Infosecurity News

  1. Pennsylvania Courts’ Website Disrupted by DoS Attack

    A number of court web systems have been taken offline in the US state of Pennsylvania following a denial of service attack

  2. US Condemns Iran, Issues Sanctions for Cyber-Attacks on Critical Infrastructure

    The US has announced sanctions against six Iranians responsible for an attack on Unitronics, an Israeli manufacturer of systems used in the water sector

  3. AnyDesk Hit by Cyber-Attack and Customer Data Breach

    The cyber-attack that hit the remote tool provider could have a more significant impact than initially expected

  4. Clorox and Johnson Controls Reveal $76m Cyber-Attack Bill

    SEC filings reveal multimillion-dollar costs of two serious 2023 cyber-attacks on Clorox and Johnson Controls

  5. UK Court Backlog Blocks Attempts to Fight Fraud Epidemic

    KPMG research finds a similar number of high-value UK fraud cases heard in 2023 to previous year

  6. Teen Chatting App Wizz Removed from Apple and Google Stores for Sextortion Concerns

    The Tinder-like app has countered claims of being a hot spot for sextortion scammers

  7. Romance Scam Victims Surge in 2023

    New data from Lloyds found that romance scam victims increased by 22% in 2023, with the average amount lost per incident £6937

  8. Cloudflare Suffers Breach After Failing to Rotate Stolen Okta Credentials

    Cloudflare revealed suspected nation-state attackers compromised its systems and accessed source code using credentials stolen in the Okta breach

  9. LockBit Reigns Supreme in Soaring Ransomware Landscape

    The last quarter of 2023 saw an 80% year-on-year increase in ransomware victim claims, according to ReliaQuest

  10. US Agencies Failure to Oversee Ransomware Protections Threaten White House Goals

    A GAO report found that federal agencies are not assessing whether critical infrastructure sectors are implementing NIST ransomware protection guidance

  11. Interpol-Led Initiative Targets 1300 Suspicious IPs

    Global collaborative effort focused on combating the global rise of phishing, malware and ransomware

  12. Pump-and-Dump Schemes Make Crypto Fraudsters $240m

    Chainalysis reveals that pump-and-dump schemes made Ethereum market manipulators over $240m in 2023 alone

  13. Google’s Bazel Exposed to Command Injection Threat

    Cycode stressed securing software supply chains amid complex dependencies and third-party actions

  14. US Thwarts Volt Typhoon Cyber Espionage Campaign Through Router Disruption

    US government agencies took down the botnet of Chinese APT Volt Typhoon, used to target critical infrastructure for nation-state espionage

  15. Ivanti Releases Zero-Day Patches and Reveals Two New Bugs

    Ivanti has finally released updates to fix two zero-day bugs and two new high-severity vulnerabilities

  16. Pawn Storm’s Stealthy Net-NTLMv2 Assault Revealed

    Trend Micro reported recent attacks focused on government sectors, including foreign affairs, energy, defense and transportation

  17. EU Launches First Cybersecurity Certification for Digital Products

    The voluntary scheme aims to encourage ICT providers to boost the cybersecurity of products and services across the EU

  18. US Senators Propose Cybersecurity Agriculture Bill

    The Farm and Food Cybersecurity Act has cross-party support and aims enhance the US agriculture sector’s cyber defenses

  19. Sysdig Report Exposes 91% Failure in Runtime Scans

    The research also revealed 69% of enterprises have yet to integrate AI into cloud environments

  20. US Sanctions Egyptian IT Experts Aiding ISIS in Cybersecurity

    The US said the two Egyptian nationals provided cybersecurity training and support to ISIS leadership and supporters, as well as helping enable the group to use cryptocurrency

What’s Hot on Infosecurity Magazine?