Infosecurity News

  1. GitHub Confirms Signing Certificates Stolen in Cyber-Attack, Revokes Them

    Revoking these certificates will invalidate some versions of GitHub Desktop for Mac and Atom

  2. DocuSign Brand Impersonation Attack Bypasses Security Measures, Targets Over 10,000

    Victims were redirected to a fake landing page to exfiltrate their Proofpoint credentials

  3. Financial Services Targeted in 28% of UK Cyber-Attacks Last Year

    API attacks, bad bots and DDoS attacks were the industry's main security challenges

  4. Killnet Attackers DDoS US and Dutch Hospitals

    Retaliatory Russian attacks latest response to geopolitical moves

  5. Two US Doctors Convicted of $30m Medicare Fraud

    Claims submitted for medical equipment not needed by patients

  6. QNAP: Patch Critical Remote Code Injection Bug

    Vulnerability affects QTS and QuTS Hero firmware

  7. JD Sports Confirms Breach Affected 10 Million Customers

    The cyber-attack hit the company between November 2018 and October 2020

  8. Hackers Use TrickGate Software to Deploy Emotet, REvil, Other Malware

    Threat actors used TrickGate to conduct between 40 and 650 attacks per week in the last two years

  9. Devs on Dark Web Forums Paid Up to $20,000 For Illicit Activities

    The data comes from 155 dark web forums analyzed between January 2020 and June 2022

  10. Fake Money Apps Garner Millions of Android Downloads

    Over 20 million users install apps from Google Play

  11. New Yorker Gets Four Years for $9m COVID Fraud Scheme

    Woman recruited multiple co-conspirators to help her

  12. Five Data Wipers Attack Ukrainian News Agency

    Russia's Sandworm group suspected of destructive attack

  13. Multiple Vulnerabilities Found In Healthcare Software OpenEMR

    Two of these vulnerabilities combined could lead to unauthenticated remote code execution

  14. Black Basta Deploys PlugX Malware in USB Devices With New Technique

    The variant is “wormable” and can infect USB devices to hide itself from the Windows OS

  15. New 'Pig Butchering' Scam in West Africa Impersonates US Financial Advisors

    DomainTools said most of these attacks exploited professional network services such as LinkedIn

  16. Security is Key to Business Transformation, Say IT Chiefs

    Two-fifths see it as a critical innovation driver

  17. Global Action "Dismantles" Hive Ransomware Group

    FBI distributes hundreds of decryption keys to victims

  18. Microsoft: Update On-Premises Exchange Server Now

    Attacks are not going away, tech giant warns

  19. Iranian Group Cobalt Sapling Targets Saudi Arabia With New Persona

    The findings come from cybersecurity experts at Secureworks' Counter Threat Unit

  20. Zacks Investment Research Confirms Breach Affecting 820,000 Customers

    The firm believes the unauthorized access occurred between November 2021 and August 2022

What’s Hot on Infosecurity Magazine?