Infosecurity News

UK Carrier Claims to Block One Million Vishing Calls Per Day
EE says AI tech is stopping international scams

Cyber Tops Staff Retention as Biggest Business Risk
PwC report finds execs are paying more attention to risk management

Hackers Deploy Bumblebee Loader to Breach Target Networks
Most Bumblebee infections started by end-users executing LNK files

ATMZOW JS Sniffer Campaign Linked to Hancitor Malware
ATMZOW infected at least 483 websites across four continents since the beginning of 2019

Quarter of All Gambling Sites Hit by DDoS Attacks in June
The attacks reportedly increased in conjunction with the start of the Wimbledon tennis tournament

Threat Group Ramps-Up Attacks on Travel Sector in 2022
Corporate and customer data at risk, warns Proofpoint

Researchers Find 35 Adware Apps on Google Play
Apps have millions of downloads, says Bitdefender

Suspected Russian Money Launderer Extradited to US
Man allegedly handled over $400,000 in Ryuk proceeds

CISA Warns of Hackers Exploiting Multiple Vulnerabilities in the Zimbra Collaboration Suite
The advisory was compiled by CISA with the Multi-State Information Sharing & Analysis Center

RubyGems Mandates MFA for Top-100 Package Maintainers
The package manager started enforcing MFA on owners of gems with over 180 million total downloads

Organizations Struggle to Fend Off Cloud and Web Attacks
The study queries more than 950 IT and security professionals across the Americas, EMEA and APAC

Identity Scams Soar to Make 2021 a Record Year
Non-profit says Google Voice scams were the most reported threat

USBs Still a Major OT Infection Vector
Manufacturing was most exposed to OT threats in 2021

Bug Bounty Giant Slams Quality of Vendor Patching
Zero Day Initiative says incomplete or faulty patches now commonplace

Two Additional Malicious Python Libraries Found on PyPI Repository
The new packages were masquerading as one of the most popular open-source packages on PyPI

Healthcare Provider Issues Warning After Tracking Pixels Leak Patient Data
The leak was caused by incorrect configurations of an online tracking tool from Meta

New Attack Weaponizes PLCs to Hack Enterprise and OT Networks
The research resulted in proof-of-concept exploits against seven market-leading automation firms

#DEFCON: Electrovolt Exploits Against Electron Desktop Apps Exposed
Electron-based desktop application including Discord, Microsoft Teams and VScode were at risk from a series of vulnerabilities

#DEFCON: How US Teen RickRolled His High School District
American teenager explains how he was able to hack his local high school district

Hybrid Vishing Attacks Soar 625% in Q2
Agari warns of multi-stage phishing threat



