Infosecurity News

RCE on Log4j Among Top CVEs Exploited By Chinese-Backed Hackers
In a joint advisory, three US agencies, NSA, CISA and FBI, warned about Chinese threat actors

Russian Sanctions Instigator Lloyd's Possibly Hit by Cyber-Attack
The insurance market has detected “unusual activity” and turned off its systems

Businesses in Canada Warned Not to Overlook Cybersecurity As Recession Looms
CEOs put cybersecurity seventh behind near-term risks such as the economy and potential recession

US Warns of Foreign Disinfo Ops Ahead of Midterms
False narratives will try to sow doubt over outcome of election

Meta Sues Chinese Devs Over WhatsApp Malware Plot
Fake apps led to account takeovers and spam campaigns

Hacker Steals Over $570m from Binance Bridge
Cypro-thieves target popular cross-chain bridging service

FBI and CISA Publish Advisory on Malicious Cyber Activity Against Election Infrastructure
Threat actors trying to compromise elections are unlikely to result in large-scale disruptions

Android Spyware 'RatMilad' Targets Enterprise Devices in Iran
The original RatMilad spyware hid behind a VPN and phone number spoofing app called Text Me

Uber's Former Security Chief Convicted of 2016 Data Breach Cover-Up
Joe Sullivan was charged two years ago with obstruction of justice and misprision

RDP Attacks Decline 89% in Eight Months
Return to office and improved defenses are having an impact

US Healthcare Giant CommonSpirit Hit by Possible Ransomware
Provider runs 140 hospitals across the nation

Retailer Easylife Fined £1.5m for Data Protection Breaches
UK regulator also slams company for predatory marketing calls

Canadian Sentenced to 20 Years in US Prison For Ransomware Attacks
Sebastien Vachon-Desjardins, 35, was also ordered to forfeit $21.5m

CISA Advisory Details How Hackers Targeted Defense Industrial Base Organization
The document was jointly released by CISA with the FBI and NSA

Australia's Data Breaches Continue With Telstra's Third-Party Supplier Hacked
The data posted on the internet by the hackers was from 2017 and reportedly "basic in nature"

Ransomware Group Bypasses "Enormous" Range of EDR Tools
BlackByte delivers new way to circumvent endpoint detection

Landmark US-UK Data Access Agreement Begins
UK law enforcers should be biggest beneficiaries

New Initiative Aims to Strengthen UK's Nuclear Cybersecurity Posture
Sector-specific hub will look to professionalize the sector

CISA Directive Improves Asset Visibility, Vulnerability Detection on Federal Networks
It requires some federal agencies to perform automated asset discovery every seven days

Optus Confirms Hack Exposed Data of Nearly 2.1 Million Australians
The company confirmed it has employed Deloitte to lead a forensic review of the cyber-attack



