Infosecurity News

  1. Impact of Log4Shell Bug Was Overblown, Say Researchers

    VulnCheck claims the potential impact of Log4Shell was exaggerated

  2. Over 14 Million Mortgage Customers Hit By Mr Cooper Breach

    One of America’s biggest lenders, Mr Cooper, has revealed a breach impacted 14.7 million customers

  3. Iranian Fuel Supplies Crippled By Cyber-Attack

    Iranian minister confirms cyber-attack was cause of widespread disruption at petrol stations

  4. MOVEit Vulnerability Hits Delta Dental: 7 Million Records Exposed

    Unauthorized actors breached health data, including details related to dental procedures and claims

  5. QakBot’s Low-Volume Resurgence Targets Hospitality

    Researchers observed malicious files advancing through email, PDF, URL and MSI

  6. ALPHV Second Most Prominent Ransomware Strain Before Reported Downtime

    The group was second behind only LockBit in attacks targeting North America and Europe between January 2022 and October 2023

  7. Insurer’s UK Honeypots Attacked 17 Million Times Per Day

    RDP is singled out as insurer Coalition records 17 million cyber-attacks per day in the UK in 2023

  8. MongoDB Investigates Customer Account Data Breach

    Data platform provider MongoDB has discovered a data breach impacting customers

  9. Technology Manufacturers Urged to Eliminate Passwords

    New CISA document promotes secure-by-design shift to ditch default password use

  10. Four Charged in Connection With $80m Pig Butchering Scheme

    Four men have been charged with money laundering offenses linked to a major pig butchering operation

  11. UK Plans Tough New Security Rules For Datacenters

    The British government is proposing minimum mandatory requirements for datacenter security and resilience

  12. Over 45,000 Employees Hit By Nuclear Research Lab Breach

    Idaho National Laboratory says 45,000 employees had personal information compromised in data breach

  13. Cozy Bear Hackers Target JetBrains TeamCity Servers in Global Campaign

    The FBI and CISA detected that hackers linked to the Russian foreign intelligence service (SVR) have been targeting a JetBrains TeamCity vulnerability since September 2023

  14. Approval Phishing Scams Drain $1bn of Cryptocurrency from Victims

    Romance scammers have used the technique to great effect in recent years

  15. Vulnerabilities Now Top Initial Access Route For Ransomware

    More ransomware attacks now start with vulnerability exploitation than phishing, says Corvus Insurance

  16. GambleForce Group Targets Websites With SQL Injection

    Group-IB warns of new threat actor GambleForce, which uses SQL injection attacks to steal data from websites

  17. Microsoft Targets Prolific Outlook Fraudster Storm-1152

    Microsoft disrupts Vietnam based threat group Storm-1152, which has sold 750 million fake accounts

  18. MITRE Launches Critical Infrastructure Threat Model Framework

    MITRE’s EMB3D provides industrial manufacturers with a shared understanding to mitigate cyber threats

  19. Russia Set to Ramp Up Attacks on Ukraine’s Allies This Winter

    Russian cyber campaigns aim to disrupt Western allies’ ability and motivation to support Ukraine’s war effort

  20. UK at High Risk of Catastrophic Ransomware Attack, Government Ill-Prepared

    A UK parliament report found that large swathes of critical national infrastructure are vulnerable to ransomware

What’s Hot on Infosecurity Magazine?