Infosecurity News

UK Criminal Records Office Crippled by "Cyber Incident"
Ransomware suspected as visa applications are hit

How the Last Big Breach Will Help You Prepare for the Next Cyber Crisis
Microsoft’s Sarah Armstrong-Smith explains why past incidents are crucial to informing our incident response strategies

UK Discloses Offensive Cyber Capabilities Principles
The National Cyber Force, a joint agency between GCHQ and the Ministry of Defence, revealed the principles ruling its cyber operations

FBI Leads International Effort to Seize Domains for Notorious Genesis Market
Cybercrime marketplace facilitated trade in stolen credentials

Database Snafu Leaks 600K Records from Marketplace
Z2U users accused of selling online accounts and malware

Malicious Spam Campaign Downs npm Registry
SEO poisoning drives surge in traffic

New "Rorschach" Ransomware Spread Via Commercial Product
The ransomware strain uses a signed component of the Palo Alto Cortex XDR Dump Service Tool

Western Digital Hit By Network Security Breach
The incident involved an unauthorized third party gaining access to several systems

TikTok Fined £12.7m For Violating UK Data Privacy Laws
The ICO said TikTok failed to provide proper information on how data is collected, used and shared

HTTP/S DDoS Attacks Soar 487% in Three Years
Website takedowns driven by Russian hacktivists

US Authorities Seize $112m From "Pig Butchering" Scammers
Six crypto wallets now under government control

Crypto Firms Are Likely Target for 3CX Attacks
Kaspersky links campaign to Gopuram backdoor

US DoD Unveils Website For Hack the Pentagon Bug Bounty Program
It will be a resource for DoD organizations, vendors and security researchers

TikTok to Comply With US Law, Protect User Data From China
Erich Andersen, general counsel for TikTok, confirmed company will safeguard US user data from China

Unapproved Apps Used By 32% of Remote Workers
Latest Lookout report also suggested 46% of remote employees saved work files to personal devices

Dish Network Hit with Multiple Securities Class Action Lawsuits
Pay TV firm accused of misleading investors

Consumer Loans Firm TMX Reveals Major Data Breach
Nearly five million impacted by December 2022 incident

Outsourcer Capita Claims to Have Contained "Cyber Incident"
Firm has billions of pounds worth of government contracts

Italy's Privacy Watchdog Blocks ChatGPT Amid Privacy Concerns
GPDP probe is due to allegations that ChatGPT failed to comply with data collection rules

Modular "AlienFox" Toolkit Used to Steal Cloud Service Credentials
Harvesting API keys and secrets from AWS SES, Microsoft Office 365 and other services



