Infosecurity News

Malicious Npm Package Uses Typosquatting, Downloads Malware
Reversing Labs said aabquerys was able to download second- and third-stage malware payloads

Fifth of ICS Bugs Have No Patch Available
Some industrial systems have been exposed for three years

Refund and Invoice Scams Surge in Q4
Avast also warns of increase in tech support fraud

New Threat Group Reviews Screenshots Before Striking
Threat actor has been dubbed TA866 by Proofpoint

#SOOCon23: Open Source Tools can Automate SBOM Requirements
Open source enterprise software users presented tools to automate SBOMs during the State of Open Con 23 conference in London

US and UK Sanction Seven Russian Cyber-Criminals
The seven Russian nationals are members of the notorious Trickbot malware gang

Dark Web Market Revenues Sink 50% in 2022
Closure of Hydra has major impact on underground sales

Trio Arrested in COVID PPE Fraud Probe
UK company set up to illegally profit from trade in protective equipment

New Info-Stealer Discovered as Russia Prepares Fresh Offensive
Ukraine braced for more critical infrastructure attacks

UK Politician's Email Hacked by Suspected Russian Threat Actors
The SNP MP revealed details of the incident, in which he clicked on a malicious file purportedly about the military situation in Ukraine

#SOOCon23: UK Government Urges Industry Input on Software Security Policy
A UK government official asks the cyber industry, including the open software community, to help shape software security policies

BEC Attacks Surge 81% in 2022
Open rates for emails hit 28%

#SOOCon23: Global Cooperation Needed to Enhance Open Source Software Security
A panel of policy experts discuss how to improve global cooperation around open source software security

CISA Releases Recovery Tool for VMware Ransomware Victims
Legacy bug in ESXi servers is being targeted by threat actors

Regulator Halts AI Chatbot Over GDPR Concerns
Replika accused of posing risk to children

Cyber Insurance, A Must-Have for Small Businesses
With $10m in seed funding, Guardz looks to tackle cyber insurance for small businesses

UK Metal Engineering Firm Vesuvius Hit by Cyber-Attack
The engineering firm has started an investigation “to identify the extent of the issue”

Thirteen Teams Win at UK's CyberFirst Girls Competition
NCSC contest sees thousands of schoolgirls enter

Drugs Labs Busted After Encrypted Chat App Takedown
Dutch and German police team up to take down Exclu

UK Banks Still Failing on Digital Security - Report
Which? study finds many fail to provide basic online protection



