Infosecurity News

Ten Charged in $11m Healthcare BEC Plots
Several of the men diverted funds intended for hospitals

CISA, NSA, ODNI Publish Software Supply Chain Guidelines For Customers
The come after the August release of guidance for developers and the October one for suppliers

Shoppers Warned Stay Alert this Black Friday as Hackers Renew Efforts
Cyber-criminals are exploiting the busy period during both purchase and delivery stages

Instagram Credential Phishing Attacks Bypass Microsoft Email Security
The attack bypassed both SPF and DMARC email authentication checks

Emerging Threat Actor DEV-0569 Expands Its Toolkit to Deliver Royal Ransomware
As well as malvertising and phishing links, the new threat actor is now also using contact forms to deliver its payloads, found Microsoft

Netflix Phishing Emails Surge 78%
Social engineers are using Unicode techniques to bypass filters

Russian Duo Indicted Over E-Book Piracy
St Petersburg couple were arrested in Argentina

Hive Ransomware Has Made $100m to Date
CISA notice warns of 1300 victims and counting

Zeus Botnet Suspected Leader Arrested in Geneva
Vyacheslav Igorevich Penchukov was arrested in Geneva on October 23, 2022, and is now pending extradition to the US

Security Budget Cuts and Recession Spark Worries Among IT Admins
The report suggests 44% agree their firm will cut security spending in the next year

Hundreds of Amazon RDS Snapshots Discovered Leaking Users' Data
The discovery was made by security researchers at Mitiga

More Than Half of Black Friday Spam Emails Are Scams
New research analyzes email scam techniques in the build-up to this year's Black Friday

Cybersecurity Industry Must Maintain Public Faith in Technology, Says NCSC Founder
The NCSC's founding CEO, Ciaran Martin, explains why the cyber industry is now a public good

PCI Council Launches Flexible Mobile Payments Standard
Announcement recognizes growing volume of smartphone payments

US: Iranian Hackers Breached Government with Log4Shell
Threat actors installed crypto-miner and achieved persistence

Chinese Spy Gets 20 Years for Aviation Espionage Plot
US authorities land a rare win in fight against state-backed info-theft

Android Privacy Sandbox Beta to Roll Out By Early 2023
The project aims to bring new and more private advertising solutions to mobile

Majority of Companies Reduce Cybersecurity Staff Over Holidays
Cybereason’s latest report is based on a survey of more than 1200 cybersecurity professionals

Botnets, Trojans, DDoS From Ukraine and Russia Have Increased Since Invasion
The news comes from a report by Top10VPN and is based on data by the Shadowserver Foundation

State-Backed APT Group Activity Continuing Apace
The report outlines recent APT group activity from Russia, China, Iran and North Korea



