Infosecurity News

Novel Banking Trojan 'PixPirate' Targets Brazil
Scripts could interact with the device's UI and enter text, simulate touch events, etc.

Iranian Threat Actor Neptunium Associated With Charlie Hebdo Cyber-Attacks
Microsoft's Digital Threat Analysis Center shared the findings last Friday in a blog post

Major Florida Hospital Shuts Down Networks, Ransomware Attack Suspected
The Tallahassee Memorial HealthCare hospital is following protocols for system downtime

Stalkerware Developer Hit with $400K Fine
New York attorney general says software facilitates domestic abuse

Legacy VMware Bug Exploited in Global Ransomware Campaign
Vendor's ESXi hypervisors are being targeted

Scam Alert for Dingo Token That Charges 99% Fee
Crypto has a market cap of close to $11m

MalVirt Loaders Exploit .NET Virtualization to Deliver Malvertising Attacks
The new loaders also leverage obfuscated virtualization techniques to avoid detection

Atlassian Patches Critical Authentication Flaw in Jira Software
The Jira versions affected by the vulnerability are 5.3.0, 5.3.1, 5.3.2, 5.4.0, 5.4.1 and 5.5.0

New Credential-Stealing Campaign By APT34 Targets Middle East Firms
The malware had additional exfiltration techniques compared to previously studied variants

ICO Relaxes Breach Reporting for Comms Providers
New rules are designed to reduce regulatory burden

US Man Charged in $110m Crypto Trading Scheme
Individual accused of draining funds from trading platform Mango Markets

Quarter of CFOs Have Suffered $1m+ Breaches
Similar number expect surge in cyber-attacks this year

IT Leaders Reveal Cyber Fears Around ChatGPT
A BlackBerry survey reveals 51% of security leaders expect ChatGPT to be at the heart of a successful cyber-attack within a year

Threat Actors Use ClickFunnels to Bypass Security Services
They created pages with malicious links and ultimately conducted credential-harvesting attacks

Arnold Clark Confirms Customer Data Compromised in Breach
Affected data includes names, contact details, vehicle details and ID documents, among others

Women in CyberSecurity Calls for Participants for New Measuring Inclusion Workshops
WiCyS is calling for workshop participants to inform its State of Inclusion of Women in Cybersecurity report

Lazarus Group Attack Identified After Operational Security Fail
The new campaign highlighted several "noteworthy developments" in TTPs

Record $3.8bn Stolen Via Crypto in 2022
North Korean hackers were a major cause

Researchers Warn of Crypto Scam Apps on Apple App Store
Sophos found two fraudulent crypto trading apps

City of London on High Alert After Ransomware Attack
Critical trading software firm Ion is compromised



