Infosecurity News

  1. Twitter Password Reset Bug Exposed User Accounts

    Social media firm fixes issue that left sessions open

  2. Authorized Push Payments Surge to 75% of Banking Fraud

    Social engineering tactics bear fruit for digital scammers

  3. Iranian Hackers Hid in Albanian Networks for Over a Year

    CISA report reveals extent of state-backed campaign

  4. Microsoft Upgrades Windows 11 With New Security Features

    The list includes application control enhancements and vulnerable drivers protection, among others

  5. 350K Open-Source Projects At Risk of Supply Chain Vulnerability

    The flaw resides in the tarfile module, automatically installed in any Python project

  6. NCSC: British Retailers Need to Move Beyond Passwords

    The UK’s national cybersecurity agency also advised organizations on what steps they should take if their brand has been spoofed online

  7. Multiple Vulnerabilities Discovered in Dataprobe's iBoot-PDUs

    They pose a number of risks to Dataprobe, including giving control of the iBoot-PDU to attackers

  8. Two-Fifths of US Consumers Suffer Personal Data Theft

    Those suffering emotional and physical impact surges

  9. Video Game Publisher Admits Helpdesk Was Hijacked

    Players were sent malicious links disguised as support tickets

  10. Open Source Repository Attacks Soar 700% in Three Years

    Sonatype says it has detected 95,000 since 2019

  11. California Signs Internet Privacy Legislation to Boost Children's Safety Online

    The new legislation will implement some of the strictest privacy requirements in the US

  12. Critical Vulnerability in Oracle Cloud Infrastructure Allowed Unauthorized Access

    Potential attacks resulting from it may include privilege escalation and cross–tenant access

  13. Europol and Bitdefender Jointly Release LockerGoga Decryptor

    LockerGoga targeted several companies in Norway and across the US in 2019

  14. Grand Theft Auto Publisher Rockstar Games Hacked

    The threat actor ‘teapotuberhacker’ could be linked to the Lapsus$ hacking group

  15. Hackers Admit Destroying InterContinental Hotels Group's Data 'For Fun'

    They tried to conduct a ransomware attack against IHG and upon failing, decided to delete the data

  16. Quantum Computing Already Putting Data at Risk, Cyber Pros Agree

    In the Deloitte poll, 50.2% of respondents said their organization is at risk of ‘harvest now, decrypt later’ attacks

  17. American Airlines Breach Exposes Customer and Staff Information

    An undisclosed number of people have been impacted

  18. Revolut Breach May Have Hit 50,000+ Customers

    Major phishing risk as personal details are compromised

  19. Uber Blames Lapsus$ for Breach

    Threat actor bombarded Uber contractor with 2FA requests

  20. New Spear Phish Methodology Relies on PuTTY SSH Client to Infect Systems

    It tried to trick victims into clicking on malicious files as part of a fake Amazon job assessment

What’s Hot on Infosecurity Magazine?