Infosecurity News

UK Joins US, Canada, Others in Banning TikTok From Government Devices
The Chancellor of the Duchy of Lancaster, Oliver Dowden, confirmed the plans earlier today

NCSC Calms Fears Over ChatGPT Threat
Tool won't democratize cybercrime, agency argues

BEC Volumes Double on Phishing Surge
Business email compromise overtakes ransomware

Chinese SilkLoader Malware Sold to Russian Cyber-Criminals
Cobalt Strike beacon loader migrates across criminal ecosystems

Tick APT Group Hacked East Asian DLP Software Firm
The hacker breached the DLP company's internal update servers to deliver malware within its network

"FakeCalls" Android Malware Targets Financial Firms in South Korea
CPR discovered 2500 samples of the malware, impersonating 20 financial institutions in the region

Humans Still More Effective Than ChatGPT at Phishing
The research paper by HoxHunt analyzed 53,127 emails sent to users in over 100 countries

UK Bank Limits Crypto Payments to Smother Fraud
NatWest warns of "life-changing" customer losses

Phishing Campaigns Use SVB Collapse to Harvest Crypto
Experts warn users to be on their guard

Microsoft Patches Two Zero Days This Month
They include one likely exploited by Russian-linked threat actors

YoroTrooper Espionage Campaigns Target CIS, EU Countries
The threat actors mainly targeted organizations across Azerbaijan, Tajikistan and Kyrgyzstan

DEV-1101 Updates Open Source Phishing Kit
The kit is written in NodeJS and has automated setup and detection evasion capabilities

CISA Creates New Ransomware Vulnerability Warning Program
The Agency will warn critical infrastructure entities to enable mitigation before an incident

LA Housing Authority Suffers Year-Long Breach
LockBit ransomware group stole data and encrypted files

UK Crypto Firm Loses $200m in Cyber-Attack
Euler Finance suffered "flash loan" attack

MI5 Launches New Agency to Tackle State-Backed Attacks
National Protective Security Authority begins its work

Remote Code Execution and Camera Access Flaws Found in Smart Intercoms
13 vulnerabilities were found in the E11 smart intercom devices by Chinese manufacturer Akuvox

Dark Pink APT Group Deploys KamiKakaBot Against South Asian Entities
The relationship between Europe and ASEAN countries is being exploited with social engineering lures

Infostealers Spread Via AI-Generated YouTube Videos
Infostealers observed to be delivered via these videos included Vidar, RedLine and Raccoon

Unlocking the Benefits and Trade-Offs of Agentless Cloud Security
Agentless cloud security solutions were among the most talked-about topics during the Cloud & Cyber Security Expo, set in London on March 8-9, 2023



