Infosecurity News

Iranian Atomic Energy Agency Admits Email Hack
Suspected hacktivists inside country share sensitive info

US Charges Two Chinese Agents in Huawei Obstruction Case
Indictments form one of three cases involving Chinese spies

CISA Warns Against Ransomware Group Daixin Team Targeting Health Organizations
Daixin Team is actively targeting US businesses, mainly in the healthcare sector

Multiple RCE Vulnerabilities Discovered in Veeam Backup & Replication App
The Veeamp malware was used by the Monti and Yanluowang ransomware groups in these attacks

DHL Replaces LinkedIn As Most Imitated Brand in Phishing Attempts
It is due partly to a major phishing attack DHL warned about before the quarter started

UK Cyber Security Council Creates Chartered Qualification for Industry Pros
The UK Cyber Security Council has announced a pilot program designed to create the country’s first chartered cyber professionals

Clicker Malware Garners Estimated 20 Million Downloads
Google forced to remove over a dozen malicious apps

UK Construction Company Fined £4.4m for Serious Security Failings
Interserve slammed by regulator after employee data breach

European Police Warn of Metaverse Cyber-Threats
Cops also identify opportunities to enhance law enforcement

New Phishing Campaign Targets Saudi Government Service Portal
The campaigns are set up to provide fake services to the citizens and steal their credentials

Google Unveils Open Source Project to Improve Software Supply Chain Security
GUAC aims to bring together many different sources of software security metadata

Thousands of Publicly Exposed API Tokens Could Threaten Software Integrity
JFrog scanned over eight million artifacts in the most common open-source software registries

NCSC CEO Calls for International Standards on IoT Security
Lindy Cameron argues that smart cities are becoming an attractive target for threat actors, including nation states

Lesson Learned: How SolarWinds Strengthened its Security Post-Incident
Tim Brown, CISO and VP of security at SolarWinds shared his experiences remediating a major cyber-attack during Mandiant’s mWISE event on October 18, 2022

Cyber-Enabled Crimes Are Biggest Police Concerns
Interpol study warns that many threats are expected to increase

OldGremlin Ransomware Ups Ante Against Russian Targets
Ransom demands soar to $17m, according to new report

Cops Arrest Suspected Multimillion-Dollar Fraud Mastermind
Spanish police apprehend suspect in Tenerife

Ransomware is Being Used As a Precursor to Physical War: Ivanti
The data also shows ransomware groups continuing to grow in volume and sophistication

Cybersecurity Workforce Gap Grows by 26% in 2022
What are the factors behind this stark rise, and how can the skills gap be closed?

FBI Warns Students Against Loan Forgiveness Scammers
Scammers are attempting to solicit PII, financial information or payment from potential victims



