Infosecurity News

North Korean APT Kimsuky Launches Global Spear-Phishing Campaign
ReconShark is sent via emails containing OneDrive links leading to documents with malicious macros

"Kekw" Malware in Python Packages Could Steal Data and Hijack Crypto
Cyble said the Python security team has now removed the malicious package from PyPI

Cyber Patrols Lead to Seizure of Stolen Artefacts
Items dating back thousands of years recovered in new crackdown

Ransomware Actors Extort University Via Alert System
Innovative tactics turn up the heat on Bluefield University

Subscription Trojan Downloaded 600K Times From Google Play
Kaspersky says Fleckpe was hidden in 11 apps

Brightline Hack Exposes Data of Over 780,000 Child Mental Health Patients
Brightline said the breach was due to a zero-day flaw in Fortra GoAnywhere MFT

Meta Tackles Malware Posing as ChatGPT in Persistent Campaigns
Malware families detected and disrupted include Ducktail and the newly identified NodeStealer

Android Spyware BouldSpy Linked to Iranian Government
The mobile malware has been used by threat actors to target minority groups

Consumer Group Slams Bank App Fraud Failings
Which? wants banks to improve customer outreach and security

Malicious HTML Attachment Volumes Surge
File type remains the most dangerous in email-borne threats

US Authorities Dismantle Dark Web "Card Checking" Platform
Try2Check helped cyber-criminals test stolen card details

CISA Advises FCC Covered List For Risk Management
Some of the companies included in the list are Huawei, ZTE, Dahua and China Unicom