Infosecurity News

US Treasury Sanctions Iranian Minister Over Hacking of Govt and Allies
Iran would have directed several networks of cyber threat actors in support of its political goals

High Severity Vulnerabilities Found in HP Enterprise Devices
The flaws affect HP EliteBook devices and have CVSS scores between 7.5 and 8.2

Oxeye Discovers Several High Severity IDOR Vulnerabilities in Harbor
The flaws were discovered despite Harbor having implemented RBAC on most HTTP endpoints

Cops Raid Suspected Fraudster Penthouses
Gang believed to have posed as UK financial regulator

Ransomware Actors Embrace Intermittent Encryption
New technique makes for faster encryption and improved evasion

ICO Slams Government Departments Over FOI Failings
Regulator takes a harder line on enforcement

North Korean Lazarus Group Hacked Energy Providers Worldwide
The campaign was disclosed by Symantec and AhnLab but Cisco Talos is now providing more details

Investigators Seize $30m in Stolen Crypto from North Korea
Funds were taken in biggest ever digital currency heist

Hackers Compromise Employee Data at PVC-Maker Eurocell
Law firm is demanding more info from the company

Vulnerability in WordPress BackupBuddy Plugin Exploited By Hackers
Wordfence claimed to have blocked 4,948,926 attacks targeting this vulnerability

Increased Mortality Rates Linked to Cyber-Attacks Against Healthcare Organizations
The report also found that 89% of them experienced an average of 43 attacks in the past 12 months

Over Three-Quarters of Retailers Hit by Ransomware in 2021
Figure is more than 10% higher than cross-sector average

Our Statement of Condolence - Queen Elizabeth II - 1926 - 2022
We are deeply saddened by the passing of Her Majesty Queen Elizabeth II. We send our sincerest condolences to the Royal Family.

Rapid7 Discusses SIGMA Spectrum Infusion Pump and WiFi Battery Vulnerabilities
The vulnerabilities, now fixed, allowed for a potential man in the middle attack

Over 10% of Enterprise IT Assets Found Missing Endpoint Protection
The document analyzes data aggregated from visibility into more than 500,000 IT assets

Ransomware Campaigns Linked to Iranian Govt's DEV-0270 Hackers
DEV-0270 leverages exploits for newly disclosed vulnerabilities to gain access to devices

Darktrace's Share Value Plummets as Thoma Bravo Buyout Falls Through
The buyout fell through hours before the UK company said that millions of pounds in revenue had been wrongly recognized in this year's accounts instead of last year's

Researchers Reveal New Iranian Threat Group APT42
Group has been active since at least 2015

The North Face Warns of Major Credential Stuffing Campaign
Apparel giant detects unusual activity on accounts

NATO-Member Albania Cut Ties With Iran Over Cyber-Attack
Tehran denied any link, claiming Tirana’s action was “based on such baseless claims”



