Infosecurity News

Google Unveils Bug Bounty Program For Android Apps
Rewards range from $750 for certain MiTM scenarios to $30,000 for some ACE vulnerabilities

Fata Morgana Watering Hole Attack Targets Shipping, Logistics Firms
The attack targeted Israeli websites and has been linked to a nation-state actor from Iran

GoldenJackal Targets Diplomatic Entities in Middle East, South Asia
According to Kaspersky, GoldenJackal has been active since 2019

ESET: Android App 'iRecorder – Screen Recorder' Trojanized with AhRat
With over 50,000 downloads, the screen recording app was initially legitimate, but the malicious functionality was later implemented

Two-Thirds of IT Leaders Say GDPR Has Reduced Consumer Trust
Increased awareness of data privacy issues has reduced trust in organizations, according to the survey

China Issues Ban on US Chipmaker Products
The Chinese Communist Party has told tech operators in China to stop purchasing Micron products

Meta Fined €1.2bn for Violating GDPR
The record-breaking amount of the fine is the least important part of the story, privacy experts argued

UK Man Sentenced to 13 Years for Running Multi-Million Fraud Website
Confirmed global losses from iSpoof scams were £100m, with the actual figure believed to be far higher

Microsoft Warns of Increase in Business Email Compromise Attacks
The company's systems currently detect and investigate an average of 156,000 BEC attacks daily

KeePass Flaw Exposes Master Passwords
The vulnerability (CVE-2023-32784) was discovered by security researcher Dominik Reichl

CommonMagic Malware Implants Linked to New CloudWizard Framework
Kaspersky researchers said sections of the CloudWizard code were identical to CommonMagic

Experts Warn of Voice Cloning-as-a-Service
Dark web offerings could commoditize deep fake technology

#CRESTCon: White House Shifts US Cybersecurity Strategy Towards International Cooperation
Andy Williams, CEO of Global Transatlantic Ltd, spoke at CRESTCon Europe about the new US National Cybersecurity Strategy

NCSC: It's Time for CISOs to Prioritize Accessibility
Doing so will make human errors and workarounds less likely

Teen Charged in DraftKings Credential Stuffing Case
Wisconsin man alleged to have stolen $600,000 from accounts

Cyber Warfare Escalates Amid China-Taiwan Tensions
Trellix report observed a surge in malicious emails targeting Taiwanese industries and government officials

Apple's App Store Blocks $2bn in Fraudulent Transactions
Firm also rejected 1.7 million apps for failing to meet privacy, security and content standards

Montana Signs Ban on TikTok Usage on Personal Devices
A TikTok spokesperson said the ban violates the First Amendment rights of Montana residents

ChatGPT Leveraged to Enhance Software Supply Chain Security
OX-GPT is designed to help quickly remediate security vulnerabilities during software development

Government Publishes Playbook to Enhance Smart City Security
Resources are designed to help local authorities mitigate risk



