Infosecurity News

  1. Air Europa Asks Customers to Cancel Cards After Breach

    Spanish airline did not disclose scale of the attack

  2. Tech Giants Reveal Record-Breaking “Rapid Reset” DDoS Bug

    Zero-day has been exploited to launch largest attacks ever seen

  3. IZ1H9 Botnet Targets IoT Devices With New Exploits

    FortiGuard Labs said the new campaign incorporates 13 distinct payloads

  4. Flagstar Bank MOVEit Breach Affects 800K Customer Records

    The incident occurred between May 27 and 31 2023, before MOVEit Transfer vulnerability was publicly disclosed

  5. #CyberMonth: Google Makes Passkeys Default Sign-In Option

    The tech giant said the move is designed to help efforts to make passwords obsolete

  6. Half of CISOs Now Report to CEO as Influence Grows

    Trend is more pronounced in Europe than America

  7. New Threat Actor “Grayling” Blamed For Espionage Campaign

    Symantec highlights distinctive DLL sideloading technique

  8. Magecart Hackers Hide in 404 Error Pages

    Akamai spots new digital skimming campaign

  9. MGM Resorts Reveals Over $100M in Costs After Ransomware Attack

    In an SEC 8-K filing published last Thursday, the company cited operational disruptions

  10. Google Bug Bounty Program Expands to Chrome V8, Google Cloud

    Google has launched capture the flag (CTF) competitions focused on Chrome’s V8 JavaScript engine and Google Cloud’s kernel-based virtual machine (KVM)

  11. DNA Tester 23andMe Hit By Credential Stuffing Campaign

    Threat actor offers to sell DNA profiles of ‘millions’

  12. Blackbaud Settles Ransomware Breach Case For $49.5m

    Thousands of non-profit customers were affected

  13. Social Dominates as Victims Take $2.7bn Fraud Hit

    Social media is number one channel for fraud, says FTC

  14. AWS to Mandate Multi-Factor Authentication from 2024

    Move is designed to mitigate risk of account takeover

  15. Qakbot Gang Still Active Despite FBI Takedown

    Cisco Talos found new evidence that Qakbot-affiliated actors were still distributing ransomware despite the August FBI takedown of the threat group

  16. CISA and NSA Publish Top 10 Misconfigurations

    Data was compiled from real-world read and blue team engagements

  17. Apple Issues Emergency Patches for More Zero-Day Bugs

    One is being exploited in the wild

  18. CISA and NSA Tackle IAM Security Challenges in New Report

    The document is authored by the Enduring Security Framework

  19. Critical Glibc Bug Puts Linux Distributions at Risk

    Qualys identified and exploited the vulnerability in Fedora 37/38, Ubuntu 22.04/23.04, Debian 12/13

  20. China Poised to Disrupt US Critical Infrastructure with Cyber-Attacks, Microsoft Warns

    Microsoft’s annual digital defense report found a rise in Chinese state-affiliated groups attempting to infiltrate sectors like medical infrastructure and telecommunication

What’s Hot on Infosecurity Magazine?