Infosecurity News

ICO Reprimands UK Organizations for GDPR Failings
Subject Access Requests experiencing significant delays

Cyber-Threats Top Business Leaders' Biggest Concerns
Many are operating under a false sense of security

Meta Takes Down Russian "Smash-and-Grab" Disinformation Campaign
Chinese network targeting US mid-terms also closed down

Alleged Optus Hacker Apologizes, Deletes Customers' Exposed Data
They claimed responsibility for the attack and said they had deleted the stolen data

Lazarus Group Targets MacOS Users Seeking Crypto Jobs
The new attacks would be a new instance of a campaign spotted by ESET and Malwarebytes in August

Microsoft Sway Pages Weaponized to Perform Phishing and Malware Delivery
Most phishing attack vectors observed involved clicking a direct link to a phishing page

Global Firms Deal with 51 Security Incidents Each Day
Siloed systems appear to be holding back teams

TikTok Facing £27m UK Regulatory Fine
Social network failed to protect kids, says ICO

Ukraine Predicts "Massive" Russian Cyber Assault
Kremlin set to intensify attacks on critical infrastructure

Fitbit Increases Security Requirements, Mandates Google Login From 2023
Users will have the option to log in using their Fitbit account for as long as it is supported

ReasonLabs Unveils Multimillion Dollar Global Credit Card Scam
The victims of the plot were users of Mastercard, Visa, and American Express, among others

Hackers Use NullMixer and SEO to Spread Malware More Efficiently
The websites are often related to crack, keygen and activators for illegal software

Ransomware Affiliates Adopt Data Destruction
Concerning signs of escalation in tactics

US Duo Plead Guilty to $30m Forex Fraud Scheme
Each face a maximum term of five years behind bars

UK Teen Arrested on Computer Misuse Charges
Individual may be linked to Lapsus$ group

Air Force Upgrades Digital Modernization Strategy to "As a Service" Model
The transition will be carried out through three procurements to be awarded before the end of 2024

Hackers Deploy Malicious OAuth Apps to Compromise Email Servers, Spread Spam
The spam emails were sent to trick recipients into signing up for fake paid subscriptions

Cyber Mercenary Group Void Balaur Continues Hack-For-Hire Campaigns
Void Balaur campaigns in 2022 targeted various industries across the US, Russia and Ukraine

Details of Over 300,000 Russian Reservists Leaked, Anonymous Claims
The group claims the individuals are likely to be mobilized by the Russian government to fight in Ukraine

Seven-Year Mobile Surveillance Campaign Targets Uyghurs
Scarlet Mimic group uses over 20 Android malware variants



