Infosecurity News

  1. Python Package Index Faces Security Crisis With Validated Leaks

    2922 projects contained at least one unique secret, including from AWS, Redis and Google

  2. 82% of Attacks Show Cyber-Criminals Targeting Telemetry Data

    Sophos report based on 232 IR cases across 25 sectors from January 1 2022 to June 30 2023

  3. Pro-Palestine APT Group Uses Novel Downloader in New Campaign

    TA402 launches new targeted phishing campaigns

  4. Royal Ransomware Gang Demands $275m in a Year

    CISA highlights links to newer Blacksuit variant

  5. NCSC: UK Facing “Enduring and Significant” Cyber-Threat

    Critical infrastructure providers under pressure from state-backed groups

  6. Information-Stealing Malware Escalates in Online Gaming

    A report by Sekoia.io shed light on a targeted campaign using Discord and fake download websites

  7. Python Malware Poses DDoS Threat Via Docker API Misconfiguration

    Cado Security Labs said the bot agent exhibited various methods for conducting DDoS attacks

  8. EU Formalizes Cybersecurity Support For Ukraine

    Bloc signs working arrangement with war-torn country

  9. Malaysian Police Dismantle “BulletProftLink” Phishing Operation

    Several arrested and servers seized

  10. Cyber-Attack Could Have “Devastating” Impact on Aussie Exports

    Port operator struggles to recover from serious incident

  11. MPs Dangerously Uninformed About Facial Recognition – Report

    Privacy International warns UK is “sleepwalking into public mass surveillance”

  12. MOVEit Gang Targets SysAid Customers With Zero-Day Attacks

    Lace Tempest looks to spread Clop malware to victims

  13. ICBC and Allen & Overy Hit By Ransomware

    Multinationals believed to have been targeted by LockBit

  14. Signature Techniques of Asian APT Groups Revealed

    Kaspersky said the primary focus of these actors is cyber-espionage and information gathering

  15. New Kamran Spyware Targets Urdu-Speaking Users in Pakistan

    ESET said the attack affects Android users accessing the Urdu version of the Hunza News website

  16. Iran-Affiliated Group Targets Israeli Firms Amid Israel-Hamas Conflict

    CrowdStrike has attributed recent attacks on Israeli organizations in the transportation, logistics, and technology sectors to Iran-affiliated threat actor Imperial Kitten

  17. Quishing Campaigns Spike 50% in September

    QR code phishing is becoming increasingly popular

  18. OpenAI Reveals ChatGPT Is Being DDoS-ed

    Periodic outages began on November 8

  19. UK Shoppers Lost Nearly £11m to Fraud Last Festive Season

    NCSC warns of AI-generated scams in run-up to Christmas

  20. Russian APT Sandworm Disrupted Power in Ukraine Using Novel OT Techniques

    This previously undocumented attack suggests a growing maturity of Russia’s offensive OT arsenal

What’s Hot on Infosecurity Magazine?