Infosecurity News

Cyber-Resilience Programs Failing on Poor Visibility
Organizations need a better way to build and assess programs

US Offers $10m Reward For Alleged Prolific Ransomware Actor
Indictments claim Russian was involved in Babuk, Hive and LockBit

NSO Group Spends Millions Lobbying US Government
Spyware maker wants return to "business as usual"

Camaro Dragon APT Group Exploits TP-Link Routers With Custom Implant
The implant's components are designed to be compatible with different firmware from various vendors

Lacroix Shuts Three Factories For a Week After Cyber-Attack
The targeted cyber-attack hit activity sites in France, Germany and Tunisia

Infostealer Malware Surges: Stolen Logs Up 670% on Russian Market
The findings come from Secureworks' Counter Threat Unit

BEC Attackers Spoof CC'd Execs to Force Payment
Armorblox uncovers another new tactic used by email fraudsters

Researchers Uncover New "RA Group" Ransomware
Actor is using leaked Babuk code to target firms

PharMerica Breach Hits Over 5.8 Million Customers
Medical and insurance data exposed in ransomware attack

Qilin's Dark Web Ransomware Targets Critical Sectors
Group-IB's threat intelligence team said it infiltrated and analyzed Qilin's inner workings

Ex-Ubiquiti Employee Imprisoned For $2m Crypto Extortion Scheme
The defendant was also ordered to pay $1.6m in restitution and forfeit property used for the crimes

Lancefly APT Custom Backdoor Targets Government and Aviation Sectors
Symantec's Threat Hunter Team said these campaigns have been ongoing for several years

Discord Breached After Service Agent Targeted
Incident impacts user emails and support messages

US Says VoIP Firm Delivered Billions of Scam Robocalls
DoJ and FTC take action against XCast Labs

UK Pension Scheme: Members Should Assume Capita Data Theft
USS says 470,000 individuals may be affected

PaperCut Software Flaw Sparks Ransomware Attacks, CISA Warns
The bug allowed cyber-criminals to remotely execute malicious code without authentication credentials

Toyota Admits Decade-Long Data Leak Affecting 2.15 Million Customers
Spokesperson Hideaki Homma said the cloud-based service issue affected only vehicles in Japan

Essential Addons Plugin Flaw Exposes One Million WordPress Websites
Patchstack cybersecurity experts described the vulnerability in an advisory published on Thursday

Manufacturers Targeted as Ransomware Victim Numbers Spike 27%
Smaller threat groups and coercive tactics are increasingly common

Software Supply Chain Attacks Hit 61% of Firms
Only half of firms are requesting a software bill of materials



