Infosecurity News

Amazon to Pay $31m After FTC's Security and Privacy Allegations
Regulator's proposed order to cover civil penalty and consumer refunds

Zyxel Customers Urged to Patch Exploited Bug
Vulnerability being "widely exploited" in Mirai-based botnet attacks

New "Migraine" Flaw Enables Attackers to Bypass MacOS Security
Discovered by Microsoft and dubbed "Migraine," the flaw was disclosed to Apple and patched

SpinOk Trojan Compromises 421 Million Android Devices
The Doctor Web team unveiled information about the malware in an advisory published on Monday

IDSA: Only 49% of Firms Invest in Identity Protection Before Incidents
Just 29% take action after having already experienced a security incident

Danni Brooke to Spotlight the Role of Women in Cyber at Infosecurity Europe 2023
Danni Brooke, former Met police officer and star of Channel 4’s Hunted, has been confirmed as the keynote speaker at this year’s Women in Cybersecurity event

Pentagon Cyber Policy Cites Learnings from Ukraine War
New 2023 strategy document sent to Congress

WordPress Rushes Out Jetpack Patch to Millions
Bug could allow malicious actors to manipulate files

Dark Pink APT Group Expands Tooling and Targets
Group-IB spots five new victims

Nigerian Cybercrime Ring's Phishing Tactics Exposed
The criminal enterprise resulted in losses of up to $1m

Human Error Fuels Industrial APT Attacks, Kaspersky Reports
OT network admins grant access to employees or contractors without sufficient security measures

DogeRAT Malware Impersonates BFSI, Entertainment, E-commerce Apps
Discovered by CloudSEK, the malicious campaign relies on open source Android malware

Ransomware Gangs Adopting Business-like Practices to Boost Profits
Cyber-criminal gangs are mirroring the practices of legitimate businesses to drive efficiencies and increase profits

Dark Web Data Leak Exposes RaidForums Members
Cybercrime site was taken down by the authorities in 2022

Retailer Database Error Leaks Over One Million Customer Records
SimpleTire snafu has now been remediated

Nine Million MCNA Dental Customers Hit by Breach
LockBit ransomware group has claimed responsibility

New Mirai Variant Campaigns are Targeting IoT Devices
Unit 42 researchers observed that a wave of malicious campaigns, all deployed by the same threat actor, have been using IZ1H9 since November 2021

New Russian-Linked Malware Poses “Immediate Threat” to Energy Grids
Researchers say the specialized OT malware has similarities with Industroyer, which was used to take down power in Kiev, Ukraine, in 2016

Romania’s Safetech Leans into UK Cybersecurity Market
The cyber innovator sees the UK is an ideal location to realize its global ambitions as it opens a SOC at the Plexal Innovation Hub

Advanced Phishing Attacks Surge 356% in 2022
Perception Point said the increase is due to the adoption of new cloud collaboration apps



