Infosecurity News

Teens Found Responsible For Lapsus$ Cyber-Attacks
Arion Kurtaj was deemed not fit to stand trial

Attack Dwell Times Fall but Threat Actors Are Moving Faster
A Sophos report finds that attackers are adapting their approaches in the face of improved detection capabilities

XLoader MacOS Malware Variant Returns With OfficeNote Facade
SentinelOne observed that the imitating application targeted users within work environments

WinRAR Vulnerability Affects Traders Worldwide
Group-IB said cyber-criminals used the flaw to create archives packaged with DarkMe, GuLoader and Remcos RAT

Artificial Intelligence and USBs Drive 8% Rise in Cyber-Attacks
The Check Point report also highlights an evolution of ransomware tactics

Thousands of High-Risk Incidents Neutralized Using AI
Cybersecurity provider Barracuda used AI-powered account profiling to detect nearly a million cyber incidents in 2023

Doubling of Identity Theft Victims With Suicidal Thoughts
ITRC data finds 69% have suffered multiple identity crimes

Experian Pays $650,000 to Settle Spam Claims
Credit reporting firm accused of sending millions of unwanted emails

TP-Link Smart Bulb Spills Wi-Fi Passwords
Researchers find four vulnerabilities in popular model

Critical Insight Report: 15% Drop in Breaches, 31% Surge in Victims
The research also highlights a shift in hacker tactics toward exploiting network server flaws

Scarab Ransomware Deployed Worldwide Via Spacecolon Toolset
ESET's investigation also revealed that certain Spacecolon versions contain Turkish strings

US ARPA-H Initiative Counters Healthcare Cyber-Threats
DIGIHEALS will call for proposals for technologies originally designed for national security

MOVEit Exploitation Fallout Drives Record Ransomware Attacks
NCC Group researchers observed 502 ransomware attacks in July 2023, with a large proportion made up of Clop’s exploitation of MOVEit

Cyber-Attack on Australian Utility Firm Energy One Spreads to UK Systems
Australian utility company Energy One confirmed it had taken steps to limit a cyber-attack affecting its corporate systems

New APT Group Launches Supply Chain Campaign
Legitimate software used to deploy backdoor malware

Ivanti Warns of Critical New Zero-Day Bug
Latest vulnerability affects Ivanti Sentry

Tesla: Insiders Responsible For Major Data Breach
Two former employees shared information with German newspaper

Deceptive AI Bots Spread Malware, Raise Security Concerns
ESET said Facebook promoted the download of what seemed to be Google’s Bard AI tool

New Chrome Feature Alerts Users About Malicious Extensions
The feature, called the “Safety Check,” is designed to address three specific scenarios

New NCUA Rule Requires Swift Cyber Incident Reporting
Credit unions will be obligated to notify the NCUA about any cyber incident within 72 hours



