Infosecurity News

Microsoft Sway Pages Weaponized to Perform Phishing and Malware Delivery
Most phishing attack vectors observed involved clicking a direct link to a phishing page

Global Firms Deal with 51 Security Incidents Each Day
Siloed systems appear to be holding back teams

TikTok Facing £27m UK Regulatory Fine
Social network failed to protect kids, says ICO

Ukraine Predicts "Massive" Russian Cyber Assault
Kremlin set to intensify attacks on critical infrastructure

Fitbit Increases Security Requirements, Mandates Google Login From 2023
Users will have the option to log in using their Fitbit account for as long as it is supported

ReasonLabs Unveils Multimillion Dollar Global Credit Card Scam
The victims of the plot were users of Mastercard, Visa, and American Express, among others

Hackers Use NullMixer and SEO to Spread Malware More Efficiently
The websites are often related to crack, keygen and activators for illegal software

Ransomware Affiliates Adopt Data Destruction
Concerning signs of escalation in tactics

US Duo Plead Guilty to $30m Forex Fraud Scheme
Each face a maximum term of five years behind bars

UK Teen Arrested on Computer Misuse Charges
Individual may be linked to Lapsus$ group

Air Force Upgrades Digital Modernization Strategy to "As a Service" Model
The transition will be carried out through three procurements to be awarded before the end of 2024

Hackers Deploy Malicious OAuth Apps to Compromise Email Servers, Spread Spam
The spam emails were sent to trick recipients into signing up for fake paid subscriptions

Cyber Mercenary Group Void Balaur Continues Hack-For-Hire Campaigns
Void Balaur campaigns in 2022 targeted various industries across the US, Russia and Ukraine

Details of Over 300,000 Russian Reservists Leaked, Anonymous Claims
The group claims the individuals are likely to be mobilized by the Russian government to fight in Ukraine

Seven-Year Mobile Surveillance Campaign Targets Uyghurs
Scarlet Mimic group uses over 20 Android malware variants

NSA Reveals "Hackers' Playbook" for OT Attacks
New report outlines key mitigations for OT owners

Europol "Hackathon" Identifies Scores of Human Trafficking Victims
Over 100 online platforms checked for illegal activity

Optus Hit By Cyber-Attack, Breach Affects Nearly 10 Million Customers
Home addresses, driver's licenses and passport numbers were potentially accessed by the attacker

Morgan Stanley Fined $35m By SEC For Data Security Lapse
The improper data disposal reportedly started in 2016 and exposed 15 million customers' data

Russia-Based Hackers FIN11 Impersonate Zoom to Conduct Phishing Campaigns
Cyfirma said the motive behind the attacks may be financial in nature



