Infosecurity News

Baker & Taylor's Systems Remain Offline a Week After Ransomware Attack
The company said it will proceed to restore its systems as soon as they are sanitized

Cryptominer Disguised as Google Translate Targeted 11 Countries
Created by a Turkish-speaking entity, the malware claimed around 111,000 victims in 11 countries

New Go-based Ransomware 'Agenda' Delivers Customized Attacks
Agenda can reboot systems in safe mode and stop many server-specific processes and services

Google Launches Major Open Source Bug Bounty Program
Initiative is part of $10bn commitment to improve cybersecurity

FBI: Hackers Are Exploiting DeFi Bugs to Steal Funds
Users of decentralized finance platforms at risk

UK Spies Fund New Course for Female Coders
GCHQ wants to improve diversity for better results

Global Ransomware Damages to Exceed $30bn by 2023
Six hundred malicious email campaigns made their way across the internet in the first half of 2022

US Cyber Command and NSA Partner On Defence Efforts For Midterms Elections
The group's main goal is to monitor foreign adversaries who may interfere with elections

Iran-Based MuddyWater Targets Log4j 2 Vulnerabilities in SysAid Apps in Israel
It is the first campaign in which the hacker group exploits SysAid apps as a vector for initial access

TeamTNT Targeted Cloud Instances and Containerized Environments For Two Years
The hacking group most likely originates from Germany

0ktapus Phishing Campaign Targets Okta Identity Credentials
Despite using low-skill methods, the campaign compromised a large number of well-known companies

Cosmetics Giant Sephora to Pay $1m+ Privacy Settlement
California’s data protection law bares its teeth

Block Faces Class Action Suit After 2021 Breach
Plaintiffs argue firm’s security posture was ineffective

LastPass Hackers Stole Source Code
Password management firm reveals incident in early August

Microsoft Attributes New Post-Compromise Capability to Nobelium
MagicWeb improves on FoggyWeb by facilitating covert access directly via a malicious DLL

Talos Renews Cybersecurity Support For Ukraine on Independence Day
Cisco and Talos both have resources available to organizations in Ukraine in need of assistance

CISA Releases Guidelines to Aid Companies Transition to Post-quantum Cryptography
The guide provides overview of potential impacts of quantum computing on National Critical Functions

US Firm Pays $16m to Settle Healthcare Fraud Claims
Essilor International resolves False Claims Act allegations

Workplace Stress Worse than Cyber-Attack Fears for Security Pros
CIISec study finds few have adopted industry best practices

Scammers Create "AI Hologram" of C-Suite Crypto Exec
Online fraudsters appear to be upping their game



