Infosecurity News

  1. Unapproved Apps Used By 32% of Remote Workers

    Latest Lookout report also suggested 46% of remote employees saved work files to personal devices

  2. Dish Network Hit with Multiple Securities Class Action Lawsuits

    Pay TV firm accused of misleading investors

  3. Consumer Loans Firm TMX Reveals Major Data Breach

    Nearly five million impacted by December 2022 incident

  4. Outsourcer Capita Claims to Have Contained "Cyber Incident"

    Firm has billions of pounds worth of government contracts

  5. Italy's Privacy Watchdog Blocks ChatGPT Amid Privacy Concerns

    GPDP probe is due to allegations that ChatGPT failed to comply with data collection rules

  6. Modular "AlienFox" Toolkit Used to Steal Cloud Service Credentials

    Harvesting API keys and secrets from AWS SES, Microsoft Office 365 and other services

  7. New Azure Flaw "Super FabriXss" Enables Remote Code Execution Attacks

    The cross-site scripting flaw affects SFX version 9.1.1436.9590 or earlier and has a CVSS of 8.2

  8. UK Regulator: HIV Data Protection Must Improve

    ICO issues call after reprimanding NHS Highland

  9. GCHQ Updates Security Guidance for Boards

    Agency wants business leaders to get serious about cyber

  10. Ukrainian Police Bust Multimillion-Dollar Phishing Gang

    More than 100 sites created to lure European victims

  11. North Korean Hackers Use Trojanized 3CX DesktopApp in Supply Chain Attacks

    Windows and Mac versions of the software were compromised to deliver infostealers

  12. Over 70% of Employees Keep Work Passwords on Personal Devices

    95% of security leaders are also concerned about phishing attacks via private messaging apps

  13. FDA Protects Medical Devices Against Cyber-Threats With New Measures

    New medical devices applications should "monitor, identify, and address" cybersecurity issues

  14. Volume of HTTPS Phishing Sites Surges 56% Annually

    Scammers are increasingly trying to legitimize their efforts

  15. NCA Celebrates Multimillion-Pound Fraud Takedowns

    Agency says it has seized hundreds of assets in month-long operation

  16. Thieves Steal $9m from Crypto Liquidity Pool

    SafeMoon claims exploited vulnerability was to blame

  17. Google Warns Against Commercial Spyware Exploiting Zero-Days

    Spyware vendors facilitated the spread of malware by government-backed threat actors

  18. Clop Ransomware Group Exploits GoAnywhere MFT Flaw

    The vulnerability has a CVSS score of 7.2 and was exploited against several companies in the US

  19. Attacks Targeting APIs Increased By 400% in Last Six Months

    The new Salt Security report found that 80% of attacks happened over authenticated APIs

  20. ChatGPT Vulnerability May Have Exposed Users’ Payment Information

    The breach was caused by a bug in an open-source library

What’s Hot on Infosecurity Magazine?