Infosecurity News

GoDaddy Announces Source Code Stolen and Malware Installed in Breach
An unauthorized party caused the intermittent redirection of customer websites

Frebniis Malware Exploits Microsoft IIS Feature
The malware was used by a previously unknown threat actor against targets in Taiwan

FBI "Contains" Cyber-Incident on its Network
Question marks remain over what happened at New York field office

Norway Seizes Millions in North Korean Crypto
Funds were taken in attack on Ronin Network

Police Bust $41m Email Scam Gang
Criminal network comprises French and Israeli gangsters

Cloud Infrastructure Used By WIP26 For Espionage Attacks on Telcos
The threat actor initiated infection chains by targeting employees through WhatsApp messages

EU Cybersecurity Agency Warns Against Chinese APTs
The document directly mentions APT27, APT30, APT31, Ke3chang, Gallium and Mustang Panda

Google Report Reveals Russia's Elaborate Cyber Strategy in Ukraine
One year after the invasion of Ukraine, Google and Mandiant analyzed the cyber strategy of Russia-backed threat actors

Armenia and Azerbaijan Hackers Use OxtaRAT to Monitor Conflict
The newest version of OxtaRAT is a polyglot file combining a compiled AutoIT script and an image

UK NCSC Launches Recommendations on Supply Chain Mapping
The UK National Cybersecurity Centre’s new guidance breaks down the essentials of a good supply chain mapping (SCM) list

Firm Fined £200K For "Exploitative" Call Campaign
It's OK Ltd made over 1.7 million nuisance calls

Data Leak Hits Thousands of NHS Workers
Email snafu affects staff at Liverpool University Hospital Foundation Trust

Hackers Fake Emsisoft Certificate to Hide Attack
Attempt to trick network defenders into allow-listing remote access app

BEC Groups Target Firms With Multilingual Impersonation Attacks
Combined, the two groups have launched BEC campaigns in at least 13 different languages

City of Oakland Declares State of Emergency After Ransomware Attack
Core functions are intact, but the city has taken certain non-emergency systems offline

Hackers Leverage PayPal to Send Malicious Invoices
The phishing email warned users that there had been fraud on the account

Quarter of Crypto Tokens Linked to Pump-and-Dump
Scammers made an estimated $30m in profits in 2022

Experts Warn of Surge in Multipurpose Malware
The average malware variant now utilizes 11 TTPs

UK Policing Riddled with Chinese CCTV Cameras
Security and ethical concerns raised by surveillance commissioner

Google Launches Privacy Sandbox Beta on Android 13 Devices
It is an initiative designed to limit user data sharing in digital advertising



