Infosecurity News

Researchers Uncover XSS Vulnerabilities in Azure Services
They could allow unauthorized access to sessions within the compromised Azure service iframe

#InfosecurityEurope: (ISC)² and CIISec Release Guide to Inclusive Language in Cybersecurity
The guide to inclusive language in cybersecurity aims to make the industry more welcoming to people from all backgrounds

#InfosecurityEurope: Cyber Leaders’ Plea to Tackle the Industry’s Mental Health Crisis
A new report looks at the scale of mental health challenges in cybersecurity, and urges action from stakeholders to try and mitigate the problem

Europol Warns of Metaverse and AI Terror Threat
Emerging technologies could help propaganda and recruitment efforts

MFA Bypass Kits Account For One Million Monthly Messages
Threat actors evolve to multi-factor authentication

No Zero-Days but PGM Flaws Cause Patch Tuesday Concern
Microsoft issues nearly 80 CVEs this month

Fortinet Addresses Critical FortiGate SSL-VPN Vulnerability
The release notes did not initially mention the critical SSL-VPN RCE vulnerability being addressed

Crypto Wallets Under Attack By DoubleFinger Malware
The malware discovered by Kaspersky employs a multistage attack method

#InfosecurityEurope: Armis Highlights Riskiest Devices in Critical Infrastructure
Engineering workstations, SCADA and automation servers, historians and PLCs identified as highest risk

#InfosecurityEurope: What TechUK's New Plan Means for Cybersecurity
The British tech trade association called for more collaboration between government and industry actors to improve the security of critical sectors

#InfosecurityEurope: Leading Cybersecurity Providers to Share Insights on Breach Containment
As cybersecurity breaches continue to steal the headlines, exhibitors at Infosecurity Europe are lining up to provide insight and advice

#InfosecurityEurope: Top Five Things to Check Out at This Year’s Event
With Infosecurity Europe just around the corner, here are four of the must-see activities happening at this year’s event

Microsoft Pays $20m to Settle Another FTC COPPA Case
Regulator alleged Microsoft knowingly collected personal information from children

Ofcom Latest MOVEit Victim as Exploit Code Released
UK regulator admits hundreds of employees are impacted

Historic Zacks Breach Impacts Nearly Nine Million
Stock research firm revealed more recent incident in January

Data Flows Between UK and US to be Simplified Under New Agreement
The ‘data bridge’ is an extension to the Data Privacy Framework agreed between the US and EU last year

Swiss Government Targeted by Series of Cyber-Attacks
A DDoS attack targeting Switzerland’s administration is the third campaign targeting the country in two weeks

Two Russian Nationals Charged in Connection with Mt Gox Hack
One allegedly used stolen funds to help set up BTC-e exchange

Ukrainian Hackers Take Out Russian Banking Infrastructure
Telecoms firm Infotel JSC targeted in anarchist cyber army

Hackers Impersonate Journalists to Steal Millions via Twitter and Discord
Pink Drainer group has targeted hundreds of victims so far



