Infosecurity News

US Cyber Command and NSA Partner On Defence Efforts For Midterms Elections
The group's main goal is to monitor foreign adversaries who may interfere with elections

Iran-Based MuddyWater Targets Log4j 2 Vulnerabilities in SysAid Apps in Israel
It is the first campaign in which the hacker group exploits SysAid apps as a vector for initial access

TeamTNT Targeted Cloud Instances and Containerized Environments For Two Years
The hacking group most likely originates from Germany

0ktapus Phishing Campaign Targets Okta Identity Credentials
Despite using low-skill methods, the campaign compromised a large number of well-known companies

Cosmetics Giant Sephora to Pay $1m+ Privacy Settlement
California’s data protection law bares its teeth

Block Faces Class Action Suit After 2021 Breach
Plaintiffs argue firm’s security posture was ineffective

LastPass Hackers Stole Source Code
Password management firm reveals incident in early August

Microsoft Attributes New Post-Compromise Capability to Nobelium
MagicWeb improves on FoggyWeb by facilitating covert access directly via a malicious DLL

Talos Renews Cybersecurity Support For Ukraine on Independence Day
Cisco and Talos both have resources available to organizations in Ukraine in need of assistance

CISA Releases Guidelines to Aid Companies Transition to Post-quantum Cryptography
The guide provides overview of potential impacts of quantum computing on National Critical Functions

US Firm Pays $16m to Settle Healthcare Fraud Claims
Essilor International resolves False Claims Act allegations

Workplace Stress Worse than Cyber-Attack Fears for Security Pros
CIISec study finds few have adopted industry best practices

Scammers Create "AI Hologram" of C-Suite Crypto Exec
Online fraudsters appear to be upping their game

Plex Suffers Data Breach, Warns Users to Reset Passwords
The company said it discovered suspicious activity on one of its databases on Tuesday

War in Ukraine Has Pushed Two-Thirds of Businesses to Change Cyber Strategy
The use of machine identity tools is growing in state-sponsored cyber-attacks

VMware Fixes Privilege Escalation Vulnerabilities in VMware Tools
The flaw reportedly impacted the software on both Windows and Linux systems

IoT Vulnerability Disclosures Up 57% in Six Months, Claroty Reveals
The research also found that vendor self-disclosures increased by 69%

Facebook Bug Causes Users’ Feeds to Be Spammed
Users’ feeds were spammed with posts from strangers on the pages of celebrities

Ransomware Surges to 1.2 Million Attacks Per Month
French hospital is the latest to be hit

EU Outlines Critical Cyber Response to Ukraine War
Agencies team up to police borders and mitigate Russian cyber-threats



