Infosecurity News

Ransomware Attack Hits The Guardian Newspaper
Staff told to work from home after compromise

Researchers Develop AI-powered Malware Classification for 5G-enabled IIoT
A team of researchers came up with an ingenuous method leveraging AI to detect and classify malware in IIoT devices

Cyber-Incident Causes System Failures at Canadian Children's Hospital
The ongoing incident has impacted clinical and corporate systems, as well as some hospital phone lines and webpages

US Most Impacted by Data Breaches in the Financial Industry in 2022
While 57% of these breaches were attributed to different types of malware, ATM skimming still accounted for 6.5% of all attacks targeting the financial sector

UK Security Agency Wants Fresh Approach to Combat Phishing
NCSC says "blame and fear" won’t work

Adult Google Ad Fraud Campaign Garnered Millions of Impressions
Fraudster used "popunders" and obfuscation to generate cash

Godfather Trojan Targets 400 Financial Services Firms
Mobile banking malware designed to steal bank and crypto credentials

Organizations Warned of New Attack Vector in Amazon Web Services
Researchers warned that threat actors could potentially exploit Elastic IP transfer and compromise an IP address

UK Privacy Regulator Names and Shames Breached Firms
ICO publishes detailed list of complaints and investigations

Fortnite Dev to Pay $520m in Record-Breaking Settlement
FTC reveals gaming firm's privacy violations and design tricks

Ukraine's Delta Military Intel System Hit by Attacks
Phishing campaign spotted by CERT-UA

Ransomware Groups to Increase Zero-Day Exploit-Based Access Methods in the Future
Trend Micro’s latest research paper analyzed ways in which ransomware groups could evolve to stay on top of strengthened cyber-protection measures

Meta Takes Down Over 200 Covert Influence Operations Since 2017
The most common location for influence operations was Russia, according to Meta

Mobile App Users at Risk as API Keys of Email Marketing Services Exposed
Leaked API keys allow threat actors to perform a variety of unauthorized actions

NIST to Scrap SHA-1 Algorithm by 2030
The agency said it will stop using SHA-1 in its last remaining specified protocols by December 31 2030

API Vulnerabilities Discovered in LEGO Marketplace
The vulnerabilities, which are now fixed, could have put sensitive customer data at risk

Agenda Ransomware Switches to Rust to Attack Critical Infrastructure
Victim companies have a combined revenue of around $550m

Meta's Bug Bounty Program Shows $2m Awarded in 2022
The total amount since the program's establishment in 2011 is reportedly $16m

Social Blade Confirms Data Breach Exposing PII on the Dark Web
The company confirmed the data does not include any credit card information

Two-Thirds of Security Pros Have Burnt Out in Past Year
Excessive workload is the most common contributing factor



