Infosecurity News

Critical Vulnerability in Oracle Cloud Infrastructure Allowed Unauthorized Access
Potential attacks resulting from it may include privilege escalation and cross–tenant access

California Signs Internet Privacy Legislation to Boost Children's Safety Online
The new legislation will implement some of the strictest privacy requirements in the US

Europol and Bitdefender Jointly Release LockerGoga Decryptor
LockerGoga targeted several companies in Norway and across the US in 2019

Grand Theft Auto Publisher Rockstar Games Hacked
The threat actor ‘teapotuberhacker’ could be linked to the Lapsus$ hacking group

Hackers Admit Destroying InterContinental Hotels Group's Data 'For Fun'
They tried to conduct a ransomware attack against IHG and upon failing, decided to delete the data

Quantum Computing Already Putting Data at Risk, Cyber Pros Agree
In the Deloitte poll, 50.2% of respondents said their organization is at risk of ‘harvest now, decrypt later’ attacks

American Airlines Breach Exposes Customer and Staff Information
An undisclosed number of people have been impacted

Revolut Breach May Have Hit 50,000+ Customers
Major phishing risk as personal details are compromised

Uber Blames Lapsus$ for Breach
Threat actor bombarded Uber contractor with 2FA requests

New Spear Phish Methodology Relies on PuTTY SSH Client to Infect Systems
It tried to trick victims into clicking on malicious files as part of a fake Amazon job assessment

CISA Expands Vulnerabilities Catalog With Old, Exploited Flaws
Four of the CVEs posted are from 2013, and one is from 2010

Allies Warn of Iranian Ransom Attacks Using Log4Shell
US authorities indict and sanction in fresh crackdown

Uber Hacker May Have Compromised Secret Bug Reports
Attacker looks to have admin access to cloud accounts

Crypto Scams Soar as Domains Surge 335%
Most fake domains are registered in Russia

Webworm Attackers Deploy Modified RATs in Espionage Attacks
The group reportedly developed customized versions of Trochilus, Gh0st RAT and 9002 RAT

Notepad++ Plugins Allow Attackers to Infiltrate Systems, Achieve Persistence
APT groups have leveraged Notepad++ plugins for nefarious purposes in the past

YouTube Users Targeted By RedLine Self-Spreading Stealer
RedLine can steal usernames, passwords, cookies, bank card details and autofill data from browsers

User Alert as Phishing Campaigns Exploit Queen's Passing
Experts urge the public not to fall for classic scams

Cybercrime Forum Admins Steal from Site Users
Report reveals there’s no honor among thieves

Cybercrime Fears for Children as Cost-of-Living Bites
UK parents concerned about repercussions of soaring inflation



