Infosecurity News

HSE Cyber-Attack Costs Ireland $83m So Far
A total of roughly 100,000 people had their personal data stolen during the cyber-attack

Chaos RAT Used to Enhance Linux Cryptomining Attacks
The main downloader script and further payloads were hosted in different locations

Royal Ransomware Targets US Healthcare
Requested ransom payment demands ranged from $250,000 to over $2m

Transitive Dependencies Account for 95% of Bugs
Endor Labs warns of dangerous complexities in open source

North Korean Hackers Impersonate Researchers to Steal Intel
Report associates new intelligence-gathering tactic with Kimsuky group

Researchers Find 63 Zero-Day Bugs at Latest Pwn2Own
Competition awards winning participants nearly $1m

Truebot Malware Activity Increases With Possible Evil Corp Connections
The campaigns observed by Cisco Talos have resulted in the creation of two botnets

BEC Attacks Expand Beyond Email and Toward Mobile Devices
Scammers typically obtain mobile numbers from data breaches, social media and data brokers

Cobalt Mirage Affiliate Uses GitHub to Relay Drokbk Malware Instructions
Secureworks said the malicious code is written in .NET and comprises a dropper and a payload

Software Supply Chain Attacks Leveraging Open-Sources Repos Growing
ReversingLabs found an increasing number of malicious packages in three popular repositories

#BHEU: UK Government Calls for Industry Input on its Cybersecurity Strategy
A DCMS official sets out the UK government's cybersecurity strategy during Black Hat Europe 2022

Government to Fund Security Studies for Hundreds of Students
Latest move shows urgent need to nurture skills pipeline

Security Concerns Scupper Deals for Two-Thirds of Firms
Global report ties poor security to bottom-line impact

Government Sets Out New Rules to Enhance App Security
Voluntary code of conduct is designed for developers and app store operators

US Sues TikTok Over Child Safety and Data Security Claims
The Indiana court said TikTok promoted age-restricted content regardless of a user's age

Iranian APT Agrius Targets Diamond Industry Worldwide With Fantasy Wiper
The group conducted supply chain attacks against the diamond industry across three continents

Apple Introduces New Data Protections to Increase Cloud Security
The new features will be globally available in 2023, but one of them already is for some US users

#BHEU: Time for Cyber Pros to Shape the Industry’s Future
Jen Ellis urges the cyber industry to take a leading role in shaping its future, during Black Hat Europe 2022

Pet Dog Unmasks Drug Trafficker on Encrypted Chat
Police studied photos sent via EncroChat to reveal users

Investment Fraud Gang May Have Made $500m
CryptosLabs has been operating since 2018, says Group-IB



