Infosecurity News

NSA Guide Helps Firms Protect Against Memory Safety Vulnerabilities
The document describes situations where cyber actors steal sensitive information and other negative impacts

Australia Considers Ban on Ransomware Payments After Medibank Breach
Home affairs minister Clare O'Neil made the announcement on ABC television on Sunday

Mass Email Extortion Campaign Claims Server Hack
Threat actors claim they’ll destroy victims' reputation if they don't pay

UK Shoppers Lost £15m+ to Scammers Last Winter
Cyber experts urge consumers to improve online safety

Ukrainian CERT Discloses New Data-Wiping Campaign
Somnia malware hijacks Telegram and VPN accounts

CISA Releases SSVC Guide to Help Companies Prioritize Vulnerabilities
Remediation efforts are prioritized based on exploitation status, safety impact and prevalence criteria

Man Arrested in Ontario For Alleged LockBit Ransomware Involvement
Mikhail Vasiliev was apprehended in Canada and is in custody awaiting extradition to the US

Twitter C-Level Resignations Continue As Blue Program Creates New Cyber-Risks
They left quoting concerns about the rollout of new features without an FTC consent decree

#IRISSCON: Social Engineering Testers Warned Not to Cross Ethical and Legal Boundaries
Sharon Conheady discusses the ethical and legal dilemmas often faced by social engineering testers

CISA Says Midterm Voting Uncompromised By Cyber-attacks
Election workers will continue to work in the days ahead to certify the election results

Ukrainian Cyber Cops Bust $200m Fraud Ring
Two-year pan-European operation ends in arrests

Only 30% of Cyber-Insurance Holders Say Ransomware is Covered
Insurers are cutting back on coverage as claims surge

Qatar World Cup Firms Urged to Upgrade Cyber-Threat Model
Digital Shadows warns of elevated risk from scammers and threat actors

New Lenovo Notebook Models Affected By UEFI Firmware Vulnerabilities
The flaws affect various Lenovo Yoga, IdeaPad and ThinkBook devices

#IRISSCON: Police Officer Urges More Reporting and Engagement to Tackle Cybercrime
Ireland's National Cyber Crime Bureau outlines cybercrime trends being observed in law enforcement

Majority of Security Managers Lack Threat Intelligence Skills
The report suggests threat intelligence is a crucial source for vulnerability detection

The 'Great Resignation' Caused Insider Threats to Peak in Q3 2022, Kroll Finds
Kroll’s Q3 2022 Threat Landscape report showed an unprecedented increase in insider threats

#IRISSCON: Cyber Professionals Now Tasked with Securing Society, Says Mikko Hyppönen
Mikko Hyppönen discusses how cyber-threats will become even more dangerous as reliance on connectivity grows

Some 98% of Global Firms Suffer Supply Chain Breach in 2021
Two-fifths still trust suppliers to handle their own security

Malware Redirects 15,000 Sites in Malicious SEO Campaign
Campaign designed to improve search engine rankings of spammy sites



