Infosecurity News

  1. Clorox and Johnson Controls Reveal $76m Cyber-Attack Bill

    SEC filings reveal multimillion-dollar costs of two serious 2023 cyber-attacks on Clorox and Johnson Controls

  2. UK Court Backlog Blocks Attempts to Fight Fraud Epidemic

    KPMG research finds a similar number of high-value UK fraud cases heard in 2023 to previous year

  3. Teen Chatting App Wizz Removed from Apple and Google Stores for Sextortion Concerns

    The Tinder-like app has countered claims of being a hot spot for sextortion scammers

  4. Romance Scam Victims Surge in 2023

    New data from Lloyds found that romance scam victims increased by 22% in 2023, with the average amount lost per incident £6937

  5. Cloudflare Suffers Breach After Failing to Rotate Stolen Okta Credentials

    Cloudflare revealed suspected nation-state attackers compromised its systems and accessed source code using credentials stolen in the Okta breach

  6. LockBit Reigns Supreme in Soaring Ransomware Landscape

    The last quarter of 2023 saw an 80% year-on-year increase in ransomware victim claims, according to ReliaQuest

  7. US Agencies Failure to Oversee Ransomware Protections Threaten White House Goals

    A GAO report found that federal agencies are not assessing whether critical infrastructure sectors are implementing NIST ransomware protection guidance

  8. Interpol-Led Initiative Targets 1300 Suspicious IPs

    Global collaborative effort focused on combating the global rise of phishing, malware and ransomware

  9. Pump-and-Dump Schemes Make Crypto Fraudsters $240m

    Chainalysis reveals that pump-and-dump schemes made Ethereum market manipulators over $240m in 2023 alone

  10. Google’s Bazel Exposed to Command Injection Threat

    Cycode stressed securing software supply chains amid complex dependencies and third-party actions

  11. US Thwarts Volt Typhoon Cyber Espionage Campaign Through Router Disruption

    US government agencies took down the botnet of Chinese APT Volt Typhoon, used to target critical infrastructure for nation-state espionage

  12. Ivanti Releases Zero-Day Patches and Reveals Two New Bugs

    Ivanti has finally released updates to fix two zero-day bugs and two new high-severity vulnerabilities

  13. Pawn Storm’s Stealthy Net-NTLMv2 Assault Revealed

    Trend Micro reported recent attacks focused on government sectors, including foreign affairs, energy, defense and transportation

  14. EU Launches First Cybersecurity Certification for Digital Products

    The voluntary scheme aims to encourage ICT providers to boost the cybersecurity of products and services across the EU

  15. US Senators Propose Cybersecurity Agriculture Bill

    The Farm and Food Cybersecurity Act has cross-party support and aims enhance the US agriculture sector’s cyber defenses

  16. Sysdig Report Exposes 91% Failure in Runtime Scans

    The research also revealed 69% of enterprises have yet to integrate AI into cloud environments

  17. US Sanctions Egyptian IT Experts Aiding ISIS in Cybersecurity

    The US said the two Egyptian nationals provided cybersecurity training and support to ISIS leadership and supporters, as well as helping enable the group to use cryptocurrency

  18. Citibank Sued For Failing to Protect Fraud Victims

    New York attorney general launches legal case against Citi for failing to reimburse or protect fraud victims

  19. City Cyber Taskforce Launches to Secure Corporate Finance

    A new initiative led by the ICAEW and NCSC launches today to improve cybersecurity during deals and investments

  20. Schneider Electric Confirms Data Accessed in Ransomware Attack

    Energy firm Schneider Electric said a ransomware incident, reportedly perpetrated by the Cactus group, has led to data being accessed from its Sustainability Business division

What’s hot on Infosecurity Magazine?