Infosecurity News

Hundreds of Amazon RDS Snapshots Discovered Leaking Users' Data
The discovery was made by security researchers at Mitiga

More Than Half of Black Friday Spam Emails Are Scams
New research analyzes email scam techniques in the build-up to this year's Black Friday

Cybersecurity Industry Must Maintain Public Faith in Technology, Says NCSC Founder
The NCSC's founding CEO, Ciaran Martin, explains why the cyber industry is now a public good

PCI Council Launches Flexible Mobile Payments Standard
Announcement recognizes growing volume of smartphone payments

US: Iranian Hackers Breached Government with Log4Shell
Threat actors installed crypto-miner and achieved persistence

Chinese Spy Gets 20 Years for Aviation Espionage Plot
US authorities land a rare win in fight against state-backed info-theft

Android Privacy Sandbox Beta to Roll Out By Early 2023
The project aims to bring new and more private advertising solutions to mobile

Majority of Companies Reduce Cybersecurity Staff Over Holidays
Cybereason’s latest report is based on a survey of more than 1200 cybersecurity professionals

Botnets, Trojans, DDoS From Ukraine and Russia Have Increased Since Invasion
The news comes from a report by Top10VPN and is based on data by the Shadowserver Foundation

State-Backed APT Group Activity Continuing Apace
The report outlines recent APT group activity from Russia, China, Iran and North Korea

Euro Authorities Warn World Cup Fans Over Qatari Apps
Security and privacy concerns mount for those attending matches

Most Neurodiverse Women in Tech Feel Unsupported: Study
Report suggests high demand for talent from security sector employers

LockBit Remains Most Prolific Ransomware in Q3
Phobos is a close second, according to Trellix

Billbug Targets Government Agencies in Multiple Asian Countries
According to Symantec, the targeting of a certificate authority was notable

Remote Code Execution Discovered in Spotify's Backstage
Spotify ranked the vulnerability as critical, with a CVSS score of 9.8

Lazarus Backdoor DTrack Evolves to Target Europe and Latin America
DTrack has not changed substantially, but Lazarus made some “interesting” modifications

China-Based Campaign Uses 42,000 Phishing Domains
Operation designed to spread malware and generate ad revenue

Police Celebrate Arrest of 59 Suspected Scammers
Month-long European operation focused on online fraudsters

Google to Pay $392m in Landmark Privacy Case
Multi-state settlement is largest in US history

GitHub Now Supports Private Vulnerability Reporting For Public Repositories
The feature needs to be manually enabled by repository maintainers



