes crypto wallets

  7. Researchers Track 2.9 Billion Compromised Credentials

    KELA claims infostealers remained the primary access vector for attacks in 2025

  8. Critical Flaw Turns Vect Ransomware into Data Destroying Wiper

    The Vect 2.0 ransomware wipes large files instead of merely encrypting them, making recovery impossible – even for the attackers

  9. A Quarter of Healthcare Organizations Report Medical Device Cyber-Attacks

    RunSafe report reveals most attacks on medical devices disrupt patient care

  10. Medtronic Confirms Data Breach After ShinyHunters Claims

    Medtronic confirms IT breach as ShinyHunters claims millions of records accesseda

  11. Ransomware Turf War as 0APT and KryBit Groups Trade Blows

    Ransomware groups 0APT and KryBit have doxxed each other online

  12. Chinese National Extradited Over Silk Typhoon Cyber Campaign

    Extradition links alleged MSS-directed hacker to Silk Typhoon and COVID-19 espionage

  13. No Metrics Are Better Than Bad Metrics in the SOC, Says NCSC

    The National Cyber Security Centre has warned against measuring SOCs with ticket-based metrics

  14. North Korean Hackers Target Crypto Firms with ClickFix and AI-Made Zoom Lures

    Arctic Wolf attributed this large-scale spear-phishing campaign to BlueNoroff, a financially motivated subgroup of the Lazarus Group

  15. US Sanctions Target Cambodian Scam Network Leaders

    US sanctions target Cambodian scam networks tied to crypto fraud and trafficking

  16. Utilities Tech Supplier Itron Discloses Cyber-Attack, Operations Unaffected

    Itron confirmed a cyber incident but does not believe it is likely to have a material impact on the company

  17. Widely Used Browser Extensions Selling User Data

    Dozens of browser extensions openly sell user data via privacy policy disclosures

  18. Most Cybersecurity Professionals Feel Undervalued and Underpaid

    A new report by global technology recruitment firm, Harvey Nash, found that three quarters of cybersecurity staff are pessimistic on pay and half are looking for a new job

  19. Researchers Identify Fast16 Sabotage Malware That Pre-Dates Stuxnet

    The “fast16” malware may have been used to target Iran’s nuclear program prior to Stuxnet

  20. BlackFile Group Targets Retail and Hospitality with Vishing Attacks

    Researchers uncover a new data theft and extortion group dubbed “BlackFile”

What’s Hot on Infosecurity Magazine?