Infosecurity News

  1. Gamers' Data Exposed in RPG Platform Roll20 Breach

    Roll20 confirmed its administrative website account was accessed by a “bad actor,” leaving its users’ personal information exposed

  2. New Ransomware Group Phones Execs to Extort Payment

    Researchers claim the Volcano Demon ransomware group personally phone victims to pressure them into paying

  3. UK’s NCA Leads Major Cobalt Strike Takedown

    Global law enforcers have share intelligence leading to the takedown of hundreds of IP addresses hosting Cobalt Strike

  4. WordPress Plugins at Risk From Polyfill Library Compromise

    The attack exploits the polyfill.io domain, which was recently acquired by Funnull, a China-based entity

  5. Microsoft Uncovers Major Flaws in Rockwell PanelView Plus

    The vulnerabilities stem from manipulable custom classes in PanelView Plus

  6. Cyber Extortion Soars: SMBs Hit Four Times Harder

    Orange Cyberdefense’s latest Cy-Xplorer report shows a 77% rise in cyber extortion, with SMBs impacted 4.2 times more often than large enterprises

  7. Half of Employees Fear Punishment for Reporting Security Mistakes

    A ThinkCyber survey conducted at Infosecurity Europe 2024 found that half of employees are afraid of reporting security mistakes

  8. New RUSI Report Exposes Psychological Toll of Ransomware, Urges Action

    A new report reveals the hidden mental health toll of ransomware attacks on victims, urging a focus on well-being alongside data and system recovery

  9. APP Fraud Singled Out as Biggest Financial Crime Threat

    Payments professionals have highlighted authorized push payment (APP) fraud as the top threat facing businesses and consumers

  10. Dozens of Arrests Disrupt €2.5m Vishing Gang

    Police have arrested 54 suspected members of a vishing group who stole the life savings of scores of victims

  11. Mobile Political Spam Surges Threefold For 2024 Election

    Proofpoint highlighted how smishing, impersonation and spam are eroding trust in mobile messaging

  12. Chrome Update Will Block Entrust Certificates by November 2024

    The move follows a series of reported compliance failures and lack of progress in addressing publicly disclosed incidents

  13. Ransomware Attack Demands Reach a Staggering $5.2m in 2024

    Comparitech calculated that the average ransom demand was over $5.2m in the first six months of 2024, with 421 confirmed incidents during this period

  14. Health Tech Execs Get Jail Time For $1bn Fraud Scheme

    The former CEO and COO of a health startup will spend years in jail after conducting a large-scale fraud scheme

  15. Cisco Patches Zero-Day Bug Used by Chinese Velvet Ant Group

    Cisco has patched a zero-day vulnerability exploited by a Chinese APT group to compromise Nexus switches

  16. Meta’s ‘Pay or Consent’ Data Model Breaches EU Law

    The EU Commission said Meta’s pay or consent model means users cannot freely consent to their personal data being collected for advertising purposes

  17. Critical OpenSSH Flaw Enables Full System Compromise

    A newly discovered RCE vulnerability, which can lead to full system compromise, has put over 14 million OpenSSH server instances are potentially at risk, according to Qualys

  18. Australian Police Arrest Suspect in Fake Wi-Fi Scam Targeting Airport Passengers

    Evil twin Wi-Fi access points mimicked legitimate networks to capture personal data from unsuspecting victims who mistakenly connected to them

  19. Cyber-Insurance Premiums Decline as Firms Build Resilience

    Insurance broker Howden says premiums are falling as security best practice takes hold

  20. Over Six Million Hit by Ransomware Breach at Infosys McCamish Systems

    Outsourcer Infosys McCamish Systems has revealed millions of victims were impacted by a ransomware attack last year

What’s Hot on Infosecurity Magazine?