Infosecurity News

  1. Cyber Safety Review Board Report Slams Microsoft Security Failures in Government Email Breach

    A report has highlighted multiple security failings by Microsoft that allowed Chinese threat actors to access US government officials’ email accounts in the Summer of 2023

  2. Prudential Financial Notifies 36,000 Individuals of Data Breach

    The compromised data includes names or other identifying information in combination with driver’s license numbers

  3. Infostealers Prevalent in Retail Sector Cybercrime Trends

    The findings from Netskope also show a shift in the retail sector’s use of cloud applications

  4. UK and US to Build Common Approach on AI Safety

    The UK and the US have signed a partnership to coordinate the work of their respective AI Safety Institutes

  5. RDP Abuse Present in 90% of Ransomware Breaches

    Sophos reveals “unprecedented” levels of RDP compromise in ransomware attacks in 2023

  6. YouTube Video Game ‘Hacks’ Contain Malware Links

    Proofpoint has spotted a new infostealer campaign using malicious links in YouTube video descriptions

  7. Dataset of 73 Million AT&T Customers Linked to Dark Web Data Breach

    The telecommunications giant said that the published dataset comprises information from 2019 or earlier

  8. Researchers Report Sevenfold Increase in Data Theft Cases

    Kaspersky said cybercriminals harvested 50.9 login credentials per infected device in 2023

  9. Trusted Contributor Plants Sophisticated Backdoor in Critical Open-Source Library

    A backdoor in XZ Utils, a widely used file-compressing software in Linux systems, could have led to a critical supply chain attack had a Microsoft researcher not spotted it in time

  10. Indian Authorities Rescue Hundreds Trafficked For Cybercrime

    Hundreds of Indians forced into cybercrime by Cambodian gangs have been rescued

  11. Impersonation Scams Net Fraudsters $1.1bn in a Year

    FTC figures reveal a three-fold increase in losses from impersonation scams over the past three years

  12. CISA Launches New Cyber Incident Reporting Rules for US Defense Contractors

    CISA has revealed the first draft for an update of the Cyber Incident Reporting for Critical Infrastructure (CIRCIA) Act of 2022

  13. US Treasury Urges Financial Sector to Address AI Cybersecurity Threats

    The US Treasury report sets out recommendations for financial institutions on addressing immediate AI-related operational risk, cybersecurity and fraud challenges

  14. NIST Unveils New Consortium to Operate National Vulnerability Database

    After weeks of speculation, NIST has finally confirmed its intention to establish an industry consortium to develop the NVD in the future

  15. 17 Billion Personal Records Exposed in Data Breaches in 2023

    Flashpoint recorded a 34.5% rise in reported data breaches in 2023, with ransomware a major driver of this increase

  16. Half of British SMEs Have Lost Data in Past Five Years

    Beaming research reveals that nearly half of UK SMEs have lost data since 2019, costing billions

  17. Calls to Incident Response Helpline Double in a Year

    A rising volume of calls to the Scottish Cyber and Fraud Centre highlights surging threat levels

  18. NHS Trust Confirms Clinical Data Leaked by “Recognized Ransomware Group”

    NHS Dumfries and Galloway confirmed that patient clinical data was leaked following the attack on its systems earlier in March 2024

  19. Google Reports Major Spike in Zero-Day Vulnerabilities

    Google detected nearly 100 zero-day vulnerabilities exploited in the wild in 2023

  20. Only 3% of Businesses Resilient Against Modern Cyber Threats

    Cisco scored just 3% of organizations as having a ‘mature’ level of readiness to cyber threats, a significant decline from the previous year

What’s Hot on Infosecurity Magazine?