Infosecurity News

Humans Need to Rethink Trust in the Wake of Generative AI
Generative AI poses a high risk of misinformation and disinformation, according to ISACA survey, with 77% of professionals saying it is the top concern

Winter Vivern: Zero-Day XSS Exploit Targets Roundcube Servers
ESET Research reported the vulnerability to the Roundcube team on October 12

Seiko “BlackCat” Data Breach: 60,000 Records on the Line
The breach exposed Seiko Watch Corporation customer, employment and personnel information

AWS: Security Not a Priority For a Third of SMBs
Cloud giant debunks common misconceptions

Purchase Scams Surge as Fraud Losses Hit £580m
APP fraud remains a major challenge for UK banking sector

Small Businesses Suffer Record Number of Cyber-Attacks
Most claim to be ready to respond to an incident

AI to Create Demand for Digital Trust Professionals, ISACA Survey Finds
Most digital trust professionals believe AI will have a positive impact on their jobs, and 23% think the number of jobs could increase because of AI

API Security Flaw Impacted Grammarly, Vidio and Bukalapak
Salt Security discovered the vulnerabilities in implementations of the OAuth protocol

Philadelphia Alerts Public to Recent Data Breach
Unauthorized access to certain email accounts occurred between May 26 and July 28 2023

Generative AI Can Save Phishers Two Days of Work
But IBM study says humans still have the edge

Police Dismantle Multimillion-Dollar Scam Gang
Dozens arrested in Spain after months-long operation

Healthcare Ransomware Attacks Cost US $78bn
Comparitech calculates economic hit from downtime since 2016

New Grandoreiro Malware Variant Targets Spain
Proofpoint said this variant is attributed to the threat actor TA2725

QuasarRAT Deploys Advanced DLL Side-Loading Technique
Uptycs researchers said the technique exploits Microsoft files to execute malicious commands

ICC: September Breach Was Espionage Raid
War crimes court warns of persistent attacks

Okta Breached Via Stolen Credential
Threat actor accessed case management system

Police Dismantle Ragnar Locker Ransomware Group
Prolific variant frequently targeted critical infrastructure

ENISA Warns of Rising AI Manipulation Ahead of Upcoming European Elections
Top threats targeting the EU are increasingly motivated by a combination of intentions such as financial gain, disruption, espionage, destruction or ideology

DarkGate Malware Campaigns Linked to Vietnam-Based Cybercriminals
WithSecure has found strong indicators that DarkGate attacks are being perpetrated by attackers also using the Ducktail infostealer

QR Codes Used in 22% of Phishing Attacks
The Hoxhunt Challenge was conducted in 38 organizations across nine industries and 125 countries



