Infosecurity News

  1. Consumer Loans Firm TMX Reveals Major Data Breach

    Nearly five million impacted by December 2022 incident

  2. Outsourcer Capita Claims to Have Contained "Cyber Incident"

    Firm has billions of pounds worth of government contracts

  3. Italy's Privacy Watchdog Blocks ChatGPT Amid Privacy Concerns

    GPDP probe is due to allegations that ChatGPT failed to comply with data collection rules

  4. Modular "AlienFox" Toolkit Used to Steal Cloud Service Credentials

    Harvesting API keys and secrets from AWS SES, Microsoft Office 365 and other services

  5. New Azure Flaw "Super FabriXss" Enables Remote Code Execution Attacks

    The cross-site scripting flaw affects SFX version 9.1.1436.9590 or earlier and has a CVSS of 8.2

  6. UK Regulator: HIV Data Protection Must Improve

    ICO issues call after reprimanding NHS Highland

  7. GCHQ Updates Security Guidance for Boards

    Agency wants business leaders to get serious about cyber

  8. Ukrainian Police Bust Multimillion-Dollar Phishing Gang

    More than 100 sites created to lure European victims

  9. North Korean Hackers Use Trojanized 3CX DesktopApp in Supply Chain Attacks

    Windows and Mac versions of the software were compromised to deliver infostealers

  10. Over 70% of Employees Keep Work Passwords on Personal Devices

    95% of security leaders are also concerned about phishing attacks via private messaging apps

  11. FDA Protects Medical Devices Against Cyber-Threats With New Measures

    New medical devices applications should "monitor, identify, and address" cybersecurity issues

  12. Volume of HTTPS Phishing Sites Surges 56% Annually

    Scammers are increasingly trying to legitimize their efforts

  13. NCA Celebrates Multimillion-Pound Fraud Takedowns

    Agency says it has seized hundreds of assets in month-long operation

  14. Thieves Steal $9m from Crypto Liquidity Pool

    SafeMoon claims exploited vulnerability was to blame

  15. Google Warns Against Commercial Spyware Exploiting Zero-Days

    Spyware vendors facilitated the spread of malware by government-backed threat actors

  16. Clop Ransomware Group Exploits GoAnywhere MFT Flaw

    The vulnerability has a CVSS score of 7.2 and was exploited against several companies in the US

  17. Attacks Targeting APIs Increased By 400% in Last Six Months

    The new Salt Security report found that 80% of attacks happened over authenticated APIs

  18. ChatGPT Vulnerability May Have Exposed Users’ Payment Information

    The breach was caused by a bug in an open-source library

  19. Tech Industry Bids to Tackle Cyber-Mercenary Epidemic

    New principles designed to disrupt and limit a rapidly growing market

  20. Just 1% of Cloud Permissions Are Actively Used

    Microsoft warns of "permissions gap" security threat

What’s Hot on Infosecurity Magazine?