Infosecurity News

US Seizes $9m From Pig Butchering Scammers
Crypto funds are traced back to dozens of victims

North Korea Blamed For CyberLink Supply Chain Attacks
Legitimate app installer modified with malicious code

British Library: Ransomware Attack Led to Data Breach
Reports suggest employee data is up for sale

Flaw in Apache ActiveMQ Exposes Linux Systems to Kinsing Malware
Identified as CVE-2023-46604, the vulnerability has a CVSS score of 9.8

Employee Policy Violations Cause 26% of Cyber Incidents
Kaspersky said the figure closely rivals the 20% attributed to external hacking attempts

Why Ensuring Supply Chain Security in the Space Sector is Critical
Cybersecurity challenges facing the space sector are unique and securing the supply chain is a high priority

LockBit Affiliates are Exploiting Citrix Bleed, Government Agencies Warn
Multiple threat actor groups including Lockbit affiliates are found to be exploiting a vulnerability in Citrix NetScaler gateway appliances, government agencies have warned

Microsoft Launches Defender Bug Bounty Program
Ethical hackers could win cash prizes of up to $20,000

Regulator Issues Privacy Ultimatum to UK’s Top Websites
ICO warns of enforcement action if they don’t give users fair choices

Europol Launches OSINT Taskforce to Hunt For Russian War Crimes
New unit will scour the internet for evidence

India Faces Surge in IM App Attacks With Trojan Campaigns
Microsoft highlighted a shift in tactics, with attackers directly sharing malicious APK files

Konni Campaign Deploys Advanced RAT With UAC Bypass Capabilities
Fortinet researchers have detected a malicious Word document displaying Russian text

DarkGate and PikaBot Activity Surge in the Wake of QakBot Takedown
Threat actors have shifted to other malware loaders following QakBot FBI takedown

Black Friday: Significant Security Gaps in E-Commerce Web Apps
Researchers warn that millions of consumers’ PII could be at risk due to exploitable vulnerabilities and a lack of basic security protocols in e-commerce web apps

Cybersecurity Executive Pleads Guilty to Hacking Hospitals
Securolytics COO wanted to drum up custom

Ukraine Sacks Two Senior Cyber Officials
Duo linked to corruption investigation

US Cybersecurity Lab Suffers Major Data Breach
Idaho National Laboratory is also a center for nuclear research

CISA Unveils Healthcare Cybersecurity Guide
The guide outlines mitigation strategies and best practices to counteract prevalent cyber-threats

Infostealer Lumma Evolves With New Anti-Sandbox Method
Outpost24 explained the technique relies on trigonometry to discern genuine human behavior

Secretary Fined For Accessing Scores of Patient Records
NHS worker broke strict rules governing the special category data



