Infosecurity News

#RSAC: Climate Change is Increasing Cyber-Risks
Chloe Messdaghi outlines the link between climate change and increased cyber-threats, and says this topic must be addressed

#RSAC: Cyber Intrusion Campaign Against Three US Federal Agencies Thwarted
The CISA and CNMF prevent a foreign-based cyber-criminal carrying out an attack on three US Federal Agencies

#RSAC: Understanding AI's Role in Cybersecurity Beyond the Hype
Diana Kelley explains why unrealistic expectations of AI can have serious consequences

#RSAC: Computer Science Courses Must Teach Cybersecurity to Meet US Government Goals
The US government has for security to become a standard component of computer science courses. Infosecurity investigates how this can be achieved

Scammers Impersonate Meta in Facebook Campaign With 3200 Profiles
Phishing websites and session hijacking attacks were used to access Facebook and other accounts.

US Navy Contractor Fincantieri Marine Group Hit by Cyber-Attack
Shipbuilder said the incident affected its email server and some network operations

Tomiris and Turla APT Groups Collaborate to Target Government Entities
Deployed malware aims to steal internal documents from CIS government and diplomatic entities

Cloud Complexity Means Bugs Are Missed in Testing
Most CISOs think vulnerability management is getting harder

American Bar Association Breach Hits 1.5 Million Members
Website usernames and passwords stolen in March raid

3CX Hackers Also Compromised Critical Infrastructure Firms
Symantec warns North Korean actors may return for further exploitation

CFPB Employee Sends 256,000 Consumers' Data to Personal Email
Congressman Bill Huizenga addressed the claims in a letter to CFPB director, Rohit Chopra

Evil Extractor Targets Windows Devices to Steal Sensitive Data
New malware operates through several modules that rely on a File Transfer Protocol service

Trojanized Installers Used to Distribute Bumblebee Malware
Secureworks’ Counter Threat Unit analyzed the findings in a report published on Thursday

#CYBERUK23: Five Takeaways From the NCSC Conference on the UK's Cyber Strategy
More collaboration, both with the private sector and international allies, is at the top of the list in the UK’s cyber playbook

Government Agencies Release Blueprint for Secure Smart Cities
NCSC and CISA want to balance connectivity with resilience

China Developing Anti-Satellite Weapons - Report
Pentagon leak reveals US concerns over technology push

Capita: Data Was Taken in March Cyber Incident
IT outsourcer claims customer, employee and supplier info may be at risk

Two Connected Software Supply Chain Attacks Lead to 3CX Compromise
Mandiant said this would be the first instance of a software supply chain attack leading to another

Daggerfly APT Targets African Telecoms Firm With New MgBot Malware
Symantec described the findings today, saying the ongoing campaign likely started in November 2022

ChatGPT-Related Malicious URLs on the Rise
Newly registered and squatting domains related to ChatGPT grew by 910% between November and April



