Infosecurity News

#BHEU: Time for Cyber Pros to Shape the Industry’s Future
Jen Ellis urges the cyber industry to take a leading role in shaping its future, during Black Hat Europe 2022

Pet Dog Unmasks Drug Trafficker on Encrypted Chat
Police studied photos sent via EncroChat to reveal users

Investment Fraud Gang May Have Made $500m
CryptosLabs has been operating since 2018, says Group-IB

Cyber-criminals Scammed Each Other Out of Millions in 2022
Sophos report reveals thriving "sub-economy" on underground sites

Microsoft Warns Cryptocurrency Firms Against Complex Cyber-Attacks
Attacks included fraud, vulnerability exploitation, fake applications and info stealer deployments

NZ Privacy Commissioner Investigates Mercury IT Ransomware Attack
The watchdog also confirmed it plans on opening a compliance investigation into the incident

Security Risks Found in Millions of XIoT Devices
Phosphorus published a report encapsulating five years of security research and device testing.

FFT and Ransomware Represent Over Half of Cyber Insurance Claims in 2022
While average ransomware claims are much higher, the report warned that vectors like BEC could deliver "death by a thousand cuts"

UK Government Department Using Unsupported Applications, Reveals Watchdog
Almost a third (30%) of applications used by Defra are unsupported, a report from the National Audit Office has revealed

ICO Fines Rogue Nuisance Callers £500,000
Some companies forced victims to share card details

Russia's VTB Bank Suffers its Biggest Ever DDoS
Ukraine suspected of attack on state-owned lender

Supply Chain Web Skimming Attacks Hit Dozens of Sites
Malicious e-commerce campaign ongoing since December 2021

China-Based Hackers Target Amnesty International Canada
Results suggest the attack was executed using tools and techniques associated with Chinese APTs.

Christmas Warning: Threat Actors Impersonate your Favorite Brands to Attack, Finds CSC
Majority of third-party domain names impersonating the biggest global brands use domain privacy services, indicating the owner’s intention to mask their identity

Swiss Government Wants to Implement Mandatory Duty to Report Cyber-Attacks
The move would shed light on hackers and sound the alarm more widely on cyber-threats in the country.

Threat Actors Use Malicious File Systems to Scale Crypto-Mining Operations
The hackers used PRoot to increase the scope of their operations to several Linux distributions

Gen Z Internet Users "Normalize" Cybercrime - Report
EU-funded study finds concerning levels of risky behavior

Russian Hackers Use Western Networks to Attack Ukraine
Lupovis used decoys to find out more about threat actors

Prolific Chinese Hackers Stole US COVID funds
Secret Service says discovery may be the tip of the iceberg

Rackspace Admits Security Incident, Helps Customers Migrate to Microsoft 365 Accounts
The known impact was isolated to a portion of the firm's Hosted Exchange platform



