Infosecurity News

Cloudflare Stops Largest HTTP DDoS Attack on Record
Attack reached 71 million requests-per-second

Resurrected Crypto-mixer Launders $100m in North Korean Funds
Sanctioned mixer Blender is actually Sinbad, says Elliptic

Cybersecurity Experts Warn Against Valentine's Day Romance Scams
Victim losses associated with online romance scams nationwide totaled approximately $5.9bn in 2021

Group-IB Blocks Attack By Chinese Tonto Team Hackers
The threat actors used phishing to deliver malicious files created with the Royal Road Weaponizer

Majority of Firms Make Cybersecurity Decisions Without Attacker Insight
Cybersecurity experts believe senior leadership teams underestimate cyber-threats

Researchers Uncover 700+ Malicious Open Source Packages
Latest npm and PyPI finds should be kept out of build environments

MoneyGram Fraud Victims Get $115m in Compensation
Money transfer firm failed to crack down on scam agents

Namecheap Customers Flooded with Phishing Emails
Domain registrar blames upstream provider

Reddit Hit By Phishing Attack, Source Code Stolen
Reddit said there was “no indication” of a breach of the company’s primary production systems

US Warns Critical Sectors Against North Korean Ransomware Attacks
The latest iteration of the document is now analyzing activity by the Maui and H0lyGh0st groups

Malicious Npm Package Uses Typosquatting, Downloads Malware
Reversing Labs said aabquerys was able to download second- and third-stage malware payloads

Fifth of ICS Bugs Have No Patch Available
Some industrial systems have been exposed for three years

Refund and Invoice Scams Surge in Q4
Avast also warns of increase in tech support fraud

New Threat Group Reviews Screenshots Before Striking
Threat actor has been dubbed TA866 by Proofpoint

#SOOCon23: Open Source Tools can Automate SBOM Requirements
Open source enterprise software users presented tools to automate SBOMs during the State of Open Con 23 conference in London

US and UK Sanction Seven Russian Cyber-Criminals
The seven Russian nationals are members of the notorious Trickbot malware gang

Dark Web Market Revenues Sink 50% in 2022
Closure of Hydra has major impact on underground sales

Trio Arrested in COVID PPE Fraud Probe
UK company set up to illegally profit from trade in protective equipment

New Info-Stealer Discovered as Russia Prepares Fresh Offensive
Ukraine braced for more critical infrastructure attacks

UK Politician's Email Hacked by Suspected Russian Threat Actors
The SNP MP revealed details of the incident, in which he clicked on a malicious file purportedly about the military situation in Ukraine



