Infosecurity News

Global IoT Trust Survey Reveals Security Concerns
The Ultimaco report suggests only 14% of consumers view smart devices as secure, despite 38% using them

New QwixxRAT Trojan Spreads Through Messaging Apps
Uptycs found that QwixxRAT spread via Telegram and Discord

UK Police Data Breach Exposes Victim Information
The disclosure occurred within Freedom of Information responses issued by law enforcement

AI a Top Risk and the Preferred Solution to Financial Crime
Feedzai report details the opinions of anti-money laundering pros

PSNI: Leaked Data Will be Used to Target Police Officers
The PSNI Chief Constable said he is confident the data is in the hands of Dissident Republican groups

Over 100,000 Users of Hacking Forums Infected With Malware
Results come from analysis of 100 leading cybercrime sites

FBI: Mobile Beta-Testing Apps Are Major Security Risk
Device takeover, account hijacking and info theft could occur

Alberta Dental Services Security Breach Exposes 1.47M Records
The breach was discovered on July 9 after an unauthorized third party accessed ADSC’s IT infrastructure

Several Flaws Found in CyberPower and Dataprobe Products
Trellix cybersecurity researchers discussed the implications of these flaws in a new blog post published on Sunday

Security Researchers Publish Gigabud Banking Malware Analysis
Group-IB said Gigabud doesn’t execute malicious actions immediately but waits for user authorization

Microsoft: Critical CODESYS Flaws Could Shut Down Power Plants
The vulnerabilities put critical infrastructure organizations at risk of attacks such as remote code execution (RCE) and denial of service (DoS)

Authorities Take Down Lolek Bulletproof Hosting Provider
A Polish national arrested in the US could face up to 45 years in prison if convicted on all counts

Multiple Flaws Found in the Avada WordPress Theme and Plugin
The security flaws were uncovered by Patchstack security researcher Rafie Muhammad

DroxiDat-Cobalt Strike Duo Targets Power Generator Network
Kaspersky said the attackers deployed the payload to collect valuable system information

Lapsus$ Hacker Group Exposed in Latest CSRB Report
The CSRB proposed ten concrete recommendations for both governmental bodies and industries

DHS to Review Microsoft’s Security in Chinese Email Hack
The review will also conduct a broader review of issues relating to cloud-based identity and authentication infrastructure

#BHUSA: Security Risks to Boom in the Era of Widespread Generative AI Adoption
Enterprise usages of generative AI are what is going to turn the threat model of many organizations upside down, Maria Markstedter argued during her speech at Black Hat USA

UK Government Slammed For Encryption Mistruths
Technology secretary branded “delusion”

CISA: New Whirlpool Backdoor Used in Barracuda ESG Campaign
China-linked APT group has been blamed for the attacks

Researchers Suggest Ways to Tackle Thermal Attacks
Device manufacturers and users have a role to play in mitigating the threat



