Infosecurity News

  1. Chinese Hackers Breached Ambassador’s Email

    Storm-0558 attack was revealed last week

  2. Clop Drives Record Ransomware Activity in June

    Scores of victims hit by MOVEit campaign

  3. GitHub Warns Devs of North Korean Attacks

    Social engineering campaign designed to deliver malicious npm packages

  4. New Study Highlights Critical Infrastructure's Resilience

    They exhibited a 20% higher threat detection behavior than the industry average

  5. Zyxel Vulnerability Exploited by DDoS Botnets on Linux Systems

    Fortinet discovered Multiple DDoS botnets, including Dark.IoT, a variant based on Mirai

  6. Microsoft Strengthens Cloud Logging Against Nation-State Threats

    The company said they collaborated closely with CISA to expand cloud logging

  7. Old Roblox Data Leak Resurfaces, 4000 Users' Personal Information Exposed

    Malicious actors have recently used an allegedly old data leak affecting Roblox developers

  8. Half of AI Open Source Projects Reference Buggy Packages

    Study also finds LLMs are poor at detecting malicious code

  9. CNI Firms: Climate Tech is Increasing Cyber Risk

    UK’s critical infrastructure sector concerned over expanding attack surface

  10. Estee Lauder Breached by Two Ransomware Groups

    Cosmetics giant confirms data was taken

  11. Chinese APT41 Linked to WyrmSpy and DragonEgg Surveillanceware

    Lookout attributed WyrmSpy and DragonEgg to APT41 due to overlapping Android signing certificates

  12. Critical API Security Gaps Found in Financial Services

    The Salt Security report also notes a 244% surge in unique attackers between H1 and H2 2022

  13. How Cyber Threat Intelligence Practitioners Should Leverage Automation and AI

    The Cyber Threat Intelligence Summit discussed how automation and generative AI could help CTI practitioners tackle the overload of data they have to process

  14. Biden-Harris Administration Unveils Smart Device Cyber Program

    The criteria for certification are set to be based on cybersecurity guidelines published by NIST

  15. Industry Experts Urge CISA to Update Secure by Design Guidance

    A letter authored by industry experts says that CISA should include specific details on how to implement security-by-design through threat modeling

  16. Scam Job Offers Target Uni Students

    Threat actors exploit high cost of living

  17. NCA: Nation States Using Cybercrime Groups as Proxies

    Crime agency chief warns of surging online threat

  18. Norwegian Giant Tomra Suffers “Extensive” Attack

    Employees forced to work from home after IT outage

  19. New Vulnerabilities Found in Adobe ColdFusion

    Rapid7 has observed that some vulnerabilities in Adobe ColdFusion were still being exploited several days after the patches were published

  20. CISA Unveils Guide to Aid Firms Transition to Cloud Security

    It mentions the CSET, SCuBAGear, Untitled Goose Tool, Decider and Memory Forensic on Cloud

What’s Hot on Infosecurity Magazine?