Infosecurity News

Black Basta Deploys PlugX Malware in USB Devices With New Technique
The variant is “wormable” and can infect USB devices to hide itself from the Windows OS

New 'Pig Butchering' Scam in West Africa Impersonates US Financial Advisors
DomainTools said most of these attacks exploited professional network services such as LinkedIn

Security is Key to Business Transformation, Say IT Chiefs
Two-fifths see it as a critical innovation driver

Global Action "Dismantles" Hive Ransomware Group
FBI distributes hundreds of decryption keys to victims

Microsoft: Update On-Premises Exchange Server Now
Attacks are not going away, tech giant warns

Iranian Group Cobalt Sapling Targets Saudi Arabia With New Persona
The findings come from cybersecurity experts at Secureworks' Counter Threat Unit

Zacks Investment Research Confirms Breach Affecting 820,000 Customers
The firm believes the unauthorized access occurred between November 2021 and August 2022

CISA Warns Against Malicious Use of Legitimate RMM Software
The document mentions an October 2022 cyber campaign involving the malicious use of RMM solutions

NCSC: Iranian and Russian Groups Targeting Government, Activists and Journalists With Spearphishing
The NCSC advisory details tactics used by Russia-based threat actor SEABORGIUM and Iran-based group TA453

Dark Web Posts Advertising Counterfeit Cash Surge 90%
Physical currency remains a big draw for cyber-criminals

Near-Record Year for US Data Breaches in 2022
Breach notices are increasingly opaque, warns non-profit

Lloyds Bank Warns of 80% Surge in Advance Fee Scams
Fake ads for loans, jobs and properties are on the rise

North Korean Group TA444 Shows 'Startup' Culture, Tries Numerous Infection Methods
The threat actor has been targeting cryptocurrency exchanges since at least 2017

Yahoo Overtakes DHL As Most Impersonated Brand in Q4 2022
DHL came in second place, with 16% of all brand phishing attempts, and Microsoft followed with 11%

Ticketmaster Claims Bot Attack Disrupted Taylor Swift Tour Sales
Joe Berchtold, president of Live Nation, made the claims at a congressional committee Tuesday

Regulator Stress Test Highlights Cyber Insurance Concerns
Bank of England warns greater cross-industry consensus is needed

New Cheats May Emerge After Riot Games Hack
Ransomware actors stole source code, company reveals

Just Half of Firms Have Sufficient Cybersecurity Budget
One in 10 can only protect critical assets, says Neustar

DragonSpark Hackers Evade Detection With SparkRAT and Golang
The new string of attacks mostly targeted East Asian organizations

FBI Confirms Lazarus Group Was Behind $100m Harmony Hack
The North Korean cyber actors laundered over $60m worth of Ethereum stolen during the heist



