Infosecurity News

  1. Hackers Exploit Privilege Escalation Flaw on Windows Backup Service

    The flaw is triggered using the Race Condition between temporary file creation and deletion

  2. Researchers Uncover New Information Stealer 'Stealc'

    Stealc is a fully featured stealer, whose development relied on Vidar, Raccoon, Mars and Redline

  3. City Fund Managers Jailed for $8m Fraud

    Trio get 12 years behind bars

  4. Ransomware Gang Seeks to Exploit Victims' Insurance Coverage

    Ransomware group tries to demonize carriers in negotiations

  5. Fifth of Brits Have Fallen Victim to Online Scammers

    Many don’t have any security controls in place, says F-Secure

  6. Samsung Launches Message Guard to Protect Users From Cyber-Threats

    The feature provides a sandbox layer isolating some image files from the rest of the device

  7. GoDaddy Announces Source Code Stolen and Malware Installed in Breach

    An unauthorized party caused the intermittent redirection of customer websites

  8. Frebniis Malware Exploits Microsoft IIS Feature

    The malware was used by a previously unknown threat actor against targets in Taiwan

  9. FBI "Contains" Cyber-Incident on its Network

    Question marks remain over what happened at New York field office

  10. Norway Seizes Millions in North Korean Crypto

    Funds were taken in attack on Ronin Network

  11. Police Bust $41m Email Scam Gang

    Criminal network comprises French and Israeli gangsters

  12. Cloud Infrastructure Used By WIP26 For Espionage Attacks on Telcos

    The threat actor initiated infection chains by targeting employees through WhatsApp messages

  13. EU Cybersecurity Agency Warns Against Chinese APTs

    The document directly mentions APT27, APT30, APT31, Ke3chang, Gallium and Mustang Panda

  14. Google Report Reveals Russia's Elaborate Cyber Strategy in Ukraine

    One year after the invasion of Ukraine, Google and Mandiant analyzed the cyber strategy of Russia-backed threat actors

  15. Armenia and Azerbaijan Hackers Use OxtaRAT to Monitor Conflict

    The newest version of OxtaRAT is a polyglot file combining a compiled AutoIT script and an image

  16. UK NCSC Launches Recommendations on Supply Chain Mapping

    The UK National Cybersecurity Centre’s new guidance breaks down the essentials of a good supply chain mapping (SCM) list

  17. Firm Fined £200K For "Exploitative" Call Campaign

    It's OK Ltd made over 1.7 million nuisance calls

  18. Data Leak Hits Thousands of NHS Workers

    Email snafu affects staff at Liverpool University Hospital Foundation Trust

  19. Hackers Fake Emsisoft Certificate to Hide Attack

    Attempt to trick network defenders into allow-listing remote access app

  20. BEC Groups Target Firms With Multilingual Impersonation Attacks

    Combined, the two groups have launched BEC campaigns in at least 13 different languages

What’s Hot on Infosecurity Magazine?