Infosecurity News

#RSAC: ISACA’s New Ransomware Incident Checklist to Aid Cyber Pros
ISACA’s Rob Clyde tells Infosecurity about the role of the guidance as well as new findings about cyber insurance

Evasive Panda's Backdoor MgBot Delivered Via Chinese Software Updates
Most of the plugins are designed to steal information from highly popular Chinese applications

Critical Flaw Patched in VMware Workstation and Fusion
A malicious actor with local admin privileges could exploit the vulnerability to escape from the VM

#RSAC: Google Cloud Introduces Generative AI to Security Tools as LLMs Reach Critical Mass
Google adds its security large language model to a number of its solutions at the RSA Conference 2023

Alloy Taurus Hackers Update PingPull Malware to Target Linux Systems
According to Unit 42, the variant uses the same AES key as the original Windows PE malware

New SLP Vulnerability Could Enable Massive DDoS Attacks
Bug has potential to facilitate 2200x amplification attacks

Quad Countries Prepare For Info Sharing on Critical Infrastructure
US, Australia, India and Japan deepen cyber ties

UK Cyber Pros Burnt Out and Overwhelmed
Alert fatigue is a major issue, says Expel

#RSAC: Ransomware Poses Growing Threat to Five Eyes Nations
Representatives of four of the five Five Eyes nations outlined the growing threat ransomware poses and approaches to thwart it

#RSAC: Characterless Security Training Fails to Change User Behavior
Experts from Amazon and the NCA offered tips on how to engage end users with cyber awareness training

#RSAC: AI Can Help Save Our Democracy
Bruce Schneier explains why the current democratic system is not fit for purpose, and the potential role of AI in future governance

#RSAC: Election Protection is CISA’s Top Priority for Next 18 Months
Protecting the democratic process from cyber-criminals is a top priority for CISA over the next 18 months, ahead of the US General Election

#RSAC: GPT-4 Empowers Cybersecurity Leaders to Make Smarter Risk Decisions
SecurityScorecard has leveraged OpenAI's GPT-4 technology to help cyber leaders make faster decisions

Yellow Pages Canada Hit by Cyber-Attack, Black Basta Claims Credit
The unauthorized third party stole employee and business customers' data

Iranian Hackers "Educated Manticore" Target Israel With New Tools
Security experts at Check Point Research described the findings in a new advisory published today

Google Finds Flaws in Intel TDX After Nine-Month Audit
Intel reportedly remediated all of the issues identified by Google

#RSAC: US DoJ Prioritizes Victim Support in Cybercrime Crackdown
The DoJ’s Lisa Monaco urges organizations to work with the federal government following cyber-incidents

Falling Dwell Time May Be Due to Faster Threat Activity
Sophos warns against simple interpretation of the data

Thousands of Social Media Takedowns Hit People Smugglers
National Crime Agency says big tech partnership is working

Researchers Find 250 Million Artifacts Exposed in Misconfigured Registries
More than 65,000 container images also at risk



