Infosecurity News

TikTok Fined $368m For Child Data Privacy Offenses
Chinese social media giant broke GDPR several times over

Cloud to Blame for Almost all Security Vulnerabilities
Palo Alto Networks found that over 45% of organizations’ high-risk exposures in the cloud were due to cloud providers introducing new services

China's Malicious Cyber Activity Informing War Preparations, Pentagon Says
The report says China is likely to launch destructive cyber-attacks against the US Homeland in the event of a military conflict

Pirated Software Likely Cause of Airbus Breach
Incident exposed personal information at 3200 vendors

Iranian Threat Group Hits Thousands With Password Spray Campaign
APT33 activity resulted in data theft from small number of victims

Caesars Entertainment Reveals Major Ransomware Breach
Attackers compromised loyalty program data via supplier

Manchester Police Officers’ Data Breached in Third-Party Attack
Officers working undercover or in sensitive roles like intelligence could be exposed

Elon Musk in Hot Water With FTC Over Twitter Privacy Issues
A new court filing from the US Department of Justice suggests the billionaire “may have jeopardized data privacy and security” at Twitter, now known as X

Lazarus Group Blamed For $53m Heist at CoinEx
North Korean actors have become prolific crypto-thieves

Wake-Up Call as 3AM Ransomware Variant Is Discovered
Symantec says it was used in a failed LockBit attack

Cloud Vulnerabilities Surge 200% in a Year
But IBM warns credential compromise is number one initial access vector

New Microsoft Teams Phishing Campaign Targets Corporate Employees
The new campaign is believed to be perpetrated by Storm-0324, which distributes the payloads of other attackers after achieving initial network compromise

MGM Criticized for Repeated Security Failures
The malware researchers' collective Vx-underground claimed that ALPHV/BlackCat was behind the attack against the casino giant

Chilling Lack of Cyber Experts in UK Government, Finds Parliamentary Inquiry
The parliamentary inquiry heard there are “particular shortages” of cybersecurity experts in the civil service, with pay restraints a major factor

Microsoft Fixes Two Zero-Day Bugs Used in Attacks
Microsoft announces updates for around 60 CVEs

CISA Publishes Plan to Enhance Open Source Security
New roadmap will cover Fiscal Year 2024-26

UK ICO and NCSC Set to Share Anonymized Threat Intelligence
Data protection regulator and security agency sign MoU

Windows Systems Targeted in Multi-Stage Malware Attack
According to Fortinet security expert Cara Lin, the attack begins with a phishing email

Cyber-criminals “Jailbreak” AI Chatbots For Malicious Ends
SlashNext research shows that most of these tools connect to jailbroken versions of public chatbots

MGM Resorts Hit By Cyber-Attack, Systems Down
The incident disrupted key company services, impacting website, bookings and in-casino functions



